]> BookStack Code Mirror - bookstack/blobdiff - app/Access/Oidc/OidcService.php
ExportFormatter: Add book description and check for empty book and chapter descriptio...
[bookstack] / app / Access / Oidc / OidcService.php
index 6d024ae32e4c698c286b6b749e6e069be844fdc8..7c1760649b5bb5bfc8600cb38fe56fe98282df18 100644 (file)
@@ -246,10 +246,14 @@ class OidcService
         if (!$userDetails->isFullyPopulated($this->shouldSyncGroups()) && !empty($settings->userinfoEndpoint)) {
             $provider = $this->getProvider($settings);
             $request = $provider->getAuthenticatedRequest('GET', $settings->userinfoEndpoint, $accessToken->getToken());
-            $response = new OidcUserinfoResponse($provider->getResponse($request));
+            $response = new OidcUserinfoResponse(
+                $provider->getResponse($request),
+                $settings->issuer,
+                $settings->keys,
+            );
 
             try {
-                $response->validate($idToken->getClaim('sub'));
+                $response->validate($idToken->getClaim('sub'), $settings->clientId);
             } catch (OidcInvalidTokenException $exception) {
                 throw new OidcException("Userinfo endpoint response validation failed with error: {$exception->getMessage()}");
             }