docs($http): reword the XSRF attack overview
Previous version emphasised "gaining user's private data". While this perfectly describes JSON vulnerability (which is based on XSRF), data theft suits XSS more. Pure XSRF is more about performing requests that have side effects. Closes #13901
W
Wojciech Krzystek committed
8dc4c75adefea96af0ee119e530929f836a04308
Parent: e918110
Committed by Georgios Kalpakas <g.kalpakas@hotmail.com>
on 1/31/2016, 11:23:16 AM