[midPoint-git] [Evolveum/midpoint] 021fdf: fix for security issue on the self registration page

KaterynaHonchar noreply at github.com
Wed May 24 11:51:31 CEST 2023


  Branch: refs/heads/master
  Home:   https://github.com/Evolveum/midpoint
  Commit: 021fdf3bec2ecf8e0380579a1dc0c926430cf948
      https://github.com/Evolveum/midpoint/commit/021fdf3bec2ecf8e0380579a1dc0c926430cf948
  Author: Kateryna Honchar <gonchar.kate at gmail.com>
  Date:   2023-05-24 (Wed, 24 May 2023)

  Changed paths:
    A gui/admin-gui/src/main/java/com/evolveum/midpoint/gui/impl/page/login/PageInvitation.java
    M gui/admin-gui/src/main/java/com/evolveum/midpoint/gui/impl/page/login/PageRegistrationBase.java
    M gui/admin-gui/src/main/java/com/evolveum/midpoint/gui/impl/page/login/PageSelfRegistration.java
    M infra/schema/src/main/java/com/evolveum/midpoint/schema/constants/SchemaConstants.java
    A model/authentication-impl/src/main/java/com/evolveum/midpoint/authentication/impl/channel/InvitationAuthenticationChannel.java
    A model/authentication-impl/src/main/java/com/evolveum/midpoint/authentication/impl/factory/channel/InvitationChannelFactory.java
    M model/authentication-impl/src/main/java/com/evolveum/midpoint/authentication/impl/filter/MidpointAuthFilter.java
    M model/authentication-impl/src/main/java/com/evolveum/midpoint/authentication/impl/util/AuthSequenceUtil.java
    M model/model-api/src/main/java/com/evolveum/midpoint/model/api/ModelInteractionService.java
    M model/model-api/src/main/java/com/evolveum/midpoint/model/api/expr/MidpointFunctions.java
    M model/model-impl/src/main/java/com/evolveum/midpoint/model/impl/controller/ModelInteractionServiceImpl.java
    M model/model-impl/src/main/java/com/evolveum/midpoint/model/impl/expr/MidpointFunctionsImpl.java
    M repo/security-api/src/main/java/com/evolveum/midpoint/security/api/AuthorizationConstants.java
    M repo/security-api/src/main/java/com/evolveum/midpoint/security/api/SecurityUtil.java

  Log Message:
  -----------
  fix for security issue on the self registration page


  Commit: 24639e7bbf3b0415e95697d5c122b7af9f4ccc4f
      https://github.com/Evolveum/midpoint/commit/24639e7bbf3b0415e95697d5c122b7af9f4ccc4f
  Author: Kateryna Honchar <gonchar.kate at gmail.com>
  Date:   2023-05-24 (Wed, 24 May 2023)

  Changed paths:
    M model/model-impl/src/main/java/com/evolveum/midpoint/model/impl/expr/MidpointFunctionsImpl.java

  Log Message:
  -----------
  invitation link fix


  Commit: ca63e0c69de4aa03da823b0499c5438ebec6db11
      https://github.com/Evolveum/midpoint/commit/ca63e0c69de4aa03da823b0499c5438ebec6db11
  Author: Kateryna Honchar <gonchar.kate at gmail.com>
  Date:   2023-05-24 (Wed, 24 May 2023)

  Changed paths:
    M gui/admin-gui/src/main/java/com/evolveum/midpoint/gui/api/component/captcha/CaptchaPanel.java
    M gui/admin-gui/src/main/java/com/evolveum/midpoint/gui/impl/page/login/PageAbstractFlow.java
    M gui/admin-gui/src/main/java/com/evolveum/midpoint/gui/impl/page/login/PageSelfRegistration.java

  Log Message:
  -----------
  one more captcha fix


  Commit: 108873522e5bd0dc5c05e4fff86668d47750bfd3
      https://github.com/Evolveum/midpoint/commit/108873522e5bd0dc5c05e4fff86668d47750bfd3
  Author: Kateryna Honchar <gonchar.kate at gmail.com>
  Date:   2023-05-24 (Wed, 24 May 2023)

