Skip to content

fix(security): prevent external superuser assertions - #180

Merged
farhan-syah merged 1 commit into
mainfrom
fix-jwt-claim-superuser-escalation
Jul 15, 2026
Merged

farhan-syah merged 1 commit into
mainfrom
fix-jwt-claim-superuser-escalation

Conversation

@farhan-syah

Copy link
Copy Markdown
Member

Summary

  • centralize canonicalization of roles asserted by JWT and OIDC identities
  • prevent external claims and claim mappings from granting database-owned superuser authority while preserving ordinary roles and database grants
  • reject new unsafe OIDC mappings and sanitize legacy mappings during authentication
  • document the external-authority boundary and expand transport/provider regression coverage

Validation

  • focused JWT, JWKS, OIDC, AuthContext, and HTTP authentication suites
  • cargo clippy --all-targets --all-features -- -D warnings
  • cargo fmt --all --check
  • git diff --check

@farhan-syah
farhan-syah merged commit 95a23b3 into main Jul 15, 2026
@farhan-syah
farhan-syah deleted the fix-jwt-claim-superuser-escalation branch July 15, 2026 13:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant