Skip to content

Commit

Permalink
Fixed httponly
Browse files Browse the repository at this point in the history
  • Loading branch information
CerealGuy committed Jul 27, 2015
1 parent 529c041 commit 71a0663
Show file tree
Hide file tree
Showing 3 changed files with 3 additions and 2 deletions.
2 changes: 1 addition & 1 deletion core/app/Class-System.php
Expand Up @@ -265,7 +265,7 @@ protected static function init_user()
{
loadSource('Subs-Auth');
$cookie_url = url_parts(!empty($settings['localCookies']), !empty($settings['globalCookies']));
setcookie('guest_skin', '', time() - 3600, $cookie_url[1], $cookie_url[0], 0);
setcookie('guest_skin', '', time() - 3600, $cookie_url[1], $cookie_url[0], 0, true);
}
}

Expand Down
1 change: 1 addition & 0 deletions core/app/Load.php
Expand Up @@ -2220,6 +2220,7 @@ function loadSession()
ini_set('url_rewriter.tags', '');
ini_set('session.use_trans_sid', false);
ini_set('arg_separator.output', '&');
ini_set('session.cookie_httponly', 1);

if (!empty($settings['globalCookies']))
{
Expand Down
2 changes: 1 addition & 1 deletion core/app/Themes.php
Expand Up @@ -278,7 +278,7 @@ function PickTheme()
{
loadSource('Subs-Auth');
$cookie_url = url_parts(!empty($settings['localCookies']), !empty($settings['globalCookies']));
setcookie('guest_skin', $skin, $skin ? time() + 3600 * 24 * 365 : time() - 3600, $cookie_url[1], $cookie_url[0], 0);
setcookie('guest_skin', $skin, $skin ? time() + 3600 * 24 * 365 : time() - 3600, $cookie_url[1], $cookie_url[0], 0, true);
redirectexit(isset($_SERVER['HTTP_REFERER']) ? $_SERVER['HTTP_REFERER'] : 'action=skin');
}

Expand Down

0 comments on commit 71a0663

Please sign in to comment.