diff --git a/backend/server/adventures/views/collection_view.py b/backend/server/adventures/views/collection_view.py index 7c636a9..1765342 100644 --- a/backend/server/adventures/views/collection_view.py +++ b/backend/server/adventures/views/collection_view.py @@ -23,6 +23,7 @@ class CollectionViewSet(viewsets.ModelViewSet): order_direction = self.request.query_params.get('order_direction', 'asc') valid_order_by = ['name', 'updated_at', 'start_date'] + if order_by not in valid_order_by: order_by = 'updated_at' if order_direction not in ['asc', 'desc']: