Comments (6)
We rewrote the CSRF protection for 3.2 to avoid these issues. Do you see the CSRF cookies in your browser devtools?
from phpmyfaq.
Actually I do. It seems to create many of them. From the dashboard I had 1 cookie. Then clicked on Edit Configuration and it added another CSRF cookie now there are 2 cookies. But when I clicked on Users, it added several. Why would it do that?
from phpmyfaq.
Yes, that's correct. Every form gets its own cookie for the CSRF protection.
from phpmyfaq.
Your bug report is the first one about the CSRF issue since the release of 3.2.0 back in September. It's quite hard to debug what happens in your browser.
Can you test that on our demo installation? -> https://demo.phpmyfaq.de/
from phpmyfaq.
Do you have any feedback for me?
from phpmyfaq.
no further feedback -> closed
from phpmyfaq.
Related Issues (20)
- cookie-consent HOT 9
- Manage the "Subcategories" block when there are no subcategories HOT 3
- SingleSignOn SSO HOT 2
- Fatal error with user control panel
- LDAP + 2FA: cannot save HOT 25
- 4.0: FAQ editor - Revision
- sitemap.xml.php not working HOT 2
- Installation issue HOT 7
- Conflicting configuration admin settings
- Categories won't save due to csrfToken HOT 3
- Migrate all frontend templates to Twig HOT 2
- Migrate Setup to Twig Templates and Controller
- Add Fediverse connection for phpMyFAQ
- Norwegian language missing after upgrading to 3.2.6 HOT 1
- Unable to update mail from email address HOT 1
- User Control Panel Fatel error
- Missing notification for question via Public API HOT 1
- HTML5 Export does not work properly
- Attachments-administration in case of data loss HOT 1
- Replace "Delete current secret" checkbox with button
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from phpmyfaq.