Jump to content

SameSite & Http question


Recommended Posts

Hello,

We recently have done a penetration test, which resulted in a few points that maybe are worth addressing.  

The two points we wondered if you could help us with are the following.

  • We got a notice because there is no HTTPonly set on the cookies.
  • We also got a notice because the SameSite attribute of cookies is not set.

(see image)

Is there a reason these are configured as is? 

Thanks in advance.

Kind Regards,

Thomas
 

Could contain: Chart, Plot, Measurements, Text, Computer Hardware, Electronics, Hardware

Link to comment
Share on other sites

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...