fix: pull token from query not params

This commit is contained in:
Eli Bosley
2025-01-27 11:25:13 -05:00
parent 3a8c9b13ee
commit 1756cc5b4b

View File

@@ -20,7 +20,7 @@ export class UserCookieStrategy extends PassportStrategy(Strategy, strategyName)
public validate = async (req: CustomRequest): Promise<any> => {
return (
this.authService.validateCsrfToken(
req.headers['x-csrf-token'] || (req.params as { csrf_token?: string })?.csrf_token
req.headers['x-csrf-token'] || (req.query as { csrf_token?: string })?.csrf_token
) && this.authService.validateCookiesCasbin(req.cookies)
);
};