[Koha-bugs] [Bug 9102] [SECURITY] We should set httponly on our session cookie

bugzilla-daemon at bugs.koha-community.org bugzilla-daemon at bugs.koha-community.org
Thu Dec 27 17:16:15 CET 2012


http://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=9102

--- Comment #10 from Jonathan Druart <jonathan.druart at biblibre.com> ---
(In reply to comment #9)
> (In reply to comment #8)
> > Bug 9102 : Followup Set HttpOnly on the CGISESSID cookie
> 
> Is there a way to test the follow-up like their was for Chris's patch?

I don't know...
I think if you don't have any error on some pages the patch works.
But if we have a doubt about this patch, we don't have to integrate it.

-- 
You are receiving this mail because:
You are watching all bug changes.


More information about the Koha-bugs mailing list