forked from ZwiiCMS-Team/ZwiiCMS
Contremesure faille CRSF
This commit is contained in:
parent
f620319c83
commit
3824c1c6f2
@ -160,19 +160,11 @@ class user extends common {
|
|||||||
'notification' => 'Jeton invalide'
|
'notification' => 'Jeton invalide'
|
||||||
]);
|
]);
|
||||||
}
|
}
|
||||||
<<<<<<< HEAD
|
|
||||||
elseif ($this->getUrl(4) !== $_SESSION['csrf']) {
|
|
||||||
// Valeurs en sortie
|
|
||||||
$this->addOutput([
|
|
||||||
'redirect' => helper::baseUrl() . 'user',
|
|
||||||
'notification' => 'Suppression non autorisée'
|
|
||||||
=======
|
|
||||||
if ($this->getUrl(4) !== $_SESSION['csrf']) {
|
if ($this->getUrl(4) !== $_SESSION['csrf']) {
|
||||||
// Valeurs en sortie
|
// Valeurs en sortie
|
||||||
$this->addOutput([
|
$this->addOutput([
|
||||||
'redirect' => helper::baseUrl() . 'user',
|
'redirect' => helper::baseUrl() . 'user',
|
||||||
'notification' => 'Action non autorisée'
|
'notification' => 'Action non autorisée'
|
||||||
>>>>>>> master_v8
|
|
||||||
]);
|
]);
|
||||||
}
|
}
|
||||||
// Accès autorisé
|
// Accès autorisé
|
||||||
|
Loading…
Reference in New Issue
Block a user