Doorkeeper is an OAuth 2 provider for Ruby on Rails / Grape. Prior to version 5.6.6, Doorkeeper automatically processes authorization requests without user consent for public clients that have been pr ...
Continue ReadingJune 13, 2023
Doorkeeper is an OAuth 2 provider for Ruby on Rails / Grape. Prior to ...Read More ...
Continue ReadingJune 12, 2023
OAuth RFC 8252 says https://www.rfc-editor.org/rfc/rfc8252#section-8.6 > the authorization server SHOULD NOT process authorization requests automatically without user consent or interaction, excep ...
Continue ReadingJune 12, 2023
OAuth RFC 8252 says https://www.rfc-editor.org/rfc/rfc8252#section-8.6 > the authorization server SHOULD NOT process authorization requests automatically without user consent or interaction, excep ...
Continue ReadingJune 12, 2023
Doorkeeper is an OAuth 2 provider for Ruby on Rails / Grape. Prior to version 5.6.6, Doorkeeper automatically processes authorization requests without user consent for public clients that have been pr ...
Continue ReadingJune 12, 2023
[![API Security Posture](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() APIs, more formally known as application programming int ...
Continue ReadingJune 08, 2023
com.liferay.oauth2.provider.service is vulnerable to Cross-site Scripting (XSS). The vulnerability exists in the OAuth 2.0 module's `OAuth2ProviderApplicationRedirect` class in the library, which allo ...
Continue ReadingJune 08, 2023
Hi, Spring fans! Welcome to another installment of _This Week in Spring_! And what an insane week it's been! Long story short, I've spent 10-12 hours a day over the last five days migrating a dozen di ...
Continue ReadingJune 06, 2023
Back to Main