aboutsummaryrefslogtreecommitdiffstats
path: root/activesupport/lib/active_support
diff options
context:
space:
mode:
authorMatthew Caruana Galizia <mattcg@gmail.com>2016-05-20 16:25:02 +0200
committerJeremy Daer <jeremydaer@gmail.com>2016-05-23 10:21:30 -0700
commit683b9627b3ad51f14457b580d0d988715b202f96 (patch)
tree77584ae3df893a3d8532eff0868861f8168feb7d /activesupport/lib/active_support
parent61483b18bcbfaa054113a67f40515c7bf3e892b2 (diff)
downloadrails-683b9627b3ad51f14457b580d0d988715b202f96.tar.gz
rails-683b9627b3ad51f14457b580d0d988715b202f96.tar.bz2
rails-683b9627b3ad51f14457b580d0d988715b202f96.zip
Respect `log_warning_on_csrf_failure` setting for all CSRF failures
CSRF verification for non-XHR GET requests (cross-origin `<script>` tags) didn't check this flag before logging failures. Setting `config.action_controller.log_warning_on_csrf_failure = false` now disables logging for these CSRF failures as well. Closes #25086. Signed-off-by: Jeremy Daer <jeremydaer@gmail.com>
Diffstat (limited to 'activesupport/lib/active_support')
0 files changed, 0 insertions, 0 deletions