From 9b65ce005ac868939fc2278ac408588b5516d7b4 Mon Sep 17 00:00:00 2001 From: flashwave Date: Wed, 12 Jul 2023 19:14:40 +0000 Subject: [PATCH] Fixed possible NULL in CSRF check. --- src/CSRF.php | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/src/CSRF.php b/src/CSRF.php index 8aa2e1d..bfd8c38 100644 --- a/src/CSRF.php +++ b/src/CSRF.php @@ -19,9 +19,9 @@ final class CSRF { } public static function validateRequest(int $tolerance = -1): bool { - $token = filter_input(INPUT_POST, '_csrf'); + $token = (string)filter_input(INPUT_POST, '_csrf'); if(empty($token)) - $token = filter_input(INPUT_GET, 'csrf'); + $token = (string)filter_input(INPUT_GET, 'csrf'); return self::$instance->verifyToken($token, $tolerance); }