MicroPyramid Django-CRM 0.2 allows CSRF for /users/create/, /users/##/edit/, and /accounts/##/delete/ URIs.
"https://github.com/pypa/advisory-database/blob/main/vulns/django-crm/PYSEC-2018-65.yaml"