Invisible special characters may break the log in for Atlassian accounts

XMLWordPrintable

    • Type: Bug
    • Resolution: Timed out
    • Priority: Low
    • Component/s: User - Email change
    • None
    • Environment:

      Production

    • 3

      Issue Summary

      Invisible special characters may break the log in for Atlassian accounts, these characters can be inserted by accident in any of the profile details fields if copying the value from another system.

      Steps to Reproduce

      1. Edit one of the Atlassian account fields, such as full name.
      2. Add a special character to it. (Use external systems to generate them for testing)
      3. Save the changes.

      Expected Results

      The special characters should be either removed or an alert should be sent to the user saying the name format contains them.

      Actual Results

      The changes are saved and once the user logs out, they will not be able to log in back again, receiving this error:

      Oops, there was an error logging you in.
      Please contact your administrator to check single sign-on configuration.

      URL will contain this error message:

      error=access_denied&error_description=Invalid response code from the auth0-sandbox: HTTP 400. Invalid or unexpected token

      Notes

      This may happen by accident if you copy the text from another system that uses special characters to display text, such as a communicator or text editor.

      Workaround

      There is none at the moment, contact Atlassian Support to validate the cause and clear the special characters from your profile.

            Assignee:
            Unassigned
            Reporter:
            Rodrigo B.
            Votes:
            0 Vote for this issue
            Watchers:
            5 Start watching this issue

              Created:
              Updated:
              Resolved: