Commit e8f9a5dd24626bd35bfd7b42df8a932047e4aeee

Authored by Andrey Karpikov
1 parent d6c46194

check scrf param replace

... ... @@ -99,8 +99,8 @@ module Kanjai
99 99
100 100 session[:scheme] = 'http://'
101 101
102   - layer.gsub!('<meta name="csrf-param" content="###CSRF_PARAM###"/>', '')
103   - layer.gsub!('<meta name="csrf-token" content="###CSRF_TOKEN###"/>', '')
  102 + #layer.gsub!('<meta name="csrf-param" content="###CSRF_PARAM###"/>', '')
  103 + #layer.gsub!('<meta name="csrf-token" content="###CSRF_TOKEN###"/>', '')
104 104
105 105 domain.page_langs.each do |item|
106 106 if item.code.to_s != I18n.locale.to_s
... ... @@ -191,13 +191,13 @@ module Kanjai
191 191 end
192 192 layer.gsub!(marker, content)
193 193 when '###CSRF_PARAM###'
194   - if current_admin_user || (class_exists?('UserSession') && UserSession.current_user)
  194 + #if current_admin_user || (class_exists?('UserSession') && UserSession.current_user)
195 195 layer.gsub!(marker, Rack::Utils.escape_html(request_forgery_protection_token))
196   - end
  196 + #end
197 197 when '###CSRF_TOKEN###'
198   - if current_admin_user || (class_exists?('UserSession') && UserSession.current_user)
  198 + #if current_admin_user || (class_exists?('UserSession') && UserSession.current_user)
199 199 layer.gsub!(marker, Rack::Utils.escape_html(form_authenticity_token))
200   - end
  200 + #end
201 201 when '###DOMAIN_NAME###'
202 202 layer.gsub!(marker, session[:scheme] + ADMIN_CONFIG['domain_name'])
203 203 when '###INCLUDE_JS_FILE###'
... ...
1 1 module Kanjai
2   - VERSION = "0.0.374"
  2 + VERSION = "0.0.375"
3 3 end
... ...