-
v0.1.22 Stable
released this
2026-08-03 16:45:17 +00:00 | 29 commits to master since this releaseAdded
[security].extra_form_actionfor sign-in destinations Forseti can't derive
Security
- A registered redirect URI could inject a directive into the sign-in page's CSP
Fixed
- Sign-in didn't return to the app when consent was skipped
- Second-factor sign-in stalled on the challenge page
- Social sign-in buttons never left the sign-in page
- Linking an upstream provider from settings was blocked the same way
Builds, checksums and provenance: https://github.com/franzos/forseti/releases/tag/v0.1.22
Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads