diff --git a/Controller/UploadController.php b/Controller/UploadController.php index 4a8c67f8645144321f87723b3a358c84070ba9ad..be782a5951ef761a4467ba2611b761e41ceb083d 100644 --- a/Controller/UploadController.php +++ b/Controller/UploadController.php @@ -16,6 +16,7 @@ use Symfony\Component\Form\Extension\Csrf\CsrfProvider\CsrfProviderInterface; use Symfony\Component\HttpFoundation\JsonResponse; use Symfony\Component\HttpFoundation\Request; use Symfony\Component\HttpFoundation\Response; +use Symfony\Component\HttpKernel\Exception\HttpException; use Symfony\Component\Routing\RouterInterface; /** @@ -115,12 +116,12 @@ class UploadController extends Controller /** * * @param Request $request - * @throws JsonReponse + * @throws HttpException */ protected function validateToken(Request $request) { if(!$this->csrfProvider->isCsrfTokenValid("file-upload", $request->query->get('token', null))) { - throw $this->createResponse(Response::HTTP_BAD_REQUEST, 'Invalid CRSF token'); + throw new HttpException(Response::HTTP_FORBIDDEN, 'Invalid token'); } }