diff options
author | Brian Picciano <mediocregopher@gmail.com> | 2022-05-24 17:42:00 -0600 |
---|---|---|
committer | Brian Picciano <mediocregopher@gmail.com> | 2022-05-24 17:42:00 -0600 |
commit | 08811a6da78c3f1f973b8f50a337ff4dc4ed9e2c (patch) | |
tree | 3fc8fa9025dbdc8099ea145e232f8b25547204b5 /srv/src/http/tpl/load-csrf.html | |
parent | 159638084e167047b86fd65382f50cd099d4eb48 (diff) |
Replace CSRF token checking with Referer checking
Diffstat (limited to 'srv/src/http/tpl/load-csrf.html')
-rw-r--r-- | srv/src/http/tpl/load-csrf.html | 13 |
1 files changed, 0 insertions, 13 deletions
diff --git a/srv/src/http/tpl/load-csrf.html b/srv/src/http/tpl/load-csrf.html deleted file mode 100644 index b0757f9..0000000 --- a/srv/src/http/tpl/load-csrf.html +++ /dev/null @@ -1,13 +0,0 @@ -<script async type="module" src="{{ StaticURL "api.js" }}"></script> - -<script type="text/javascript"> - (async () => { - const api = await import("{{ StaticURL "api.js" }}"); - const res = await api.call("/api/csrf"); - - const els = document.getElementsByClassName("csrfHiddenInput"); - for (let i = 0; i < els.length; i++) { - els[i].value = res.CSRFToken; - } - })(); -</script> |