QUALITY PATCH

MDVA-39305: Registered customers are not able to log in using the enabled Google reCAPTCHA

Registered customers are not able to log in using the enabled Google reCAPTCHA. Quality patch MDVA-39305 for magento/module-re-captcha-version-2-checkbox applies to Magento Open Source and Adobe Commerce 2.4.0 to 2.4.3-p3.

Categories
Customer
Components
magento/module-re-captcha-version-2-checkbox, magento/module-re-captcha-version-2-invisible, magento/module-re-captcha-version-3-invisible, magento/module-re-captcha-customer, magento/module-re-captcha-frontend-ui, magento/module-customer, magento/module-customer-custom-attributes
Origin
adobe-commerce-support
Since QPT
1.1.1

Issue

Registered customers are not able to log in using the enabled Google reCAPTCHA.

Steps to reproduce

1. Go to Store > Configuration > Security > Google reCAPTCHA Storefront and enable Google reCAPTCHA. 1. Go to Frontend. 1. Open Developer Tool Console in the browser.

Adobe's page lists 2.4.1-p1 - 2.4.3-p3, 2.4.4-p1 - 2.4.4-p5, 2.4.5 - 2.4.6-p2 as compatible; the versions below are resolved from the current QPT constraints and are the ones the tool will offer.

Install

Install the Quality Patches Tool with composer require magento/quality-patches, apply the prerequisites listed for all files applicable to your distribution and version first, then run vendor/bin/magento-patches apply MDVA-39305. On Cloud, add MDVA-39305 under stage.build.QUALITY_PATCHES in .magento.env.yaml.

For cweagans/composer-patches, choose a compatible version below and download the bundle. Copy its MDVA-39305/ folder into patches/composer/, merge composer.patches.json into composer.json, then run composer install. Bundle prerequisites the same way and list them first. Paths are relative to each package root, using the default -p1 level. Prefer local files when configuring composer-patches; a remote URL can change.

Patch files and compatible versions

Packages across compatible versions (6): magento/module-re-captcha-version-2-checkbox, magento/module-re-captcha-version-2-invisible, magento/module-re-captcha-version-3-invisible, magento/module-re-captcha-customer, magento/module-re-captcha-frontend-ui, magento/module-customer
Packages across compatible versions (7): magento/module-re-captcha-version-2-checkbox, magento/module-re-captcha-version-2-invisible, magento/module-re-captcha-version-3-invisible, magento/module-re-captcha-customer, magento/module-re-captcha-frontend-ui, magento/module-customer, magento/module-customer-custom-attributes

magento/security-package >=1.0.0 <=1.1.1

Magento Open Source
2.4.2-p2, 2.4.2-p1, 2.4.2, 2.4.1-p1, 2.4.1, 2.4.0-p1, 2.4.0
Adobe Commerce
2.4.2-p2, 2.4.2-p1, 2.4.2, 2.4.1-p1, 2.4.1, 2.4.0-p1, 2.4.0
Replaced with
MDVA-39305-V2
Patch file
patches/os/MDVA-39305_1.1.1.patch
  • vendor/magento/module-re-captcha-version-2-checkbox/etc/csp_whitelist.xml (added)
  • vendor/magento/module-re-captcha-version-2-invisible/etc/csp_whitelist.xml (added)
  • vendor/magento/module-re-captcha-version-3-invisible/etc/csp_whitelist.xml (added)

magento/security-package 1.1.2

Magento Open Source
2.4.3-p3, 2.4.3-p2, 2.4.3-p1, 2.4.3
Adobe Commerce
2.4.3-p3, 2.4.3-p2, 2.4.3-p1, 2.4.3
Replaced with
MDVA-39305-V2
Patch file
patches/os/MDVA-43417_1.1.2.patch
  • vendor/magento/module-re-captcha-customer/Plugin/Customer/DisableCreateAccountButton.php (added)
  • vendor/magento/module-re-captcha-customer/Plugin/Customer/DisableLoginButton.php (added)
  • vendor/magento/module-re-captcha-customer/etc/frontend/di.xml
  • vendor/magento/module-re-captcha-frontend-ui/view/frontend/web/js/reCaptcha.js

magento/magento2-base >=2.4.3 <=2.4.3-p3

Magento Open Source
2.4.3-p3, 2.4.3-p2, 2.4.3-p1, 2.4.3
Adobe Commerce
2.4.3-p3, 2.4.3-p2, 2.4.3-p1, 2.4.3
Replaced with
MDVA-39305-V2
Patch file
patches/os/MDVA-43417_2.4.3-p1.patch
  • vendor/magento/module-customer/ViewModel/CreateAccountButton.php (added)
  • vendor/magento/module-customer/ViewModel/LoginButton.php (added)
  • vendor/magento/module-customer/view/frontend/layout/customer_account_create.xml
  • vendor/magento/module-customer/view/frontend/layout/customer_account_login.xml
  • vendor/magento/module-customer/view/frontend/templates/form/login.phtml
  • vendor/magento/module-customer/view/frontend/templates/form/register.phtml

magento/magento2-ee-base >=2.4.3 <=2.4.3-p3

Magento Open Source
—
Adobe Commerce
2.4.3-p3, 2.4.3-p2, 2.4.3-p1, 2.4.3
Replaced with
MDVA-39305-V2
Patch file
patches/commerce/MDVA-43417_2.4.3-p1.patch
  • vendor/magento/module-customer-custom-attributes/view/frontend/templates/customer/form/register.phtml

Sources

Łukasz Bajsarowicz
Built by

Łukasz Bajsarowicz, e-commerce architect

Magento and Adobe Commerce architecture, upgrades, performance and audits for merchants and agencies since 2015; magento.watch is the tooling I use on those projects.

Open source, maintained on weekends.