Use drupal_get_token adn drupal_valid_token

Scott Reynolds - October 22, 2009 - 18:18
Project:Smackdown
Version:6.x-1.x-dev
Component:Code
Category:bug report
Priority:critical
Assigned:Scott Reynolds
Status:closed
Description

Use these in your ajax callbacks to ensure the user is who the site thinks he is.

AttachmentSize
smackdown_token.patch1.55 KB

#1

sirkitree - October 23, 2009 - 16:42
Status:needs review» fixed

committed http://drupal.org/cvs?commit=278840

#2

System Message - November 6, 2009 - 16:50
Status:fixed» closed

Automatically closed -- issue fixed for 2 weeks with no activity.

 
 

Drupal is a registered trademark of Dries Buytaert.