Update# CSRF for account creation form
This commit is contained in:
parent
59d1ae6038
commit
b3c2695237
|
|
@ -174,7 +174,6 @@ class RegisterController extends Controller {
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* @NoAdminRequired
|
* @NoAdminRequired
|
||||||
* @NoCSRFRequired
|
|
||||||
* @PublicPage
|
* @PublicPage
|
||||||
*/
|
*/
|
||||||
public function createAccount($token) {
|
public function createAccount($token) {
|
||||||
|
|
|
||||||
|
|
@ -1,6 +1,7 @@
|
||||||
<?php
|
<?php
|
||||||
\OCP\Util::addStyle('registration', 'style');
|
\OCP\Util::addStyle('registration', 'style');
|
||||||
?><form action="<?php print_unescaped(OC_Helper::linkToRoute('registration.register.createAccount', array('token'=>$_['token']))) ?>" method="post">
|
?><form action="<?php print_unescaped(OC_Helper::linkToRoute('registration.register.createAccount', array('token'=>$_['token']))) ?>" method="post">
|
||||||
|
<input type="hidden" name="requesttoken" value="<?php p($_['requesttoken']) ?>" />
|
||||||
<fieldset>
|
<fieldset>
|
||||||
<?php if ( $_['errormsgs'] ) {?>
|
<?php if ( $_['errormsgs'] ) {?>
|
||||||
<ul class="error">
|
<ul class="error">
|
||||||
|
|
|
||||||
Loading…
Reference in New Issue