diff options
author | r <r@freesoftwareextremist.com> | 2021-01-17 05:44:07 +0000 |
---|---|---|
committer | r <r@freesoftwareextremist.com> | 2021-01-17 05:44:07 +0000 |
commit | f4620a8c69a71a4e99ed4e51346ec630f7c3aee2 (patch) | |
tree | 9066b66db1f573d3016c1d960cf686690c78736b /templates/notification.tmpl | |
parent | e8bfd3093b0bf16c2ce56b3905ea640aa26d0127 (diff) | |
download | bloat-f4620a8c69a71a4e99ed4e51346ec630f7c3aee2.tar.gz bloat-f4620a8c69a71a4e99ed4e51346ec630f7c3aee2.zip |
Make redirection work without Referer header
Diffstat (limited to 'templates/notification.tmpl')
-rw-r--r-- | templates/notification.tmpl | 3 |
1 files changed, 3 insertions, 0 deletions
diff --git a/templates/notification.tmpl b/templates/notification.tmpl index 567bcf0..4eed61b 100644 --- a/templates/notification.tmpl +++ b/templates/notification.tmpl @@ -11,6 +11,7 @@ {{if .ReadID}} <form class="notification-read" action="/notifications/read?max_id={{.ReadID}}" method="post" target="_self"> <input type="hidden" name="csrf_token" value="{{$.Ctx.CSRFToken}}"> + <input type="hidden" name="referrer" value="{{$.Ctx.Referrer}}"> <input type="submit" value="read" class="btn-link" accesskey="C" title="Clear unread notifications (C)"> </form> {{end}} @@ -57,11 +58,13 @@ </div> <form class="d-inline" action="/accept/{{.Account.ID}}" method="post" target="_self"> <input type="hidden" name="csrf_token" value="{{$.Ctx.CSRFToken}}"> + <input type="hidden" name="referrer" value="{{$.Ctx.Referrer}}"> <input type="submit" value="accept" class="btn-link"> </form> - <form class="d-inline" action="/reject/{{.Account.ID}}" method="post" target="_self"> <input type="hidden" name="csrf_token" value="{{$.Ctx.CSRFToken}}"> + <input type="hidden" name="referrer" value="{{$.Ctx.Referrer}}"> <input type="submit" value="reject" class="btn-link"> </form> </div> |