Use OTKPreAuthFilter attributes instead of re-validating OTK in NotesController

FixSecurityService
Spegnimento
23 marzo 2026 alle ore 01:56 UTC
Autore
Kamo
Impegno
cdb3b68

The OTKPreAuthFilter already consumes and validates the OTK, storing the session data in request attributes. NotesController was trying to re-validate the already-consumed OTK, causing authentication failures. Now reads from request attributes first, matching MemberController pattern.

Tutte le modifiche

Come quello che vedi la spedizione?

Ognuno di questi aggiornamenti atterra automaticamente nello spazio di lavoro. Inizia gratis e guardalo crescere settimana dopo settimana.

Inizia gratis per sempreVisualizza il prezzo