Aleksander Machniak
2012-07-24 0afe27901189a5416dc696eef32e2bc2e5fe3844
Set HttpOnly flag also for session cookie
1 files modified
1 ■■■■ changed files
program/include/rcube.php 1 ●●●● patch | view | raw | blame | history
program/include/rcube.php
@@ -409,6 +409,7 @@
        ini_set('session.use_cookies', 1);
        ini_set('session.use_only_cookies', 1);
        ini_set('session.serialize_handler', 'php');
        ini_set('session.cookie_httponly', 1);
        // use database for storing session data
        $this->session = new rcube_session($this->get_dbh(), $this->config);