[ANN] Joken 1.0.1, 1.1.1, 1.2.1

50 views
Skip to first unread message

Bryan Joseph

unread,
Jun 3, 2016, 9:46:51 AM6/3/16
to elixir-lang-talk
Hello,

There was a potential security bug found in Joken that bypassed validation of claims if the token did not contain those claims. More info can be found here: https://github.com/bryanjos/joken/issues/129

I've published versions 1.0.1, 1.1.1, and 1.2.1 to patch it. 

Thanks goes to IamfromSpace for finding and fixing the issue.
Reply all
Reply to author
Forward
0 new messages