Skip to content

HTTPS clone URL

Subversion checkout URL

You can clone with HTTPS or Subversion.

Download ZIP

Loading…

Redirect on logout doesn't reflect latest code #198

Closed
remy opened this Issue · 1 comment

2 participants

@remy
Owner

If I create a milestone, it doesn't change the "redirect" value in the form. Remind me again why we don't use referrer? Sure, a user could spoof the referrer, but it's even easier to change the redirect value you're sending to the form.

@aron aron was assigned
@aron

Not sure really other than flexibility, in that you can redirect to a page that isn't the one the form was submitted from. As we don't do that we can use referrer.

@aron aron closed this issue from a commit
@aron aron Greatly improve how redirects are handled. Closes #198
Referrer is now used by default unless a form specifies an alternative.
67af831
@aron aron closed this in 67af831
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Something went wrong with that request. Please try again.