mirror of
https://github.com/advplyr/audiobookshelf.git
synced 2026-05-30 23:40:40 +02:00
[Bug]: Multiple duplicate users created when using OIDC and web/mobile. #2481
Closed
opened 2026-04-25 00:07:35 +02:00 by adam
·
8 comments
No Branch/Tag Specified
master
book_tags_genres_dedupe
episode_download_fallback
Issue-4540-SortBy-StartedDate-and-FinishedDate
episode_meta_tagging
fix_authorize_race_condition
redirect_transcode_requests
progress_updated_sort
fix_ereader_socket_event
fix_change_empty_root_password
fix_podcast_session_track_index
fix_set_token
session_modal_user
localize_durations
fix_oidc_create_user
jwt_auth_refactor
fix_scanner_deleting_single_file_books
fix_mediaprogress_updatedat_2
experimental_next_client
podcast_episode_duration
episode-timestamps-clickable
book_author_secondary_sort_title
podcast_useragents
pathexists_user_access
fix_pathexists_join
book_author_secondary_sort
clean_duplicate_mediaprogress
sanitize_html_description
trix_prevent_attachments
check_path_api_fix
fix_mediaprogress_updatedat
increase_express_json_limit
fix_dockerfile_nunicode
search_episodes
audiobook_tools_update
episode_secondary_sorts
hls_stream_url_update
new_session_track_endpoint
audiobook_tools_enhancements
watcher_rescans_update
player_track_tooltip
fix_exclude_prefixes_crash
socket_item_events
fix_podcast_episode_scanner_promise
new_stats_controller
count_cache_for_userpermissions
parsing-opf-v3
validate_migration_files
fix-quick-match-all-crash
fix-chapter-end-sleep-timer
stringify_sequelize_query
remove-col-ambiguity
fix_next_prev_edit_description
details_trim_whitespace
fix_content_url_basepath
fix_logger_fatal
progress_bar_visibility
batch-edit-populate-map-details
feed_generator_updates
bookmark-modal-updates
migrate-library-item-in-scanner
migrate-new-library-items
migrate-podcasts-new-library-item-2
migrate-podcasts-new-library-item
fix-remove-episode-from-playlist
playback-session-use-new-library-item
refactor-library-item
fix-heatmap-caption
feed-episodes-upsert
share-media-player-media-session-api
remove-old-playlist
remove_old_collection_object
plugin-implementation-demo
feed_migration
refactor-feeds-from-item
fix_remove_authors_no_books
v2.17.3-fk-constraints-migration
migrations-first-upgrade
sqlite_2
feature/nuxt-target-server
waveform
sqlite
playlists
video
v2.35.1
v2.35.0
v2.34.0
v2.33.2
v2.33.1
v2.33.0
v2.32.1
v2.32.0
v2.31.0
v2.30.0
v2.29.0
v2.28.0
v2.27.0
v2.26.3
v2.26.2
v2.26.1
v2.26.0
v2.25.1
v2.25.0
v2.24.0
v2.23.0
v2.22.0
v2.21.0
v2.20.0
v2.19.5
v2.19.4
v2.19.3
v2.19.2
v2.19.1
v2.19.0
v2.18.1
v2.18.0
v2.17.7
v2.17.6
v2.17.5
v2.17.4
v2.17.3
v2.17.2
v2.17.1
v2.17.0
v2.16.2
v2.16.1
v2.16.0
v2.15.1
v2.15.0
v2.14.0
v2.13.4
v2.13.3
v2.13.2
v2.13.1
v2.13.0
v2.12.3
v2.12.2
v2.12.1
v2.12.0
v2.11.0
v2.10.1
v2.10.0
v2.9.0
v2.8.1
v2.8.0
v2.7.2
v2.7.1
v2.7.0
v2.6.0
v2.5.0
v2.4.4
v2.4.3
v2.4.2
v2.4.1
v2.4.0
v2.3.5
v2.3.4
v2.3.3
v2.3.2
v2.3.1
v2.3.0
v2.2.23
v2.2.22
v2.2.21
v2.2.20
v2.2.19
v2.2.18
v2.2.17
v2.2.16
v2.2.15
v2.2.14
v2.2.13
v2.2.12
v2.2.11
v2.2.10
v2.2.9
v2.2.8
v2.2.7
v2.2.6
v2.2.5
v2.2.4
v2.2.3
v2.2.2
v2.2.1
v2.2.0
v2.1.5
v2.1.4
v2.1.3
v2.1.2
v2.1.1
v2.1.0
v2.0.24
v2.0.23
v2.0.22
v2.0.21
v2.0.20
v2.0.19
v2.0.18
v2.0.17
v2.0.16
v2.0.15
v2.0.14
v2.0.13
v2.0.12
v2.0.11
v2.0.10
v2.0.9
v2.0.8
v2.0.7
v2.0.6
v2.0.5
v2.0.4
v2.0.3
v2.0.2
v2.0.1
v1.7.2
v1.7.1
v1.7.0
v1.6.0
v1.5.5
v1.5.0
v1.4.11
v1.4.9
v1.4.7
v1.4.6
v1.4.4
v1.4.2
v1.4.0
v1.4.1
v1.3.4
v1.3.3
v1.3.1
v1.2.8
v1.2.6
v1.2.5
v1.2.4
v1.2.1
v1.1.15
v1.1.14
v1.1.13
v1.1.12
v1.1.11
v1.1.10
v1.1.9
v1.1.8
v1.0.0
0.9.61-beta.0
0.9.61-beta
Labels
Clear labels
authentication
backlog
bug
chapter editor
config-issue
ebooks
encoding/embedding
enhancement
help wanted
listening sessions & progress
planned
possible plugin
progress sync
pull-request
sorting/filtering/searching
unable to reproduce
upload
users & permissions
waiting
Mirrored from GitHub Pull Request
No Label
bug
Milestone
No items
No Milestone
Projects
Clear projects
No project
Assignees
adam (Adam Melkus)
Clear assignees
No Assignees
Notifications
Due Date
No due date set.
