Project

General

Profile

Actions

Bug #26271

closed

API authorization menu could not open due to CSRF

Bug #26271: API authorization menu could not open due to CSRF

Added by Clark ANDRIANASOLO 12 months ago. Updated 11 months ago.

Status:
Released
Priority:
1 (highest)
Category:
Web - UI & UX
Target version:
Severity:
Major - prevents use of part of Rudder | no simple workaround
UX impact:
It bothers me each time
User visibility:
First impressions of Rudder
Effort required:
Very Small
Priority:
140
Name check:
To do
Fix check:
Checked
Regression:
No

Description

The user profile in the menu appears to be clickable but does not show the API token per user menu.

There appears to be a request error due to CSRF headers :

This is due to #25999 in 8.1, and was only applied to 8.2.4.


Files

clipboard-202501290939-oeqbr.png (156 KB) clipboard-202501290939-oeqbr.png Clark ANDRIANASOLO, 2025-01-29 09:40
clipboard-202501290939-oeqbr.png

Updated by Nicolas CHARLES 12 months ago Actions #1

  • Priority changed from To review to 1 (highest)

Updated by Clark ANDRIANASOLO 12 months ago Actions #2

  • Status changed from New to In progress

Updated by Clark ANDRIANASOLO 12 months ago Actions #3

  • Status changed from In progress to Pending technical review
  • Assignee changed from Clark ANDRIANASOLO to Alexis Mousset
  • Pull Request set to https://github.com/Normation/rudder-plugins/pull/791

Updated by Clark ANDRIANASOLO 12 months ago Actions #4

  • Status changed from Pending technical review to Pending release

Updated by Elaad FURREEDAN 11 months ago Actions #5

  • Fix check changed from To do to Checked

Updated by Vincent MEMBRÉ 11 months ago Actions #6

  • Status changed from Pending release to Released

This bug has been fixed in Rudder plugin api-authorizations v8.2.5-2.2

Actions

Also available in: PDF Atom