MEDIUM: Session cookie missing Secure flag — transmitted over HTTP #22
Labels
No Milestone
No project
No Assignees
2 Participants
Notifications
Due Date
No due date set.
Dependencies
No dependencies set.
Reference: sneak/upaas#22
Loading…
Reference in New Issue
Block a user
No description provided.
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Bug
File:
internal/service/auth/auth.go,New(), line ~70Severity: MEDIUM — Session hijacking
Description
The session cookie store is configured without the
Secureflag:Without
Secure: true, the session cookie will be sent over plaintext HTTP connections, making it vulnerable to interception by network attackers (e.g., on shared Wi-Fi).Suggested Fix
Add
Secure: trueto the cookie options, or make it configurable based on whether the app is behind TLS:fixed in #10