å³ã«ããã¨ä»¥ä¸ã®ããã«ãªãã¾ãã Strict å¤é¨ãµã¤ãããã®ã¢ã¯ã»ã¹ã§ã¯Cookieãéããªãã Lax å¤é¨ãµã¤ãããã®ã¢ã¯ã»ã¹ã¯GETãªã¯ã¨ã¹ãã®ã¨ãã ãCookieãéãã None å¾æ¥éãã®åãã ã追è¨ããªãChrome 80以éã§Secureå±æ§ãä»ããSameSite=Noneãæå®ããå ´åãset-cookieèªä½ãç¡å¹ã«ãªãã¾ãã ã»ãã¥ãªãã£ä¸ã®å¹æ CSRF対çã«ãªãã¾ãã CSRF (ã¯ãã¹ãµã¤ãã»ãªã¯ã¨ã¹ãã»ãã©ã¼ã¸ã§ãª) ã¨ã¯ã WEBãµã¤ããã¦ã¼ã¶ã¼æ¬äººã®æå³ããåä½ã§ãããã¨ãæ¤è¨¼ãã¦ããªãããã«ãããèå¼±ã§ãã ãã¨ãã°ä¼å¡ã®éä¼ãã¼ã¸ã https://example.com/mypage/delete/ã§ç¨æãã ãã¿ã³æä½ã§submit=1ãéä¿¡ããã¦éä¼å¦çãå®è¡ãããä»æ§ã®å ´åã ãã©ã¡ã¼ã¿ã誰ã§ããããã®ã§ãå¤é¨ã«ç¨æãããæªæã®ãããã©
{{#tags}}- {{label}}
{{/tags}}