summaryrefslogtreecommitdiff
path: root/app/controllers
diff options
context:
space:
mode:
authorAngel Perez <iAngel.p93@gmail.com>2018-12-13 17:10:15 +0100
committerAngel Perez <iAngel.p93@gmail.com>2018-12-14 12:29:09 +0100
commit328e135a51f62471f21ca444a0afd2e84eb10a8b (patch)
tree49d76dfe09cd0836b067708377225fb9bc7c5302 /app/controllers
parent436bcffb51f77d861824f56e6cf87f576a853012 (diff)
Skip forgery protection on API
Diffstat (limited to 'app/controllers')
-rw-r--r--app/controllers/solidus_subscriptions/api/v1/subscriptions_controller.rb2
1 files changed, 2 insertions, 0 deletions
diff --git a/app/controllers/solidus_subscriptions/api/v1/subscriptions_controller.rb b/app/controllers/solidus_subscriptions/api/v1/subscriptions_controller.rb
index 79d1f5f..1472f4d 100644
--- a/app/controllers/solidus_subscriptions/api/v1/subscriptions_controller.rb
+++ b/app/controllers/solidus_subscriptions/api/v1/subscriptions_controller.rb
@@ -1,6 +1,8 @@
class SolidusSubscriptions::Api::V1::SubscriptionsController < Spree::Api::BaseController
before_action :load_subscription, only: [:cancel, :update, :skip]
+ protect_from_forgery unless: -> { request.format.json? }
+
def update
if @subscription.update(subscription_params)
render json: @subscription.to_json(include: [:line_items, :shipping_address])