Accounts: Add missing CSRF checks

This commit is contained in:
johnnyq
2026-03-02 17:35:18 -05:00
parent 3d80d1519e
commit 550980719e
2 changed files with 15 additions and 8 deletions

View File

@@ -21,8 +21,9 @@ ob_start();
</button>
</div>
<form action="post.php" method="post" autocomplete="off">
<input type="hidden" name="account_id" value="<?php echo $account_id; ?>">
<input type="hidden" name="csrf_token" value="<?php echo $_SESSION['csrf_token'] ?>">
<input type="hidden" name="account_id" value="<?php echo $account_id; ?>">
<div class="modal-body">
<div class="form-group">
<label>Account Name <strong class="text-danger">*</strong></label>