Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Cookie Overly Broad Path Detected
#6
Ask these auditors if they use gmail themselves. Ask them if they think that gmail is "unsafe".

GMail also uses a root wide session cookie:

   

Not one, actually, but DOZENS. All using the root path, in multiple google domains.
Reply


Messages In This Thread
Cookie Overly Broad Path Detected - by pgnair - 06-23-2023, 04:32 AM
RE: Cookie Overly Broad Path Detected - by pgnair - 06-27-2023, 05:19 AM
RE: Cookie Overly Broad Path Detected - by pgnair - 06-30-2023, 09:41 AM
RE: Cookie Overly Broad Path Detected - by Alexandre Machado - 06-30-2023, 11:32 PM

Forum Jump:


Users browsing this thread: 4 Guest(s)