fix: update SameSite cookie attribute to 'none' for cross-site requests
All checks were successful
Build And Push Image / docker (push) Successful in 2m45s
All checks were successful
Build And Push Image / docker (push) Successful in 2m45s
This commit is contained in:
@@ -322,7 +322,7 @@ export default defineEventHandler(async (event) => {
|
|||||||
setCookie(event, 'monacousa-session', encrypted, {
|
setCookie(event, 'monacousa-session', encrypted, {
|
||||||
httpOnly: true,
|
httpOnly: true,
|
||||||
secure: true,
|
secure: true,
|
||||||
sameSite: 'lax',
|
sameSite: 'none',
|
||||||
maxAge,
|
maxAge,
|
||||||
path: '/',
|
path: '/',
|
||||||
});
|
});
|
||||||
|
|||||||
Reference in New Issue
Block a user