angler-fishThe Vulnerability History Project

[1.5.x] Fixed #17869 - force logout when REMOTE_USER header disappears

      If the current sessions user was logged in via a remote user backend log out
the user if REMOTE_USER header not available - otherwise leave it to other auth
middleware to install the AnonymousUser.

Thanks to Sylvain Bouchard for the initial patch and ticket maintenance.
    
commit e8269a6729150d26a5497d5eb51226ca19fa21b9
+3 -14
+2 -23
-3
expand_less