Skip to content

CSRF middleware: Cookie will soon be rejected #1742

@lu4p

Description

@lu4p

Firefox (84.0.1) produces the following warning for the default CSRF middleware (middleware.CSRF()) configuration.

Cookie “_csrf” will be soon rejected because it has the “SameSite” attribute set to
“None” or an invalid value, without the “secure” attribute. 
To know more about the “SameSite“ attribute, 
read https://developer.mozilla.org/docs/Web/HTTP/Headers/Set-Cookie/SameSite

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions