diff options
author | Simon Bennetts <psiinon@gmail.com> | 2018-04-04 19:21:33 +0200 |
---|---|---|
committer | Israel Madueme <purelogiq@gmail.com> | 2018-04-04 19:21:33 +0200 |
commit | fe259aba572e08df22557251ca9279f512f6862c (patch) | |
tree | 5f6428a14dd727c0c3136352413a0a28718f8cda /template/en/default/pages | |
parent | 3d6e2fb15c254d2d8fe75dc0307a4b0fd3e62865 (diff) | |
download | bugzilla-fe259aba572e08df22557251ca9279f512f6862c.tar.gz bugzilla-fe259aba572e08df22557251ca9279f512f6862c.tar.xz |
Bug 1446431 - Allow Baseline scan to ignore forms that dont need CSRF Tokens
The data-no-csrf attribute is used to signify that a form is 'safe' (ie
doesn't actually make any permanent changes) and so doesn't need an
anti-csrf token.
Diffstat (limited to 'template/en/default/pages')
-rw-r--r-- | template/en/default/pages/quicksearch.html.tmpl | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/template/en/default/pages/quicksearch.html.tmpl b/template/en/default/pages/quicksearch.html.tmpl index 759f4ea8c..28062b535 100644 --- a/template/en/default/pages/quicksearch.html.tmpl +++ b/template/en/default/pages/quicksearch.html.tmpl @@ -31,7 +31,7 @@ <p>Type in one or more words (or pieces of words) to search for:</p> <form name="f" action="buglist.cgi" method="get" - class='quicksearch_check_empty'> + class='quicksearch_check_empty' data-no-csrf> <input type="text" size="40" name="quicksearch"> <input type="submit" value="Search" id="find"> </form> |