Skip to content
Snippets Groups Projects
Commit 6f72a582 authored by Thomas Mortagne's avatar Thomas Mortagne
Browse files

XWIKI-20386: Improve edit action

* make sure AWP call the edit action with the expected token
parent 22eb6ca1
No related branches found
No related tags found
No related merge requests found
......@@ -135,6 +135,7 @@
#set ($fieldURL = $doc.getURL('edit', $escapetool.url({
'xpage': 'plain',
'sheet': 'AppWithinMinutes.ClassEditSheet',
'form_token': $services.csrf.getToken(),
'template': 'AppWithinMinutes.ClassTemplate',
'field': $formFieldDoc.fullName,
'xeditmode': 'text'
......@@ -715,6 +716,7 @@
})
#if (!$xwiki.exists($templateProviderReference))
#set ($discard = $queryString.putAll({
'form_token': $services.csrf.getToken(),
'template': 'XWiki.TemplateProviderTemplate',
'parent': $doc.fullName
}))
......
......@@ -108,6 +108,7 @@
#if (!$xwiki.exists($appClassRef))
#set ($appHomeRef = $services.model.resolveDocument('', 'default', $appReference))
#set ($discard = $queryString.putAll({
'form_token': $services.csrf.getToken(),
'template': 'AppWithinMinutes.ClassTemplate',
'parent': $services.model.serialize($appHomeRef),
'title': "$appReference.name Class"
......
......@@ -100,6 +100,7 @@
#set ($wikiHomePageRef = $services.model.resolveDocument('', 'default'))
#set ($wikiHomePage = $services.model.serialize($wikiHomePageRef, 'local'))
#set ($discard = $queryString.putAll({
'form_token': $services.csrf.getToken(),
'template': 'AppWithinMinutes.LiveTableTemplate',
"${appDescriptorClassName}_0_class": $classReference,
'title': $appReference.name,
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment