hedgedoc/lib
Dexter Chua a88b4aff2a Generic OAuth2: Set state: true
The OAuth2 specification RECOMMENDS setting the state to protect against
CSRF attacks. Some OAuth2 providers (e.g. ORY Hydra) refuse to
authenticate without the state set.

This is a cherry-pick of 852868419d.

Signed-off-by: haslersn <sebastian.hasler@gmx.net>
2020-10-22 22:50:34 +02:00
..
config Update documentation and messages to new default value 2020-09-08 09:58:15 +02:00
migrations Add fix for missing deletion of notes on user-deletion request 2020-03-21 16:14:43 +01:00
models Fixed meta parsing of lang-attribute for using it in the published-view 2020-07-04 03:37:19 +02:00
ot
web Generic OAuth2: Set state: true 2020-10-22 22:50:34 +02:00
workers
csp.js Add missing unsafe-inline CSP directive 2020-08-23 01:29:53 +02:00
errors.js Fix broken redirect on login 2020-03-21 16:56:09 +01:00
history.js
letter-avatars.js
logger.js
realtime.js
response.js
utils.js