From ac4cf5279e24c4f484cd319cfc129e56153d79df Mon Sep 17 00:00:00 2001 From: richard-dds Date: Tue, 14 Aug 2018 15:58:18 -0400 Subject: [PATCH] Don't include csrf_token in form.data --- atst/forms/forms.py | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/atst/forms/forms.py b/atst/forms/forms.py index 2aaa4973..ce0ff791 100644 --- a/atst/forms/forms.py +++ b/atst/forms/forms.py @@ -6,3 +6,9 @@ class ValidatedForm(FlaskForm): """Performs any applicable extra validation. Must return True if the form is valid or False otherwise.""" return True + + @property + def data(self): + _data = super().data + _data.pop("csrf_token", None) + return _data