comparison website/issues/html/user.register.html @ 5291:f63a2b15e628

Adding @csrf tokens to all forms using post method.
author John Rouillard <rouilj@ieee.org>
date Sun, 24 Sep 2017 21:17:51 -0400
parents c2d0d3e9099d
children aae0c29ca35d
comparison
equal deleted inserted replaced
5290:33e1cf136f1d 5291:f63a2b15e628
66 <td> 66 <td>
67 <input type="hidden" name="@template" value="register"> 67 <input type="hidden" name="@template" value="register">
68 <input type="hidden" name="@required" value="username,password,address"> 68 <input type="hidden" name="@required" value="username,password,address">
69 <input type="hidden" name="@action" value="register"> 69 <input type="hidden" name="@action" value="register">
70 <input type="submit" name="submit" value="Register" i18n:attributes="value"> 70 <input type="submit" name="submit" value="Register" i18n:attributes="value">
71 <input name="@csrf" type="hidden"
72 tal:attributes="value python:utils.anti_csrf_nonce()">
71 </td> 73 </td>
72 </tr> 74 </tr>
73 </table> 75 </table>
74 </form> 76 </form>
75 77

Roundup Issue Tracker: http://roundup-tracker.org/