Releases: fschuindt/firebase_id_token
Releases · fschuindt/firebase_id_token
3.0.0
Added
- CI testing using GitHub Actions.
- Explains on
README.md
about the behavior ofverify
on expired tokens. Details here. - Warns about the poorly synchronized clocks issue with the token's
iat
. Details here. - Gives better examples when testing. Details here.
- Created a
.ruby-version
file. - Added ActiveSupport as dependency for
Time.current
. - SimpleCov JSON formatter and
json
as dependency.
Changed
- It won't default to
Redis.new
anymore. You must now provide Redis details during configuration. Details here. - Upgraded Redis to 5.0.6.
- Upgraded Redis Namespace to 1.10.
- Upgraded HTTParty to 0.21.0.
- Upgraded JWT to 2.7.
- Upgraded [Dev] Ruby to 3.2.2.
- Upgraded [Dev] Bundler to 2.4.13.
- Upgraded [Dev] Rake to 13.0.6.
- Upgraded [Dev] RSpec to 3.12.
- Upgraded [Dev] Redcarpet to 3.6.
- Upgraded [Dev] Simplecov to 0.22.0.
- Upgraded [Dev] Pry to 0.14.2.
Fixed
- Code Climate test coverage report.
Removed
- Travis CI badge.
2.5.2
2.5.1
Fixed
- "New caching doesn't honor request! calls", by reverting "Caching certificates on memory.", PR #33.
2.5.0
Fixed
- Local Code Execution through Argument Injection via dash leading git url parameter in Gemfile CVE-2021-43809.
- Dependency Confusion in Bundler CVE-2020-36327.
- Insecure path handling in Bundler CVE-2019-3881.
Changed
2.4.0
Fixed
- Rake development dependency vulnerability CVE-2020-8130.
Changed
- Using Bundler 1.17.2.
Added
- Ability to raise errors when verifying tokens.
FirebaseIdToken::Certificates.find!
method.FirebaseIdToken::Signatures.verify!
method.FirebaseIdToken::Exceptions::CertificateNotFound
exception.:raise_error
option toFirebaseIdToken::Signature.verify
.CHANGELOG.md
file.
2.3.2
2.3.1
Updated dependencies
Merge pull request #13 from fschuindt/upgrade/versions Use semantic versions
2.1.0
Fix verification issue.