The Gateway Protection Against Cross-Site Request Forgery attacks doesn't apply. That scheme requires a X-CSRF-Token to be retrieved using a GET request. My situation is preventing that GET from even happening in the first place.
↧
The Gateway Protection Against Cross-Site Request Forgery attacks doesn't apply. That scheme requires a X-CSRF-Token to be retrieved using a GET request. My situation is preventing that GET from even happening in the first place.