Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / Psifi-Solutions/csrf-csrf issues and pull requests

#81 - Tokens in the header and cookie are rarely different

Issue - State: open - Opened by topas 9 days ago - 2 comments

#81 - Tokens in the header and cookie are rarely different

Issue - State: open - Opened by topas 9 days ago - 2 comments

#80 - ForbiddenError: invalid csrf token

Issue - State: closed - Opened by estebanovic about 2 months ago - 2 comments

#79 - Delimiter and http only support

Pull Request - State: closed - Opened by psibean 3 months ago

#78 - CSRF between two backends

Issue - State: closed - Opened by Nickk4 3 months ago - 4 comments

#77 - generatToken returning csrfToken instead of cookieContent

Issue - State: closed - Opened by MaxVSCJP 3 months ago - 2 comments

#76 - Invalid CSRF token when accessing on IP address

Issue - State: closed - Opened by chr15m 5 months ago - 3 comments

#74 - Issue with latest build

Issue - State: closed - Opened by khaleddrashadd 5 months ago - 2 comments

#73 - Chore/update with v3 changes

Pull Request - State: closed - Opened by psibean 5 months ago

#72 - feat: support optional stateless association of token with session

Pull Request - State: closed - Opened by psibean 6 months ago - 1 comment

#72 - feat: support optional stateless association of token with session

Pull Request - State: closed - Opened by psibean 6 months ago - 1 comment

#70 - Upstream v3.0.6 to main

Pull Request - State: closed - Opened by psibean 7 months ago

#70 - Upstream v3.0.6 to main

Pull Request - State: closed - Opened by psibean 7 months ago

#69 - Build/support versioned branches

Pull Request - State: closed - Opened by psibean 7 months ago - 1 comment

#69 - Build/support versioned branches

Pull Request - State: closed - Opened by psibean 7 months ago - 1 comment

#68 - Log options - provide an event emitter API

Issue - State: open - Opened by timtong1982 7 months ago - 4 comments
Labels: enhancement, feature

#68 - Log options - provide an event emitter API

Issue - State: open - Opened by timtong1982 7 months ago - 4 comments
Labels: enhancement, feature

#67 - Support Express-like frameworks

Issue - State: open - Opened by Lordfirespeed 7 months ago - 4 comments
Labels: enhancement

#66 - 3.0.6 version in npm?

Issue - State: closed - Opened by seancolyer 8 months ago - 3 comments

#65 - Cookie invalid prefix

Issue - State: closed - Opened by juan-cyb 8 months ago - 4 comments

#64 - Types broken with tsc build

Issue - State: closed - Opened by psibean 9 months ago - 6 comments

#63 - Testing revamp

Issue - State: open - Opened by psibean 10 months ago
Labels: enhancement

#62 - Documentation revamp

Issue - State: open - Opened by psibean 10 months ago
Labels: documentation

#61 - Feat/hmac token signing

Pull Request - State: open - Opened by psibean 11 months ago - 4 comments

#60 - Feat/per token cookie settings

Pull Request - State: closed - Opened by psibean 11 months ago

#59 - Refactor/parameter cleanup

Pull Request - State: closed - Opened by psibean 11 months ago - 1 comment

#58 - feat: allow customizable error

Pull Request - State: closed - Opened by psibean 11 months ago - 1 comment

#57 - Why forcing httpOnly cookie flag?

Issue - State: closed - Opened by pbryant-xag 11 months ago - 12 comments
Labels: enhancement, breaking

#55 - How to change the error message returned?

Issue - State: closed - Opened by chr15m 12 months ago - 3 comments
Labels: documentation, enhancement, good first issue

#54 - Unable to get Node Express & React app working with csrf-csrf

Issue - State: closed - Opened by kashaf-s about 1 year ago - 12 comments

#53 - Token hash problem

Issue - State: closed - Opened by hoshixlily about 1 year ago - 4 comments

#52 - Token inaccessible from req.headers

Issue - State: closed - Opened by Jawad-Ali2 about 1 year ago - 5 comments

#51 - The TypeScript compiler is unable to recognize the extended Request interface, specifically the csrfToken method.

Issue - State: closed - Opened by bkvishe about 1 year ago - 7 comments
Labels: enhancement, good first issue

#50 - Why is setting a CSRF cookie or header not recommended?

