Skip to content

Cookie security access #2

@iach526526

Description

@iach526526

in app.js, I shouldn't set cookie without protect. It will cause WebSec-Over Permission. User will modify cookie by himself fake someone else

Sol:
use JWT

Metadata

Metadata

Assignees

No one assigned

    Labels

    invalidThis doesn't seem right

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions