diff --git a/htdocs/admin/system/phpinfo.php b/htdocs/admin/system/phpinfo.php
index d8a0b384971..301231b1e4c 100644
--- a/htdocs/admin/system/phpinfo.php
+++ b/htdocs/admin/system/phpinfo.php
@@ -250,9 +250,19 @@ foreach ($phparray as $key => $value) {
//var_dump($value);
foreach ($value as $keyparam => $keyvalue) {
if (!is_array($keyvalue)) {
- print '
';
- print '| '.$keyparam.' | ';
+ $keytoshow = $keyparam;
$valtoshow = $keyvalue;
+ // Hide value of session cookies
+ if (in_array($keyparam, array('HTTP_COOKIE', 'Cookie', "\$_SERVER['HTTP_COOKIE']", 'Authorization'))) {
+ $valtoshow = ''.$langs->trans("Hidden").'';
+ }
+ if (preg_match('/'.preg_quote('$_COOKIE[\'DOLSESSID_', '/').'/i', $keyparam)) {
+ $keytoshow = $keyparam;
+ $valtoshow = ''.$langs->trans("Hidden").'';
+ }
+
+ print '
';
+ print '| '.$keytoshow.' | ';
if ($keyparam == 'X-ChromePhp-Data') {
$valtoshow = dol_trunc($keyvalue, 80);
}