f283ffaa84
Ensured process_view() always accesses the CSRF token from the session or cookie, rather than the request, as rotate_token() may have been called by an authentication middleware during the process_request() phase. |
||
---|---|---|
.. | ||
__init__.py | ||
cache.py | ||
clickjacking.py | ||
common.py | ||
csrf.py | ||
gzip.py | ||
http.py | ||
locale.py | ||
security.py |