mirror of
https://github.com/ansible/awx.git
synced 2026-03-07 03:31:10 -03:30
Properly return HTTP 403 when CSRF fails (not HTTP 500)
This commit is contained in:
@@ -195,7 +195,7 @@ class APIView(views.APIView):
|
||||
request.drf_request_user = getattr(drf_request, 'user', False)
|
||||
except AuthenticationFailed:
|
||||
request.drf_request_user = None
|
||||
except ParseError as exc:
|
||||
except (PermissionDenied, ParseError) as exc:
|
||||
request.drf_request_user = None
|
||||
self.__init_request_error__ = exc
|
||||
return drf_request
|
||||
|
||||
Reference in New Issue
Block a user