4 ms·
Lots of web apps are still implemented along the lines of: GET /foo?action=delete&item=x A less naive implementation would also include a crumb to mitigate CSR
by iguana 13y ago
Lots of web apps are still implemented along the lines of:
GET /foo?action=delete&item=x
A less naive implementation would also include a crumb to mitigate CSRF as well as unintentional access.