]> git.mxchange.org Git - quix0rs-gnu-social.git/blobdiff - actions/userauthorization.php
CSRF protection in user registration
[quix0rs-gnu-social.git] / actions / userauthorization.php
index 3d4661b25d2a375b1dab19bee04622e20c27c131..6208113981d313ec4e87c8570c018ab05f58b3cb 100644 (file)
@@ -123,6 +123,7 @@ class UserauthorizationAction extends Action {
                                                                                   'id' => 'userauthorization',
                                                                                   'name' => 'userauthorization',
                                                                                   'action' => common_local_url('userauthorization')));
+               common_hidden('token', common_session_token());
                common_submit('accept', _('Accept'));
                common_submit('reject', _('Reject'));
                common_element_end('form');