Is there a way to set HttpOnly when creating a cookie with set response cookie? Is this something I should even worry about? I was trying out a penetration test on our website, and it was one of the warnings listed. https://www.owasp.org/index.php/HttpOnly Thanks, Jason _______________________________________________ Active4D-dev mailing list [email protected] http://list.aparajitaworld.com/listinfo/active4d-dev Archives: http://active4d-nabble.aparajitaworld.com/
- [Active4d-dev] HttpOnly Cookie? Jason Hect
- Re: [Active4d-dev] HttpOnly Cookie? Aparajita Fishman
