瀏覽代碼

fix(typing): validate OAuth code before processing access token (#18288)

tags/1.3.0
Yeuoly 6 月之前
父節點
當前提交
8f547e6340
沒有連結到貢獻者的電子郵件帳戶。
共有 1 個檔案被更改,包括 3 行新增1 行删除
  1. 3
    1
      api/controllers/console/auth/data_source_oauth.py

+ 3
- 1
api/controllers/console/auth/data_source_oauth.py 查看文件

@@ -74,7 +74,9 @@ class OAuthDataSourceBinding(Resource):
if not oauth_provider:
return {"error": "Invalid provider"}, 400
if "code" in request.args:
code = request.args.get("code")
code = request.args.get("code", "")
if not code:
return {"error": "Invalid code"}, 400
try:
oauth_provider.get_access_token(code)
except requests.exceptions.HTTPError as e:

Loading…
取消
儲存