@ -479,7 +479,6 @@ public class OAuth2Authorization implements Serializable {
@@ -479,7 +479,6 @@ public class OAuth2Authorization implements Serializable {
@ -492,6 +491,33 @@ public class OAuth2Authorization implements Serializable {
@@ -492,6 +491,33 @@ public class OAuth2Authorization implements Serializable {
@ -144,8 +144,9 @@ public final class OAuth2AuthorizationCodeAuthenticationProvider implements Auth
@@ -144,8 +144,9 @@ public final class OAuth2AuthorizationCodeAuthenticationProvider implements Auth
if(!authorizationCode.isInvalidated()){
// Invalidate the authorization code given that a different client is
this.logger.warn(LogMessage.format("Invalidated authorization code used by registered client '%s'",
@ -172,7 +173,7 @@ public final class OAuth2AuthorizationCodeAuthenticationProvider implements Auth
@@ -172,7 +173,7 @@ public final class OAuth2AuthorizationCodeAuthenticationProvider implements Auth
if(token!=null){
// Invalidate the access (and refresh) token as the client is
// attempting to use the authorization code more than once
@ -284,10 +285,10 @@ public final class OAuth2AuthorizationCodeAuthenticationProvider implements Auth
@@ -284,10 +285,10 @@ public final class OAuth2AuthorizationCodeAuthenticationProvider implements Auth
idToken=null;
}
authorization=authorizationBuilder.build();
// Invalidate the authorization code as it can only be used once
@ -187,10 +187,8 @@ public final class OAuth2DeviceAuthorizationConsentAuthenticationProvider implem
@@ -187,10 +187,8 @@ public final class OAuth2DeviceAuthorizationConsentAuthenticationProvider implem
@ -210,8 +208,7 @@ public final class OAuth2DeviceAuthorizationConsentAuthenticationProvider implem
@@ -210,8 +208,7 @@ public final class OAuth2DeviceAuthorizationConsentAuthenticationProvider implem
@ -124,7 +124,7 @@ public final class OAuth2DeviceCodeAuthenticationProvider implements Authenticat
@@ -124,7 +124,7 @@ public final class OAuth2DeviceCodeAuthenticationProvider implements Authenticat
if(!deviceCode.isInvalidated()){
// Invalidate the device code given that a different client is attempting
this.logger.warn(LogMessage.format("Invalidated device code used by registered client '%s'",
@ -172,7 +172,7 @@ public final class OAuth2DeviceCodeAuthenticationProvider implements Authenticat
@@ -172,7 +172,7 @@ public final class OAuth2DeviceCodeAuthenticationProvider implements Authenticat
this.logger.warn(LogMessage.format("Invalidated device code used by registered client '%s'",
@ -200,8 +200,7 @@ public final class OAuth2DeviceCodeAuthenticationProvider implements Authenticat
@@ -200,8 +200,7 @@ public final class OAuth2DeviceCodeAuthenticationProvider implements Authenticat
@ -166,8 +166,7 @@ public final class OAuth2DeviceVerificationAuthenticationProvider implements Aut
@@ -166,8 +166,7 @@ public final class OAuth2DeviceVerificationAuthenticationProvider implements Aut
@ -79,7 +79,7 @@ public final class OAuth2TokenRevocationAuthenticationProvider implements Authen
@@ -79,7 +79,7 @@ public final class OAuth2TokenRevocationAuthenticationProvider implements Authen
@ -260,12 +260,12 @@ public final class OidcClientRegistrationAuthenticationProvider implements Authe
@@ -260,12 +260,12 @@ public final class OidcClientRegistrationAuthenticationProvider implements Authe
@ -147,7 +147,7 @@ public class OAuth2TokenIntrospectionAuthenticationProviderTests {
@@ -147,7 +147,7 @@ public class OAuth2TokenIntrospectionAuthenticationProviderTests {
@ -176,8 +176,8 @@ public class OidcClientConfigurationAuthenticationProviderTests {
@@ -176,8 +176,8 @@ public class OidcClientConfigurationAuthenticationProviderTests {
@ -250,8 +250,8 @@ public class OidcClientRegistrationAuthenticationProviderTests {
@@ -250,8 +250,8 @@ public class OidcClientRegistrationAuthenticationProviderTests {