[wp-trac] [WordPress Trac] #27165: Incorrect nonce supplied when authenticated session expires

WordPress Trac noreply at wordpress.org
Fri Feb 21 21:34:43 UTC 2014


#27165: Incorrect nonce supplied when authenticated session expires
------------------------------------+------------------------------
 Reporter:  joe_bopper              |       Owner:
     Type:  defect (bug)            |      Status:  new
 Priority:  normal                  |   Milestone:  Awaiting Review
Component:  Login and Registration  |     Version:  3.8.1
 Severity:  minor                   |  Resolution:
 Keywords:  close                   |     Focuses:
------------------------------------+------------------------------
Changes (by nacin):

 * keywords:   => close


Comment:

 Hi joe_bopper, nonces are not only specific to the action (and a window of
 time) but also to the user. A logged-in user gets a nonce specific to
 them; a logged-out user gets a completely different nonce. So I'm not sure
 there's anything we can do here; you may need to re-evaluate what you're
 doing and make adjustments as necessary.

--
Ticket URL: <https://core.trac.wordpress.org/ticket/27165#comment:2>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list