The biggest problem with csrf is having requests that look like form submissions but aren ' t Csrf最大的文件就是让请求看起来像是一个表单提交,虽然实际上不是。
While " one - click " approaches can be made very secure , a simple implementation is likely to be vulnerable to csrf 尽管“一次点击”能做的很安全,但是简单的实现很可能受到csrf攻击。