8000 `content.json`'s isVisible flags are ignored in `Root.tsx`'s `mapRoutes` function, which makes the pages still accessible · Issue #38783 · keycloak/keycloak · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content< 8000 /a>
content.json's isVisible flags are ignored in Root.tsx's mapRoutes function, which makes the pages still accessible #38783
Closed
@DevDuki

Description

@DevDuki

Before reporting an issue

  • I have read and understood the above terms for submitting issues, and I understand that my issue may be closed without action if I do not follow them.

Area

account/ui

Describe the bug

Pages that are visually hidden with the isVisible feature flag may not be there in the sidebar navigation, but they are still accessible when typing the url in the browser.

Version

26.1.4

Regression

  • The issue is a regression

Expected behavior

The paths to the pages that are not enabled should not be accessible at all.

Actual behavior

The paths to the pages that are not enabled are still accessible.

How to Reproduce?

  • Start a plain keycloak server.
  • Navigate to the account UI.
  • Try a "hidden" path by typing it in the url bar in your browser (e.g. http://localhost:8080/realms/master/account/resources or http://localhost:8080/realms/master/account/account-security/linked-accounts)

Anything else?

No response

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions

      0