Dependencies
No dependencies set.
Reference: starred/audiobookshelf#2481
Reference in New Issue
Block a user
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @Tomos-Evans on GitHub (Jan 11, 2025).
What happened?
I have ABS configured to use Authelia as an OIDC provider, and have the option set to automatically create accounts on ABS when a new user signs in with Authelia.
When I log in on the android app and again through the web interface (using the same Authelia account) I get two different users created in ABS.
These users have the same name, etc, but are different acounts with their own history.
This makes it impossible to use from both the mobile app and the browser as I loose track of where I am.
What did you expect to happen?
I would expect only one user to be created, and it be used by both the mobile app and the web interface.
Steps to reproduce the issue
Audiobookshelf version
2.13.4
How are you running audiobookshelf?
Docker
What OS is your Audiobookshelf server hosted from?
Linux
If the issue is being seen in the UI, what browsers are you seeing the problem on?
None
Logs
No response
Additional Notes
No response
@nichwall commented on GitHub (Jan 11, 2025):
Does this still happen on a later server version? The newest server version at the time of writing is 2.17.7
@Tomos-Evans commented on GitHub (Jan 11, 2025):
I am having a separate issue with OIDC on 2.17.7 that I am still trying to bottom out so am not able to get to the point of logging in on that version.
For awareness, on 2.17.7 the callback sent to the OIDC provider is
/undefined/auth/openid/callbackrather than the expected/auth/openid/callbackso the auth provider rejects it as an invalid redirect URI.@Tomos-Evans commented on GitHub (Jan 11, 2025):
Would you like me to make a separate issue for this problem?
@advplyr commented on GitHub (Jan 12, 2025):
What are you using for this setting

@Tomos-Evans commented on GitHub (Jan 12, 2025):
well now I feel stupid! Works as expected. Sorry for wasting time.
I will follow the other issue you linked for the OIDC issue (after I check that i'm not being equally stupid with that issue too!)
Thanks
@mikiher commented on GitHub (Jan 12, 2025):
@Tomos-Evans I'd like to understand this issue better. Can I ask you to please open a separate issue for this?
I also understand from this issue that you recently migrated your server from 2.13.4 to the latest version (2.17.7). In the new issue, can you also share the log file around where you upgraded the server version ? I'm particularly interested in the 2.17.4 migration.
@Tomos-Evans commented on GitHub (Jan 18, 2025):
Sorry the original logs have been blown away, but I just tried again from 2.13.4 to 2.17.7 and had the same /undefined/auth/openid/callback issue. Logs said that the
use-subfolder-for-oidc-redirect-urismigration had been applied, but it didnt work.Based on your mention of 2.17.4 I upgraded to 2.17.3 (worked perfectly)
I then stepped through each release until I was on 2.17.7 and all worked - so I am a little confused. Seems like it was an issue with the jump between 3.13.4 and latest, and stepping through sequentially.
Either way, upgrading more regularly seems like a good idea so I will try to keep up to date withthe releases
@mikiher commented on GitHub (Jan 18, 2025):
Can you paste the exact log lines from the second attempt to migrate from 2.13.4 to 2.17.7, that pertain to the 2.17.4 migration? I'd like to see exactly what the log output was (I understand it succeeded, but I want to see which messages were printed).
Can you please also paste the similar log lines for your next update attempt from 2.17.3 to 2.17.4?