Browse Source

completion of CSRF token for signup form

develop
Rob Colbert 4 months ago
parent
commit
e6f6b37872
  1. 2
      app/controllers/welcome.js
  2. 1
      app/views/welcome/signup.pug

2
app/controllers/welcome.js

@ -69,7 +69,7 @@ class WelcomeController extends SiteController {
csrfToken: csrfTokenService,
logan: loganService,
} = this.dtp.services;
req.csrfToken = await csrfTokenService.create(req, {
res.locals.csrfToken = await csrfTokenService.create(req, {
name: 'user-create',
expiresMinutes: 20,
});

1
app/views/welcome/signup.pug

@ -4,6 +4,7 @@ block content
section.uk-section.uk-section-default.uk-section-xsmall
.uk-container.uk-container-small
form(method="POST", action="/user").uk-form
input(type="hidden", name= csrfToken.name, value= csrfToken.token)
.uk-card.uk-card-default.uk-card-small.uk-width-xlarge.uk-margin-auto.uk-border-rounded
.uk-card-header
h1.uk-card-title Create New Account

Loading…
Cancel
Save