Users can currently log in and out of my site, but after logging out (and destroying the session used) someone can still browse back through the previous pages in the browser and refresh a page that had information submitted from a form. Obviously this means that whoever does this can get back into the site as someone else.
Does anyone have any good tips to solve this, as well as tips in general about user management?
Bookmarks