There seems to be little or no protection for XSRF / CSRF.
There seems to be little or no protection for XSRF / CSRF.