We made an update from github master repo yesterday, then we found that although a user has logined but the forum still shown to be not. Nothing changed when tried to click login button.
iFrame: Attemp to login fails (invalid csrf token)
When I open NodeBB through an iFrame using IE 11 and attempt to login, im presented with an "invalid csrf token" error and login fails. But when I try it with Google Chrome, everything works as expected. Anybody have an idea why that is?
PS. I tested on a fresh IE (reseted ALL my settings, including cookies, etc.)
Is this only through an IFrame? Regular invocation of NodeBB is fine?
@julian yeah only through iFrame
the request headers look fine, it has x-csrf-token and Cookie (express.side=...)
Sounds like an IE bug to me.
@agarcia17 Google is your friend.
Query: IE iframe csrf error