---
title: Cross-Site Request Forgery (CSRF)
description: Cross-site request forgery tricks a victim's browser into sending an authenticated request to another site, relying on the browser attaching cookies without a CORS handshake for simple form posts.
tokens: ~0
---

# Cross-Site Request Forgery (CSRF)

undefined