<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00009YrG9NCAVOkta Classic EngineLifecycle ManagementAnswered2024-09-18T09:01:57.000Z2023-08-14T08:45:17.000Z2023-08-15T17:40:17.000Z

n1cyy (n1cyy) asked a question.

Cookie t does not have HttpOnly and secure attributes

We have an application configured with Okta login. When the login page is loaded there are cookies t and DT. During login an other cookie sid is created. In a security scan vulnerabilities were reported mentioning cookie does not have the Secure and HTTP Only attributes. In a blog previously it was mentioned that the cookie t will be remediated in future. Can you please help to let us know the impact of it not having the HttpOnly and Secure attributes. Also can you please help to let us know more details about DT and sid cookies.


This question is closed.
Loading
Cookie t does not have HttpOnly and secure attributes