[TYPO3-dev] major cookie problem 4.3 IE8...

Thomas "Thasmo" Deinhamer thasmo at gmail.com
Wed Feb 10 18:44:43 CET 2010


If you visit a TYPO3 site, a cookie is set, wheter you're
logged in or not. It's the fe_user cookie, and this cookie
has a defined cookie domain, which is wrong.

I have the same behaviour with IE8 on a TYPO3 4.3.1 site.

Thomas

Am 10.02.2010 15:34, schrieb Ernesto Baschny [cron IT]:
> Stig Nørgaard Færch schrieb am 10.02.2010 15:20:
>> Ernesto Baschny [cron IT] skrev:
>>> Stig Nørgaard Færch schrieb am 10.02.2010 13:46:
>>>> Stig Nørgaard Færch skrev:
>>>>> Could somebody confirm this problem:
>>>>> * Open IE8
>>>>> * Go to a 4.3 site - www.busynoggin.com etc.
>>>>> * View the cookies
>>>>>
>>>>> What I see is that fe_typo_user is set to .com and not
>>>>> www.busynoggin.com
>>>>>
>>>>> I guess this isn't intended?
>>>>> Bug report: http://bugs.typo3.org/view.php?id=13470
>>>> It would be interesting to see if there is an example where the cookie
>>>> is generated correctly with 4.3 / IE8 (IE7?).
>>>
>>> It does work correctly if you don't change the domain inbetween.  Or
>>> doesn't it?
>>
>> If I clear all browser cache, then visit a site like www.busynoggin.com
>> with IE8, then cookie is already bad.
>>
>> If you have Win/IE8 - it's pretty easy to replicate the bug with
>> www.busynoggin.com etc.
>
> Where can I replicate the problem on "www.busynogging.com"? There is no
> login or shopping basket or anything that might suggest that there is
> session data. Could you point out how to exactly reproduce the problem
> there?
>
> Cheers,
> Ernesto




More information about the TYPO3-dev mailing list