From d3d022311ee7e77d51689ac8cbd1be4987b13f66 Mon Sep 17 00:00:00 2001 From: Michael Tremer Date: Tue, 6 Nov 2018 09:26:06 +0000 Subject: [PATCH] xsrf_form_html: Set Vary: Cookie header Signed-off-by: Michael Tremer --- src/web/base.py | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/src/web/base.py b/src/web/base.py index 96df315e..b6fee9b5 100644 --- a/src/web/base.py +++ b/src/web/base.py @@ -30,6 +30,12 @@ class BaseHandler(tornado.web.RequestHandler): self.render("error.html", status_code=status_code, message=message, **kwargs) + def xsrf_form_html(self, *args, **kwargs): + # Set Vary: Cookie header + self.add_header("Vary", "Cookie") + + return super().xsrf_form_html(*args, **kwargs) + @property def hostname(self): # Remove the development prefix -- 2.47.3