]> source.dussan.org Git - nextcloud-server.git/commitdiff
Add CSRF check to search
authorLukas Reschke <lukas@owncloud.com>
Fri, 9 Jan 2015 23:30:14 +0000 (00:30 +0100)
committerLukas Reschke <lukas@owncloud.com>
Fri, 9 Jan 2015 23:30:14 +0000 (00:30 +0100)
Doesn't hurt to have a check on this one as well.

search/ajax/search.php

index 5bd810aacfd92cf49483354677fda04f62402bd7..2bafe65302b412bd99a6406ecbb60851cde8ec5f 100644 (file)
@@ -22,7 +22,8 @@
 */
 
 // Check if we are a user
-\OC_JSON::checkLoggedIn();
+\OCP\JSON::checkLoggedIn();
+\OCP\JSON::callCheck();
 \OC::$server->getSession()->close();
 
 if (isset($_GET['query'])) {