Skip to content

Rework CSRF interaction with sessions#2290

Merged
Alkarex merged 2 commits intoFreshRSS:devfrom
Alkarex:session_csrf
Mar 22, 2019
Merged

Rework CSRF interaction with sessions#2290
Alkarex merged 2 commits intoFreshRSS:devfrom
Alkarex:session_csrf

Conversation

@Alkarex
Copy link
Copy Markdown
Member

@Alkarex Alkarex commented Mar 22, 2019

Fix #2288
Improve security in some edge cases
Maybe relevant for
#2125 (comment)

Fix FreshRSS#2288
Improve security in some edge cases
Maybe relevant for
FreshRSS#2125 (comment)
@Alkarex Alkarex merged commit ebd8c31 into FreshRSS:dev Mar 22, 2019
@Alkarex Alkarex deleted the session_csrf branch March 22, 2019 18:05
@Alkarex
Copy link
Copy Markdown
Member Author

Alkarex commented Mar 22, 2019

Additional tested needed in /dev

@Alkarex Alkarex mentioned this pull request Mar 23, 2019
mdemoss pushed a commit to mdemoss/FreshRSS that referenced this pull request Mar 25, 2021
* Rework CSRF interaction with sessions

Fix FreshRSS#2288
Improve security in some edge cases
Maybe relevant for
FreshRSS#2125 (comment)

* Forgotten mime type
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant