foForgeRock
GitHubforgerockWorkspace
GitHub
  • CI Pipeline Executions
    • Current executionSucceeded
      SDKS-5448-composed-urls
    • Runs and Agents
    • TimelineBeta
    • Configuration
    • Self-Healing CI
    • Project Graph
    • Circular DependenciesEnterprise
    • Resource Usage
    • Analysis
    • ConformanceEnterprise
  • Runs
    • Current runSucceeded
    • Tasks
    • Resource Usage
Insights
  • Compare tasks
  • Analytics
    fix(token-vault): compose vault-owned AM URLs for endpoint dispatch (SDKS-5448) The three token-carrying branches (token exchange, revoke, end session) keep keyword detection but fetch vault-composed URLs from generateAmUrls instead of the attacker-supplied request URL, so tokens can never be routed to attacker-chosen destinations. Adds a userinfo branch (composed URL, Bearer header), denies other AM-origin requests with an explicit error reply, and composes id_token_hint onto the vault's endSession URL. Adds e2e edge-case coverage to token-vault-suites covering endpoint-name in query strings and percent-encoded endpoint paths. No percent-decoding required.
    nx affected -t build lint test docs e2e-ci
Succeeded
read-write access token used
acbfefb6594
13%

Cache hits

2 of 15 tasks used cache.

Protect cache integrity with sandboxing

Atomizer enabled

1 group of tasks optimized.

© 2026 - Nx Cloud

Terms of ServicePrivacy PolicyChangelogStatusDocsContact Nx CloudPricingCompany@NxDevTools
GitHubforgerockWorkspace