From 15faa01178c97c730a9a50f490d3a99bfc9997b6 Mon Sep 17 00:00:00 2001 From: Robin Ward Date: Thu, 2 Jan 2014 11:55:45 -0500 Subject: [PATCH] FIX: Missing variable --- app/controllers/embed_controller.rb | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/app/controllers/embed_controller.rb b/app/controllers/embed_controller.rb index f7a56ede0ef..260c0076de3 100644 --- a/app/controllers/embed_controller.rb +++ b/app/controllers/embed_controller.rb @@ -25,7 +25,7 @@ class EmbedController < ApplicationController if !(Rails.env.development? && current_user.try(:admin?)) raise Discourse::InvalidAccess.new('embeddable host not set') if SiteSetting.embeddable_host.blank? - raise Discourse::InvalidAccess.new('invalid referer host') if uri.host != SiteSetting.embeddable_host + raise Discourse::InvalidAccess.new('invalid referer host') if URI(request.referer || '').host != SiteSetting.embeddable_host end response.headers['X-Frame-Options'] = "ALLOWALL"