From dc1b64dced300f733497e0a99343ebb1d9f535b3 Mon Sep 17 00:00:00 2001 From: "David T. Sadler" Date: Wed, 7 Jul 2021 23:14:08 +0100 Subject: Use better way of getting headers --- public/bookmarks/add/index.php | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/public/bookmarks/add/index.php b/public/bookmarks/add/index.php index 18db75f..5480361 100644 --- a/public/bookmarks/add/index.php +++ b/public/bookmarks/add/index.php @@ -9,7 +9,10 @@ $config = require_once(__DIR__.'/../../../config.php'); if ('POST' !== filter_input(INPUT_SERVER, 'REQUEST_METHOD')) { respondAndExit(405, 'Method Not Allowed'); } -if ('Bearer '.$config['bearer_token'] !== filter_input(INPUT_SERVER, 'HTTP_AUTHORIZATION')) { + +$bearerToken = getallheaders()['Authorization'] ?? null; + +if ('Bearer '.$config['bearer_token'] !== $bearerToken) { respondAndExit(401, 'Unauthorized', ['WWW-Authenticate: Bearer realm="Bookmarks"']); } -- cgit v1.2.3-13-gbd6f