fae30a00fd
chore: remove unnecessary redeclarations in for loops ( #18440 )
2025-06-20 13:16:55 -06:00
52d555880c
chore: add custom samesite options to auth cookies ( #16885 )
...
Allows controlling `samesite` cookie settings from the deployment config
2025-04-08 14:15:14 -05:00
915f69080a
chore: fix csrf error message on empty session header ( #14018 )
...
* chore: fix csrf error message on empty session header
A more detailed error message was added to catch mismatched
session tokens. This error was mistakenly applying to all CSRF
failures.
2024-07-25 15:58:23 -05:00
fb29af664b
fix: relax csrf to exclude path based apps ( #11430 )
...
* fix: relax csrf to exclude path based apps
* add unit test to verify path based apps are not CSRF blocked
2024-01-08 22:33:57 +00:00