I actually created a class to override the generateCsrfToken()
function to start the session

use Symfony\Component\Form\Form as BaseForm;

class Form extends BaseForm
{
    /**
     * {...@inheritdoc}
     */
    protected function generateCsrfToken($secret)
    {
        $sessId = session_id();
        if (!$sessId) {
            @session_start();
        }
        return parent::generateCsrfToken($secret);
    }
}

-- 
If you want to report a vulnerability issue on symfony, please send it to 
security at symfony-project.com

You received this message because you are subscribed to the Google
Groups "symfony developers" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to
[email protected]
For more options, visit this group at
http://groups.google.com/group/symfony-devs?hl=en

Reply via email to