jberghoef / wagtail-tag-manager

A Wagtail add-on for managing scripts and tags. Ready to go with a cookie bar and consent management.
https://pypi.org/project/wagtail-tag-manager/
BSD 3-Clause "New" or "Revised" License
74 stars 24 forks source link

CSRF issue - Admin Panel #86

Open vitellolabs opened 3 years ago

vitellolabs commented 3 years ago

Describe the bug CSRF Token missing error in debug console.

Forbidden (CSRF token missing or incorrect.): /admin/wagtail_tag_manager/variable/create/
[15/Apr/2021 11:58:36] "POST /admin/wagtail_tag_manager/variable/create/ HTTP/1.1" 403 2513

To Reproduce Steps to reproduce the behavior:

  1. Go to 'admin panel'
  2. Click on 'Add ...' (tag, variable, constant... anything)
  3. Check console

Expected behavior Need to handle CSRF or use exempt.

Screenshots image

Desktop (please complete the following information):

mpoli commented 3 years ago

Besides the reported occurrence, I am also experiencing CSRF errors here:

django | Forbidden (CSRF token missing or incorrect.): /wtm/lazy/ django | WARNING 2021-10-24 21:29:21,597 log 541 140006087927552 Forbidden (CSRF token missing or incorrect.): /wtm/lazy/