@@ -26,6 +26,7 @@ SEF('DEBUG_S');
Lib::loadClass('ApiUser');
Lib::loadClass('Api');
+if (!empty($_GET['sid'])) session_id($_GET['sid']); // TODO: security BUG
session_start();
session_write_close();