def csrf_protect():
if request.method not in ('GET', 'HEAD', 'OPTIONS', 'TRACE'):
referer = request.headers.get('Referer')
if referer is None or different_origin(referer, request.url_root):
raise Forbidden(description="Referer check failed.")
评论列表
文章目录