Uploaded image for project: 'OpenAM'
  1. OpenAM
  2. OPENAM-7021

XUI login script queries "/openam/json/users?realm=/?_action=idFromSession"

    XMLWordPrintable

    Details

    • Rank:
      1|hzq8fb:
    • Sprint 95 - Team Tesla

      Description

      XUI login obliviously adds`?_action=idFromSession` to the authenticate query parameters while targeting /openam/json/users. So, when authentication already has a param like `?realm=/`, the . See attached image.

        Attachments

          Activity

            People

            joe.bandenburg Joe Bandenburg [X] (Inactive)
            hahmadi hadi hahmadi
            Votes:
            0 Vote for this issue
            Watchers:
            5 Start watching this issue

              Dates

              Created:
              Updated:
              Resolved: