Forum Discussion

ChrisJ_128794's avatar
ChrisJ_128794
Icon for Nimbostratus rankNimbostratus
May 22, 2014

HTTP::cookie incorrectly marks a insecure cookie as secure if followed by another secure cookie [10.2.4]

We have a public application that failed a security audit when some cookies did not have the secure flag. We had an irule in place to force all cookies in the response to have the secure flag, but it...