Protect OmniAuth request phase against CSRF.
显示
- CHANGELOG 1 个添加, 1 个删除CHANGELOG
- Gemfile 1 个添加, 1 个删除Gemfile
- Gemfile.lock 4 个添加, 4 个删除Gemfile.lock
- app/views/devise/shared/_omniauth_box.html.haml 2 个添加, 2 个删除app/views/devise/shared/_omniauth_box.html.haml
- app/views/profiles/accounts/show.html.haml 1 个添加, 1 个删除app/views/profiles/accounts/show.html.haml
- config/initializers/7_omniauth.rb 5 个添加, 0 个删除config/initializers/7_omniauth.rb
- lib/omni_auth/request_forgery_protection.rb 62 个添加, 0 个删除lib/omni_auth/request_forgery_protection.rb
... | ... | @@ -23,7 +23,7 @@ gem "pg", group: :postgres |
# Auth | ||
gem "devise", '3.2.4' | ||
gem "devise-async", '0.9.0' | ||
gem 'omniauth', "~> 1.1.3" | ||
gem 'omniauth', "~> 1.2.2" | ||
gem 'omniauth-google-oauth2' | ||
gem 'omniauth-twitter' | ||
gem 'omniauth-github' | ||
... | ... |
lib/omni_auth/request_forgery_protection.rb
0 → 100644
想要评论请 注册 或 登录