luci-base: protect CBI forms with CSRF tokens
[project/luci.git] / modules / luci-base / luasrc / view / cbi / header.htm
1 <%+header%>
2 <form method="post" name="cbi" action="<%=REQUEST_URI%>" enctype="multipart/form-data" onreset="return cbi_validate_reset(this)" onsubmit="return cbi_validate_form(this, '<%:Some fields are invalid, cannot save values!%>')">
3         <div>
4                 <script type="text/javascript" src="<%=resource%>/cbi.js"></script>
5                 <input type="hidden" name="token" value="<%=token%>" />
6                 <input type="hidden" name="cbi.submit" value="1" />
7                 <input type="submit" value="<%:Save%>" class="hidden" />
8         </div>