fix: deleteUser check session freshAge using ms instead of sec (#3020)

This commit is contained in:
Tim Etler
2025-06-15 12:51:20 -07:00
committed by GitHub
parent b6edbb9ab9
commit 0df8793f5f

View File

@@ -512,7 +512,7 @@ export const deleteUser = createAuthEndpoint(
const currentAge = session.session.createdAt.getTime();
const freshAge = ctx.context.options.session.freshAge;
const now = Date.now();
if (now - currentAge > freshAge) {
if (now - currentAge > freshAge * 1000) {
throw new APIError("BAD_REQUEST", {
message: BASE_ERROR_CODES.SESSION_EXPIRED,
});