#3979: HttpOnly flag on session id cookie
------------------------------------------------------+---------------------
Reporter: Henrik Vendelbo <[EMAIL PROTECTED]> | Owner: adrian
Status: new | Component: Contrib
apps
Version: SVN | Keywords: session
cookie
Stage: Unreviewed | Has_patch: 0
------------------------------------------------------+---------------------
Set this on the Django session id cookie.
https://bugzilla.mozilla.org/show_bug.cgi?id=178993
It will add good protection against XSS exploits on two major browsers.
--
Ticket URL: <http://code.djangoproject.com/ticket/3979>
Django Code <http://code.djangoproject.com/>
The web framework for perfectionists with deadlines
--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the Google Groups
"Django updates" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to [EMAIL PROTECTED]
For more options, visit this group at
http://groups.google.com/group/django-updates?hl=en
-~----------~----~----~----~------~----~------~--~---