修改cookie的httponly为false
This commit is contained in:
@@ -104,7 +104,7 @@ def set_access_token_to_cookie(request: Request, response: Response, token: str,
|
||||
response.set_cookie(
|
||||
_real_cookie_name(COOKIE_NAME_ACCESS_TOKEN),
|
||||
value=token,
|
||||
httponly=True,
|
||||
httponly=False,
|
||||
domain=_cookie_domain(),
|
||||
secure=is_secure(),
|
||||
samesite=samesite,
|
||||
@@ -117,7 +117,7 @@ def set_refresh_token_to_cookie(request: Request, response: Response, token: str
|
||||
response.set_cookie(
|
||||
_real_cookie_name(COOKIE_NAME_REFRESH_TOKEN),
|
||||
value=token,
|
||||
httponly=True,
|
||||
httponly=False,
|
||||
domain=_cookie_domain(),
|
||||
secure=is_secure(),
|
||||
samesite="Lax",
|
||||
|
||||
Reference in New Issue
Block a user