Skip to content

Conversation

@Elyasnz
Copy link

@Elyasnz Elyasnz commented Dec 25, 2024

Closes #25

…integration

- Resolved privilege escalation issue caused by improper handling of `admin.options.assets`.  
- Ensured function-based `assets` are processed correctly.  
- Excluded non-string `assets` (e.g., `coreScripts`) from bypassing route protection.  
- Strengthened API route protection and authentication checks.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

BUG: Security Issue in AdminJS Fastify Integration: Privilege Escalation in Asset Handling

1 participant