From 06cf7ddcbe7dd762abc492082475d22031d26801 Mon Sep 17 00:00:00 2001 From: AntonyAntonio Date: Tue, 13 Jun 2017 01:03:06 -0300 Subject: [PATCH] Guillermo - Issue #30 --- server/controllers/ticket/comment.php | 3 ++- server/controllers/ticket/get.php | 3 ++- 2 files changed, 4 insertions(+), 2 deletions(-) diff --git a/server/controllers/ticket/comment.php b/server/controllers/ticket/comment.php index d9b1f672..15b4b036 100755 --- a/server/controllers/ticket/comment.php +++ b/server/controllers/ticket/comment.php @@ -20,6 +20,7 @@ DataValidator::with('CustomValidations', true); * @apiUse NO_PERMISSION * @apiUse INVALID_CONTENT * @apiUse INVALID_TICKET + * @apiUse INVALID_TOKEN * * @apiSuccess {Object} data Empty object * @@ -63,7 +64,7 @@ class CommentController extends Controller { ], 'csrf_token' => [ 'validation' => DataValidator::equals($session->getToken()), - 'error' => Controller::request('csrf_token') . ' ' . $session->getToken() + 'error' => ERRORS::INVALID_TOKEN ] ] diff --git a/server/controllers/ticket/get.php b/server/controllers/ticket/get.php index ce953561..8b62bad1 100755 --- a/server/controllers/ticket/get.php +++ b/server/controllers/ticket/get.php @@ -16,6 +16,7 @@ DataValidator::with('CustomValidations', true); * @apiParam {Number} ticketNumber The number of the ticket. * * @apiUse INVALID_TICKET + * @apiUse INVALID_TOKEN * @apiUse NO_PERMISSION * * @apiSuccess {[Ticket](#api-Data_Structures-ObjectTicket)} data Information about the requested ticket. @@ -52,7 +53,7 @@ class TicketGetController extends Controller { ], 'csrf_token' => [ 'validation' => DataValidator::equals($session->getToken()), - 'error' => $session->getToken() . ' != ' . Controller::request('csrf_token') + 'error' => ERRORS::INVALID_TOKEN ] ] ];