Skip to main content
Drupal API
User account menu
  • Log in

Breadcrumb

  1. Drupal Core 11.1.x
  2. CsrfExceptionSubscriber.php

function CsrfExceptionSubscriber::on403

Handles a 403 error for HTML.

Parameters

\Symfony\Component\HttpKernel\Event\ExceptionEvent $event: The event to process.

File

core/lib/Drupal/Core/EventSubscriber/CsrfExceptionSubscriber.php, line 32

Class

CsrfExceptionSubscriber
Handles exceptions related to CSRF access.

Namespace

Drupal\Core\EventSubscriber

Code

public function on403(ExceptionEvent $event) : void {
    $request = $event->getRequest();
    $routeMatch = RouteMatch::createFromRequest($request);
    $route = $routeMatch->getRouteObject();
    if (!$route->hasRequirement('_csrf_token') || empty($route->getOption('_csrf_confirm_form_route'))) {
        return;
    }
    $event->setResponse(new RedirectResponse(Url::fromRoute($route->getOption('_csrf_confirm_form_route'))
        ->toString()));
}
RSS feed
Powered by Drupal