Skip to content

HTTPBearer security scheme is returning 403 instead or 401 #10177

@Kludex

Description

@Kludex

Discussed in #9130

Originally posted by aaaaahaaaaa September 8, 2020
HTTPBearer security scheme enabled as a dependency is returning a 403 when a request is unauthenticated because of a missing or a malformed authorization header. In those scenarios, a 401 should be returned instead.

Related PRs

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions