Skip to content

Fix security vulnerability (CVE-2020-26160) #6

@mfridman

Description

@mfridman

More detailed explanation here: dgrijalva/jwt-go#428

How should we approach a fix?

There is a v4.0.0-preview1 version in dgrijalva/jwt-go that apparently fixes this, and a bunch of PRs.

There was a fix in this fork, https://github.com/form3tech-oss/jwt-go by @Waterdrips and co. as well.

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions