Skip to content
Permalink
Browse files Browse the repository at this point in the history
XWIKI-18408: Wrong check in forgot username
  • Loading branch information
surli committed Mar 9, 2021
1 parent dfa1479 commit 69548c0
Showing 1 changed file with 9 additions and 2 deletions.
Expand Up @@ -38,12 +38,19 @@
<hidden>true</hidden>
<content>{{velocity}}
#set($email = "$!request.get('e')")
#if($email == '')
#if($email == '' || !$services.csrf.isTokenValid($request.form_token))
{{translation key="xe.admin.forgotUsername.instructions"/}}

{{html}}
&lt;form method="post" action="$doc.getURL()" class="xformInline"&gt;
&lt;div&gt;&lt;label for="e"&gt;$services.localization.render('xe.admin.forgotUsername.email.label')&lt;/label&gt; &lt;input type="text" id="e" name="e"/&gt; &lt;span class="buttonwrapper"&gt;&lt;input type="submit" value="$services.localization.render('xe.admin.forgotUsername.submit')" class="button"/&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;label for="e"&gt;$services.localization.render('xe.admin.forgotUsername.email.label')&lt;/label&gt;
&lt;input type="text" id="e" name="e"/&gt;
&lt;input type="hidden" name="form_token" value="$services.csrf.getToken()"/&gt;
&lt;span class="buttonwrapper"&gt;
&lt;input type="submit" value="$services.localization.render('xe.admin.forgotUsername.submit')" class="button"/&gt;
&lt;/span&gt;
&lt;/div&gt;
&lt;/form&gt;
{{/html}}

Expand Down

0 comments on commit 69548c0

Please sign in to comment.