twilio-java icon indicating copy to clipboard operation
twilio-java copied to clipboard

Update JJWT Dependency

Open nova-airship opened this issue 10 months ago • 5 comments

Issue Summary

I am currently running into dependency incompatibility issues between this library and the Okta one. Both libraries utilize the jjwt-api/jjwt-impl libraries which are currently on 0.12.5 and includes some breaking changes in 0.12.#+. The latest version of the Okta library utilizes 0.12.3 while this library is still using 0.11.2 and are incompatible with each other.

I attempted to update the Okta one to the latest in order to address vulnerabilities that came with some of the other dependencies it has but ran into issues with differences between the jjwt versions. Unfortunately, this has me in a position where I cannot actually do that until this library also updates to 0.12.#+.

My request is for the jjwt libraries that are being used be updated to at least 0.12.0.

Technical details:

  • twilio-java version: 10.1.3
  • java version: 21

nova-airship avatar Apr 02 '24 19:04 nova-airship

I have the same issue. The cause is explained on this ticket I raised on jjwt

https://github.com/jwtk/jjwt/issues/926

allantodd avatar Apr 19 '24 07:04 allantodd

Hi! I will take this up. Thanks!

tiwarishubham635 avatar Apr 30 '24 11:04 tiwarishubham635

One of the reasons why we did not bump the version as of now was because we were waiting for the 1.0 release as mentioned here. But if it is a blocker for multiple customers then we can bump the version now as well.

tiwarishubham635 avatar May 03 '24 11:05 tiwarishubham635

I'm also having issues with this! Would love it to be merged soon.

alexmacarthur avatar May 20 '24 21:05 alexmacarthur

Blocking also for me, as our server uses jjwt version 0.12.5 unfortunately not compliant with 0.11.xx and Maven/java not able to have same lib with 2 different versions at the same time (very bad!)

jerome25000 avatar Aug 20 '24 12:08 jerome25000