From 5402731ec37b6dccd1d985b0bc9f34d10574acf3 Mon Sep 17 00:00:00 2001 From: Tom Moor Date: Wed, 25 Oct 2023 20:54:26 -0400 Subject: [PATCH] fix: Do not prevent local IP connections to OIDC server ref #6064 --- server/utils/passport.ts | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/server/utils/passport.ts b/server/utils/passport.ts index 749e3c94b..6d8aef191 100644 --- a/server/utils/passport.ts +++ b/server/utils/passport.ts @@ -1,6 +1,9 @@ import crypto from "crypto"; import { addMinutes, subMinutes } from "date-fns"; import type { Context } from "koa"; +// Allowed for trusted server<->server connections +// eslint-disable-next-line no-restricted-imports +import fetch from "node-fetch"; import { StateStoreStoreCallback, StateStoreVerifyCallback, @@ -10,7 +13,6 @@ import { getCookieDomain, parseDomain } from "@shared/utils/domains"; import env from "@server/env"; import { Team } from "@server/models"; import { InternalError, OAuthStateMismatchError } from "../errors"; -import fetch from "./fetch"; export class StateStore { key = "state";