ExFirebaseAuth
ExFirebaseAuth copied to clipboard
Bump jose from 1.11.2 to 1.11.5
Bumps jose from 1.11.2 to 1.11.5.
Release notes
Sourced from jose's releases.
1.11.5 (2022-12-16)
- Fixes
- Remove dependency on
parse_transformforjose_base64andjose_base64url.1.11.4 (2022-12-15)
- Enhancements
- Add support for native
cryptooperations for Ed25519 and Ed448, thanks to@​brettbeatty; see #123.- Add support for native
cryptooperations for ChaCha20-Poly1305 and XChaCha20-Poly1305, when available.- Add support for
libsodiumoperations for XChaCha20-Poly1305, when available.- Add support for
thoasJSON encode/decode, thanks to@​michaelklishin; see #126.- Add support for
ES256Kwhich uses thesecp256k1curve andRS1signatures (see 291dbb8).- Add support for ECDH-1PU
JOSE.JWK.box_encrypt_ecdh_1puand ECDH-ESJOSE.JWK.box_encrypt_ecdh_esand document the deprecatedJOSE.JWK.box_encrypt.- Add support for ECDH-SS
JOSE.JWK.box_encrypt_ecdh_ss.- Hide
ktyfield when inspecting%JOSE.JWK{}strict, thanks to@​spencerdcarlson; see #139- Fixes
- Version mismatch causing
rebar3to constantly try to update; see #122.- Fix Ed25519 and Ed448 key DER/PEM encode/decode for OTP 25.
- Fix Ed25519ctx, Ed25519ph, Ed448, and Ed448ph when dealing with contexts so the implementation matches IETF RFC 8032.
- Drop direct usage of
crypto:hmac/4, thanks to@​thalesmg; see #136- Replace incorrect usage of
-include_libwith-include, thanks to@​Richiban; see #140- Update the CI jobs so they actually run the Elixir tests, thanks to
@​moogle19; see #137- Change the
masterbranch tomain.
Changelog
Sourced from jose's changelog.
1.11.5 (2022-12-16)
- Fixes
- Remove dependency on
parse_transformforjose_base64andjose_base64url.1.11.4 (2022-12-15)
- Enhancements
- Add support for native
cryptooperations for Ed25519 and Ed448, thanks to@​brettbeatty; see #123.- Add support for native
cryptooperations for ChaCha20-Poly1305 and XChaCha20-Poly1305, when available.- Add support for
libsodiumoperations for XChaCha20-Poly1305, when available.- Add support for
thoasJSON encode/decode, thanks to@​michaelklishin; see #126.- Add support for
ES256Kwhich uses thesecp256k1curve andRS1signatures (see 291dbb8).- Add support for ECDH-1PU
JOSE.JWK.box_encrypt_ecdh_1puand ECDH-ESJOSE.JWK.box_encrypt_ecdh_esand document the deprecatedJOSE.JWK.box_encrypt.- Add support for ECDH-SS
JOSE.JWK.box_encrypt_ecdh_ss.- Hide
ktyfield when inspecting%JOSE.JWK{}strict, thanks to@​spencerdcarlson; see #139- Fixes
- Version mismatch causing
rebar3to constantly try to update; see #122.- Fix Ed25519 and Ed448 key DER/PEM encode/decode for OTP 25.
- Fix Ed25519ctx, Ed25519ph, Ed448, and Ed448ph when dealing with contexts so the implementation matches IETF RFC 8032.
- Drop direct usage of
crypto:hmac/4, thanks to@​thalesmg; see #136- Replace incorrect usage of
-include_libwith-include, thanks to@​Richiban; see #140- Update the CI jobs so they actually run the Elixir tests, thanks to
@​moogle19; see #137- Change the
masterbranch tomain.1.11.3 (2022-08-28) - unreleased
- This version was never actually released, but was referenced for a while on the
masterbranch (see 43d3db4).
Commits
e0110a1Version 1.11.557ce00cRemove dependency on 'parse_transform' for 'jose_base64' and 'jose_base64url'5f2c32fVersion 1.11.458ea725Bump versions of OTP and Elixir.9ef4d0eMerge pull request #137 from zahlz/ci44c76adMerge branch 'zahlz-ci'771b31fUpdate CI job4dd5bc9Merge pull request #136 from thalesmg/fix-drop-crypto-hmac40571b87Merge pull request #140 from Richiban/update-includes4af5a4aMerge pull request #139 from spencerdcarlson/main- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebasewill rebase this PR -
@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it -
@dependabot mergewill merge this PR after your CI passes on it -
@dependabot squash and mergewill squash and merge this PR after your CI passes on it -
@dependabot cancel mergewill cancel a previously requested merge and block automerging -
@dependabot reopenwill reopen this PR if it is closed -
@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)