You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
You can argue whether or not this is the right behaviour, but I would say it is not. As a user of a token verification endpoint, I expect a token that passed to be usable for authentication. This is not true for blacklisted refresh tokens.