commit | 5d27c43d29fc049497010ea62ac7877a64bfed92 | [log] [tgz] |
---|---|---|
author | Andrey Andreev <narf@bofh.bg> | Thu Mar 08 12:01:52 2012 +0200 |
committer | Andrey Andreev <narf@bofh.bg> | Thu Mar 08 12:01:52 2012 +0200 |
tree | 17d786d0dd1444b288dc6db1309ba679fc17cab5 | |
parent | ad9cd5938fe3c0859445e43c893c18ed172a33ce [diff] [blame] |
Fix issue #940
diff --git a/system/core/Security.php b/system/core/Security.php index 6f25fb5..2bffa41 100755 --- a/system/core/Security.php +++ b/system/core/Security.php
@@ -138,8 +138,8 @@ */ public function csrf_verify() { - // If no POST data exists we will set the CSRF cookie - if (count($_POST) === 0) + // If it's not a POST request we will set the CSRF cookie + if (strtoupper($_SERVER['REQUEST_METHOD']) !== 'POST') { return $this->csrf_set_cookie(); }