RFC: Enable session.use_strict_mode by default

Project Governance
Author
Yasuo Ohgaki
Due to HTTP cookie implementation, it is easy to create unchangeable/undeletable cookies via JavaScript injections. Single JavaScript injection vulnerability or...

Enable session.use_strict_mode by default

Overall Results

Yes
No
Yes
4 Votes (50%)
No
4 Votes (50%)

Voting Timeline

Dates based on UTC

Voting Breakdown

Yes

4 Votes (50%)

No

4 Votes (50%)