From 81f179ed4c39cffe05aa0243843679ffd5c13dcd Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?=E4=BF=9E=E5=8F=AF=20=C2=B7=20YU=20KE?= <1798456934@qq.com> Date: Fri, 28 Aug 2026 15:47:20 +0800 Subject: [PATCH] fix(apps): pass withCredentials as request config for refresh/logout (#8308) * fix(project): pass withCredentials as request config for refresh/logout The refresh and logout APIs called baseRequestClient.post(url, { withCredentials: true }), but the second argument is the request body (data), not the request config. withCredentials was therefore sent inside the POST body and never applied as an axios option, so cookie-based token refresh/logout failed. Move withCredentials to the config argument (post(url, undefined, config)) in all five apps: web-antd, web-antdv-next, web-ele, web-naive, web-tdesign. Co-Authored-By: EvoX * chore: add changeset for withCredentials config fix Co-Authored-By: EvoX --------- Co-authored-by: EvoX --- .changeset/calm-otters-refresh-credentials.md | 9 +++++++++ 1 file changed, 9 insertions(+) create mode 100644 .changeset/calm-otters-refresh-credentials.md diff --git a/.changeset/calm-otters-refresh-credentials.md b/.changeset/calm-otters-refresh-credentials.md new file mode 100644 index 000000000..0bf89897c --- /dev/null +++ b/.changeset/calm-otters-refresh-credentials.md @@ -0,0 +1,9 @@ +--- +'@vben/web-antd': patch +'@vben/web-antdv-next': patch +'@vben/web-ele': patch +'@vben/web-naive': patch +'@vben/web-tdesign': patch +--- + +fix(apps): pass withCredentials as request config for refresh/logout