
2024-06-08 22:28:07 发布

您现在位置:Python中文网/ 问答频道 /正文


An effective CSRF (Cross-Site Request Forgery) countermeasure for forms is to 
include a hidden field with a random value specific to the user's current session.
A form was detected that did not appear to contain an anti-CSRF token. 
This form was tested for susceptibility to a CSRF attack and determined to be vulnerable.


Tags: todjangoformanfor站点requestsite