Re: HTTPbis and the Same Origin Policy

Adam Barth wrote:
> ...
> PUT is more dangerous than POST only because, historically, browsers
> have allowed cross-origin POST but not PUT.  That means servers had to
> tollerate cross-origin POST without exploding, but they did not need
> to tolerate cross-origin PUT.  Therefore, there exist servers that
> explode on a cross-origin PUT.
> ...

Evidence?

BR, Julian

Received on Thursday, 3 December 2009 18:12:46 UTC