X-Git-Url: https://git.openstreetmap.org./rails.git/blobdiff_plain/8a5c9a8052489c04a64856c2f0579647a1637326..6d5752ad623dc70d0d6a1004c42871fb05704c56:/app/controllers/sessions_controller.rb?ds=inline diff --git a/app/controllers/sessions_controller.rb b/app/controllers/sessions_controller.rb index 2b6905ebb..a3e6f42f0 100644 --- a/app/controllers/sessions_controller.rb +++ b/app/controllers/sessions_controller.rb @@ -11,9 +11,9 @@ class SessionsController < ApplicationController authorize_resource :class => false - def new - override_content_security_policy_directives(:form_action => []) if Settings.csp_enforce || Settings.key?(:csp_report_url) + allow_all_form_action :only => :new + def new referer = safe_referer(params[:referer]) if params[:referer] parse_oauth_referer referer