Changelog for
python310-PyJWT-2.9.0-1.4.noarch.rpm :
* Tue Aug 13 2024 Daniel Garcia
- Skip failing test gh#jpadilla/pyjwt#802
* Mon Aug 05 2024 John Paul Adrian Glaubitz - Update to version 2.9.0
* Drop support for Python 3.7 (EOL) by AATThugovk in #910
* Allow JWT issuer claim validation to accept a list of strings too by AATTmattpollak in #913
* Fix unnecessary string concatenation by AATTsirosen in #904
* Fix docs for ``jwt.decode_complete`` to include ``strict_aud`` option by AATTwoodruffw in #923
* Fix docs step by AATTjpadilla in #950
* Fix: Remove an unused variable from example code block by AATTkenkoooo in #958
* Add support for Python 3.12 by AATThugovk in #910
* Improve performance of ``is_ssh_key`` + add unit test by AATTbdraco in #940
* Allow ``jwt.decode()`` to accept a PyJWK object by AATTluhn in #886
* Make ``algorithm_name`` attribute available on PyJWK by AATTluhn in #886
* Raise ``InvalidKeyError`` on invalid PEM keys to be compatible with cryptography 42.x.x by AATTCollinEMac in #952
* Raise an exception when required cryptography dependency is missing by AATTtobloef in #963
* Mon Sep 04 2023 John Paul Adrian Glaubitz - Update to version 2.8.0
* Update python version test matrix by AATTauvipy in #895
* Add ``strict_aud`` as an option to ``jwt.decode`` by AATTwoodruffw in #902
* Export PyJWKClientConnectionError class by AATTdaviddavis in #887
* Allows passing of ssl.SSLContext to PyJWKClient by AATTjuur in #891- Skip test_get_jwt_set_sslcontext_default test in testsuite
* Fri May 19 2023 Adrian Schröter - update to version 2.7.0
* Add classifier for Python 3.11 by AATTeseifert in #818
* Add Algorithm.compute_hash_digest and use it to implement at_hash validation example by AATTsirosen in #775
* fix: use datetime.datetime.timestamp function to have a milliseconds by AATTdaillouf in #821
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #825
* Custom header configuration in jwk client by AATTthundercat1 in #823
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #828
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #833
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #835
* Add PyJWT._{de,en}code_payload hooks by AATTakx in #829
* Add sort_headers parameter to api_jwt.encode by AATTevroon in #832
* Make mypy configuration stricter and improve typing by AATTakx in #830
* Bump actions/stale from 6 to 7 by AATTdependabot in #840
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #838
* Add more types by AATTViicos in #843
* Differentiate between two errors by AATTirdkwmnsb in #809
* Fix _validate_iat validation by AATTViicos in #847
* Improve error messages when cryptography isn\'t installed by AATTViicos in #846
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #852
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #855
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #859
* Make Algorithm an abstract base class by AATTViicos in #845
* docs: correct mistake in the changelog about verify param by AATTgbillig in #866
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #868
* Bump actions/stale from 7 to 8 by AATTdependabot in #872
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #874
* Add a timeout for PyJWKClient requests by AATTdaviddavis in #875
* Add client connection error exception by AATTdaviddavis in #876
* Add complete types to take all allowed keys into account by AATTViicos in #873
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #878
* Build and upload PyPI package by AATTjpadilla in #884
* Fix for issue #862 - ignore invalid keys in a jwks. by AATTtimw6n in #863
* Add as_dict option to Algorithm.to_jwk by AATTfluxth in #881
* Fri Apr 21 2023 Dirk Müller - add sle15_python_module_pythons (jsc#PED-68)
* Thu Apr 13 2023 Matej Cepl - Make calling of %{sle15modernpython} optional.
* Fri Oct 28 2022 Matej Cepl - Clean up SPEC file.
* Thu Oct 27 2022 Yogalakshmi Arunachalam - Update to 2.6.0 Changed
* bump up cryptography >= 3.4.0 by AATTjpadilla in #807
* Remove types-cryptography from crypto extra by AATTlautat in #805 Fixed
* Invalidate token on the exact second the token expires #797
* fix: version 2.5.0 heading typo by AATTc0state in #803 Added
* Adding validation for issued_at when iat > (now + leeway) as ImmatureSignatureError by AATTsriharan16 in #794
* Sun Oct 09 2022 Michael Ströder - Update to 2.5.0
* Bump actions/checkout from 2 to 3 by AATTdependabot in #758
* Bump codecov/codecov-action from 1 to 3 by AATTdependabot in #757
* Bump actions/setup-python from 2 to 3 by AATTdependabot in #756
* adding support for compressed payloads by AATTdanieltmiles in #753
* Revert \"adding support for compressed payloads\" by AATTauvipy in #761
* Add to_jwk static method to ECAlgorithm by AATTleonsmith in #732
* Remove redundant wheel dep from pyproject.toml by AATTmgorny in #765
* Adjust expected exceptions in option merging tests for PyPy3 by AATTmgorny in #763
* Do not fail when an unusable key occurs by AATTDaGuich in #762
