CSRF : Update the namespace
git-svn-id: https://svn.fournier38.fr/svn/ProgSVN/trunk@4791 bf3deb0d-5f1a-0410-827f-c0cc1f45334c
This commit is contained in:
6
csrf.php
6
csrf.php
@@ -57,18 +57,18 @@ class csrf
|
|||||||
return TRUE;
|
return TRUE;
|
||||||
if (! isset ($_SESSION["domframework"]["csrf"]["csrf"]))
|
if (! isset ($_SESSION["domframework"]["csrf"]["csrf"]))
|
||||||
{
|
{
|
||||||
throw new Exception (dgettext("domframework",
|
throw new \Exception (dgettext("domframework",
|
||||||
"No previous CSRF token : abort"), 406);
|
"No previous CSRF token : abort"), 406);
|
||||||
}
|
}
|
||||||
if ($_SESSION["domframework"]["csrf"]["csrf"] !== $tokenFromUser)
|
if ($_SESSION["domframework"]["csrf"]["csrf"] !== $tokenFromUser)
|
||||||
{
|
{
|
||||||
throw new Exception (dgettext("domframework",
|
throw new \Exception (dgettext("domframework",
|
||||||
"Invalid CSRF token provided"), 406);
|
"Invalid CSRF token provided"), 406);
|
||||||
}
|
}
|
||||||
if (($_SESSION["domframework"]["csrf"]["csrfStart"] + $this->csrfTimeout) <
|
if (($_SESSION["domframework"]["csrf"]["csrfStart"] + $this->csrfTimeout) <
|
||||||
microtime (TRUE))
|
microtime (TRUE))
|
||||||
{
|
{
|
||||||
throw new Exception (dgettext("domframework",
|
throw new \Exception (dgettext("domframework",
|
||||||
"Obsolete CSRF token provided"), 406);
|
"Obsolete CSRF token provided"), 406);
|
||||||
}
|
}
|
||||||
return TRUE;
|
return TRUE;
|
||||||
|
|||||||
Reference in New Issue
Block a user