An issue was discovered in creditease-sec insight through 2018-09-11. user_delete in srcpm/app/admin/views.py allows CSRF.Referenceshttps://github.com/creditease-sec/insight/issues/42