diff --git a/server/handlers/authorize.go b/server/handlers/authorize.go index cf86ee6..7f27a39 100644 --- a/server/handlers/authorize.go +++ b/server/handlers/authorize.go @@ -328,7 +328,7 @@ func AuthorizeHandler() gin.HandlerFunc { func validateAuthorizeRequest(responseType, responseMode, clientID, state, codeChallenge string) error { if strings.TrimSpace(state) == "" { - return fmt.Errorf("invalid state. state is required to prevent csrf attack", responseMode) + return fmt.Errorf("invalid state. state is required to prevent csrf attack") } if responseType != constants.ResponseTypeCode && responseType != constants.ResponseTypeToken && responseType != constants.ResponseTypeIDToken { return fmt.Errorf("invalid response type %s. 'code' & 'token' are valid response_type", responseMode)