diff --git a/api/upload_attachment.php b/api/upload_attachment.php index 4c03561..275bc73 100644 --- a/api/upload_attachment.php +++ b/api/upload_attachment.php @@ -60,9 +60,6 @@ if ($_SERVER['REQUEST_METHOD'] !== 'POST') { // Verify CSRF token $csrfToken = $_POST['csrf_token'] ?? $_SERVER['HTTP_X_CSRF_TOKEN'] ?? ''; if (!CsrfMiddleware::validateToken($csrfToken)) { - require_once dirname(__DIR__) . '/models/AuditLogModel.php'; - $auditLog = new AuditLogModel(); - $auditLog->logCsrfFailure($_SESSION['user']['user_id'] ?? null, 'upload_attachment'); ResponseHelper::forbidden('Invalid CSRF token'); }