Browse Source

Remove csrfToken from secured fields.

It is validated separately and causes validation errors right now.
Mark Story 12 years ago
parent
commit
360fe3896f
1 changed files with 1 additions and 1 deletions
  1. 1 1
      src/Controller/Component/SecurityComponent.php

+ 1 - 1
src/Controller/Component/SecurityComponent.php

@@ -305,7 +305,7 @@ class SecurityComponent extends Component {
 		if (strpos($token, ':')) {
 			list($token, $locked) = explode(':', $token, 2);
 		}
-		unset($check['_Token']);
+		unset($check['_Token'], $check['_csrfToken']);
 
 		$locked = explode('|', $locked);
 		$unlocked = explode('|', $unlocked);