From bf97829814f2fc1ce5ab525ccad70bba5053b34d Mon Sep 17 00:00:00 2001 From: Svilen Markov <7613769+svilenmarkov@users.noreply.github.com> Date: Mon, 5 May 2025 13:30:14 +0100 Subject: [PATCH] Make theme cookie samesite lax --- internal/glance/theme.go | 7 ++++--- 1 file changed, 4 insertions(+), 3 deletions(-) diff --git a/internal/glance/theme.go b/internal/glance/theme.go index f99efd4..a3e26d4 100644 --- a/internal/glance/theme.go +++ b/internal/glance/theme.go @@ -25,9 +25,10 @@ func (a *application) handleThemeChangeRequest(w http.ResponseWriter, r *http.Re } http.SetCookie(w, &http.Cookie{ - Name: "theme", - Value: themeKey, - Path: a.Config.Server.BaseURL + "/", + Name: "theme", + Value: themeKey, + Path: a.Config.Server.BaseURL + "/", + SameSite: http.SameSiteLaxMode, }) w.Header().Set("Content-Type", "text/css")