Check out the LimeSurvey source code on GitHub!
Welcome, Guest
Username: Password:

TOPIC: Session Cookie with HttpOnly option

Session Cookie with HttpOnly option 3 years 9 months ago #92958

  • hesi
  • hesi's Avatar
  • Offline
  • Fresh Lemon
  • Posts: 2
  • Karma: 0
Hi folks,

is it possible to set the HttpOnly option https://www.owasp.org/index.php/HttpOnly within the Session Cookie to implement a Cross Site Scripting mitigation?

Best regards,

hesi
The administrator has disabled public write access.
Time to create page: 0.189 seconds
Imprint                   Privacy policy         General Terms & Conditions         Revocation information and revocation form