diff --git a/frontend/drupal/sites/all/modules/nakupovanje_1ka/nakupovanje_1ka.module b/frontend/drupal/sites/all/modules/nakupovanje_1ka/nakupovanje_1ka.module index de3efac05..10d2e41c2 100755 --- a/frontend/drupal/sites/all/modules/nakupovanje_1ka/nakupovanje_1ka.module +++ b/frontend/drupal/sites/all/modules/nakupovanje_1ka/nakupovanje_1ka.module @@ -237,6 +237,13 @@ function nakupovanje_1ka_menu() function nakupovanje_1ka_api() { + if(empty($_SERVER['HTTP_X_REQUESTED_WITH']) || strtolower($_SERVER['HTTP_X_REQUESTED_WITH']) != 'xmlhttprequest') { + header('Location: //1ka.si'); + die(); + } + + + require($_SERVER['DOCUMENT_ROOT'] . '/settings.php'); $api_url = $site_url . 'frontend/payments/api.php';