* (bug 23076) Fixed login CSRF vulnerability. Logins now require a token to be submit...
authorTim Starling <tstarling@users.mediawiki.org>
Wed, 7 Apr 2010 00:05:33 +0000 (00:05 +0000)
committerTim Starling <tstarling@users.mediawiki.org>
Wed, 7 Apr 2010 00:05:33 +0000 (00:05 +0000)
commit7bb661a0d216f4dad2dc44da5d55450e1cb12464
treed60c9ed2c3d0c9c1409e6ced2b0de04f28728cc6
parentb978932112e91ba1234a28fc0d968bd35ed8761d
* (bug 23076) Fixed login CSRF vulnerability. Logins now require a token to be submitted along with the user name and password. Patch by Roan Kattouw.
includes/User.php
includes/api/ApiLogin.php
includes/specials/SpecialUserlogin.php
includes/templates/Userlogin.php