Answer the question
In order to leave comments, you need to log in
Why is CSRF disabled/not used when working with Ajax?
I often see most examples where CSRF is not used/disabled intentionally when working with Ajax, but it is not explained why. Actually the question is why? Because it's more convenient to work with and CSRF does not create many problems, or is there no need for it? Doesn't disabling CSRF when working with Ajax reduce security, or am I wrong?
Answer the question
In order to leave comments, you need to log in
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question