You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
At present the validation rule doesn’t check the returned GraphType of the Field that is being request, only that the current Field itself is allowed. The returned GraphType may have different authorization policies applied to it.
At present the validation rule doesn’t check the returned
GraphType
of theField
that is being request, only that the currentField
itself is allowed. The returnedGraphType
may have different authorization policies applied to it.authorization/src/GraphQL.Authorization/AuthorizationValidationRule.cs
Line 40 in b9f3edf
I believe the fix is to add this additional line:
See graphql-dotnet/graphql-dotnet#502 (comment)
The text was updated successfully, but these errors were encountered: