diff --git a/public/javascripts/fileuploader-custom.js b/public/javascripts/fileuploader-custom.js
index d5844a7c75163eaa98f4d3a37207c3438c39fa8c..1840b14fa8b204b52e7d87694333111757def9ff 100644
--- a/public/javascripts/fileuploader-custom.js
+++ b/public/javascripts/fileuploader-custom.js
@@ -1017,6 +1017,7 @@ qq.extend(qq.UploadHandlerForm.prototype, {
         var iframe = this._createIframe(id);
         var form = this._createForm(iframe, params);
         form.appendChild(input);
+        $(form).append($('<input type="hidden" name="authenticity_token" value="'+$("meta[name='csrf-token']").attr("content")+'"/>'));
 
         var self = this;
         this._attachLoadEvent(iframe, function(){