diff --git a/app/controllers/attachments_controller.rb b/app/controllers/attachments_controller.rb index d5b0a25bf..ee953e913 100644 --- a/app/controllers/attachments_controller.rb +++ b/app/controllers/attachments_controller.rb @@ -514,7 +514,7 @@ private end def has_login - unless @attachment.container_type == "PhoneAppVersion" + unless @attachment && @attachment.container_type == "PhoneAppVersion" render_403 unless User.current.logged? end end