recover from bad CSRF tokens without requiring a hard refresh of the browser

This commit is contained in:
Sam
2013-08-27 15:56:12 +10:00
parent bec463564f
commit c4a0152dc6
5 changed files with 16 additions and 9 deletions

View File

@ -22,7 +22,7 @@ class ApplicationController < ActionController::Base
unless is_api?
super
clear_current_user
raise Discourse::CSRF
render text: "['BAD CSRF']", status: 403
end
end