fix: include Referer header in API requests

This commit is contained in:
Sean Morley
2025-01-17 16:58:08 -05:00
parent 9ceee13edc
commit f4450b6a38
9 changed files with 23 additions and 10 deletions

View File

@@ -96,6 +96,7 @@ export const actions: Actions = {
method: 'POST',
headers: {
'X-CSRFToken': csrfToken,
Referer: event.url.origin, // Include Referer header
Cookie: `sessionid=${sessionid}; csrftoken=${csrfToken}`
},
body: formDataToSend
@@ -174,9 +175,11 @@ export const actions: Actions = {
method: 'PATCH',
headers: {
'X-CSRFToken': csrfToken,
Cookie: `sessionid=${sessionId}; csrftoken=${csrfToken}`
Cookie: `sessionid=${sessionId}; csrftoken=${csrfToken}`,
Referer: event.url.origin // Include Referer header
},
body: formDataToSend,
credentials: 'include'
});

View File

@@ -63,7 +63,8 @@ export const actions: Actions = {
headers: {
Cookie: `sessionid=${sessionId}; csrftoken=${csrfToken}`,
'Content-Type': 'application/json',
'X-CSRFToken': csrfToken
'X-CSRFToken': csrfToken,
Referer: event.url.origin // Include Referer header
},
credentials: 'include'
});