Skip to content

secure the global session cookie #10

@renepickhardt

Description

@renepickhardt

the global session cookie currently contains the useres muid and can thus very easily be stolen. this needs to be fixed in private UserSession prepareUserSession(RequestParameters params);

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions