Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Implement :null_session CSRF protection method #7616

Merged
merged 1 commit into from Sep 14, 2012

Commits on Sep 13, 2012

  1. Implement :null_session CSRF protection method

    It's further work on CSRF after 2459411.
    
    The :null_session CSRF protection method provide an empty session during
    request processing but doesn't reset it completely (as :reset_session
    does).
    lest committed Sep 13, 2012
    Copy the full SHA
    95be790 View commit details
    Browse the repository at this point in the history