Using Referer Field for Authentication
CWE-293 · Variant · Draft
The referer field in HTTP requests can be easily modified and, as such, is not a valid means of message integrity checking.
The referer field in HTTP requests can be easily modified and, as such, is not a valid means of message integrity checking.