Most CSRF auto-detect tools only for POST requests? what if developer change the application's state by a GET request. Can we detect those case?
Aucun commentaire:
Enregistrer un commentaire