Re: Solution for session_regenerate_id() issues

From: Date: Wed, 19 Mar 2014 10:12:19 +0000
Subject: Re: Solution for session_regenerate_id() issues
References: 1 2 3 4 5 6  Groups: php.internals 
Request: Send a blank email to [email protected] to get a copy of this message
>
>
> >
> > But speaking of sessions and security, I'll mail you privately about
> > something because I didn't see an option in the bug reporting form to
> > mark it as a private one.
> >
>
> If you choose "security" bug type, it's hidden.
>

nope, security bug type only makes it send the bug mail to [email protected],
only private bugs are protected from public access.
that is something really error-prone, so I remember some discussion about
changing that, and making new security bugs to be private by default, but
AFAIK we never implemented that.

-- 
Ferenc Kovács
@Tyr43l - http://tyrael.hu


Thread (24 messages)

« previous php.internals (#73300) next »