From 511a6ff0bb7fdaefa3a27b2ed32957a1775b8fbb Mon Sep 17 00:00:00 2001 From: Fred Tempez Date: Fri, 6 Sep 2024 17:18:17 +0200 Subject: [PATCH] csrf key sur 64 octets --- core/class/router.class.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/core/class/router.class.php b/core/class/router.class.php index 9cc2c0f..ec28a8d 100644 --- a/core/class/router.class.php +++ b/core/class/router.class.php @@ -11,7 +11,7 @@ class core extends common parent::__construct(); // Token CSRF if (empty($_SESSION['csrf'])) { - $_SESSION['csrf'] = bin2hex(openssl_random_pseudo_bytes(128)); + $_SESSION['csrf'] = bin2hex(openssl_random_pseudo_bytes(64)); } // Fuseau horaire