• Traister101
    link
    fedilink
    arrow-up
    5
    ·
    3 days ago

    Lol but no essentially somebody accidentally logged the ID for an actively logged in user (not the user ID) when an error happens. Surprising they even released a thing about this

    • DWin@feddit.uk
      link
      fedilink
      English
      arrow-up
      1
      ·
      3 days ago

      Yeah, I wonder why any developer thought logging either the session cookie itself was a good idea. I guess they could decode it and figure out which user was having an issue? Still bizzare

      • Miaou@jlai.lu
        link
        fedilink
        arrow-up
        1
        ·
        1 day ago

        Probably some automatic serialization that included the field. Someone forgot a #[serde(skip)]!

        • DWin@feddit.uk
          link
          fedilink
          English
          arrow-up
          1
          ·
          23 hours ago

          Yeah I reflected on that after I posted it, maybe it just dumped all the headers to the logs