Summary: |
WebKit accepts SameSite=Lax and SameSite=Strict cookies in a same-site response if the request was made by a cross-site iframe |
Product: |
WebKit
|
Reporter: |
Jakob L <jakob> |
Component: |
Frames | Assignee: |
Nobody <webkit-unassigned> |
Status: |
RESOLVED
MOVED
|
|
|
Severity: |
Normal
|
CC: |
bfulgham, jakob, m.kurz+webkitbugs, sihui_liu, webkit-bug-importer, wilander
|
Priority: |
P2
|
Keywords: |
InRadar |
Version: |
Safari Technology Preview | |
|
Hardware: |
Mac (Intel) | |
|
OS: |
macOS 11 | |
|
See Also: |
https://bugs.webkit.org/show_bug.cgi?id=233128
|
Attachments: |
|
2021-09-16 08:12 PDT, Jakob L