diff --git a/app/bridges/resources/classes/bridges.php b/app/bridges/resources/classes/bridges.php index 306ba6a081..27cc77bfbf 100644 --- a/app/bridges/resources/classes/bridges.php +++ b/app/bridges/resources/classes/bridges.php @@ -31,6 +31,14 @@ if (!class_exists('bridges')) { public function delete($bridges) { if (permission_exists('bridge_delete')) { + //validate the token + $token = new token; + if (!$token->validate($_SERVER['PHP_SELF'])) { + message::add($text['message-invalid_token'],'negative'); + header('Location: bridges.php'); + exit; + } + //delete multiple bridges if (is_array($bridges)) { //get the action