[identity profile] jarodrussell.livejournal.com 2006-03-29 08:12 am (UTC)(link)
This is why anything that updates a database should always, ALWAYS be via the POST method. Nice link. :)