* Fixes for pyright on strict mode by AATTbrandon-leapyear in #747
* Bump actions/setup-python from 3 to 4 by AATTdependabot in #769
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #770
* docs: fix simple typo, iinstance -> isinstance by AATTtimgates42 in #774
* Expose get_algorithm_by_name as new method by AATTsirosen in #773
* Remove support for python3.6 by AATTsirosen in #777
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #778
* Emit a deprecation warning for unsupported kwargs by AATTsirosen in #776
* Fix typo: priot -> prior by AATTjdufresne in #780
* Fix for headers disorder issue by AATTkadabusha in #721
* Update audience typing by AATTJulianMaurin in #782
* Improve PyJWKSet error accuracy by AATTJulianMaurin in #786
* Add type hints to jwt/help.py and add missing types dependency by AATTkkirsche in #784
* Add cacheing functionality for JWK set by AATTwuhaoyujerry in #781
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #788
* Mypy as pre-commit check + api_jws typing by AATTJulianMaurin in #787
* [pre-commit.ci] pre-commit autoupdate by AATTpre-commit-ci in #791
* Bump version to 2.5.0 by AATTjpadilla in #801
* Thu Jul 21 2022 John Paul Adrian Glaubitz - Update in SLE-15 (bsc#1199282, jsc#PM-3243, jsc#SLE-24629)- Drop CVE-2022-29217-non-blocked-pubkeys.patch in older dists since the issue was fixed upstream in version 2.4.0
* Tue Jun 07 2022 Marcus Rueckert - Update to 2.4.0 (CVE-2022-29217 boo#1199756) - Security - [CVE-2022-29217] Prevent key confusion through non-blocklisted public key formats. GHSA-ffqj-6fqr-9h24 - Other changes: - Explicit check the key for ECAlgorithm by AATTestin in https://github.com/jpadilla/pyjwt/pull/713 - Raise DeprecationWarning for jwt.decode(verify=...) by AATTakx in https://github.com/jpadilla/pyjwt/pull/742 - Don\'t use implicit optionals by AATTrekyungmin in https://github.com/jpadilla/pyjwt/pull/705 - documentation fix: show correct scope for decode_complete() by AATTsseering in https://github.com/jpadilla/pyjwt/pull/661 - fix: Update copyright information by AATTkkirsche in https://github.com/jpadilla/pyjwt/pull/729 - Don\'t mutate options dictionary in .decode_complete() by AATTakx in https://github.com/jpadilla/pyjwt/pull/743 - Add support for Python 3.10 by AATThugovk in https://github.com/jpadilla/pyjwt/pull/699 - api_jwk: Add PyJWKSet.__getitem__ by AATTwoodruffw in https://github.com/jpadilla/pyjwt/pull/725 - Update usage.rst by AATTguneybilen in https://github.com/jpadilla/pyjwt/pull/727 - Docs: mention performance reasons for reusing RSAPrivateKey when encoding by AATTdmahr1 in https://github.com/jpadilla/pyjwt/pull/734 - Fixed typo in usage.rst by AATTisraelabraham in https://github.com/jpadilla/pyjwt/pull/738 - Add detached payload support for JWS encoding and decoding by AATTfviard in https://github.com/jpadilla/pyjwt/pull/723 - Replace various string interpolations with f-strings by AATTakx in https://github.com/jpadilla/pyjwt/pull/744
* Wed Nov 03 2021 John Paul Adrian Glaubitz - Update to 2.3.0
* Revert \"Remove arbitrary kwargs.\" (#701)
* Add exception chaining (#702)- from version 2.2.0
* Remove arbitrary kwargs. (#657)
* Use timezone package as Python 3.5+ is required. (#694)
* Assume JWK without the \"use\" claim is valid for signing as per RFC7517 (#668)
* Prefer `headers[\"alg\"]` to `algorithm` in `jwt.encode()`. (#673)
* Fix aud validation to support {\'aud\': null} case. (#670)
* Make `typ` optional in JWT to be compliant with RFC7519. (#644)
* Remove upper bound on cryptography version. (#693)
* Add support for Ed448/EdDSA. (#675)
* Tue May 18 2021 Dirk Müller - update to 2.1.0: - Allow claims validation without making JWT signature validation mandatory. ` - Remove padding from JWK test data. ` - Make `kty` mandatory in JWK to be compliant with RFC7517. ` - Allow JWK without `alg` to be compliant with RFC7517. ` - Allow to verify with private key on ECAlgorithm, as well as on Ed25519Algorithm. ` - Add caching by default to PyJWKClient ` - Add missing exceptions.InvalidKeyError to jwt module __init__ imports ` - Add support for ES256K algorithm ` - Add `from_jwk()` to Ed25519Algorithm ` - Add `to_jwk()` to Ed25519Algorithm ` - Export `PyJWK` and `PyJWKSet`
* Fri Feb 26 2021 John Paul Adrian Glaubitz - Update in SLE-15 (bsc#1176785, jsc#ECO-3105, jsc#PM-2352)
* Mon Feb 01 2021 Dirk Müller - update to 2.0.1:
* Drop support for Python 2 and Python 3.0-3.5
* Require cryptography >= 3
* Drop support for PyCrypto and ECDSA
* Drop CLI
* Improve typings
* Dropped deprecated errors
* Dropped deprecated ``verify_expiration`` param in ``jwt.decode(...)``
* Dropped deprecated ``verify`` param in ``jwt.decode(...)``
* Require explicit ``algorithms`` in ``jwt.decode(...)`` by default
* Dropped deprecated ``require_
*`` options in ``jwt.decode(...)``
* Introduce better experience for JWKs
* further details see included CHANGELOG.rst- drop 0001-Catch-BadSignatureError-raised-by-ecdsa-0.13.3.patch (obsolete)