diff --git a/web/src/main/java/org/apache/shiro/web/servlet/SimpleCookie.java b/web/src/main/java/org/apache/shiro/web/servlet/SimpleCookie.java index a084e4f06b..fe28f3ddc1 100644 --- a/web/src/main/java/org/apache/shiro/web/servlet/SimpleCookie.java +++ b/web/src/main/java/org/apache/shiro/web/servlet/SimpleCookie.java @@ -398,7 +398,7 @@ public void removeFrom(HttpServletRequest request, HttpServletResponse response) int version = getVersion(); boolean secure = isSecure(); boolean httpOnly = false; //no need to add the extra text, plus the value 'deleteMe' is not sensitive at all - SameSiteOptions sameSite = null; + SameSiteOptions sameSite = getSameSite(); addCookieHeader(response, name, value, comment, domain, path, maxAge, version, secure, httpOnly, sameSite);