You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I think PyJWT 1.0.1 has been long gone. Perhaps we can remotely track these CVEs using a GitHub action so that users only install secure pyjwt versions. Although it would be difficult to maintain in case of a breaking change.
pyjwt
prior version 1.0.1 is known to have a critical vulnerability.It could be wise to depend on
pyjwt>=1.0.1
insetup.py
.The text was updated successfully, but these errors were encountered: