diff --git a/mod/forum/subscribers.php b/mod/forum/subscribers.php
index 35c7d6ec484..ddf802b02f0 100644
--- a/mod/forum/subscribers.php
+++ b/mod/forum/subscribers.php
@@ -102,7 +102,7 @@ $strsubscribers = get_string("subscribers", "forum");
$strforums = get_string("forums", "forum");
$searchtext = optional_param('searchtext', '', PARAM_RAW);
-if ($frm = data_submitted()) {
+if ($frm = data_submitted() and confirm_sesskey()) {
/// A form was submitted so process the input
if (!empty($frm->add) and !empty($frm->addselect)) {
|