Improve verification of nonce

This commit is contained in:
Flavio Copes
2015-11-06 17:26:35 +01:00
parent 24f3df1c76
commit 2d097313b4

View File

@@ -86,7 +86,7 @@ class AdminController
*/
public function execute()
{
if (!Utils::verifyNonce($this->post['admin-nonce'], 'admin-post-blueprints')) {
if (!isset($this->post['admin-nonce']) || Utils::verifyNonce($this->post['admin-nonce'], 'admin-post-blueprints')) {
$this->admin->setMessage('Unauthorized', 'error');
return false;
}