Software: Apache. PHP/8.1.30 uname -a: Linux server1.tuhinhossain.com 5.15.0-163-generic #173-Ubuntu SMP Tue Oct 14 17:51:00 UTC uid=1002(picotech) gid=1003(picotech) groups=1003(picotech),0(root) Safe-mode: OFF (not secure) /home/picotech/domains/note.picotech.app/public_html/node_modules/express-csrf/lib/ drwxr-xr-x | |
| Viewing file: Select action/file-type: var crypto = require('crypto');
console.warn("express-csrf is deprecated. Please use Connect's csrf middleware instead");
var csrf = null;
/**
* Express dynamicHelper for adding parameter to views. Usage:
*
* var csrf = require('express-csrf');
*
* dynamicHelpers({
* csrf: csrf.token
* });
*
* Add csrf parameter to view (jade example):
* <form>
* <input type="hidden" name="csrf" value=csrf>
* </form>
*/
exports.token = function(req, res) {
if (!(typeof csrf !== "undefined" && csrf !== null)) {
csrf = crypto.createHash('md5').update('' + new Date().getTime() + req.session.lastAccess).digest('hex');
req.session.csrf = csrf;
}
return csrf;
};
/**
* Express/Connect middleware function for checking csrf token. Usage:
*
* var csrf = require('express-csrf');
*
* app.use(csrf.check());
*/
exports.check = function() {
return function(req, res, next) {
csrf = null; // Clear csrf for next request
if (req.body && req.method.toLowerCase() === 'post') {
if (!('csrf' in req.body && req.body.csrf === req.session.csrf)) {
return res.send("Cross-site request forgery attempt discovered!", 403);
}
}
return next();
};
};
|
:: Command execute :: | |
--[ c99shell v. 2.5 [PHP 8 Update] [24.05.2025] | Generation time: 0.0034 ]-- |