docs($http): reword the XSRF attack overview
Previous version emphasised "gaining user's private data". While this perfectly describes JSON vulnerability (which is based on XSRF), data theft suits XSS more. Pure XSRF is more about performing requests that have side effects. Closes #13901
W
Wojciech Krzystek committed
23395ce07d6c683b9eb51517b9b1dcaa91d63b70
Parent: c81c9e7
Committed by Georgios Kalpakas <g.kalpakas@hotmail.com>
on 1/31/2016, 11:21:33 AM