Controller: Add CSRF token validation to development toggle

This commit is contained in:
Riyyi
2021-08-30 01:02:50 +02:00
parent d50443b10a
commit 9a99c31d47
3 changed files with 37 additions and 22 deletions
+2 -1
View File
@@ -21,6 +21,7 @@ class CacheController extends PageController {
$this->router->service()->config = $config;
$this->router->service()->csrfToken = Session::token();
$this->router->service()->purgeUrl = $this->url . '/purge';
$this->router->service()->toggleUrl = $this->url . '/toggle';
parent::view();
}
@@ -81,7 +82,7 @@ class CacheController extends PageController {
public function toggleAction(): void
{
if (Config::c('CLOUDFLARE_ENABLED') != '1') {
if (!$this->validatePostRequest()) {
return;
}