Synchronizer token pattern (STP) could be a technique wherever a token, secret and unique value for every request, is embedded by the web application in all HTML (Hypertext Markup Language) forms and verified on the server side. The token is also generated by any technique that ensures unpredictability and uniqueness (e.g. using a hash chain of random seed).
Appche Tomcat server 9.0
user name: admin password: password