sasjs / server

Build Apps on Base SAS
https://server.sasjs.io
MIT License
20 stars 3 forks source link

Prevent cross-site authentication #299

Closed allanbowe closed 2 years ago

allanbowe commented 2 years ago

Somebody has set up a website (https://www.eraangel.com) that points at the team development instance:

image

Whilst we can't prevent sites from pointing themselves at any particular IP address, we can (and must) prevent authentication from anywhere other than the primary domain.

sasjsbot commented 2 years ago

:tada: This issue has been resolved in version 0.23.3 :tada:

The release is available on:

Your semantic-release bot :package::rocket: