diff --git a/flask_security/utils.py b/flask_security/utils.py index 5b20352..ddca6be 100644 --- a/flask_security/utils.py +++ b/flask_security/utils.py @@ -196,7 +196,7 @@ def url_for_security(endpoint, **values): def validate_redirect_url(url): - if url is None: + if url is None or url.strip() == '': return False url_next = urlsplit(url) url_base = urlsplit(request.host_url)