-
-
Notifications
You must be signed in to change notification settings - Fork 6.1k
Closed
Labels
topic/securitySomething leaks user information or is otherwise vulnerable. Should be fixed!Something leaks user information or is otherwise vulnerable. Should be fixed!
Milestone
Description
- Gitea version (or commit ref): 1.1.1
- Git version: 2.1.4
- Operating system: Debian GNU/Linux 8.8 (jessie) x86_4
- Database:
- PostgreSQL
- MySQL
- MSSQL
- SQLite
- Can you reproduce the bug at https://try.gitea.io:
- Yes (provide example URL)
- No
- Not relevant
- Log gist:
Description
I was under the impression that setting COOKIE_SECURE to true will make all cookies have the 'Secure' flag set. However it only seem to apply to the i_like_gitea cookie.
https://try.gitea.io doesn't seem to be configured with COOKIE_SECURE.
benediktg, rugk, lapin-b and andriidovhan
Metadata
Metadata
Assignees
Labels
topic/securitySomething leaks user information or is otherwise vulnerable. Should be fixed!Something leaks user information or is otherwise vulnerable. Should be fixed!