inveniosoftware / invenio-rest

REST API support for Invenio.
https://invenio-rest.readthedocs.io
MIT License
2 stars 41 forks source link

CSRF: fix the CSRF_HEADER_NAME variable #125

Closed lnielsen closed 1 year ago

lnielsen commented 2 years ago

CSRF_HEADER_NAME should not be HTTP_X_CSRFTOKEN but instead X-CSRFToken

ppanero commented 1 year ago

closing, this was fixed by @lnielsen here https://github.com/inveniosoftware/invenio-rest/commit/3e2a4d03270f19e494457f14d8a7626210115708