mirror of https://github.com/jacekkow/uphpCAS

Jacek Kowalski
2019-08-07 ccc18b4b1cfc754e3367c7a60a4b7d9a71e28cc2
Regenerate session ID before setting authentication data
1 files modified
1 ■■■■ changed files
uphpCAS.php 1 ●●●● patch | view | raw | blame | history
uphpCAS.php
@@ -148,6 +148,7 @@
            return $_SESSION[$this->sessionName];
        } elseif(isset($_REQUEST['ticket'])) {
            $user = $this->verifyTicket($_REQUEST['ticket']);
            session_regenerate_id();
            $_SESSION[$this->sessionName] = $user;
            return $user;
        } else {