Skip to content

Commit

Permalink
sec(Workflow) validate CSRF on workflow actions
Browse files Browse the repository at this point in the history
  • Loading branch information
joebordes committed Oct 31, 2021
1 parent c05cdd5 commit dcf503a
Show file tree
Hide file tree
Showing 4 changed files with 4 additions and 1 deletion.
1 change: 1 addition & 0 deletions modules/com_vtiger_workflow/activatedeactivateTask.php
Expand Up @@ -31,5 +31,6 @@ function activatedeactivateTask($adb, $request) {
</script>
<?php
}
Vtiger_Request::validateRequest();
activatedeactivateTask($adb, $_REQUEST);
?>
1 change: 1 addition & 0 deletions modules/com_vtiger_workflow/savetask.php
Expand Up @@ -102,5 +102,6 @@ function vtSaveTask($adb, $request) {
</script>
<?php
}
Vtiger_Request::validateRequest();
vtSaveTask($adb, $_REQUEST);
?>
1 change: 1 addition & 0 deletions modules/com_vtiger_workflow/savetemplate.php
Expand Up @@ -42,5 +42,6 @@ function vtSaveWorkflowTemplate($adb, $request) {
<a href="<?php echo $returnUrl?>">Return</a>
<?php
}
Vtiger_Request::validateRequest();
vtSaveWorkflowTemplate($adb, $_REQUEST);
?>
2 changes: 1 addition & 1 deletion modules/com_vtiger_workflow/saveworkflow.php
Expand Up @@ -222,6 +222,6 @@ function vtWorkflowSave($adb, $request) {
<a href="<?php echo urldecode($returnUrl)?>">Return</a>
<?php
}

Vtiger_Request::validateRequest();
vtWorkflowSave($adb, $_REQUEST);
?>

0 comments on commit dcf503a

Please sign in to comment.