Skip to content

WIP: Check the CSRF token when using the Rails session cookie for API auth

What does this MR do?

Are there points in the code the reviewer needs to double check?

Why was this MR needed?

Screenshots (if relevant)

Does this MR meet the acceptance criteria?

What are the relevant issue numbers?

Closes #22966 (closed)

Merge request reports