Add csrf token check, destroy session on timeout

This commit is contained in:
billz
2025-01-22 00:11:22 -08:00
parent 50ed5f9f4b
commit ec0dd304ee
2 changed files with 7 additions and 1 deletions

View File

@@ -678,7 +678,8 @@ function checkSession() {
if (window.location.pathname === '/login') {
return;
}
$.get('ajax/session/do_check_session.php', function (data) {
var csrfToken = $('meta[name=csrf_token]').attr('content');
$.post('ajax/session/do_check_session.php',{'csrf_token': csrfToken},function (data) {
if (data.status === 'session_expired') {
clearInterval(sessionCheckInterval);
showSessionExpiredModal();