deepsourcestatus / test-repository

Audit required: Sensitive cookie without secure attribute PHP-A1005
Security
Critical
8 months ago8 months old
Cookie set without "secure" flag
15
16    public function setUser(string|array|string $data): void
17    {
18        setcookie('user_name', $data['name'], [19            'expires' => time() + 3600,
20            'url' => 'https://example.com',
21        ]);