From 4595d19b8db1ed258bbfa24ac2af8768c105354d Mon Sep 17 00:00:00 2001 From: Marvin Borner Date: Fri, 27 Apr 2018 17:28:52 +0200 Subject: Added many security/verifying things for image upload --- main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php | 3 --- 1 file changed, 3 deletions(-) (limited to 'main/app/sprinkles/core/src/ServicesProvider') diff --git a/main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php b/main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php index 3f562a9..c67b886 100644 --- a/main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php +++ b/main/app/sprinkles/core/src/ServicesProvider/ServicesProvider.php @@ -235,9 +235,6 @@ class ServicesProvider // Hacky fix to prevent sessions from being hit too much: ignore CSRF middleware for requests for raw assets ;-) // See https://github.com/laravel/framework/issues/8172#issuecomment-99112012 for more information on why it's bad to hit Laravel sessions multiple times in rapid succession. $csrfBlacklist = $config['csrf.blacklist']; - $csrfBlacklist['^/api/posts/image'] = [ - 'POST' - ]; $csrfBlacklist['^/' . $config['assets.raw.path']] = [ 'GET' ]; -- cgit v1.2.3