Ticket #509 (new security)

Opened 3 months ago

Last modified 3 months ago

Add tokens to forms to block possible CSRF attack

Reported by: mortonda@… Owned by: mortonda@…
Priority: normal Milestone: 1.0.3
Component: General Version: 1.0.2
Severity: normal Keywords:
Cc:

Description

All forms need to have a token sent along to verify that the post originated with our own forms and not somewhere else.

Change History

Changed 3 months ago by mortonda@…

  • summary changed from Add tokens to forms to clock possible CSRF attack to Add tokens to forms to block possible CSRF attack
Note: See TracTickets for help on using tickets.