aboutsummaryrefslogtreecommitdiffstats
path: root/railties/helpers/application.rb
diff options
context:
space:
mode:
authorrick <rick@spacemonkey.local>2008-05-06 00:42:24 -0700
committerrick <rick@spacemonkey.local>2008-05-06 00:42:24 -0700
commit0697d17d121fcf9f46b5dd2dd1034dffa19ebdf2 (patch)
treefae506c6f6ef3ec7b3fb05601bb61128903fd114 /railties/helpers/application.rb
parent04f52219f11944e50555dc59917c73c99581dac0 (diff)
downloadrails-0697d17d121fcf9f46b5dd2dd1034dffa19ebdf2.tar.gz
rails-0697d17d121fcf9f46b5dd2dd1034dffa19ebdf2.tar.bz2
rails-0697d17d121fcf9f46b5dd2dd1034dffa19ebdf2.zip
Change the request forgery protection to go by Content-Type instead of request.format so that you can't bypass it by POSTing to "#{request.uri}.xml" [#73 state:resolved]
Diffstat (limited to 'railties/helpers/application.rb')
0 files changed, 0 insertions, 0 deletions