Skip to content

Clarify in Javadoc that .csrf() enables CSRF protection #9489

@eleftherias

Description

@eleftherias

In the HttpSecurity#csrf() Javadoc, we should explicitly mention that this method enables CSRF protection.

It may be unclear to users whether calling .csrf() enables CSRF protection or allows CSRF attacks to happen.

Metadata

Metadata

Assignees

Labels

in: docsAn issue in Documentation or samplestype: enhancementA general enhancement

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions