github / github/codeql

Incomplete documentation for cs/web/broad-cookie-domain

Offen
#15,169 1 Kommentar 0 Reaktionen 0 zugewiesene Personen Auf GitHub ansehen
C# documentation
Vorherrschende Sprache
CodeQL
Sterne
10.1k
Forks
2.1k
Ø Merge
2 T. 15 Std.
Gemergte PRs (30 T.)
141

Beschreibung

I believe the CodeQL documentation here conflicts with MDN by omission:
> In this example cookie1 is accessible from online-bank.com ...
> ```
> HttpCookie cookie1 = new HttpCookie("sessionID");
> cookie1.Domain = "online-bank.com";
> ```

https://codeql.github.com/codeql-query-help/csharp/cs-web-broad-cookie-domain/

According to MDN, that cookie would _also_ be available to subdomains:
> For example, if you set Domain=mozilla.org, cookies are available on mozilla.org and its subdomains like developer.mozilla.org.

https://developer.mozilla.org/en-US/docs/Web/HTTP/Cookies#domain_attribute

The CodeQL documentation should state that "In this example cookie1 is accessible from online-bank.com _and its subdomains_".

Beitragsleitfaden

Beitragsleitfaden öffnen

Rechercherichtung

Open the CodeQL documentation page for cs/web/broad-cookie-domain and compare its cookie-domain wording with the linked MDN guidance. Update the example description to mention online-bank.com and its subdomains, then check that the rendered page and references remain accurate.

Vom Indexierungsmodell aus dem Issue-Text verfasst.

Bewertung

Tech-Stack
csharp
Bereich
documentation
Issue-Typ
Dokumentation
Schwierigkeit
1/5
Geschätzter Aufwand
Unter einer Stunde
Aktivitätsstatus
Veraltet
Klarheit
Klar beschrieben
Anfängerfreundlichkeit
45/100

Neue Issues direkt in Ihr Postfach

Eine kurze Übersicht über anfängerfreundliche GitHub-Issues.