From 97fbabcf3686d18b95b67f2abfaa9a1dfa94c816 Mon Sep 17 00:00:00 2001 From: Gunnstein Lye Date: Fri, 9 Aug 2019 14:58:02 +0200 Subject: [PATCH] Enable CSRF token in login form by default (#435) --- app/config/security.yml | 1 + 1 file changed, 1 insertion(+) diff --git a/app/config/security.yml b/app/config/security.yml index 711aaa3805..d87e8dcb4b 100644 --- a/app/config/security.yml +++ b/app/config/security.yml @@ -24,6 +24,7 @@ security: ezpublish_rest_session: ~ form_login: require_previous_session: false + csrf_token_generator: security.csrf.token_manager logout: ~ main: