Skip to content

Next

  • Projects
  • Groups
  • Snippets
  • Help
    • Loading...
    • Help
    • Submit feedback
    • Contribute to GitLab
    • Switch to GitLab Next
  • Sign in / Register
Minds Backend - Engine
Minds Backend - Engine
  • Project
    • Project
    • Details
    • Activity
    • Releases
    • Dependency List
    • Cycle Analytics
    • Insights
  • Repository
    • Repository
    • Files
    • Commits
    • Branches
    • Tags
    • Contributors
    • Graph
    • Compare
    • Charts
    • Locked Files
  • Issues 135
    • Issues 135
    • List
    • Boards
    • Labels
    • Service Desk
    • Milestones
  • Merge Requests 46
    • Merge Requests 46
  • CI / CD
    • CI / CD
    • Pipelines
    • Jobs
    • Schedules
    • Charts
  • Registry
    • Registry
  • Packages
    • Packages
  • Wiki
    • Wiki
  • Snippets
    • Snippets
  • Members
    • Members
  • Collapse sidebar
  • Activity
  • Graph
  • Charts
  • Create a new issue
  • Jobs
  • Commits
  • Issue Boards
  • Minds
  • Minds Backend - EngineMinds Backend - Engine
  • Issues
  • #540

Closed
Open
Opened 11 months ago by nasser@nasservb
  • Report abuse
  • New issue
Report abuse New issue

register is always error for XSRF validation error

my register form always return empty error and oops . i consider code on API and maybe error raise for xsrf token check . when i remove the line : if (!Core\Security\XSRF::validateRequest()) { return False ; } on back/engine/controller/api/v1/register.php -> function post

that is work fine.

Please solve the reCAPTCHA

We want to be sure it is you, please confirm you are not a robot.

Related issues
0

    • nasser
      nasser @nasservb · 11 months ago

      i also try to add extra parameter to register function like 'isMobileRequest' for if that parameter is set 1 XSRF not check for mobile request. but i think that's not good method for security.

    • Martin Santangelo @msantang78 moved from mobile-native#10 (closed) 1 week ago

      moved from mobile-native#10 (closed)

    • Mark Harding @markeharding closed 31 minutes ago

      closed

    • You're only seeing other activity in the feed. To add a comment, switch to one of the following options.
    Please register or sign in to reply
    Assignee
    None
    Assign to
    None
    Epic
    None
    None
    Milestone
    None
    Assign milestone
    None
    Time tracking
    No estimate or time spent
    None
    Due date
    None
    0
    Labels
    None
    Assign labels
    • View project labels
    None
    Weight
    None
    Confidentiality
    Not confidential
    Lock issue
    Unlocked
    3
    3 participants
    user avatar
    Mark Harding
    user avatar
    Martin Santangelo
    user avatar
    nasser
    Reference: minds/engine#540