From 73d45e9a148e95938c4b98741761eb896dc89898 Mon Sep 17 00:00:00 2001 From: snipe Date: Wed, 11 Jan 2017 15:03:04 -0800 Subject: [PATCH] Fixed CSRF on create asset ajax --- resources/views/hardware/edit.blade.php | 9 ++++++++- 1 file changed, 8 insertions(+), 1 deletion(-) diff --git a/resources/views/hardware/edit.blade.php b/resources/views/hardware/edit.blade.php index 78aa78aae..cec837648 100755 --- a/resources/views/hardware/edit.blade.php +++ b/resources/views/hardware/edit.blade.php @@ -191,6 +191,10 @@ $(".status_spinner").css("display", "inline"); $.ajax({ url: "{{url('/') }}/api/v1/statuslabels/" + status_id + "/deployable", + headers: { + "X-Requested-With": 'XMLHttpRequest', + "X-CSRF-TOKEN": $('meta[name="csrf-token"]').attr('content') + }, success: function (data) { $(".status_spinner").css("display", "none"); @@ -358,7 +362,10 @@ $.ajax({ type: 'POST', url: form.action, - headers: {"X-Requested-With": 'XMLHttpRequest'}, + headers: { + "X-Requested-With": 'XMLHttpRequest', + "X-CSRF-TOKEN": $('meta[name="csrf-token"]').attr('content') + }, data: formData, dataType: 'json', success: function (data) {