chore(server): address requested changes

This commit is contained in:
Elian Doran 2026-03-14 23:49:36 +02:00
parent 0d889426e8
commit f6f939c245
No known key found for this signature in database

View File

@ -15,7 +15,10 @@ function register(app: Application) {
&& err.code === "EBADCSRFTOKEN";
if (isCsrfTokenError) {
log.error(`Invalid CSRF token: ${req.headers["x-csrf-token"]}, secret: ${req.cookies[CSRF_COOKIE_NAME]}`);
const csrfHeader = req.headers["x-csrf-token"];
const csrfHeaderPrefix = typeof csrfHeader === "string" ? csrfHeader.slice(0, 8) : undefined;
const tokenInfo = csrfHeaderPrefix ? ` (token prefix: ${csrfHeaderPrefix})` : "";
log.error(`Invalid CSRF token on ${req.method} ${req.url}${tokenInfo}`);
return next(new ForbiddenError("Invalid CSRF token"));
}