Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Suddenly started using another logged in user's session #19211

Closed
systems-diplomatic opened this issue Nov 14, 2018 · 10 comments
Closed

Suddenly started using another logged in user's session #19211

systems-diplomatic opened this issue Nov 14, 2018 · 10 comments
Labels
Issue: Clear Description Gate 2 Passed. Manual verification of the issue description passed Issue: Format is valid Gate 1 Passed. Automatic verification of issue format passed

Comments

@systems-diplomatic
Copy link

Preconditions (*)

  1. Magento 2.2.6 (but we have also seen it on 2.2.4)
  2. FPC enabled or disabled
  3. SID NOT included in URL
  4. At least one item (doesn't matter which one) needs to be in the shopping cart in two user's sessions

Steps to reproduce (*)

  1. Click on link to view cart (not minicart) or go to checkout

Expected result (*)

  1. The user must only see their own details, none from another user.

Actual result (*)

  1. You may see data from another user's session including their cart contents.
  2. From this point the user will see all the information from the other user's session including account information, order history, etc.
@magento-engcom-team
Copy link
Contributor

Hi @systems-diplomatic. Thank you for your report.
To help us process this issue please make sure that you provided the following information:

  • Summary of the issue
  • Information on your environment
  • Steps to reproduce
  • Expected and actual results

Please make sure that the issue is reproducible on the vanilla Magento instance following Steps to reproduce. To deploy vanilla Magento instance on our environment, please, add a comment to the issue:

@magento-engcom-team give me $VERSION instance

where $VERSION is version tags (starting from 2.2.0+) or develop branches (for example: 2.3-develop).
For more details, please, review the Magento Contributor Assistant documentation.

@systems-diplomatic do you confirm that you was able to reproduce the issue on vanilla Magento instance following steps to reproduce?

  • yes
  • no

@magento-engcom-team magento-engcom-team added the Issue: Format is valid Gate 1 Passed. Automatic verification of issue format passed label Nov 14, 2018
@systems-diplomatic
Copy link
Author

@magento-engcom-team give me 2.2.6 instance

@magento-engcom-team
Copy link
Contributor

Hi @systems-diplomatic. Thank you for your request. I'm working on Magento 2.2.6 instance for you

@magento-engcom-team
Copy link
Contributor

Hi @systems-diplomatic, here is your Magento instance.
Admin access: http://34.228.235.121/i-19211-2-2-6//admin
Login: admin Password: 123123q
Instance will be terminated in up to 3 hours.

@ghost ghost self-assigned this Nov 16, 2018
@magento-engcom-team
Copy link
Contributor

magento-engcom-team commented Nov 16, 2018

Hi @engcom-backlog-nazar. Thank you for working on this issue.
In order to make sure that issue has enough information and ready for development, please read and check the following instruction: 👇

  • 1. Verify that issue has all the required information. (Preconditions, Steps to reproduce, Expected result, Actual result).

    DetailsIf the issue has a valid description, the label Issue: Format is valid will be added to the issue automatically. Please, edit issue description if needed, until label Issue: Format is valid appears.

  • 2. Verify that issue has a meaningful description and provides enough information to reproduce the issue. If the report is valid, add Issue: Clear Description label to the issue by yourself.

  • 3. Add Component: XXXXX label(s) to the ticket, indicating the components it may be related to.

  • 4. Verify that the issue is reproducible on 2.3-develop branch

    Details- Add the comment @magento-engcom-team give me 2.3-develop instance to deploy test instance on Magento infrastructure.
    - If the issue is reproducible on 2.3-develop branch, please, add the label Reproduced on 2.3.x.
    - If the issue is not reproducible, add your comment that issue is not reproducible and close the issue and stop verification process here!

  • 5. Verify that the issue is reproducible on 2.2-develop branch.

    Details- Add the comment @magento-engcom-team give me 2.2-develop instance to deploy test instance on Magento infrastructure.
    - If the issue is reproducible on 2.2-develop branch, please add the label Reproduced on 2.2.x

  • 6. Add label Issue: Confirmed once verification is complete.

  • 7. Make sure that automatic system confirms that report has been added to the backlog.

@ghost ghost added the Issue: Clear Description Gate 2 Passed. Manual verification of the issue description passed label Nov 16, 2018
@ghost
Copy link

ghost commented Nov 16, 2018

Hi @systems-diplomatic thank you for you report, i'm not able to reproduce following steps you described, i'm really don't know in which cases you have the actual result. this may bge related to your custom code.

@ghost ghost closed this as completed Nov 16, 2018
@ghost
Copy link

ghost commented Nov 16, 2018

@systems-diplomatic, also take a look this commit, #17608

@Jilco
Copy link

Jilco commented May 14, 2019

@systems-diplomatic, wat was the root cause and how did you solve this? I'm facing the same issue

@systems-diplomatic
Copy link
Author

@Jilco, we installed redis to handle the sessions and finally the problem went away, however we never really found the root cause.

@Jilco
Copy link

Jilco commented May 15, 2019

I think i found it, it is in engintron NGINX. The micro cache is the problem

This issue was closed.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Issue: Clear Description Gate 2 Passed. Manual verification of the issue description passed Issue: Format is valid Gate 1 Passed. Automatic verification of issue format passed
Projects
None yet
Development

No branches or pull requests

3 participants