Upstream "XSS attack detected on a relayState parameter" #46
              
                Unanswered
              
          
                  
                    
                      bmalynovytch
                    
                  
                
                  asked this question in
                Q&A
              
            Replies: 1 comment
-
| (I built one on my side but I guess others might be interested) | 
Beta Was this translation helpful? Give feedback.
                  
                    0 replies
                  
                
            
  
    Sign up for free
    to join this conversation on GitHub.
    Already have an account?
    Sign in to comment
  
        
    
Uh oh!
There was an error while loading. Please reload this page.
-
Summary
LLNG currently has a bug with RelayState (see https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/issues/2671)
Steps to reproduce
Run v2.0.13 of LLNG
What is the expected correct behavior?
Run current master or v2.0.14 when it'll be out.
Possible fixes
Could be smart to have a temp release running master until v2.0.14 is out.
Beta Was this translation helpful? Give feedback.
All reactions