- Fix header nav overflow by switching to lg: breakpoint with tighter gaps - Fix file upload path traversal by whitelisting allowed folders and extensions - Fix BookingModal using hardcoded content instead of DB-backed data - Add input length validation on public master-class registration API - Add ID validation on team member and reorder API routes - Fix BookingModal useCallback missing groupInfo/contact dependencies - Improve admin news date field to use native date picker - Add missing Мастер-классы and Новости cards to admin dashboard Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
17 lines
577 B
TypeScript
17 lines
577 B
TypeScript
import { NextRequest, NextResponse } from "next/server";
|
|
import { reorderTeamMembers } from "@/lib/db";
|
|
import { revalidatePath } from "next/cache";
|
|
|
|
export async function PUT(request: NextRequest) {
|
|
const { ids } = await request.json() as { ids: number[] };
|
|
|
|
if (!Array.isArray(ids) || ids.length === 0 || !ids.every((id) => Number.isInteger(id) && id > 0)) {
|
|
return NextResponse.json({ error: "ids must be a non-empty array of positive integers" }, { status: 400 });
|
|
}
|
|
|
|
reorderTeamMembers(ids);
|
|
revalidatePath("/");
|
|
|
|
return NextResponse.json({ ok: true });
|
|
}
|