Open Bug 1456408 Opened 6 years ago Updated 2 years ago

Add test for same site cookies on a redirected top-level page

Categories

(Core :: DOM: Security, enhancement, P3)

enhancement

Tracking

()

People

(Reporter: ckerschb, Unassigned)

References

Details

(Whiteboard: [domsecurity-backlog1])

The spec is not entirely clear in that case. Assume the following scenario.

* siteA sets a cookie
* user enters siteB which redirects to siteA
* should same-site cookies be send?
Priority: -- → P3
Whiteboard: [domsecurity-backlog1]
Severity: normal → S3
You need to log in before you can comment on or make changes to this bug.