I am also encountering the "Back to App" issue. Not sure how to handle this. I don't want to overwrite the AADSTS65004 error message, because a user can hit this error and have it be the correct error.
I am considering displaying the AADSTS65004 error message alongside another message that says "admin authorization required." However, this isn't ideal. I would be displaying 2 error messages where only 1 is correct.