From: Cash Costello Date: Tue, 1 Sep 2009 01:46:53 +0000 (+0000) Subject: added security token to download button X-Git-Url: https://gitweb.fluxo.info/?a=commitdiff_plain;h=8a74a87356b54f907c341b8d6b3bcbe6b1e2ba18;p=lorea%2Felgg.git added security token to download button --- diff --git a/views/default/tidypics/image_menu.php b/views/default/tidypics/image_menu.php index afbb34f21..b804c8491 100644 --- a/views/default/tidypics/image_menu.php +++ b/views/default/tidypics/image_menu.php @@ -42,9 +42,13 @@ } } - if (get_plugin_setting('download_link', 'tidypics') != "disabled") { + if (get_plugin_setting('download_link', 'tidypics') != "disabled") { + $ts = time(); + $token = generate_action_token($ts); + + $download_url = $vars['url'] . "action/tidypics/download?file_guid=" . $image_guid . "&__elgg_token=$token&__elgg_ts=$ts"; ?> -
  • +
  • \ No newline at end of file