summaryrefslogtreecommitdiff
path: root/app/Template/task_file
diff options
context:
space:
mode:
authorFrédéric Guillot <fred@kanboard.net>2018-01-29 15:56:30 -0800
committerFrédéric Guillot <fred@kanboard.net>2018-01-29 15:56:30 -0800
commit9ddefa979a12aff2334d6e7048e142cfdef5bb89 (patch)
tree30416f103ba88c7bdf1039c9d40085a7a784ddc0 /app/Template/task_file
parent90984d6bb9b3bd508e0ca7f8c0ee07d304679fb5 (diff)
Add CSRF check for task and project files upload
Diffstat (limited to 'app/Template/task_file')
-rw-r--r--app/Template/task_file/create.php1
1 files changed, 1 insertions, 0 deletions
diff --git a/app/Template/task_file/create.php b/app/Template/task_file/create.php
index eebb08eb..46fc7d66 100644
--- a/app/Template/task_file/create.php
+++ b/app/Template/task_file/create.php
@@ -3,6 +3,7 @@
</div>
<?= $this->app->component('file-upload', array(
+ 'csrf' => $this->app->getToken()->getReusableCSRFToken(),
'maxSize' => $max_size,
'url' => $this->url->to('TaskFileController', 'save', array('task_id' => $task['id'], 'project_id' => $task['project_id'])),
'labelDropzone' => t('Drag and drop your files here'),