CORS? “SameSite” policy? Registration Form submit fails

I have a Wordpress/Buddypress site that fails registration submission, another BP user has suggested"

cors error reported in your site on registration. Your cloudflare configuration is not correct. The “SameSite” policy is not validated hence rejected.

I’ve read several things at cloudlfare

(
support.cloudflare.com/hc/en-us/articles/360038470312-Understanding-SameSite-cookie-interaction-with-Cloudflare

community.cloudflare DOtCOM /t/google-chrome-warning-about-cloudflare-cookie/123192/114

developers.cloudflare.com/fundamentals/get-started/cloudflare-cookies

developers.cloudflare.com/ssl/origin-configuration/authenticated-origin-pull

)
and don’t really understand what is going on,
and I don’t see how / where I could adjust anything related to this in the dashboard/logged-in-panel.

The page that keeps failing to submit / register is: https://www.chatyolo.com/register/ (slightly NSFW)

Anyone know what’s really happening here? Any way I can see any errors via like console log w firefox? I tried adding error monitor plugins to wordpress and not getting any details there.

Help would be greatly appreciated

Is the form submitting to the same site? Cors is usually irrelevant on same site

You’re probably submitting without SSL

Yes for submits same site - maybe it’s a cookie thing?

I don’t understand the problem at all. Is there a way for be to see via console log or something?

It’s very simple form now - https://www.chatyolo.com/register/ (this page has no pictures, but parts of the site are nsfw )

When I click submit the screen kind of flashes and shows same fields still filled in - like nothing happened - it’s weird.

I see this in the html:

This is on an https page - so I assume it goes https?

only thing may be weird - I added that thing to the server via command line that tells the server to pull the real ip addy from visitors (so our logs don’t show the cloudflare ips for failed login attempts, instead show the real ips of the hackers/spammers)

Don’t know where to look to try to sort this.

This topic was automatically closed 15 days after the last reply. New replies are no longer allowed.