Commit 77ddcd5
Jah-yee
fix(auth): preserve existing refresh_token when server omits it
Per RFC 6749 Section 6, issuing a new refresh token in the refresh
response is optional. When the authorization server does not return a
new refresh_token, the previously stored refresh_token is now preserved
instead of being discarded.
Fixes: #22701 parent 62eb08e commit 77ddcd5
1 file changed
+5
-0
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
458 | 458 | | |
459 | 459 | | |
460 | 460 | | |
| 461 | + | |
| 462 | + | |
| 463 | + | |
| 464 | + | |
| 465 | + | |
461 | 466 | | |
462 | 467 | | |
463 | 468 | | |
| |||
0 commit comments