Skip to content

Re-encode the URI for the SAML redirect link - #3406

Merged
david-crespo merged 1 commit into
mainfrom
encode-redirect-uris
Oct 10, 2026
Merged

david-crespo merged 1 commit into
mainfrom
encode-redirect-uris

Conversation

@fakemonster

Copy link
Copy Markdown
Contributor

On the SAML login page, when we pull out the redirect_uri from the url for the redirect link, it's decoded automatically. When the URI is just a path, like /system, the decoded form on Nexus' end is still a valid URI. But if there's a sufficiently complex query, with things like whitespace (or, say, OxQL comparison operators), Nexus will rightly refuse to parse that after decoding. Simple enough; just re-encode it!

On the SAML login page, when we pull out the redirect_uri from the url
for the redirect link, it's decoded automatically. When the URI is just
a path, like `/system`, the decoded form on Nexus' end is still a valid
URI. But if there's a sufficiently complex query, with things like
whitespace (or, say, OxQL comparison operators), Nexus will rightly
refuse to parse that after decoding. Simple enough; just re-encode it!
@vercel

vercel Bot commented Oct 10, 2026 •

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated
console Ready Ready Preview Oct 10, 2026 3:29am UTC

Request Review

@david-crespo
david-crespo merged commit a64d548 into main Oct 10, 2026
7 checks passed
@david-crespo
david-crespo deleted the encode-redirect-uris branch October 10, 2026 05:00

This branch was successfully deployed

1 active deployment
Preview — 2759b21c Deployed Oct 10, 2026 by vercel[bot]
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants