aboutsummaryrefslogtreecommitdiffhomepage
path: root/main/app/sprinkles/core/src/ServicesProvider
diff options
context:
space:
mode:
authorMarvin Borner2018-04-27 17:28:52 +0200
committerMarvin Borner2018-04-27 17:28:52 +0200
commit4595d19b8db1ed258bbfa24ac2af8768c105354d (patch)
tree5533c1d8726d67af6b648c85c8702899f6d5b687 /main/app/sprinkles/core/src/ServicesProvider
parent111c0366708428c49b4e3a1d28b5628b6aec6c06 (diff)
Added many security/verifying things for image upload
Diffstat (limited to 'main/app/sprinkles/core/src/ServicesProvider')
-rw-r--r--main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php3
1 files changed, 0 insertions, 3 deletions
diff --git a/main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php b/main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php
index 3f562a9..c67b886 100644
--- a/main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php
+++ b/main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php
@@ -235,9 +235,6 @@ class ServicesProvider
// Hacky fix to prevent sessions from being hit too much: ignore CSRF middleware for requests for raw assets ;-)
// See https://github.com/laravel/framework/issues/8172#issuecomment-99112012 for more information on why it's bad to hit Laravel sessions multiple times in rapid succession.
$csrfBlacklist = $config['csrf.blacklist'];
- $csrfBlacklist['^/api/posts/image'] = [
- 'POST'
- ];
$csrfBlacklist['^/' . $config['assets.raw.path']] = [
'GET'
];