Render 404 if not ajax request
authorRodney Ewing <ewing.rj@gmail.com>
Thu, 8 Aug 2013 00:13:38 +0000 (17:13 -0700)
committerRodney Ewing <ewing.rj@gmail.com>
Thu, 8 Aug 2013 00:13:38 +0000 (17:13 -0700)
mediagoblin/user_pages/views.py

index 2e6136977ecfd6193ca43bc3fdeee249aa284a88..91ea04b8ffd7fbb02e53cad67a40454a632d8f07 100644 (file)
@@ -199,6 +199,10 @@ def media_post_comment(request, media):
 
 def media_preview_comment(request):
     """Runs a comment through markdown so it can be previewed."""
+    # If this isn't an ajax request, render_404
+    if not request.is_xhr:
+        return render_404(request)
+
     comment = unicode(request.form['comment_content'])
     cleancomment = { "content":cleaned_markdown_conversion(comment)}