Anchor CMS v0.12.7 exists to contain a Cross-Site Request Forgery (CSRF) via /anchor/admin/users/delete/2.