diff --git a/public-legacy/forum/posting.php b/public-legacy/forum/posting.php index ded31186..1f03d425 100644 --- a/public-legacy/forum/posting.php +++ b/public-legacy/forum/posting.php @@ -120,7 +120,7 @@ if($mode === 'edit') { return; } - if(!perms_check($perms, $post['poster_id'] === $currentUserId ? MSZ_FORUM_PERM_EDIT_POST : MSZ_FORUM_PERM_EDIT_ANY_POST)) { + if(!perms_check($perms, (string)$post['poster_id'] === $currentUserId ? MSZ_FORUM_PERM_EDIT_POST : MSZ_FORUM_PERM_EDIT_ANY_POST)) { echo render_error(403); return; } diff --git a/templates/_layout/input.twig b/templates/_layout/input.twig index ad856e48..13f2f3ff 100644 --- a/templates/_layout/input.twig +++ b/templates/_layout/input.twig @@ -4,10 +4,10 @@ {% endapply %} {% endmacro %} -{% macro input_csrf() %} +{% macro input_csrf(name) %} {% from _self import input_hidden %} {% apply spaceless %} - {{ input_hidden('_csrf', csrf_token()) }} + {{ input_hidden(name|default('_csrf'), csrf_token()) }} {% endapply %} {% endmacro %} diff --git a/templates/forum/confirm.twig b/templates/forum/confirm.twig index 8fe67812..636e00a7 100644 --- a/templates/forum/confirm.twig +++ b/templates/forum/confirm.twig @@ -7,7 +7,7 @@ {% block content %}