Skip to content

Commit fa6a992

Browse files
committed
Added fix from Otto Bretz to solve issue with forms using 'multipart/form-data' encoding.
CSRF token was not read properly.
1 parent a653c17 commit fa6a992

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

csrf.go

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -72,7 +72,7 @@ var CSRFFilter = func(c *revel.Controller, fc []revel.Filter) {
7272
// requests. See http://erlend.oftedal.no/blog/?blogid=118
7373
sentToken := r.Header.Get(headerName)
7474
if sentToken == "" {
75-
sentToken = r.PostFormValue(fieldName)
75+
sentToken = c.Params.Get(fieldName)
7676
}
7777
revel.TRACE.Printf("CSRF token received: '%s'", sentToken)
7878

0 commit comments

Comments
 (0)