  Changed paths:
    M config/initial-objects/archetype/507-archetype-task-report.xml
    M gui/admin-gui/src/main/java/com/evolveum/midpoint/gui/api/component/result/OperationResultPanel.java
    R gui/admin-gui/src/main/java/com/evolveum/midpoint/gui/api/util/HistoryPageTabVisibleBehavior.java
    R gui/admin-gui/src/main/java/com/evolveum/midpoint/gui/api/util/ObjectTabVisibleBehavior.java
    M gui/admin-gui/src/main/java/com/evolveum/midpoint/gui/api/util/WebComponentUtil.java
    M gui/admin-gui/src/main/java/com/evolveum/midpoint/gui/impl/page/admin/component/TaskOperationalButtonsPanel.java
    A gui/admin-gui/src/main/java/com/evolveum/midpoint/web/component/dialog/ExportMiningPanel.html
    A gui/admin-gui/src/main/java/com/evolveum/midpoint/web/component/dialog/ExportMiningPanel.java
    M gui/admin-gui/src/main/java/com/evolveum/midpoint/web/component/message/FeedbackListView.java
    M gui/admin-gui/src/main/java/com/evolveum/midpoint/web/page/admin/configuration/PageDebugList.java
    M gui/admin-gui/src/main/java/com/evolveum/midpoint/web/page/admin/configuration/component/PageDebugDownloadBehaviour.java
    A gui/admin-gui/src/main/java/com/evolveum/midpoint/web/page/admin/configuration/component/RoleMiningExportOperation.java
    A infra/common/src/main/java/com/evolveum/midpoint/common/RoleMiningExportUtils.java
    M infra/schema/src/main/resources/xml/ns/public/common/common-gui-3.xsd
    M infra/schema/src/main/resources/xml/ns/public/report/extension-3.xsd
    M infra/schema/src/test/resources/diff/system-configuration-after.xml
    M infra/schema/src/test/resources/diff/system-configuration-before.xml
    M model/authentication-impl/src/main/java/com/evolveum/midpoint/authentication/impl/factory/module/AbstractModuleFactory.java
    A model/authentication-impl/src/main/java/com/evolveum/midpoint/authentication/impl/filter/RefuseUnauthenticatedRequestFilter.java
    M model/authentication-impl/src/test/resources/common/system-configuration.xml
    M model/model-api/src/main/java/com/evolveum/midpoint/model/api/AdminGuiConfigurationMergeManager.java
    M model/model-api/src/main/java/com/evolveum/midpoint/model/api/authentication/CompiledGuiProfile.java
    M model/model-api/src/main/java/com/evolveum/midpoint/model/api/authentication/CompiledObjectCollectionView.java
    M model/model-api/src/main/java/com/evolveum/midpoint/model/api/authentication/CompiledShadowCollectionView.java
    M model/model-impl/src/main/java/com/evolveum/midpoint/model/impl/controller/AdminGuiConfigurationMergeManagerImpl.java
    M model/model-impl/src/main/java/com/evolveum/midpoint/model/impl/controller/CollectionProcessor.java
    M model/model-impl/src/main/java/com/evolveum/midpoint/model/impl/security/GuiProfileCompiler.java
    M model/model-impl/src/test/resources/common/system-configuration.xml
    M model/model-impl/src/test/resources/lens/role-corp-engineer.xml
    M model/model-intest/src/test/java/com/evolveum/midpoint/model/intest/TestPreviewChanges.java
    M model/model-intest/src/test/java/com/evolveum/midpoint/model/intest/archetypes/TestArchetypes.java
    M model/model-intest/src/test/java/com/evolveum/midpoint/model/intest/security/TestSecurityPrincipal.java
    M model/model-intest/src/test/resources/archetypes/role-user-administrator.xml
    M model/model-intest/src/test/resources/archetypes/system-configuration-archetypes.xml
    M model/model-intest/src/test/resources/common/archetype-approval-case.xml
    M model/model-intest/src/test/resources/common/archetype-task-iterative-bulk-action.xml
    M model/model-intest/src/test/resources/common/archetype-task-reconciliation.xml
    M model/model-intest/src/test/resources/common/archetype-task-single-bulk-action.xml
    M model/model-intest/src/test/resources/common/role-buccaneer-green.xml
    M model/model-intest/src/test/resources/common/role-pirate-green.xml
    M model/model-intest/src/test/resources/common/role-pirate.xml
    M model/model-intest/src/test/resources/common/system-configuration.xml
    M model/model-intest/src/test/resources/scripting/system-configuration.xml
    M model/model-intest/src/test/resources/security/archetype-approval-case.xml
    M model/model-intest/src/test/resources/strange/system-configuration-strange.xml
    M model/model-test/src/main/java/com/evolveum/midpoint/model/test/asserter/CompiledGuiProfileAsserter.java
    M model/report-api/src/main/java/com/evolveum/midpoint/report/api/ReportConstants.java
    M model/workflow-impl/src/test/resources/common/023-archetype-manual-provisioning-case.xml
    M model/workflow-impl/src/test/resources/common/024-archetype-operation-request.xml
    M model/workflow-impl/src/test/resources/common/025-archetype-approval-case.xml
    M repo/repo-sql-impl-test/src/test/resources/modify/system-configuration-after.xml
    M repo/repo-sql-impl-test/src/test/resources/modify/system-configuration-before.xml
    M repo/repo-test-util/src/main/java/com/evolveum/midpoint/test/asserter/GuiObjectDetailsPageAsserter.java
    M repo/security-impl/src/test/resources/system-configuration.xml
    M repo/system-init/src/main/resources/initial-objects/archetype/507-archetype-task-report.xml
    M testing/story/src/test/resources/common/archetype-task-recomputation.xml
    A tools/ninja/src/main/java/com/evolveum/midpoint/ninja/action/mining/BaseMiningOptions.java
    A tools/ninja/src/main/java/com/evolveum/midpoint/ninja/action/mining/ExportMiningConsumerWorker.java
    A tools/ninja/src/main/java/com/evolveum/midpoint/ninja/action/mining/ExportMiningOptions.java
    A tools/ninja/src/main/java/com/evolveum/midpoint/ninja/action/mining/ExportMiningProducerWorker.java
    A tools/ninja/src/main/java/com/evolveum/midpoint/ninja/action/mining/ExportMiningRepositoryAction.java
    M tools/ninja/src/main/java/com/evolveum/midpoint/ninja/impl/Command.java
    M tools/ninja/src/main/java/com/evolveum/midpoint/ninja/util/NinjaUtils.java
    M tools/ninja/src/main/resources/messages.properties

  Log Message:
  -----------
  Merge branch 'master' of https://github.com/Evolveum/midpoint


Compare: https://github.com/Evolveum/midpoint/compare/d1a1602f0bdf...108873522e5b


More information about the midPoint-svn mailing list