Actions
Bug #91205
closedBackend content iFrame breaks with setting [BE][cookieSameSite]="lax" because ContextHelp.js uses "use strict"
Status:
Closed
Priority:
Should have
Assignee:
-
Category:
Backend JavaScript
Target version:
Start date:
2020-04-27
Due date:
% Done:
100%
Estimated time:
TYPO3 Version:
10
PHP Version:
7.4
Tags:
samesite, cookieSameSite, ContextHelp, use strict
Complexity:
Is Regression:
Sprint Focus:
Description
If you use any SSO method with [BE][cookieSameSite]="lax", the backend will give an error:
Blocked a frame with origin "https://domain.tld" from accessing a cross-origin frame.
It's because file /typo3/sysext/backend/Resources/Public/JavaScript/ContextHelp.js uses "use strict".
Solution:
ContextHelp.js must take over the value of setting [BE][cookieSameSite]
Actions