Quantcast
Channel: SCN: Message List
Viewing all articles
Browse latest Browse all 3189

Re: Broken CSRF-Token fetch in SMP 3.0 SP08 PL01?

$
0
0

Jitendra Kansal wrote:

 

1. Send a GET request to fetch CSRF token

 

That is the problem. I only get the token ONCE at the beginning of the session, then any other GET request does not deliver the token.

 

I made some test by installing different SMP SP versions.

 

SP03 and SP04 work as expected:

For each GET request with "X-CSRF-Token: Fetch", I get the token and can use in POST etc. requests.

 

SP05+:

First GET request with "X-CSRF-Token: Fetch" returns the token, all other GET requests after the first do not return the token.

 

Hope you can help me further.

 

Regards,

Fabio


Viewing all articles
Browse latest Browse all 3189

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>