Re: www.vim.org must use forcibly HTTPS

2018-05-10 Fir de Conversatie Bram Moolenaar
Yasuhiro Matsumoto wrote: > Hi, all & administrator of www.vim.org > > www.vim.org have login feature. So it must use HTTPS. Currently, > http://www.vim.org/ have cookies which accept HTTP too. If malicious > advertisements are displayed, they might steal the cookie. Ah, the redirect was only

www.vim.org must use forcibly HTTPS

2018-05-09 Fir de Conversatie mattn
Hi, all & administrator of www.vim.org www.vim.org have login feature. So it must use HTTPS. Currently, http://www.vim.org/ have cookies which accept HTTP too. If malicious advertisements are displayed, they might steal the cookie. - mattn -- -- You received this message from the "vim_dev" m