session_start.php

<?php
/**
 * CSRF requires session, but headers are already sent before the test is run, so we start session here
 *
 */


session_start();