From a15dfda92c5081102635e99e63ed582ed677df28 Mon Sep 17 00:00:00 2001 From: Matt Pass Date: Fri, 18 Apr 2014 18:07:49 +0100 Subject: [PATCH] headers.php included and csrf POST and GET added --- lib/plugins-manager.php | 10 ++++++---- 1 file changed, 6 insertions(+), 4 deletions(-) diff --git a/lib/plugins-manager.php b/lib/plugins-manager.php index 2687c4e..a954fe3 100644 --- a/lib/plugins-manager.php +++ b/lib/plugins-manager.php @@ -1,4 +1,5 @@ window.location='plugins-manager.php?updatedPlugins';"; + header("Location: plugins-manager.php?updatedPlugins&csrf=".$_SESSION["csrf"]); + echo ""; die('saving plugins...'); } else { echo ""; @@ -218,6 +219,7 @@ function deletePlugin($dir) { echo '
Update
'; ?> + "> '.PHP_EOL; } - $installUninstallButton = '
Install
'; + $installUninstallButton = '
Install
'; for ($j=0; $jUninstall'; + $installUninstallButton = '
Uninstall
'; } }