mirror of
https://github.com/vrana/adminer.git
synced 2025-08-10 08:34:20 +02:00
CSRF protection of included JavaScript
This commit is contained in:
@@ -1,5 +1,8 @@
|
||||
<?php
|
||||
header("Content-Type: text/javascript; charset=utf-8");
|
||||
if ($_GET["token"] != $token) { // CSRF protection
|
||||
exit;
|
||||
}
|
||||
|
||||
if ($_GET["script"] == "db") {
|
||||
$sums = array("Data_length" => 0, "Index_length" => 0, "Data_free" => 0);
|
||||
|
Reference in New Issue
Block a user