Hacker News new | ask | show | jobs
by chopin 2402 days ago
This is extremely dangerous if you have session cookies and don't configure them carefully.

For now, I commonly allow javascript/cookies on the top-level domain (I am a lazy uMatrix user). This will presumably change in future...