Skip to content

Not able to fetch Avatar images via HTTP Request and Private-Token

Summary

After the latest update 11.5.X-ee I am not able to access the avatar via Private Token. For an automatic generated Report, including all projects, I use the project avatar to display the image within the Report. After the recent Update I am not able to get Image, instead I am requested (response message is the html login page) to log in.

Steps to reproduce

HTTPS Get: https://{gitlab-url}/uploads/-/system/project/avatar/644/AppIcon60x60_3x.png

Header: Private-Token: XXXXX

This works fluently before the recent update. Is this issue here maybe related to my issue: https://gitlab.com/gitlab-org/gitlab-ce/issues/55081

What is the current bug behavior?

I am not able to get the image from a https call

What is the expected correct behavior?

e.g. in Postman I should be able to see the image with the Parameter mentioned above (URL + Header)