A critical vulnerability was discovered in React Server Components (Next.js). Our systems remain protected but we advise to update packages to newest version. Learn More

Couldn't use Windows Authentication for Bestbets, Editorial, ServiceHealth

Fixed in

EPiServer.Find 16.0.2

(Or a related package)

Created

Jan 09, 2024

Updated

Jan 19, 2024

Area

FIND UI

State

Closed, Fixed and tested


Description

Fixed the following authorization issue: The UI (dojo script) sent a header "Authorization" (Bearer token) to Bestbets, Editorial, and ServiceHealth controllers but those controllers only accepted Windows Authentication (which would send a WWW-Authenticate header).