]> git.wh0rd.org - tt-rss.git/blobdiff - classes/article.php
experimental CSRF protection
[tt-rss.git] / classes / article.php
index 90ca129b9335c6fe458015ea44b3c1170413b3d7..30f0c7d10391b69e88bcd8f6b3a60d712f2cea6e 100644 (file)
@@ -1,6 +1,12 @@
 <?php\r
 class Article extends Protected_Handler {\r
 \r
+       function csrf_ignore($method) {\r
+               $csrf_ignored = array("redirect");\r
+\r
+               return array_search($method, $csrf_ignored) !== false;\r
+       }\r
+\r
        function redirect() {\r
                $id = db_escape_string($_REQUEST['id']);\r
 \r