簡體   English   中英

在 Django 中的 ajax POST 期間禁止(CSRF 令牌丟失或不正確。)

[英]Forbidden (CSRF token missing or incorrect.) during ajax POST in Django

我正在嘗試通過 ajax 發送一個 csv 文件和一堆數據,但在發送 csrftoken 時出現禁止(CSRF 令牌丟失或不正確)錯誤,我檢查了我在代碼和 cookie 中收到了不同的令牌,所以我嘗試了。 https://docs.djangoproject.com/en/2.2/ref/csrf/ docs 以及但沒有運氣你能在這里幫助我,

這是js代碼

$('#upload').click(function(){
    console.log('hello');
    var store = $('#id_store').val();
    var kitchen = $('#id_kitchen').val();
    var form = $('.csv').prop('files')[0];
    var csrftoken = $("[name=csrfmiddlewaretoken]").val();
    console.log(store)
    data={
     'csrfmiddlewaretoken':csrftoken,
     'kitchen':kitchen,
     'store':store,
     'csv_file':form,
     }
    console.log(data)
    $.ajax({
        url: "{{url('custom-admin:csv_upload')}}",
        type: 'POST',
        data: data,
         processData: false,
         contentType:false,
         success: function (data) {
           if(data.status){
            alert(data.message)
           }
           else{alert(data.message)}
    }
    });
    })

html文件

   <form id="demo-form2" method="post" data-parsley-validate="" class="form-horizontal form-label-left" enctype="multipart/form-data">
   <div class="form-group">
      <input type="hidden" name="csrfmiddlewaretoken" value="{{ csrf_token }}">
      <label class="control-label col-md-3 col-sm-3 col-xs-5"> Store <span
         class="required">*</span>
      </label>
      <div class="col-md-6 col-sm-6 col-xs-12 stores" id="stores">
         {{ form.store }}
      </div>
   </div>
   <div class="form-group">
      <label class="control-label col-md-3 col-sm-3 col-xs-5"> Kitchen <span
         class="required">*</span>
      </label>
      <div class="col-md-6 col-sm-6 col-xs-12 kitchen_list" id="kitchen_list">
         {{ form.kitchen }}
      </div>
   </div>
   <div class="form-group"  >
      <label class="control-label col-md-3 col-sm-3 col-xs-5" >  Upload File <span
         class="required"></span>
      </label>
      <div class="col-md-6 col-sm-6 col-xs-12 file">
         {{form.csv_file}}
         {% if form_errors.csv_file %}
         <div class="alert alert-danger">{{form_errors.csv_file}}</div>
         {% endif %}
      </div>
   </div>
   <div class="form-group" >
      <div class="col-md-3 col-sm-3 col-xs-12 col-md-offset-3" style="margin-bottom:10px;">
         <button  type="button" class="btn btn-primary upload" id="upload"> Upload </button>
      </div>
   </div>
</form>

表格.py

class CsvImportForm(forms.Form):
    kitchen = forms.ChoiceField(
        widget=forms.Select(attrs={
            'type': "radio",
            'class': "btn btn-primary btn-md",
            'data-parsley-multiple': 'gender'
        })
    )

    store = forms.ChoiceField(
        widget=forms.Select(attrs={
            'type': "radio",
            'class': "btn btn-primary btn-md stores",
            'data-parsley-multiple': 'gender'
        })
    )
    csv_file = forms.FileField(
        required=False,
        widget=forms.FileInput(attrs={
            'type': "file",
            'class':"csv",
            "data-validation": "mime",
            'data-validation-allowing': "csv",
            'data-validation-error-msg-mime': "You can only upload images in (csv)."
        })
    )

一旦嘗試使用javascriptFormData函數。

$('#upload').click(function(){  
        var formData = new FormData();
        var csrftoken = $("[name=csrfmiddlewaretoken]").val();
        formData.append('store', $('#id_store').val());
        formData.append('csrfmiddlewaretoken', csrftoken);
        formData.append('kitchen',  $('#id_kitchen').val());
        formData.append('csv_file', $('.csv')[0].files[0]);

    $.ajax({
        url: "{{url('custom-admin:csv_upload')}}",
        type: 'POST',
        data: formData,
        processData: false,
        contentType:false,
        success: function (data) {
           if(data.status){
            alert(data.message)
           }
           else{
            alert(data.message)
           }
        }
    });
});

暫無
暫無

聲明:本站的技術帖子網頁,遵循CC BY-SA 4.0協議,如果您需要轉載,請注明本站網址或者原文地址。任何問題請咨詢:yoyou2525@163.com.

 
粵ICP備18138465號  © 2020-2024 STACKOOM.COM