Login is insecure. Needs to be saving unique (random) secret to cookie, not actual ID
Opened this issue · 0 comments
ReviewEdge commented
backend needs to store pairs of IDs and secrets currently logged in
Opened this issue · 0 comments
backend needs to store pairs of IDs and secrets currently logged in