Análises para Set Cookie: No secure - No HttpOnly
Set Cookie: No secure - No HttpOnly por ThomazPom
5 análises
- I was wondering if there is a way to selectively remove the 'HttpOnly' flag for specific domain names using your addon. Currently, it applies this setting to all websites, which I believe poses a significant security risk. I only need to remove the flag for a single website (to show it in an iframe), and if you could implement this feature, it would greatly improve the addon's functionality. Your efforts would definitely earn it a 5-star rating from me. Thank you!Resposta do programadorpublicado a há 2 anosThe addon already features this whitelist system, you have to click on the addon icon to open the settings panel
- Avaliado em 5 de 5por Utilizador do Firefox 15195500 , há 6 anos
- Avaliado em 5 de 5por Utilizador do Firefox 14344478 , há 7 anosThanks for writing this extension. A lot of people are looking for ways to read httponly cookies javascript. However it is much easier to remove the httponly flag in transit in the first place.Resposta do programadorpublicado a há 7 anosThank you for your review ! I agree & sometimes, when you do some security tests, you can't edit the code :)
