laptop and a wrench

漏洞

A redirect URL is not added by default to an application created from ArcGIS Developers Dashboard.

ArcGIS Platform
漏洞 ID 编号 BUG-000167433
已提交May 14, 2024
上次修改时间June 5, 2024
适用范围ArcGIS Platform
找到的版本N/A
操作系统N/A
操作系统版本N/A
状态As Designed

附加信息

This is the correct behavior for an OAuth 2.0 application. Redirect URLs, if so desired, must be added by the user. Refer to https://developers.arcgis.com/documentation/mapping-apis-and-services/security/tutorials/add-redirect-uri/ or https://developers.arcgis.com/documentation/mapping-apis-and-services/security/ for high-level view of ArcGIS application security best practices and https://developers.arcgis.com/documentation/mapping-apis-and-services/security/oauth-2/.

解决办法

  1. Open the ArcGIS Developer Dashboard and the application in the OAuth 2.0 tab.
  2. Click the Edit Application button.
  3. Scroll to the Redirect URLs section and add 'urn:ietf:wg:oauth:2.0:oob' to the URL.

重现步骤

漏洞 ID: BUG-000167433

软件:

  • ArcGIS Platform

当漏洞状态发生变化时获得通知

下载 Esri 支持应用程序

发现关于本主题的更多内容

获取来自 ArcGIS 专家的帮助

联系技术支持部门

下载 Esri 支持应用程序

转至下载选项