diff --git a/system/input.php b/system/input.php index 0cf4a223..fac8aa54 100644 --- a/system/input.php +++ b/system/input.php @@ -103,9 +103,7 @@ class Input { case 'PUT': case 'DELETE': - // The request method can be spoofed by specifying a "REQUEST_METHOD" in the $_POST array. - // If the method is being spoofed, the $_POST array will be considered the input. - if (isset($_POST['REQUEST_METHOD']) and in_array($_POST['REQUEST_METHOD'], array('PUT', 'DELETE'))) + if (Request::spoofed()) { static::$input =& $_POST; }