Edge doesn't report error for Set-Cookie with domain not matching host

By design Issue #8421185

Details

Author
Richard S.
Created
Aug 8, 2016
Privacy
This issue is public.
Found in
  • Microsoft Edge
Found in build #
14.14393
Reports
Reported by 1 person

Sign in to watch or report this issue.

Steps to reproduce

Visit https://www.hotmail.com with F12 tools open. Note there are no errors reported for cookie issues. Check network tab or other network capture to see many Set-Cookie headers like

Set-Cookie: bellca=; domain=.mail.live.com; expires=Thu, 01-Jan-1970 12:00:01 GMT; path=/; secure

Attachments

0 attachments

    Comments and activity

    • Microsoft Edge Team

      Changed Assigned To to “Ibrahim O.”

    • Thank you for your feedback. To clarify the issue, please let us know what error you expect to see. Could you please let us know your actual result and the expected result? This will help us investigate the issue.

      All the best,
      The MS Edge Team 

    • I expect to see an error message in the F12 console window whenever a Set-Cookie header is rejected or ignored. This includes the example here where the domain is invalid as well any others. Other examples include a Set-Cookie header being malformed or even a third party cookie being rejected because of the user selected this in the settings UI. In each case the message should identify exactly why a cookie was rejected.

    • Microsoft Edge Team

      Changed Status to “By design”

    • Appreciate the update. This feedback falls under a feature or design change request. Please login to our Windows Feedback app (Steps below) and feel free to file your suggestion so others can review your suggestion and vote it up! 

      1. Go to Start Windows Start icon, enter the phrase Windows Feedback, then select Windows Feedback.
      2. See if someone else has given similar feedback by entering the topic, such as Microsoft Calendar.
      3. If you find similar feedback, select it, add any details, then select Upvote.
      4. To narrow your search to a specific category, pick the category that most closely matches your feedback (so it gets to the right people quickly). For example, for feedback about the Calendar app, select Apps > Calendar.
      5. If you don’t find any similar feedback, select Add new feedback (In your case you select suggestion option), and choose a topic from Select a category and then Select a subcategory.
      6. Enter your feedback (the more details the better!), add a screenshot if you can, and you’re done.

      Best regards,
      The MS Edge Team

    You need to sign in to your Microsoft account to add a comment.

    Sign in