authlib icon indicating copy to clipboard operation
authlib copied to clipboard

Thibaultmh/proposed fix to decode id token without kid in alg header

Open thibault-tiro opened this issue 1 year ago • 1 comments

DO NOT SEND ANY SECURITY FIX HERE. Please read "Security Reporting" section on README.

What kind of change does this PR introduce? (check at least one)

  • [X] Bugfix
  • [ ] Feature
  • [ ] Code style update
  • [ ] Refactor
  • [ ] Other, please describe:

Does this PR introduce a breaking change? (check one)

  • [ ] Yes
  • [X] No

  • [X] You consent that the copyright of your pull request source code belongs to Authlib's author.

thibault-tiro avatar Jul 04 '24 09:07 thibault-tiro

First of all thx for maintaining this awesome library. Any perspective on when this PR will be released?

axelv avatar Aug 02 '24 08:08 axelv

Thanks for the fix.

lepture avatar Aug 29 '24 03:08 lepture

Was about to raise a PR for this, thanks! Would it be possible to bump the version? @lepture

FrancisRalph avatar Sep 09 '24 13:09 FrancisRalph