mirror of
https://github.com/HackPlan/RootPanel.git
synced 2026-01-12 22:27:09 +08:00
fixbug in csrf token
This commit is contained in:
@@ -90,13 +90,13 @@ exports.run = ->
|
||||
|
||||
resave: true
|
||||
saveUninitialized: true
|
||||
secret: fs.readFileSync path.join __dirname, 'session.key'
|
||||
secret: fs.readFileSync(path.join __dirname, 'session.key').toString()
|
||||
|
||||
app.use (req, res, next) ->
|
||||
unless req.session.csrf_secret
|
||||
csrf.secret (err, secret) ->
|
||||
req.session.csrf_secret = secret
|
||||
req.session.csrf_token = csrf.token secret
|
||||
req.session.csrf_token = csrf.create secret
|
||||
next()
|
||||
|
||||
next()
|
||||
|
||||
Reference in New Issue
Block a user