We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 014be2f commit e774078Copy full SHA for e774078
1 file changed
django/middleware/csrf.py
@@ -287,11 +287,11 @@ def _origin_verified(self, request):
287
parsed_origin = urlsplit(request_origin)
288
except ValueError:
289
return False
290
- request_scheme = parsed_origin.scheme
291
- request_netloc = parsed_origin.netloc
+ parsed_origin_scheme = parsed_origin.scheme
+ parsed_origin_netloc = parsed_origin.netloc
292
return any(
293
- is_same_domain(request_netloc, host)
294
- for host in self.allowed_origin_subdomains.get(request_scheme, ())
+ is_same_domain(parsed_origin_netloc, host)
+ for host in self.allowed_origin_subdomains.get(parsed_origin_scheme, ())
295
)
296
297
def _check_referer(self, request):
0 commit comments