rokrebs / CIS4595

Capstone Project
0 stars 0 forks source link

[Medium Risk] Cross-Site Request Forgery (CSRF) #3

Closed jvs7 closed 2 years ago

jvs7 commented 2 years ago

[Medium Risk] CSRF protection is disabled for your Express app. This allows the attackers to execute requests on a user's behalf.

Location: config/appSetup.js 12