Skip to content

Conversation

@afilippov1985
Copy link
Contributor

If set scope column in oauth_clients table to empty string, then client allowed to any scope even if it not exists in oauth_scopes table.

If set `scope` column in `oauth_clients` table to empty string, then client allowed to any scope even if it not exists in `oauth_scopes` table.
bshaffer added a commit that referenced this pull request Nov 18, 2015
@bshaffer bshaffer merged commit 4ccfab7 into bshaffer:develop Nov 18, 2015
@afilippov1985 afilippov1985 deleted the Client's-scope-restriction branch January 12, 2016 08:57
@bshaffer bshaffer mentioned this pull request Jan 6, 2017
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants