未验证 提交 75b338b5 编写于 作者: M Maria Khrustaleva 提交者: GitHub

Fix vulnerability (#5521)

上级 3c8ac1ef
......@@ -22,7 +22,7 @@ and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0
- Helm: Empty password for Redis (<https://github.com/opencv/cvat/pull/5520>)
### Security
- TDB
- Fixed vulnerability with social authentication (<https://github.com/opencv/cvat/pull/5521>)
## \[2.3.0] - 2022-12-22
### Added
......
......@@ -251,12 +251,12 @@ class ServerViewSet(viewsets.ViewSet):
def advanced_authentication(request):
use_social_auth = settings.USE_ALLAUTH_SOCIAL_ACCOUNTS
integrated_auth_providers = settings.SOCIALACCOUNT_PROVIDERS.keys() if use_social_auth else []
google_auth_is_enabled = (
google_auth_is_enabled = bool(
'google' in integrated_auth_providers
and settings.SOCIAL_AUTH_GOOGLE_CLIENT_ID
and settings.SOCIAL_AUTH_GOOGLE_CLIENT_SECRET
)
github_auth_is_enabled = (
github_auth_is_enabled = bool(
'github' in integrated_auth_providers
and settings.SOCIAL_AUTH_GITHUB_CLIENT_ID
and settings.SOCIAL_AUTH_GITHUB_CLIENT_SECRET
......
Markdown is supported
0% .
You are about to add 0 people to the discussion. Proceed with caution.
先完成此消息的编辑!
想要评论请 注册