Issue - State: closed - Opened by chr15m about 1 year ago - 1 comment

#49 - Fix: Changes in DoubleCsrfConfig interface related to optional keys

Pull Request - State: closed - Opened by bkvishe about 1 year ago - 2 comments

#48 - Update README.md

Pull Request - State: closed - Opened by kurtfurbush about 1 year ago

#47 - refactor: move types into types.ts

Pull Request - State: closed - Opened by psibean about 1 year ago - 1 comment

#46 - Unable to control cookie expiry (or cookie refresh) on a per generation basis

Issue - State: open - Opened by 1Map about 1 year ago - 5 comments
Labels: bug, breaking

#45 - chore: dependency bump

Pull Request - State: closed - Opened by psibean about 1 year ago

#44 - chore: bump dependencies

Pull Request - State: closed - Opened by psibean about 1 year ago

#43 - Improve CommonJS support

Pull Request - State: closed - Opened by etal2 about 1 year ago - 1 comment

#42 - feat: allow to override cookie's httpOnly flag

Pull Request - State: closed - Opened by felixmosh about 1 year ago - 1 comment

#41 - allow to override `httpOnly` field of the cookie

Issue - State: closed - Opened by felixmosh about 1 year ago - 25 comments

#40 - docs: add docstrings to public methods

Pull Request - State: closed - Opened by davidgonmar about 1 year ago - 1 comment

#38 - Update README.md

Pull Request - State: closed - Opened by Joniii11 over 1 year ago - 1 comment

#37 - Feat/allow multiple secrets

Pull Request - State: closed - Opened by psibean over 1 year ago - 1 comment

#36 - Invalid CSRF error after making ajax get call

Issue - State: closed - Opened by doaortu over 1 year ago - 6 comments

#35 - ForbiddenError: invalid csrf token

Issue - State: closed - Opened by chamathjayasekara99 over 1 year ago - 1 comment

#34 - Secret rotation does not work without overwrite

Issue - State: closed - Opened by gtudan over 1 year ago - 14 comments

#33 - add types to package.json `exports` block

Pull Request - State: closed - Opened by Lordfirespeed over 1 year ago

#31 - docs: add upgrade guide from 2.x to 3.x

Pull Request - State: closed - Opened by jasonraimondi over 1 year ago - 2 comments

#30 - chore(release): 3.0.0

Pull Request - State: closed - Opened by psibean over 1 year ago

#29 - refactor/reverse generate token parameter order

Pull Request - State: closed - Opened by psibean over 1 year ago

#28 - Reuse session csrf token

Pull Request - State: closed - Opened by davidgonmar over 1 year ago - 2 comments
Labels: enhancement, feature

#27 - Update README.md

Pull Request - State: closed - Opened by Miasmus1 over 1 year ago

#25 - chore: bump security supported version

Pull Request - State: closed - Opened by psibean over 1 year ago

#24 - docs: add async example

Pull Request - State: closed - Opened by psibean over 1 year ago

#23 - Enforce http only option

Pull Request - State: closed - Opened by psibean over 1 year ago

#22 - build(deps-dev): bump word-wrap from 1.2.3 to 1.2.4

Pull Request - State: closed - Opened by dependabot[bot] over 1 year ago - 1 comment
Labels: dependencies

#21 - Need information about how to get this integrated with angular application

Issue - State: closed - Opened by kshkrao3 over 1 year ago - 4 comments

#20 - Readme need revamp

Issue - State: closed - Opened by proyb6 over 1 year ago - 8 comments

#19 - feat: expose generateToken via req.csrfToken

Pull Request - State: closed - Opened by psibean almost 2 years ago

#18 - chore: bump dependency versions

Pull Request - State: closed - Opened by psibean almost 2 years ago

#17 - Update generateToken in README.md

Pull Request - State: closed - Opened by doraeric almost 2 years ago - 2 comments

#15 - Allow for a custom error to be thrown without completely remaking the middleware

Issue - State: closed - Opened by psibean almost 2 years ago - 1 comment

#14 - update type import of HttpError

Pull Request - State: closed - Opened by stateoflux about 2 years ago

#13 - Incorrect Type-Only Import of HttpError

Issue - State: closed - Opened by stateoflux about 2 years ago - 7 comments

#12 - Consider swapping generateToken parameter order

Issue - State: closed - Opened by mattfiocca about 2 years ago - 4 comments
Labels: enhancement, question

#11 - Signed cookie in generateToken fn

Issue - State: closed - Opened by Dzixxx over 2 years ago - 13 comments

#10 - Fix example installation process

Pull Request - State: closed - Opened by Frooastside over 2 years ago - 1 comment

#9 - Update target to es2020

Pull Request - State: closed - Opened by psibean over 2 years ago

#8 - CommonJS Support

Pull Request - State: closed - Opened by psibean over 2 years ago - 1 comment

#7 - feat: introducing a new example (client and server code)

Pull Request - State: closed - Opened by cr0wg4n over 2 years ago - 10 comments

#6 - CommonJS usage

Issue - State: closed - Opened by SeanLatimer over 2 years ago - 8 comments
Labels: enhancement

#5 - Add an async example to the README

Issue - State: closed - Opened by psibean over 2 years ago - 1 comment
Labels: enhancement, help wanted, feature, breaking

#4 - feat: support rotating and dynamic secrets

Pull Request - State: closed - Opened by psibean over 2 years ago

#3 - Support for secret rotation

Issue - State: closed - Opened by psibean over 2 years ago
Labels: feature, breaking

#2 - Add automatic build and test workflow

Pull Request - State: closed - Opened by psibean over 2 years ago

#1 - Some fixes to test new workflow

Pull Request - State: closed - Opened by psibean over 2 years ago