Fixed a vulnerability allowing passing the OP's response to another site using LightO...
authormewp <mewp151@gmail.com>
Thu, 2 Sep 2010 14:45:23 +0000 (16:45 +0200)
committermewp <mewp151@gmail.com>
Thu, 2 Sep 2010 14:45:23 +0000 (16:45 +0200)
commitf09341a89ab1ae772d5b2305495e00461fe78e89
tree02a64d04dae013d50f4399034bdc86366ca18d3c
parentd624e10b85f27a7f9f45290021530908ad27190c
Fixed a vulnerability allowing passing the OP's response to another site using LightOpenID.

Before this commit, the library didn't validate return_to, which caused the vulnerability.
openid.php