From fd3f0275c661c2e36ef84d2bd06394eba7da9d30 Mon Sep 17 00:00:00 2001 From: Akbarkhon Variskhanov Date: Sun, 16 Apr 2023 03:49:10 +0500 Subject: [PATCH] Add `client_secret` parameter to Password Grant `POST` requests to `/oauth/token` require the `client_secret` parameter be present. Otherwise access is denied. --- server/views/index.js | 1 + 1 file changed, 1 insertion(+) diff --git a/server/views/index.js b/server/views/index.js index ec487be..63c53e2 100644 --- a/server/views/index.js +++ b/server/views/index.js @@ -734,6 +734,7 @@ $(function () { e.preventDefault(); var opt = { client_id: $('#client_id').val(), + client_secret: $('#client_secret').val(), username: $('#username').val(), password: $('#password').val(), grant_type: 'password',