Not quite. Your rate limiting seems to be cookie based, which makes it easy for someone to circumvent just by replaying their initial request (or by deleting the cookie you set).
There's about a half dozen people down_vote DOSing the server right now.
sudo iptables -I INPUT -s <offending ip> -j DROPThe author might want to change it to POST/PUT and limit votes based on IP address instead.