Disable sessions & CSRF verification for the /up route - Fixes #458

This commit is contained in:
Bubka 2025-03-10 18:24:50 +01:00
parent c477d879e8
commit fc7ca1448c

View File

@ -17,7 +17,9 @@
use App\Http\Middleware\AddContentSecurityPolicyHeaders; use App\Http\Middleware\AddContentSecurityPolicyHeaders;
use App\Http\Middleware\CustomCreateFreshApiToken; use App\Http\Middleware\CustomCreateFreshApiToken;
use App\Http\Middleware\SetLanguage; use App\Http\Middleware\SetLanguage;
use App\Http\Middleware\VerifyCsrfToken;
use Illuminate\Routing\Middleware\SubstituteBindings; use Illuminate\Routing\Middleware\SubstituteBindings;
use Illuminate\Session\Middleware\StartSession;
// use Illuminate\Foundation\Events\DiagnosingHealth; // use Illuminate\Foundation\Events\DiagnosingHealth;
// use Illuminate\Support\Facades\Event; // use Illuminate\Support\Facades\Event;
use Illuminate\Support\Facades\Route; use Illuminate\Support\Facades\Route;
@ -100,6 +102,8 @@
}); });
Route::withoutMiddleware([ Route::withoutMiddleware([
StartSession::class,
VerifyCsrfToken::class,
SubstituteBindings::class, SubstituteBindings::class,
SetLanguage::class, SetLanguage::class,
CustomCreateFreshApiToken::class, CustomCreateFreshApiToken::class,