|
Ran
|
Jobs
1
|
Files
105
|
Run time
2s
|
Badge
README BADGES
|
push
github
chore(deps): bump github.com/lestrrat-go/jwx from 1.2.25 to 1.2.26 (#1138) Bumps [github.com/lestrrat-go/jwx](https://github.com/lestrrat-go/jwx) from 1.2.25 to 1.2.26. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/lestrrat-go/jwx/releases">github.com/lestrrat-go/jwx's releases</a>.</em></p> <blockquote> <h2>[SECURITY] v1.2.26</h2> <pre><code>v1.2.26 - 14 Jun 2023 [Security] * Potential Padding Oracle Attack Vulnerability and Timing Attack Vulnerability for JWE AES-CBC encrypted payloads affecting all v2 releases up to v2.0.10, all v1 releases up to v1.2.25, and all v0 releases up to v0.9.2 have been reported by @shogo82148. <pre><code>Please note that v0 versions will NOT receive fixes. This release fixes these vulnerabilities for the v1 series. </code></pre> <p></code></pre></p> </blockquote> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/lestrrat-go/jwx/blob/v1.2.26/Changes">github.com/lestrrat-go/jwx's changelog</a>.</em></p> <blockquote> <p>v1.2.26 - 14 Jun 2023 [Security]</p> <ul> <li> <p>Potential Padding Oracle Attack Vulnerability and Timing Attack Vulnerability for JWE AES-CBC encrypted payloads affecting all v2 releases up to v2.0.10, all v1 releases up to v1.2.25, and all v0 releases up to v0.9.2 have been reported by <a href="https://github.com/shogo82148"><code>@shogo82148</code></a>.</p> <p>Please note that v0 versions will NOT receive fixes. This release fixes these vulnerabilities for the v1 series.</p> </li> </ul> <p>[Miscellaneous]</p> <ul> <li>JWE tests now only run algorithms that are supported by the underlying <code>jose</code> tool</li> </ul> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/lestrrat-go/jwx/commit/d9ddbc8e5"><code>d9ddbc8</code></a> merge v1 (<a href="https://redirect.githu... (continued)
7027 of 10591 relevant lines covered (66.35%)
47.45 hits per line
| ID | Job ID | Ran | Files | Coverage | |
|---|---|---|---|---|---|
| 1 | 5287700149.1 | 0 |
66.35 |
GitHub Action Run |