decryptString miste purpose-param → cPanel-token decryptie returnde null #90
Labels
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
jesse-a/OpenCRM#90
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Severity: HIGH
In
src/lib/cpanel.tswasdecryptString(auth.tokenEncrypted)aangeroepen zonder het verplichtepurpose-argument. De HKDF-keyderivation faalde stilzwijgend,decryptStringreturndenull, en deAuthorization: cpanel user:nullwerd naar cPanel gestuurd → 401 op elke UAPI-call. Alle cPanel-flows waren stuk.Niet ontdekt bij build omdat
typescript.ignoreBuildErrors: truein next.config.ts staat.Fix:
decryptString(auth.tokenEncrypted, 'cpanel-api-token')+ null-check met sprekende error.Files: src/lib/cpanel.ts
Opgelost in commit
77bf537.