Gandalf (Gandalf is A Natural Devops Application Life-cycle Framework), a tool to allow progressive DevOps adoption.
Mozilla Public License 2.0
7
stars
0
forks
source link
Inconsistent status code for login API endpoint #234
Open
sohzaz opened 2 years ago
Describe the bug
The login API endpoint produces different codes depending on what validation error it experienced :
To Reproduce
Steps to reproduce the behavior:
1) call /login with :
[possibly a leto issue] valid credentials (email + password) with a restarted gandalf node
2) observe response code
Expected behavior
Status code should be uniformly 403 (or 401) on login failure
Application (please complete the following information):
Desktop (please complete the following information):