The biggest problem with csrf is having requests that look like form submissions but aren ' t Csrf最大的文件就是讓請求看起來像是一個表單提交,雖然實際上不是。
While " one - click " approaches can be made very secure , a simple implementation is likely to be vulnerable to csrf 盡管“一次點擊”能做的很安全,但是簡單的實現(xiàn)很可能受到csrf攻擊。