Uploaded image for project: 'Keycloak'
  1. Keycloak
  2. KEYCLOAK-18984

Keycloak allows registration with leading/trailing spaces

    XMLWordPrintable

Details

    • Bug
    • Resolution: Unresolved
    • Minor
    • None
    • 16.0.0
    • Account - REST API
    • Undefined
    • NEW
    • NEW

    Description

      Keycloak allows registration of usernames with leading and/or trailing slashes, however sanitizes this value in the login/administration form.

      This was addressed in KEYCLOAK-3096

      This allows users to register once using `username` and a second time using `username ` which may lead to conflicts and is kind of critical in my opinion.

      Attachments

        Issue Links

          Activity

            Public project attachment banner

              context keys: [headless, issue, helper, isAsynchronousRequest, project, action, user]
              current Project key: KEYCLOAK

              People

                Unassigned Unassigned
                lockas Lukas Schulte Pelkum (Inactive)
                Votes:
                0 Vote for this issue
                Watchers:
                5 Start watching this issue

                Dates

                  Created:
                  Updated: