Software / code / prosody-modules
Diff
mod_http_admin_api/mod_http_admin_api.lua @ 5477:5986e0edd7a3
mod_http_oauth2: Use validated redirect URI when returning errors to client
Parsing it from the query again without the validation done by
get_redirect_uri() may lead to open redirect issues.
| author | Kim Alvefur <zash@zash.se> |
|---|---|
| date | Thu, 18 May 2023 14:17:58 +0200 |
| parent | 5284:5178c13deb78 |
| child | 5710:4c84cfb586c1 |