Update# CSRF for account creation form

This commit is contained in:
Pellaeon Lin 2015-08-31 17:39:25 +08:00
parent 59d1ae6038
commit b3c2695237
2 changed files with 1 additions and 1 deletions

View File

@ -174,7 +174,6 @@ class RegisterController extends Controller {
/** /**
* @NoAdminRequired * @NoAdminRequired
* @NoCSRFRequired
* @PublicPage * @PublicPage
*/ */
public function createAccount($token) { public function createAccount($token) {

View File

@ -1,6 +1,7 @@
<?php <?php
\OCP\Util::addStyle('registration', 'style'); \OCP\Util::addStyle('registration', 'style');
?><form action="<?php print_unescaped(OC_Helper::linkToRoute('registration.register.createAccount', array('token'=>$_['token']))) ?>" method="post"> ?><form action="<?php print_unescaped(OC_Helper::linkToRoute('registration.register.createAccount', array('token'=>$_['token']))) ?>" method="post">
<input type="hidden" name="requesttoken" value="<?php p($_['requesttoken']) ?>" />
<fieldset> <fieldset>
<?php if ( $_['errormsgs'] ) {?> <?php if ( $_['errormsgs'] ) {?>
<ul class="error"> <ul class="error">