From da6f13a45dd3e5fa49e829702bbe2ef9317109c8 Mon Sep 17 00:00:00 2001 From: Joep de Jong Date: Sat, 4 May 2024 20:59:40 +0200 Subject: [PATCH] Enable csrf (#477) --- src/main/java/ch/wisv/events/ChConnectConfiguration.java | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/src/main/java/ch/wisv/events/ChConnectConfiguration.java b/src/main/java/ch/wisv/events/ChConnectConfiguration.java index 08d750a7..eb146c0f 100644 --- a/src/main/java/ch/wisv/events/ChConnectConfiguration.java +++ b/src/main/java/ch/wisv/events/ChConnectConfiguration.java @@ -68,8 +68,7 @@ public void configure(HttpSecurity http) throws Exception { http .cors() .and() - .csrf().disable() - .authorizeRequests() + .csrf() .and().authorizeRequests() .antMatchers("/administrator/**").hasRole("ADMIN") .antMatchers("/", "/management/health").permitAll()