diff --git a/identity-server/src/IdentityServer/Endpoints/Results/AuthorizeResult.cs b/identity-server/src/IdentityServer/Endpoints/Results/AuthorizeResult.cs index 1ffb1b974..4155e0c0e 100644 --- a/identity-server/src/IdentityServer/Endpoints/Results/AuthorizeResult.cs +++ b/identity-server/src/IdentityServer/Endpoints/Results/AuthorizeResult.cs @@ -177,8 +177,8 @@ private string BuildRedirectUri(AuthorizeResponse response) if (response.IsError && !uri.Contains('#')) { - // https://tools.ietf.org/html/draft-bradley-oauth-open-redirector-00 - uri += "#_=_"; + // https://datatracker.ietf.org/doc/html/draft-ietf-oauth-security-topics-29#section-4.1.3 + uri += "#_"; } return uri;