[TASK] Remove redundant CSRF protection tokens and deprecate used methods
The CSRF tokens for edit document and tce actions were introduced, to protect these entry scripts. Since the entry scripts are removed now and any entry point is protected with a CSRF token by default, we do not need these additional tokens any more. The helper methods can now also be deprecated and the check for the tokens is removed in the controllers. Please note that in the deprecated.php the tokens still must be checked, as third party modules still might generate URLs to the old entry scripts and we want to have this deprecated entry point still be protected. Resolves: #69562 Releases: master Change-Id: I9df443c7fcb4c7db4f7f682d3643b780480ed5de Reviewed-on: http://review.typo3.org/43069 Reviewed-by:Wouter Wolters <typo3@wouterwolters.nl> Tested-by:
Wouter Wolters <typo3@wouterwolters.nl> Reviewed-by:
Christian Kuhn <lolli@schwarzbu.ch> Reviewed-by:
Markus Klein <markus.klein@typo3.org> Tested-by:
Markus Klein <markus.klein@typo3.org>
Showing
- typo3/sysext/backend/Classes/Backend/ToolbarItems/ClearCacheToolbarItem.php 3 additions, 3 deletions...nd/Classes/Backend/ToolbarItems/ClearCacheToolbarItem.php
- typo3/sysext/backend/Classes/ClickMenu/ClickMenu.php 5 additions, 5 deletionstypo3/sysext/backend/Classes/ClickMenu/ClickMenu.php
- typo3/sysext/backend/Classes/Clipboard/Clipboard.php 2 additions, 2 deletionstypo3/sysext/backend/Classes/Clipboard/Clipboard.php
- typo3/sysext/backend/Classes/Controller/EditDocumentController.php 6 additions, 9 deletions...ext/backend/Classes/Controller/EditDocumentController.php
- typo3/sysext/backend/Classes/Controller/File/CreateFolderController.php 0 additions, 2 deletions...ackend/Classes/Controller/File/CreateFolderController.php
- typo3/sysext/backend/Classes/Controller/File/EditFileController.php 0 additions, 1 deletion...xt/backend/Classes/Controller/File/EditFileController.php
- typo3/sysext/backend/Classes/Controller/File/FileController.php 1 addition, 5 deletions...sysext/backend/Classes/Controller/File/FileController.php
- typo3/sysext/backend/Classes/Controller/File/FileUploadController.php 0 additions, 1 deletion.../backend/Classes/Controller/File/FileUploadController.php
- typo3/sysext/backend/Classes/Controller/File/RenameFileController.php 0 additions, 1 deletion.../backend/Classes/Controller/File/RenameFileController.php
- typo3/sysext/backend/Classes/Controller/File/ReplaceFileController.php 0 additions, 1 deletion...backend/Classes/Controller/File/ReplaceFileController.php
- typo3/sysext/backend/Classes/Controller/PageLayoutController.php 2 additions, 2 deletions...ysext/backend/Classes/Controller/PageLayoutController.php
- typo3/sysext/backend/Classes/Controller/SimpleDataHandlerController.php 2 additions, 6 deletions...ackend/Classes/Controller/SimpleDataHandlerController.php
- typo3/sysext/backend/Classes/Controller/Wizard/RteController.php 1 addition, 1 deletion...ysext/backend/Classes/Controller/Wizard/RteController.php
- typo3/sysext/backend/Classes/Form/FormEngine.php 2 additions, 0 deletionstypo3/sysext/backend/Classes/Form/FormEngine.php
- typo3/sysext/backend/Classes/Template/DocumentTemplate.php 1 addition, 1 deletiontypo3/sysext/backend/Classes/Template/DocumentTemplate.php
- typo3/sysext/backend/Classes/Tree/View/PageMovingPagePositionMap.php 1 addition, 1 deletion...t/backend/Classes/Tree/View/PageMovingPagePositionMap.php
- typo3/sysext/backend/Classes/Tree/View/PagePositionMap.php 2 additions, 2 deletionstypo3/sysext/backend/Classes/Tree/View/PagePositionMap.php
- typo3/sysext/backend/Classes/Utility/BackendUtility.php 2 additions, 0 deletionstypo3/sysext/backend/Classes/Utility/BackendUtility.php
- typo3/sysext/beuser/Classes/ViewHelpers/IssueCommandViewHelper.php 1 addition, 1 deletion...ext/beuser/Classes/ViewHelpers/IssueCommandViewHelper.php
- typo3/sysext/beuser/Classes/ViewHelpers/RemoveUserViewHelper.php 1 addition, 1 deletion...ysext/beuser/Classes/ViewHelpers/RemoveUserViewHelper.php
Please register or sign in to comment