mirror of https://github.com/MISP/MISP
bf4610c947
- a user could be lured into setting a MISP home-page outside of the MISP baseurl - switched the endpoint to be CSRF protection enabled - as discovered by Mislav Božičević <mislav.bozicevic@nn.cz> |
||
---|---|---|
.. | ||
Emails | ||
js | ||
rss | ||
text | ||
xml | ||
ajax.ctp | ||
ajaxTemplate.ctp | ||
dashboard.ctp | ||
default.ctp | ||
error.ctp | ||
flash.ctp | ||
graph.ctp | ||
iframe.ctp | ||
treemap.ctp |