From 3416f731e7b57cdf69a8473244a719dfdca5e032 Mon Sep 17 00:00:00 2001 From: Les De Ridder Date: Mon, 22 Oct 2018 23:58:28 +0200 Subject: [PATCH] Do not run CSRF middleware on JSON Accept header --- app/Http/Middleware/VerifyCsrfToken.php | 9 +++++++++ 1 file changed, 9 insertions(+) diff --git a/app/Http/Middleware/VerifyCsrfToken.php b/app/Http/Middleware/VerifyCsrfToken.php index 324a166..b9b584f 100644 --- a/app/Http/Middleware/VerifyCsrfToken.php +++ b/app/Http/Middleware/VerifyCsrfToken.php @@ -21,4 +21,13 @@ class VerifyCsrfToken extends Middleware protected $except = [ // ]; + + public function handle($request, \Closure $next) + { + if($request->format() == 'json') { + return $next($request); + } else { + return parent::handle($request, $next); + } + } }