summaryrefslogtreecommitdiffstats
path: root/core
diff options
context:
space:
mode:
authorFrank Karlitschek <karlitschek@kde.org>2012-04-26 23:17:46 +0200
committerFrank Karlitschek <karlitschek@kde.org>2012-04-26 23:17:46 +0200
commit74b5e22a684c3095dbd48b56da1a10d955c20305 (patch)
treef4b350ac022cfe4e8935b7910470dcfbbd7a0ec5 /core
parentd96e962fc1f5df7efec5266d34735ebcdc20b056 (diff)
downloadnextcloud-server-74b5e22a684c3095dbd48b56da1a10d955c20305.tar.gz
nextcloud-server-74b5e22a684c3095dbd48b56da1a10d955c20305.zip
some more csrf fixes
Diffstat (limited to 'core')
-rw-r--r--core/templates/login.php1
1 files changed, 1 insertions, 0 deletions
diff --git a/core/templates/login.php b/core/templates/login.php
index 4ba92221a7d..4035dfe8a5a 100644
--- a/core/templates/login.php
+++ b/core/templates/login.php
@@ -12,6 +12,7 @@
<p class="infield">
<label for="password" class="infield"><?php echo $l->t( 'Password' ); ?></label>
<input type="password" name="password" id="password" value="" required <?php echo !empty($_POST['user'])?'autofocus':''; ?> />
+ <input type="hidden" name="sectoken" id="sectoken" value="<?php echo($_['sectoken']); ?>" />
</p>
<input type="checkbox" name="remember_login" value="1" id="remember_login" /><label for="remember_login"><?php echo $l->t('remember'); ?></label>
<input type="submit" id="submit" class="login" value="<?php echo $l->t( 'Log in' ); ?>" />