This commit is contained in:
Rick Yazwinski 2013-01-30 15:53:28 -08:00
commit 54677f3bde

View File

@ -290,6 +290,12 @@ else:
)
return self._reject(request, REASON_NO_CSRF_COOKIE)
if hasattr(settings, 'REST_FRAMEWORK_EXTRA_CSRF'):
extra_csrf = settings.REST_FRAMEWORK_EXTRA_CSRF
else:
extra_csrf = True
if extra_csrf:
# check non-cookie token for match
request_csrf_token = ""
if request.method == "POST":