Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Accelerator4] - Can authorise a consent which is not bound the client id #122

Open
malshaniS opened this issue Sep 13, 2024 · 0 comments
Open
Labels

Comments

@malshaniS
Copy link

Description:
Can authorise a consent successfully which is not bound the specific client id.

Expected Response:
Redirect back with an error "Request Object contains invalid consent"

Suggested Labels:

Suggested Assignees:

Affected Product Version:

OS, DB, other environment details and versions:

Steps to reproduce:

  1. Create two applications.
  2. Get a consent from TPP 1.
  3. Send authorisation request for the generated consent id by passing the client id of TPP2.
  4. Verify the response.

Related Issues:
[Any related issues such as sub tasks, issues reported in other repositories (e.g component repositories), similar problems, etc. ]

@malshaniS malshaniS added bug Something isn't working Severity/Major Priority/Highest accelerator4.0 accelerator4.0 labels Sep 13, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

1 participant