mirror of
https://github.com/NodeBB/NodeBB.git
synced 2025-11-11 16:35:47 +01:00
added csrf to ajax calls
This commit is contained in:
@@ -86,7 +86,7 @@
|
||||
console.log('info: [Auth] Session ' + req.sessionID + ' logout (uid: ' + global.uid + ')');
|
||||
user_module.logout(req.sessionID, function(logout) {
|
||||
req.logout();
|
||||
res.send(app.build_header() + templates['logout'] + templates['footer']);
|
||||
res.send(app.build_header(res) + templates['logout'] + templates['footer']);
|
||||
});
|
||||
});
|
||||
|
||||
@@ -120,11 +120,11 @@
|
||||
|
||||
|
||||
app.get('/reset/:code', function(req, res) {
|
||||
res.send(app.build_header() + templates['reset_code'].parse({ reset_code: req.params.code }) + templates['footer']);
|
||||
res.send(app.build_header(res) + templates['reset_code'].parse({ reset_code: req.params.code }) + templates['footer']);
|
||||
});
|
||||
|
||||
app.get('/reset', function(req, res) {
|
||||
res.send(app.build_header() + templates['reset'] + templates['footer']);
|
||||
res.send(app.build_header(res) + templates['reset'] + templates['footer']);
|
||||
});
|
||||
|
||||
|
||||
|
||||
Reference in New Issue
Block a user