Another example of CSRF - in CSS

Mar 5, 2009 css javascript security
Just saw this really cool example get submitted on one of my websites testing for CSRF:


Just another great example of why you should

  1. not use GET for irreversible changes

  2. filter filter filter! (I edited that posting, it was a filtered by my script already…)

