While search forms often are vulnerable for CSRF-Attacks, these aren't really important. webvulnscan should be able to determine whether are form is a search form(maybe add this to webvulnscan/fomr.py) and then add a option to exclude CSRF-Vulnerablities in these.
While search forms often are vulnerable for CSRF-Attacks, these aren't really important. webvulnscan should be able to determine whether are form is a search form(maybe add this to
webvulnscan/fomr.py
) and then add a option to exclude CSRF-Vulnerablities in these.