1
0
mirror of https://github.com/invoiceninja/invoiceninja.git synced 2024-11-14 15:13:29 +01:00
invoiceninja/app/Http/Middleware/VerifyCsrfToken.php

54 lines
1.1 KiB
PHP
Raw Normal View History

2015-03-12 01:44:39 +01:00
<?php namespace App\Http\Middleware;
use Closure;
use Illuminate\Foundation\Http\Middleware\VerifyCsrfToken as BaseVerifier;
/**
* Class VerifyCsrfToken
*/
class VerifyCsrfToken extends BaseVerifier
{
2015-03-12 01:44:39 +01:00
/**
* @var array
*/
2015-04-08 20:19:58 +02:00
private $openRoutes = [
2016-04-11 21:09:05 +02:00
'complete',
2015-05-10 21:02:35 +02:00
'signup/register',
2016-01-29 02:47:35 +01:00
'api/v1/*',
2015-11-02 19:43:22 +01:00
'api/v1/login',
'api/v1/clients/*',
2015-04-08 20:19:58 +02:00
'api/v1/clients',
'api/v1/invoices/*',
2015-04-08 20:19:58 +02:00
'api/v1/invoices',
'api/v1/quotes',
'api/v1/payments',
2015-09-07 11:07:55 +02:00
'api/v1/tasks',
2015-04-08 20:19:58 +02:00
'api/v1/email_invoice',
2015-05-10 21:02:35 +02:00
'api/v1/hooks',
2015-10-11 16:41:09 +02:00
'hook/email_opened',
'hook/email_bounced',
2016-01-28 13:04:55 +01:00
'reseller_stats',
'payment_hook/*',
2016-07-12 22:46:41 +02:00
'buy_now/*',
2015-04-08 20:19:58 +02:00
];
/**
* Handle an incoming request.
*
* @param Request $request
* @param Closure $next
* @return mixed
*/
2016-07-04 09:00:00 +02:00
public function handle($request, Closure $next)
{
foreach ($this->openRoutes as $route) {
if ($request->is($route)) {
return $next($request);
}
2015-04-08 20:19:58 +02:00
}
return parent::handle($request, $next);
}
2015-03-12 01:44:39 +01:00
}