From: "Assaf Arkin" <as...@labnotes.org>
Date: Wed, 6 Aug 2008 18:00:47 -0700
Local: Wed, Aug 6 2008 9:00 pm
Subject: Re: [Rails-core] Cookie session security and open-source
On Wed, Aug 6, 2008 at 3:34 PM, Trevor Turk <trevort...@gmail.com> wrote: Yep, that's an exploit waiting to happen. > I've noticed that quite a number of open-source Rails apps are using > Clearly, there's an easy solution to this (potential) problem: don't Another option. I was thinking of putting the secret key in a separate Assaf > Thanks, You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
| ||||||||||||||