-
Notifications
You must be signed in to change notification settings - Fork 3.4k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
How to incorporate CSRF token into response.js #366
Comments
Hi All, |
Bump! Same here. Need to know if any change will be made in respond.js? Or if this is incumbent on the user of the lib to deal with? |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Hi All,
I have been using response.js(v1.4.2) in my website but was flagged out cross-site request forgery. The recommendation was to make changes to contain a user-specific secret to prevent an attacker from making unauthorized request and an appropriate mitigation technique should be in place.
May I know how do I proceed to change for this version?
The text was updated successfully, but these errors were encountered: