Fix session destroy not clearing cookie #6
Loading…
Reference in New Issue
Block a user
No description provided.
Delete Branch "zig1000/session:fix-session-destroy"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Chrome may not delete a cookie if the Domain field is missing from the Set-Cookie request. Add the
Domain
field - as well asSecure
andSameSite
for completeness - tosession.go
's Manager.Destroy cookie response update.