Details
-
Bug
-
Resolution: Unresolved
-
Minor
-
None
-
16.0.0
-
Undefined
-
NEW
-
NEW
Description
Keycloak allows registration of usernames with leading and/or trailing slashes, however sanitizes this value in the login/administration form.
This was addressed in KEYCLOAK-3096
This allows users to register once using `username` and a second time using `username ` which may lead to conflicts and is kind of critical in my opinion.
Attachments
Issue Links
- relates to
-
KEYCLOAK-3096 Leading or trailing spaces are not removed from username field on admin console
-
- Closed
-