From ab97c04894ebce03b5b19e29ea677be8abca87ef Mon Sep 17 00:00:00 2001 From: Lukas Reschke Date: Fri, 10 Aug 2012 00:07:46 +0200 Subject: [PATCH] Added XSRF check --- core/ajax/appconfig.php | 1 + 1 file changed, 1 insertion(+) diff --git a/core/ajax/appconfig.php b/core/ajax/appconfig.php index 84e0710c74..bf749be3e3 100644 --- a/core/ajax/appconfig.php +++ b/core/ajax/appconfig.php @@ -7,6 +7,7 @@ require_once ("../../lib/base.php"); OC_Util::checkAdminUser(); +OCP\JSON::callCheck(); $action=isset($_POST['action'])?$_POST['action']:$_GET['action']; $result=false;