diff options
author | kondou <kondou@ts.unde.re> | 2013-09-05 00:04:31 +0200 |
---|---|---|
committer | kondou <kondou@ts.unde.re> | 2013-09-05 00:04:31 +0200 |
commit | 6db96603a09775e38db30cb3b0fb8e0065111bb5 (patch) | |
tree | e5f77601d6c5a702bb40bc7fde749fcad3cb63c7 /settings | |
parent | 8fd76e39cf52fc9caaf7d2eac365dd03ed6b0cd0 (diff) | |
download | nextcloud-server-6db96603a09775e38db30cb3b0fb8e0065111bb5.tar.gz nextcloud-server-6db96603a09775e38db30cb3b0fb8e0065111bb5.zip |
Have login-checks and CSRF checks
Diffstat (limited to 'settings')
-rw-r--r-- | settings/js/personal.js | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/settings/js/personal.js b/settings/js/personal.js index 61ce6274c4e..e19d4c83500 100644 --- a/settings/js/personal.js +++ b/settings/js/personal.js @@ -58,7 +58,7 @@ function showAvatarCropper() { $cropper = $('#cropper'); $cropperImage = $('#cropper img'); - $cropperImage.attr('src', OC.Router.generate('core_avatar_get_tmp')+'#'+Math.floor(Math.random()*1000)); + $cropperImage.attr('src', OC.Router.generate('core_avatar_get_tmp')+'?requesttoken='+oc_requesttoken+'#'+Math.floor(Math.random()*1000)); // Looks weird, but on('load', ...) doesn't work in IE8 $cropperImage.ready(function(){ |