Files
lix/src/lib/Hydra
Eelco Dolstra c928c41ee1 Add XSRF protection for POST requests
Some Hydra API requests were vulnerable to XSRF attacks, e.g. you
could have a form on another website using http://hydra/logout as the
form action. So we now require POST requests to come from the same
origin.

Reported by Hans-Christian Esperer.
2016-10-20 16:11:33 +02:00
..
2016-03-02 18:06:20 +01:00
2013-10-25 11:09:11 -04:00
2013-02-25 21:20:52 +01:00
2016-05-27 14:35:32 +02:00