We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
2 parents 5a07347 + cce5feb commit bd825ebCopy full SHA for bd825eb
lib/internal/Magento/Framework/Data/Form/FormKey/Validator.php
@@ -5,6 +5,8 @@
5
*/
6
namespace Magento\Framework\Data\Form\FormKey;
7
8
+use Magento\Framework\Encryption\Helper\Security;
9
+
10
class Validator
11
{
12
/**
@@ -29,9 +31,7 @@ public function __construct(\Magento\Framework\Data\Form\FormKey $formKey)
29
31
public function validate(\Magento\Framework\App\RequestInterface $request)
30
32
33
$formKey = $request->getParam('form_key', null);
- if (!$formKey || $formKey !== $this->_formKey->getFormKey()) {
- return false;
34
- }
35
- return true;
+ return $formKey && Security::compareStrings($formKey, $this->_formKey->getFormKey());
36
}
37
0 commit comments