File tree Expand file tree Collapse file tree 2 files changed +7
-2
lines changed Expand file tree Collapse file tree 2 files changed +7
-2
lines changed Original file line number Diff line number Diff line change @@ -681,6 +681,12 @@ define([
681
681
settings = _add_auth_header ( settings ) ;
682
682
return $ . ajax ( url , settings ) ;
683
683
} ;
684
+
685
+ var _get_cookie = function ( name ) {
686
+ // from tornado docs: http://www.tornadoweb.org/en/stable/guide/security.html
687
+ var r = document . cookie . match ( "\\b" + name + "=([^;]*)\\b" ) ;
688
+ return r ? r [ 1 ] : undefined ;
689
+ }
684
690
685
691
var _add_auth_header = function ( settings ) {
686
692
/**
@@ -691,7 +697,7 @@ define([
691
697
settings . headers = { } ;
692
698
}
693
699
if ( ! settings . headers . Authorization ) {
694
- var xsrf_token = get_body_data ( 'xsrfToken ') ;
700
+ var xsrf_token = _get_cookie ( '_xsrf ') ;
695
701
if ( xsrf_token ) {
696
702
settings . headers [ 'X-XSRFToken' ] = xsrf_token ;
697
703
}
Original file line number Diff line number Diff line change 115
115
116
116
< body class ="{% block bodyclasses %}{% endblock %} "
117
117
{% block params %}
118
- data-xsrf-token ="{{xsrf_token | urlencode}} "
119
118
{% if logged_in and token %}
120
119
data-jupyter-api-token ="{{token | urlencode}} "
121
120
{% endif %}
You can’t perform that action at this time.
0 commit comments