diff --git a/app/controllers/maintenance_tasks/tasks_controller.rb b/app/controllers/maintenance_tasks/tasks_controller.rb index 9bea41fef..65c1e9e43 100644 --- a/app/controllers/maintenance_tasks/tasks_controller.rb +++ b/app/controllers/maintenance_tasks/tasks_controller.rb @@ -40,7 +40,9 @@ def run private def task_params - params.permit(:id, :csv_file, task_params: {}) + params_to_exclude = ["_method", "commit", "authenticity_token"] + params.reject { |param| params_to_exclude.include?(param) } + .permit(:id, :csv_file, task_params: {}) end def set_refresh