"user/logout" and "user/reset_password" pages are broken

The addition of the parameter (according to DeezjaVu) doesn’t seem to help (at least not always) in some embedded or older Browsers…

Yes I did assume that there won’t be a legit way to get said token…

But a logout doesn’t need that token…
It’s a bigger Security Issue if the logout doesn’t work because of a missing token than a logout that logs you out no matter what…