aboutsummaryrefslogtreecommitdiff
path: root/app/templates
diff options
context:
space:
mode:
Diffstat (limited to 'app/templates')
-rw-r--r--app/templates/packages/editrequest_view.html11
-rw-r--r--app/templates/packages/view.html5
2 files changed, 12 insertions, 4 deletions
diff --git a/app/templates/packages/editrequest_view.html b/app/templates/packages/editrequest_view.html
index ce8f70e..95d4674 100644
--- a/app/templates/packages/editrequest_view.html
+++ b/app/templates/packages/editrequest_view.html
@@ -29,9 +29,14 @@
</div>
{% elif package.checkPerm(current_user, "APPROVE_CHANGES") %}
<div class="box box_grey">
- To resolve this request, either
- <a href="{{ request.getApproveURL() }}">Approve and Apply</a> or
- <a href="{{ request.getRejectURL() }}">Reject</a> it.
+ <form method="post" action="{{ request.getApproveURL() }}">
+ <input type="hidden" name="csrf_token" value="{{ csrf_token() }}" />
+ <input type="submit" value="Approve and Apply" />
+ </form>
+ <form method="post" action="{{ request.getRejectURL() }}">
+ <input type="hidden" name="csrf_token" value="{{ csrf_token() }}" />
+ <input type="submit" value="Reject" />
+ </form>
</div>
{% endif %}
diff --git a/app/templates/packages/view.html b/app/templates/packages/view.html
index ecd6b35..47d74ea 100644
--- a/app/templates/packages/view.html
+++ b/app/templates/packages/view.html
@@ -10,7 +10,10 @@
<span class="icon_message"></span>
This package needs to be approved before it can be found.
{% if package.checkPerm(current_user, "APPROVE_NEW") %}
- <a href="{{ package.getApproveURL() }}">Approve</a>
+ <form method="post" action="{{ package.getApproveURL() }}">
+ <input type="hidden" name="csrf_token" value="{{ csrf_token() }}" />
+ <input type="submit" value="Approve" />
+ </form>
{% endif %}
<div style="clear: both;"></div>
</div>