Update: Cross-Site Request Forgery Prevention Cheat Sheet #1388
Labels
ACK_OBTAINED
Issue acknowledged from core team so work can be done to fix it.
UPDATE_CS
Issue about the update/refactoring of a existing cheat sheet.
What is missing or needs to be updated?
I'm wondering about the title of the chapter "Disallowing **non-**simple requests".
In my opinion - and from the context - it should read "Disallowing simple requests", as "simple" requests lead to CSRF, which we actually want to prevent.
How should this be resolved?
Can someone please check this? Thx
The text was updated successfully, but these errors were encountered: