Hacktoberfest 2026: le issue che i maintainer hanno segnato per ottobre, aperte e adatte ai principianti. Sfoglia le issue Hacktoberfest

[Bug]: Image proxy returns 400 Bad Request for delegated/shared mailbox users (works fine for account owner)

Aperta
#13,438 1 commento 0 reazioni 0 assegnatari Vedi su GitHub

I maintainer di solito rispondono entro 1 giorno

Nessuno ha ancora preso questa issue.

Valutazione

Difficoltà
4/5
Tempo stimato
3-5 giorni
Idoneità per principianti
48/100
Tipo di issue
Bug
Chiarezza
Abbastanza chiara
Stato di attività
Tranquilla
Stack tecnologico
javascript, php

Direzione di ricerca

Inizia dal punto di ingresso /apps/mail/proxy dell'app Mail e riproduci la richiesta sia con il proprietario della casella di posta sia con l'utente delegato. Confronta la gestione dell'autorizzazione e dell'accesso alla casella di posta per i due account; il lavoro è completato quando le immagini sottoposte a proxy vengono caricate correttamente per gli utenti delegati senza modificare il comportamento del proprietario.

Scritto dal modello di indicizzazione a partire dal testo della issue.

Descrizione

1. to develop bug feature: delegation
Steps to reproduce

Is this a bug report or feature request?

  • This is a bug report.
  • I have searched the existing issues and could not find a duplicate covering this exact combination (delegated account + image proxy 400).

Nextcloud Server and Mail app version

  • Mail app version: 5.10.11
  • Nextcloud Server version: Nextcloud Hub 26 Spring (34.0.0)

Steps to reproduce

  1. Set up a mailbox that is shared/delegated to a second Nextcloud user (delegated account access in the Mail app).
  2. As the mailbox owner, open an HTML email containing remote/external images (e.g. a newsletter with tracking pixels and product images hosted on a third-party domain).
  3. As the delegated user, open the same email (via the shared/delegated mailbox).
Expected behavior

Images load correctly for the delegated user, the same way they do for the mailbox owner, since the Mail app's built-in image proxy (/apps/mail/proxy?id=...&hmac=...&src=...) should work regardless of which account (owner or delegate) is viewing the message.

Actual behavior
  • As the owner, all images load fine.
  • As the delegated user, every single proxied image request fails with 400 Bad Request. This affects all images in the message (logos, product images, tracking pixels/gifs, footer images) — not just specific ones.

Example failing request URL (sanitized):

GET https://cloud.example.tld/apps/mail/proxy?id=259324&hmac=<hmac>&src=https://example.com/assets/newsletter/.../image.png
=> 400 Bad Request

Response headers observed via browser devtools (relevant excerpt):

Status: 400 Bad Request
Content-Type: text/html; charset=UTF-8
Content-Length: 0
Server: nginx
X-User-Id: <delegated_user_login>

Note the X-User-Id header reflects the delegated user's login, not the mailbox owner's account. This is consistent across all failing image requests in the message, and matches the console log pattern where every proxied image URL for the same message returns 400 exclusively when accessed by the delegate.

Mail app version

5.10.11

Nextcloud version

34.0.0

Mailserver or service

Mailcow

Operating system

No response

PHP engine version

No response

Nextcloud memory caching

Redis

Web server

Apache (supported)

Database

PostgreSQL

Additional info

No response

Lingua principale
JavaScript
Stelle
1k
Fork
348
Merge medio
1g 19h
PR unite (30g)
90

Preparare l'ambiente

Come iniziare

  1. Leggi tutta la issue e poi la guida ai contributi del progetto.
  2. Commenta sulla issue per dire che te ne occupi tu — evita che due persone facciano lo stesso lavoro.
  3. Fai un fork del repository e lavora su un branch.
  4. Apri una pull request che faccia riferimento al numero della issue.

Altre issue di nextcloud/mail

Tutte le issue di nextcloud/mail

Issue simili

Altre issue su JavaScript

Ricevi le nuove issue nella tua casella

Un breve riepilogo di issue GitHub adatte ai principianti.