Added new modules to help prevent Cross Site Request Forgery
[sdnc/oam.git] / admportal / views / pages / login.ejs
index 3a3e5e4..9da2f31 100644 (file)
@@ -33,6 +33,7 @@
       <form class="form-signin" method="POST" action="/formlogin">
         <h3 class="form-signin-heading">AdminPortal Login</h3>
 
+                               <input type="hidden" name="_csrf" value="<%= csrfToken %>" />
         <input type="text" name="email" id="email" class="form-control" placeholder="Email" required>
         <input type="password" name="password" id="password" class="form-control" placeholder="Password" required>