From 024c38be8b93e891cd7f8f96b14215068792848f Mon Sep 17 00:00:00 2001 From: okalintu Date: Tue, 27 Sep 2016 14:55:26 +0300 Subject: [PATCH] added force csrf to image upload --- infoscreen/views.py | 1 + 1 file changed, 1 insertion(+) diff --git a/infoscreen/views.py b/infoscreen/views.py index f071bf4..c338453 100644 --- a/infoscreen/views.py +++ b/infoscreen/views.py @@ -131,6 +131,7 @@ def infoItems(request, *args, **kwargs): return HttpResponse(json.dumps(items)) @require_http_methods(["POST"]) +@ensure_csrf_cookie @permission_required('infoscreen.change_infoinstance', login_url='/login') def createImageItem(request, *args, **kwargs): form = ImageUploadForm(request.POST,request.FILES)