diff --git a/server/controllers/ticket/comment.php b/server/controllers/ticket/comment.php index d9b1f672..15b4b036 100755 --- a/server/controllers/ticket/comment.php +++ b/server/controllers/ticket/comment.php @@ -20,6 +20,7 @@ DataValidator::with('CustomValidations', true); * @apiUse NO_PERMISSION * @apiUse INVALID_CONTENT * @apiUse INVALID_TICKET + * @apiUse INVALID_TOKEN * * @apiSuccess {Object} data Empty object * @@ -63,7 +64,7 @@ class CommentController extends Controller { ], 'csrf_token' => [ 'validation' => DataValidator::equals($session->getToken()), - 'error' => Controller::request('csrf_token') . ' ' . $session->getToken() + 'error' => ERRORS::INVALID_TOKEN ] ] diff --git a/server/controllers/ticket/get.php b/server/controllers/ticket/get.php index ce953561..8b62bad1 100755 --- a/server/controllers/ticket/get.php +++ b/server/controllers/ticket/get.php @@ -16,6 +16,7 @@ DataValidator::with('CustomValidations', true); * @apiParam {Number} ticketNumber The number of the ticket. * * @apiUse INVALID_TICKET + * @apiUse INVALID_TOKEN * @apiUse NO_PERMISSION * * @apiSuccess {[Ticket](#api-Data_Structures-ObjectTicket)} data Information about the requested ticket. @@ -52,7 +53,7 @@ class TicketGetController extends Controller { ], 'csrf_token' => [ 'validation' => DataValidator::equals($session->getToken()), - 'error' => $session->getToken() . ' != ' . Controller::request('csrf_token') + 'error' => ERRORS::INVALID_TOKEN ] ] ];