Movatterモバイル変換


[0]ホーム

URL:


Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
Appearance settings

[Security] Fixed PUBLIC_ACCESS in authenticated sessions#37031

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to ourterms of service andprivacy statement. We’ll occasionally send you account related emails.

Already on GitHub?Sign in to your account

Conversation

@wouterj
Copy link
Member

@wouterjwouterj commentedMay 31, 2020
edited
Loading

QA
Branch?5.1
Bug fix?yes
New feature?no
Deprecations?no
Tickets-
LicenseMIT
Doc PR-

Found while testingscheb/2fa#8, sorry for not spotting it before the stable release 😞

Currently, authenticated users are denied access for pages that havePUBLIC_ACCESS set, as this attribute is only checked when no token was set. It should be checked for both cases.

Currently, authenticated users are denied access for pages that havePUBLIC_ACCESS, as this attribute is only checked when no token was set.
@wouterjwouterjforce-pushed thebugfix/public-access-while-authenticated branch from21c7a5a to0ac530fCompareMay 31, 2020 21:42
@fabpot
Copy link
Member

Thank you@wouterj.

@fabpotfabpot merged commite5b5d9e intosymfony:5.1Jun 1, 2020
@wouterjwouterj deleted the bugfix/public-access-while-authenticated branchJune 1, 2020 07:36
@fabpotfabpot mentioned this pull requestJun 12, 2020
Sign up for freeto join this conversation on GitHub. Already have an account?Sign in to comment

Reviewers

@fabpotfabpotfabpot approved these changes

Assignees

No one assigned

Projects

None yet

Milestone

No milestone

Development

Successfully merging this pull request may close these issues.

3 participants

@wouterj@fabpot@carsonbot

[8]ページ先頭

©2009-2025 Movatter.jp