comparison test/session_common.py @ 5218:44f7e6b958fe

Added tests for csrf with xmlrpc. Fixed the code for xmlrpc csrf defense: raise UsageError if X-REQUESTED-WITH header is required and missing. if HTTP_AUTHORIZATION is used, properly seed the random number generator using the password.
author John Rouillard <rouilj@ieee.org>
date Mon, 27 Mar 2017 22:37:30 -0400
parents 63c79c0992ae
children 62de601bdf6f
comparison
equal deleted inserted replaced
5217:17b213eab274 5218:44f7e6b958fe

Roundup Issue Tracker: http://roundup-tracker.org/