Because of clientside Javascript CSRF, which is not a common condition.
Client side js is not particularly relevant to csrf.
Client side js is not particularly relevant to csrf.