Commit 18083e98 by David Baumgold

Use @require_POST decorator for password reset view

parent 2f78b967
...@@ -1790,11 +1790,9 @@ def activate_account(request, key): ...@@ -1790,11 +1790,9 @@ def activate_account(request, key):
@csrf_exempt @csrf_exempt
@require_POST
def password_reset(request): def password_reset(request):
""" Attempts to send a password reset e-mail. """ """ Attempts to send a password reset e-mail. """
if request.method != "POST":
raise Http404
# Add some rate limiting here by re-using the RateLimitMixin as a helper class # Add some rate limiting here by re-using the RateLimitMixin as a helper class
limiter = BadRequestRateLimiter() limiter = BadRequestRateLimiter()
if limiter.is_rate_limit_exceeded(request): if limiter.is_rate_limit_exceeded(request):
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment