This forum is in READ-ONLY mode.
You can look around, but if you want to ask a new question, please use Stack Overflow.

regarding csrf token of delete action

Discussion relating to version 1.2.x stable

regarding csrf token of delete action

by Navinder » Fri Jul 29, 2011 12:16 pm

Dear Sir,

I have developed application in Symfony. Currently I have sent this application for auditing. I have removed 11 vulnerabilities that is on owasp.org. But I am unable to remove one i.e. it is related to $request->checkCSRFProtection(). This function in my application is not working in any of delete function. In form it is creating CSRF token, but as $requst->checkCSRFProtection() is not working. Thats why application is taking any CSRF secret and deleting the record. Please help me in this.


With regards,

Navinder
Navinder
Junior Member
 
Posts: 1
Joined: Fri Jul 29, 2011 12:10 pm