[
http://jira.jboss.com/jira/browse/JBSEAM-863?page=comments#action_12353437 ]
Christian Bauer commented on JBSEAM-863:
----------------------------------------
This is breaking the "never trust the client" model that every public web
application should follow and opens up lots of possibilities for XSS attacks.
Remember-Me automatic authentication
------------------------------------
Key: JBSEAM-863
URL:
http://jira.jboss.com/jira/browse/JBSEAM-863
Project: JBoss Seam
Issue Type: Feature Request
Components: Security
Reporter: H T
Fix For: 1.1.7.GA
Extend the behaviour of Remember-Me to automatically authenticate the user after they
have selected the "Remember Me" service rather than have him or her re-enter
their password each time.
--
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
http://jira.jboss.com/jira/secure/Administrators.jspa
-
For more information on JIRA, see:
http://www.atlassian.com/software/jira