Francesco Chicchiriccò created SYNCOPE-1651:
-----------------------------------------------

             Summary: Invalid users can be specified in X-Syncope-Delegated-By
                 Key: SYNCOPE-1651
                 URL: https://issues.apache.org/jira/browse/SYNCOPE-1651
             Project: Syncope
          Issue Type: Bug
          Components: core
    Affects Versions: 2.1.10
            Reporter: Francesco Chicchiriccò
            Assignee: Francesco Chicchiriccò
             Fix For: 2.1.11, 3.0.0


{{X-Syncope-Delegated-By}} header values like {code}user_not_found{code} (where 
{{user_not_found}} does not match any exiting user) do not throw any processing 
exceptions and result into values like {code}user_found delegated by 
user_not_found{code} (where {{user_found}} is the authenticating user) for 
Audit and metadata.



--
This message was sent by Atlassian Jira
(v8.20.1#820001)

Reply via email to