whosFritz / Portfolio-SvelteKit

SvelteKit built website
https://www.whosfritz.de
MIT License
1 stars 0 forks source link

Firefox: Cross-site POST form submissions are forbidden #16

Closed mstelbrink closed 2 months ago

mstelbrink commented 4 months ago

When clicking on the "Akzeptieren" button (cookie banner) in Firefox 115.12.0esr (64-Bit) the following error message appears in a new browser tab:

grafik

It was also tested on Chromium 126.0.6478.126 without any issue.

whosFritz commented 2 months ago

Still happening with fire fox?

whosFritz commented 2 months ago

Fixed by Commit fixing csrf

Problem caused by sveltkit making difference between www.whosfritz.de and whosfritz.de and ORIGIN env variable isn't working for both