mirror of
https://github.com/open-webui/open-webui.git
synced 2026-05-06 10:58:17 -05:00
[PR #22865] [CLOSED] fix: register OAUTH_SUB_CLAIM on app.state.config in main.py #42525
Reference in New Issue
Block a user
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
📋 Pull Request Information
Original PR: https://github.com/open-webui/open-webui/pull/22865
Author: @18jreid
Created: 3/19/2026
Status: ❌ Closed
Base:
dev← Head:fix/oauth-sub-claim-missing-config📝 Commits (10+)
fe6783cMerge pull request #19030 from open-webui/devfc05e0aMerge pull request #19405 from open-webui/deve3faec6Merge pull request #19416 from open-webui/dev9899293Merge pull request #19448 from open-webui/dev140605eMerge pull request #19462 from open-webui/dev6f1486fMerge pull request #19466 from open-webui/devd95f533Merge pull request #19729 from open-webui/deva7271530.6.43 (#20093)6adde20Merge pull request #20394 from open-webui/devf9b0534Merge pull request #20522 from open-webui/dev📊 Changes
1 file changed (+2 additions, -0 deletions)
View changed files
📝
backend/open_webui/main.py(+2 -0)📄 Description
Pull Request Checklist
devbranch.OAUTH_SUB_CLAIMenv var is already documented.routers/auths.py:1349readsrequest.app.state.config.OAUTH_SUB_CLAIM; without this fix anAttributeErroris raised on every token exchange request.main.py.dev.fix:.Changelog Entry
Description
OAUTH_SUB_CLAIMis defined inconfig.pyand read by thetoken_exchangeendpoint inrouters/auths.pyviarequest.app.state.config.OAUTH_SUB_CLAIM, but it was never imported or registered onapp.state.configinmain.py. This causes anAttributeError: Config key not foundcrash on every token exchange request when a custom sub claim is configured.Fixed
OAUTH_SUB_CLAIMonapp.state.configinmain.py, consistent with all other OAuth claim configs (OAUTH_ROLES_CLAIM,OAUTH_EMAIL_CLAIM,OAUTH_PICTURE_CLAIM,OAUTH_USERNAME_CLAIM)Added
Changed
Deprecated
Removed
Security
Breaking Changes
Additional Information
PersistentConfigforOAUTH_SUB_CLAIMalready exists inconfig.pyand is correctly assigned inutils/oauth.py:127. Only themain.pyregistration was missing.routers/auths.py:1349readsrequest.app.state.config.OAUTH_SUB_CLAIMScreenshots or Videos
N/A — backend-only fix with no UI changes.
Contributor License Agreement
🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.