Skip to content

Commit acddb9b

Browse files
committed
fix: openredirector on empty redirect urls setting
Change-Id: I28a6fa592f5565a770aaa1f1202bbcbfd77cf2b9
1 parent b6681f2 commit acddb9b

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

app/Models/OAuth2/Client.php

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -650,7 +650,9 @@ public function isUriAllowed(string $uri):bool
650650

651651
$redirect_uris = explode(',',strtolower($this->redirect_uris));
652652
$uri = URLUtils::normalizeUrl($uri);
653+
if(empty($uri)) return false;
653654
foreach($redirect_uris as $redirect_uri){
655+
if(empty($redirect_uri)) continue;
654656
Log::debug(sprintf("Client::isUriAllowed url %s client %s redirect_uri %s", $uri, $this->client_id, $redirect_uri));
655657
if(str_contains($uri, $redirect_uri))
656658
return true;

0 commit comments

Comments
 (0)