![]() * fix 401-302-401-302-429 loop * don't logout users on bad form key, just treat the request as unauthenticated * Handle None/empty case in validate_formkey. A supplied empty formkey, or the lack of a supplied formkey (None) is not a valid formkey. Handle this inside the function rather than at the call-site. * Validate as false if no hashstr or string Co-authored-by: Snakes <104547575+TLSM@users.noreply.github.com> |
||
---|---|---|
.. | ||
alerts.py | ||
assetcache.py | ||
const.py | ||
get.py | ||
images.py | ||
jinja2.py | ||
lazy.py | ||
sanitize.py | ||
security.py | ||
strings.py | ||
wrappers.py |