diff --git a/src/processors/process_trip.php b/src/processors/process_trip.php index d9720a9e..9d46bb62 100644 --- a/src/processors/process_trip.php +++ b/src/processors/process_trip.php @@ -15,7 +15,7 @@ if (empty($_SESSION['user_id']) || !in_array($_SESSION['role'] ?? '', ['admin', } // Validate CSRF token -if (empty($_POST['csrf_token']) || $_POST['csrf_token'] !== $_SESSION['csrf_token'] ?? '') { +if (empty($_POST['csrf_token']) || $_POST['csrf_token'] !== ($_SESSION['csrf_token'] ?? '')) { ob_end_clean(); echo json_encode(['status' => 'error', 'message' => 'Invalid CSRF token']); exit;