1
0
Fork 0
mirror of https://codeberg.org/forgejo/forgejo.git synced 2024-12-22 12:54:53 -05:00
forgejo/routers
zeripath 2b36bdd490 Do not display the raw OpenID error in the UI (#5705)
* Do not display the raw OpenID error in the UI

If there are no `WHITELIST_URIS` or `BLACKLIST_URIS` set in the openid
section of the app.ini, it is possible that gitea can leak sensitive
information about the local network through the error provided by the
UI. This PR hides the error information and logs it.

Fix #4973

Signed-off-by: Andrew Thornton <art27@cantab.net>

* Update auth_openid.go

Place error log within the `err != nil` branch.
2019-01-12 14:24:47 -05:00
..
admin Support reverse proxy providing email (#5554) 2018-12-18 12:05:48 -05:00
api/v1 Issue is not overdue when it is on the same date #5566 (#5568) 2019-01-01 18:56:47 +01:00
dev Make time diff translatable (#2057) 2017-06-28 13:43:28 +08:00
org Improve team members and repositories settings UI (#5457) 2018-12-09 08:42:11 +02:00
private fix clone wiki failed via ssh (#5503) 2018-12-11 13:37:32 -05:00
repo Added URL mapping for Release attachments like on github.com (#1707) 2019-01-06 17:37:30 -05:00
routes Allow for user specific themes (#5668) 2019-01-09 12:22:57 -05:00
user Do not display the raw OpenID error in the UI (#5705) 2019-01-12 14:24:47 -05:00
utils Slack webhook channel name cannot be empty or just contain an hashtag (#4786) 2018-09-10 10:31:08 -04:00
home.go feat(repo): support search repository by topic name (#4505) 2018-09-13 10:33:48 +08:00
init.go fix lfs version check warning log when using ssh protocol (#5501) 2018-12-19 09:17:43 +08:00
install.go Remove traces of embedded TiDB (#4906) 2018-09-11 10:42:40 -04:00
metrics.go Prometheus endpoint (#5256) 2018-11-04 22:20:00 -05:00
swagger_json.go Swagger.v1.json template (#3572) 2018-07-28 03:19:01 +03:00