If all the asynchronous http requests of a web program are implemented in a way that they are authenticated with an authorization token, they will be vulnerable to CSRF? Thi