diff options
author | Marvin Borner | 2018-04-27 17:28:52 +0200 |
---|---|---|
committer | Marvin Borner | 2018-04-27 17:28:52 +0200 |
commit | 4595d19b8db1ed258bbfa24ac2af8768c105354d (patch) | |
tree | 5533c1d8726d67af6b648c85c8702899f6d5b687 /main/app/sprinkles/core/src/ServicesProvider | |
parent | 111c0366708428c49b4e3a1d28b5628b6aec6c06 (diff) |
Added many security/verifying things for image upload
Diffstat (limited to 'main/app/sprinkles/core/src/ServicesProvider')
-rw-r--r-- | main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php | 3 |
1 files changed, 0 insertions, 3 deletions
diff --git a/main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php b/main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php index 3f562a9..c67b886 100644 --- a/main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php +++ b/main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php @@ -235,9 +235,6 @@ class ServicesProvider // Hacky fix to prevent sessions from being hit too much: ignore CSRF middleware for requests for raw assets ;-) // See https://github.com/laravel/framework/issues/8172#issuecomment-99112012 for more information on why it's bad to hit Laravel sessions multiple times in rapid succession. $csrfBlacklist = $config['csrf.blacklist']; - $csrfBlacklist['^/api/posts/image'] = [ - 'POST' - ]; $csrfBlacklist['^/' . $config['assets.raw.path']] = [ 'GET' ]; |