From 1bab95b15ab0b94f2596c6dab40a765d3449b979 Mon Sep 17 00:00:00 2001 From: swve Date: Tue, 13 Jun 2023 18:20:09 +0000 Subject: [PATCH] fix: login security issue --- src/routers/auth.py | 1 + 1 file changed, 1 insertion(+) diff --git a/src/routers/auth.py b/src/routers/auth.py index 5f5eacb1..b53ffb1f 100644 --- a/src/routers/auth.py +++ b/src/routers/auth.py @@ -43,6 +43,7 @@ async def login( Authorize.set_refresh_cookies(refresh_token) # set cookies using fastapi response.set_cookie(key="access_token_cookie", value=access_token , httponly=False) + user = PublicUser(**user.dict()) result = { "user": user,