New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
"Login CISO" challenge fails when using Google login button [🐛] #1491
Comments
Thanks a lot for opening your first issue with us! 🧡 We'll get back to you shortly! ⏳ If it was a Support Request, please consider asking on the community chat next time! 💬 |
The workaround that was in place originally for domains not recognized by the Google App also works here, so the challenge is still solvable. Just not in the way it was originally intended to be solved with. A more detailed analysis needs to be done to verify if/where the necessary HTTP header with the old email got lost or broken or why Google rejects the login attempts. |
|
Hi! I would like to work on this. Will follow up soon with PR. |
Hi @Rishabh-Kumar-07, did you make any progress on this or should we consider it "up for grabs" again? |
Hey. I am engaged otherwise. You can mark it "up for grabs". Apology for the trouble. |
I would like to work on this. Please Assign. |
I have found some instances where |
I don't know, but does it even make a difference for the Browser? |
Hey @prince-7 @bkimminich ! |
Totally, yes! 👍 |
After almost 1 month of inactivity, this issue is now back in "who want's to give it a shot?" status! 😁 |
Hi @bkimminich this issue is related to Account linking with OAuth. Which supports two industry-standard implicit and authorization code flows. |
Hi @bkimminich, I would love to give this a shot. |
Hi @bkimminich. If this is stalled and nobody picked it up yet, can I work on it? |
"Fixed". |
This thread has been automatically locked because it has not had recent activity after it was closed. 🔒 Please open a new issue for regressions or related bugs. |
🐛 Bug report
Description
Logging in as CISO bypassing oauth user doesn't seem to work anymore. There is a short succesful notice when attempting to login, but afterwards I get redirected to login page and no token is issued.
🔬 Minimal Reproduction
As in the solution: make a failed login attempt as ciso@juice-sh.op with remember me box checked, refresh and login with oauth
🌳 Your Environment
Locally and heroku
Additional Information
The text was updated successfully, but these errors were encountered: