mirror of
https://github.com/vrana/adminer.git
synced 2025-08-28 16:49:57 +02:00
CSRF protection of included JavaScript
This commit is contained in:
@@ -155,6 +155,6 @@ if ($_GET["ns"] !== "") {
|
||||
}
|
||||
|
||||
page_footer();
|
||||
echo "<script type='text/javascript' src='" . h(ME) . "script=db'></script>\n";
|
||||
echo "<script type='text/javascript' src='" . h(ME . "script=db&token=$token") . "'></script>\n";
|
||||
exit; // page_footer() already called
|
||||
}
|
||||
|
Reference in New Issue
Block a user