Index: trunk/phase3/includes/api/ApiMain.php |
— | — | @@ -422,8 +422,8 @@ |
423 | 423 | $this->dieUsageMsg( array( 'missingparam', 'token' ) ); |
424 | 424 | } else { |
425 | 425 | global $wgUser; |
426 | | - if ( ( $salt != null /*&& !$wgUser->matchEditToken( $moduleParams['token'], $salt )*/ ) |
427 | | - /*|| !$wgUser->matchEditToken( $moduleParams['token'] )*/ ) { |
| 426 | + if ( ( $salt != null && !$wgUser->matchEditToken( $moduleParams['token'], $salt ) ) |
| 427 | + || !$wgUser->matchEditToken( $moduleParams['token'] ) ) { |
428 | 428 | $this->dieUsageMsg( array( 'sessionfailure' ) ); |
429 | 429 | } |
430 | 430 | } |