[wp-trac] [WordPress Trac] #37000: Support for the SameSite cookie attribute

WordPress Trac noreply at wordpress.org
Tue Jun 15 17:20:32 UTC 2021


#37000: Support for the SameSite cookie attribute
-------------------------------------------------+-------------------------
 Reporter:  johnbillion                          |       Owner:  (none)
     Type:  enhancement                          |      Status:  new
 Priority:  normal                               |   Milestone:  Future
                                                 |  Release
Component:  Security                             |     Version:
 Severity:  normal                               |  Resolution:
 Keywords:  has-patch dev-feedback needs-dev-    |     Focuses:
  note has-unit-tests                            |  administration
-------------------------------------------------+-------------------------

Comment (by rickcurran):

 Hi, I just wanted to raise my hand to say that having `SameSite` support
 added here would be an important addition. I had the lack of SameSite
 attributes on the `wordpress_sec_` and `wordpress_logged_in_` cookies
 flagged in a penetration test on a site recently so having this added
 would be of benefit in regards to security evaluation.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/37000#comment:44>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list