Spring Security
  1. Spring Security
  2. SEC-1247

AbstractProcessingFilter, successfulAuthentication() redirects to targetUrl without consulting alwaysUseDefaultTargetUrl.

    Details

    • Type: Bug Bug
    • Status: Closed
    • Priority: Major Major
    • Resolution: Invalid
    • Affects Version/s: 2.0.4
    • Fix Version/s: 3.0.0 RC1
    • Component/s: Core
    • Labels:
      None

      Description

      AbstractProcessingFilter, successfulAuthentication() redirects to targetUrl without consulting alwaysUseDefaultTargetUrl.

      sendRedirect(request, response, targetUrl);

      should be changed to

      if (alwaysUseDefaultTargetUrl){
      sendRedirect(request, response, targetUrl);
      }

        Activity

        There are no comments yet on this issue.

          People

          • Assignee:
            Luke Taylor
            Reporter:
            AnirudhPrabhudesai
          • Votes:
            0 Vote for this issue
            Watchers:
            0 Start watching this issue

            Dates

            • Created:
              Updated:
              Resolved: