Uploaded image for project: 'Project Quay'
  1. Project Quay
  2. PROJQUAY-9661

Quay new UI login page should not give error "CSRF token expired - please refresh" when user's email is not verified

XMLWordPrintable

    • Quality / Stability / Reliability
    • False
    • Hide

      None

      Show
      None
    • False

      Description:

      This is an issue found in Quay 3.16.0 new UI login page, when created new account and input the correct username/password to login, get error "CSRF token expired - please refresh", but actually the reason is user hasn't verify the email address.

      With current UI the error message is "You must verify your email address before you can sign in", pls review this issue.

      Quay:

      quay.io/redhat-user-workloads/quay-eng-tenant/stable-3-16-v4-20@sha256:988adc1a375a207d0fb9bc40dc5f8f2f4aeda929675fbbc95296ea0731ac9dd2 

      POST https://quay316sc-quay-quay.apps.quaytest-15505.qe.devcluster.openshift.com/api/v1/signin

      The response:

      {"needsEmailVerification": true, "invalidCredentials": false, "message": null}

      Quay new UI Login Page:

      Quay current UI:

        1. image-2025-10-31-15-59-16-011.png
          208 kB
          luffy zhang
        2. image-2025-10-31-16-00-22-316.png
          208 kB
          luffy zhang
        3. image-2025-10-31-16-07-11-545.png
          208 kB
          luffy zhang
        4. image-2025-11-25-17-34-34-589.png
          223 kB
          luffy zhang

              rhn-support-bpratt Brady Pratt
              lzha1981 luffy zhang
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: