Check type of token.
This commit is contained in:
@@ -33,7 +33,7 @@ class VerifyCsrfToken implements Middleware {
|
||||
*/
|
||||
protected function tokensMatch($request)
|
||||
{
|
||||
return $request->session()->token() == $request->input('_token');
|
||||
return $request->session()->token() === $request->input('_token');
|
||||
}
|
||||
|
||||
/**
|
||||
|
||||
Reference in New Issue
Block a user