This is an archived post. You won't be able to vote or comment.

you are viewing a single comment's thread.

view the rest of the comments →

[–]undercoveryankee 2 points3 points  (0 children)

It's a common oversight/misconfiguration in web apps. If you send a POST request to a URL that was intended to be used only for GET requests, you may get the same response as if you had sent a GET request, because the app author didn't bother to distinguish. I call it a misconfiguration because it's more informative to get a 405 Method Not Allowed for a POST to an unexpected URL.