79759350

Date: 2025-09-08 21:30:53
Score: 2.5
Natty:
Report link

Since a browser must send an Origin header for a cross-origin request with an unsafe method (I hope you don't use GET method for state changes), you can simply check if the origin is whitelisted.

Reasons:
  • Low length (1):
  • No code block (0.5):
  • Single line (0.5):
  • Low reputation (0.5):
Posted by: Heil Programmierung