authorEmailAddress: peter.schwarcz@liferay.com, authorName: Peter Schwarcz, content: Issue After enabling CSRF Tokens, a p_auth token is appended to URLs, as expected. However, we noticed that if we manually remove this from the end of a URL and hit enter, we are still able to access the page,...
Published Date: Jan 1, 1970 12:00 AM