Description
Web browsers have added a new flag for Cookies which indicates that they should not be sent on cross-origin requests which provides more protection against CSRF.
We should add this to the session cookie, and to the CSRF cookie.
Web browsers have added a new flag for Cookies which indicates that they should not be sent on cross-origin requests which provides more protection against CSRF.
We should add this to the session cookie, and to the CSRF cookie.