Sensitive Cookie in HTTPS Session Without Secure Attribute in GitHub repository ikus060/rdiffweb prior to 2.4.2.
The Secure attribute for sensitive cookies in HTTPS sessions is not set.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Rdiffweb | Ikus-soft | * | 2.4.2 (excluding) |