From aefe06904711aaeb2cc24873df7565c4fc0fb345 Mon Sep 17 00:00:00 2001 From: Buster Neece Date: Fri, 26 Apr 2024 16:38:23 -0500 Subject: [PATCH] #6893 -- Loosen enforcement of passkeys on login page to support a broader range of passkeys and browsers. --- .../Frontend/Account/WebAuthn/PostValidationAction.php | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/src/Controller/Frontend/Account/WebAuthn/PostValidationAction.php b/src/Controller/Frontend/Account/WebAuthn/PostValidationAction.php index c0a10009c..85f84c96b 100644 --- a/src/Controller/Frontend/Account/WebAuthn/PostValidationAction.php +++ b/src/Controller/Frontend/Account/WebAuthn/PostValidationAction.php @@ -47,8 +47,7 @@ final class PostValidationAction base64_decode($validateData['authenticatorData'] ?? ''), base64_decode($validateData['signature'] ?? ''), $record->getPasskey()->getPublicKeyPem(), - $challenge, - requireUserVerification: true + $challenge ); } catch (Throwable $e) { $flash = $request->getFlash();