mirror of
https://github.com/d47081/qBittorrent.git
synced 2025-01-25 22:14:32 +00:00
Merge pull request #9884 from Piccirello/webui-cookie-samesite
Add SameSite attribute to WebUI session cookie
This commit is contained in:
commit
70707a2664
@ -657,7 +657,10 @@ void WebApplication::sessionStart()
|
|||||||
QNetworkCookie cookie(C_SID, m_currentSession->id().toUtf8());
|
QNetworkCookie cookie(C_SID, m_currentSession->id().toUtf8());
|
||||||
cookie.setHttpOnly(true);
|
cookie.setHttpOnly(true);
|
||||||
cookie.setPath(QLatin1String("/"));
|
cookie.setPath(QLatin1String("/"));
|
||||||
header(Http::HEADER_SET_COOKIE, cookie.toRawForm());
|
QByteArray cookieRawForm = cookie.toRawForm();
|
||||||
|
if (m_isCSRFProtectionEnabled)
|
||||||
|
cookieRawForm.append("; SameSite=Strict");
|
||||||
|
header(Http::HEADER_SET_COOKIE, cookieRawForm);
|
||||||
}
|
}
|
||||||
|
|
||||||
void WebApplication::sessionEnd()
|
void WebApplication::sessionEnd()
|
||||||
|
Loading…
x
Reference in New Issue
Block a user