From 49758c23ccca57483413a4df10308e95fb7c8cc4 Mon Sep 17 00:00:00 2001 From: Louise Crow Date: Tue, 4 Nov 2014 21:56:54 +0000 Subject: Move admin incoming message actions to use RESTful routes. So data changing actions require a POST and can be protected against CSRF. --- spec/integration/view_request_spec.rb | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'spec/integration/view_request_spec.rb') diff --git a/spec/integration/view_request_spec.rb b/spec/integration/view_request_spec.rb index eecb984f5..4d04c97d7 100644 --- a/spec/integration/view_request_spec.rb +++ b/spec/integration/view_request_spec.rb @@ -33,7 +33,7 @@ describe "When viewing requests" do # Admin makes the incoming message requester only post_data = {:incoming_message => {:prominence => 'hidden', :prominence_reason => 'boring'}} - admin.post_via_redirect "/admin/incoming/update/#{info_request.incoming_messages.first.id}", post_data + admin.put_via_redirect "/admin/incoming_messages/#{info_request.incoming_messages.first.id}", post_data admin.response.should be_success cache_directories_exist?(info_request).should be_false -- cgit v1.2.3