Welcome to WebmasterWorld Guest from

Forum Moderators: incrediBILL

Message Too Old, No Replies

cookie httponly compatibility

anyone have/know a list?

6:02 am on Mar 23, 2006 (gmt 0)

Preferred Member

10+ Year Member

joined:Nov 19, 2002
votes: 0


Browser Support for HTTP-only Cookies
If a Web site sets an HTTP-only cookie on a browser that does not support HTTP-only cookies, the cookie is either ignored or downgraded to a traditional, scriptable cookie. This leaves information vulnerable to attack for users of some browsers.

anyone have a list about the compatibility on http-only cookie?
i care about which broser "ignored" the set-cookie header if it contains HttpOnly