#3979: HttpOnly flag on session id cookie
------------------------------------------------------+---------------------
Reporter:  Henrik Vendelbo <[EMAIL PROTECTED]>  |       Owner:  adrian        
  Status:  new                                        |   Component:  Contrib 
apps  
 Version:  SVN                                        |    Keywords:  session 
cookie
   Stage:  Unreviewed                                 |   Has_patch:  0         
    
------------------------------------------------------+---------------------
 Set this on the Django session id cookie.
 
 https://bugzilla.mozilla.org/show_bug.cgi?id=178993
 
 It will add good protection against XSS exploits on two major browsers.

-- 
Ticket URL: <http://code.djangoproject.com/ticket/3979>
Django Code <http://code.djangoproject.com/>
The web framework for perfectionists with deadlines
--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the Google Groups 
"Django updates" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to [EMAIL PROTECTED]
For more options, visit this group at 
http://groups.google.com/group/django-updates?hl=en
-~----------~----~----~----~------~----~------~--~---

Reply via email to