SAP Knowledge Base Article - Preview

3734415 - CORS Error with "/authorizationserver/csrf" after Upgrading to JDK21 version

Symptom

Upon trying to use the OAuth flow after upgrading to SAP Commerce Cloud JDK21 a similar CORS error and failed request to below ones happen:

  • Access to fetch at 'https://api.oauth.com/authorizationserver/csrf' from origin 'https://website.test.example' has been blocked by CORS policy: No 'Access-Control-Allow-Origin' header is present on the requested resource.
  • GET https://api.oauth.com/authorizationserver/csrf net::ERR_FAILED 403 (Forbidden)

This error is very common to happen during SmartEdit sessions. 


Read more...

Environment

SAP Commerce Cloud 2211 for JDK21

Product

SAP Commerce Cloud 2211 for JDK21

Keywords

sedit, ccv2, hybris, oauth2, login, network, console, permission , KBA , CEC-SCC-PLA-PL , Platform , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.