diff --git a/VirtoCommerce.Storefront/Filters/AngularAntiforgeryCookieResultFilter.cs b/VirtoCommerce.Storefront/Filters/AngularAntiforgeryCookieResultFilter.cs index 0d68230..7762ba3 100644 --- a/VirtoCommerce.Storefront/Filters/AngularAntiforgeryCookieResultFilter.cs +++ b/VirtoCommerce.Storefront/Filters/AngularAntiforgeryCookieResultFilter.cs @@ -30,7 +30,7 @@ public override void OnResultExecuting(ResultExecutingContext context) if (context.Result is ViewResult viewResult && statusCodeReExecuteFeature == null) { var tokens = antiforgery.GetAndStoreTokens(context.HttpContext); - context.HttpContext.Response.Cookies.Append("XSRF-TOKEN", tokens.RequestToken, new CookieOptions() { HttpOnly = false, IsEssential = true }); + context.HttpContext.Response.Cookies.Append("XSRF-TOKEN", tokens.RequestToken, new CookieOptions() { HttpOnly = false, IsEssential = true, SameSite = SameSiteMode.Lax }); } }