This repository has been archived on 2024-05-31. You can view files and clone it, but cannot push or open issues or pull requests.
authentik/blueprints/example
Jens L db95dfe38d
security: fix CVE 2022 46145 (#4140)
* add flow authentication requirement

Signed-off-by: Jens Langhammer <jens.langhammer@beryju.org>

* add website for cve

Signed-off-by: Jens Langhammer <jens.langhammer@beryju.org>

* add tests

Signed-off-by: Jens Langhammer <jens.langhammer@beryju.org>

* flows: handle FlowNonApplicableException without policy result

Signed-off-by: Jens Langhammer <jens.langhammer@beryju.org>

* add release notes

Signed-off-by: Jens Langhammer <jens.langhammer@beryju.org>

Signed-off-by: Jens Langhammer <jens.langhammer@beryju.org>
2022-12-02 16:14:25 +01:00
..
flows-enrollment-2-stage.yaml security: fix CVE 2022 46145 (#4140) 2022-12-02 16:14:25 +01:00
flows-enrollment-email-verification.yaml security: fix CVE 2022 46145 (#4140) 2022-12-02 16:14:25 +01:00
flows-login-2fa.yaml security: fix CVE 2022 46145 (#4140) 2022-12-02 16:14:25 +01:00
flows-login-conditional-captcha.yaml security: fix CVE 2022 46145 (#4140) 2022-12-02 16:14:25 +01:00
flows-recovery-email-verification.yaml security: fix CVE 2022 46145 (#4140) 2022-12-02 16:14:25 +01:00
flows-unenrollment.yaml security: fix CVE 2022 46145 (#4140) 2022-12-02 16:14:25 +01:00