Skip to content

Commit 536cd72

Browse files
thibaut22200fabpot
authored andcommitted
[Security] Update web-token/jwt-library version and adjust checker parameters
1 parent 28dcc15 commit 536cd72

File tree

4 files changed

+6
-6
lines changed

4 files changed

+6
-6
lines changed

composer.json

+1-1
Original file line numberDiff line numberDiff line change
@@ -158,7 +158,7 @@
158158
"twig/cssinliner-extra": "^2.12|^3",
159159
"twig/inky-extra": "^2.12|^3",
160160
"twig/markdown-extra": "^2.12|^3",
161-
"web-token/jwt-library": "^3.3.2"
161+
"web-token/jwt-library": "^3.3.2|^4.0"
162162
},
163163
"conflict": {
164164
"ext-psr": "<1.1|>=2",

src/Symfony/Bundle/SecurityBundle/composer.json

+1-1
Original file line numberDiff line numberDiff line change
@@ -51,7 +51,7 @@
5151
"symfony/validator": "^6.4|^7.0",
5252
"symfony/yaml": "^6.4|^7.0",
5353
"twig/twig": "^3.0.4",
54-
"web-token/jwt-library": "^3.3.2"
54+
"web-token/jwt-library": "^3.3.2|^4.0"
5555
},
5656
"conflict": {
5757
"symfony/browser-kit": "<6.4",

src/Symfony/Component/Security/Http/AccessToken/Oidc/OidcTokenHandler.php

+3-3
Original file line numberDiff line numberDiff line change
@@ -86,9 +86,9 @@ public function getUserBadgeFrom(string $accessToken): UserBadge
8686

8787
// Verify the claims
8888
$checkers = [
89-
new Checker\IssuedAtChecker(0, false, $this->clock),
90-
new Checker\NotBeforeChecker(0, false, $this->clock),
91-
new Checker\ExpirationTimeChecker(0, false, $this->clock),
89+
new Checker\IssuedAtChecker(clock: $this->clock, allowedTimeDrift: 0, protectedHeaderOnly: false),
90+
new Checker\NotBeforeChecker(clock: $this->clock, allowedTimeDrift: 0, protectedHeaderOnly: false),
91+
new Checker\ExpirationTimeChecker(clock: $this->clock, allowedTimeDrift: 0, protectedHeaderOnly: false),
9292
new Checker\AudienceChecker($this->audience),
9393
new Checker\IssuerChecker($this->issuers),
9494
];

src/Symfony/Component/Security/Http/composer.json

+1-1
Original file line numberDiff line numberDiff line change
@@ -36,7 +36,7 @@
3636
"symfony/security-csrf": "^6.4|^7.0",
3737
"symfony/translation": "^6.4|^7.0",
3838
"psr/log": "^1|^2|^3",
39-
"web-token/jwt-library": "^3.3.2"
39+
"web-token/jwt-library": "^3.3.2|^4.0"
4040
},
4141
"conflict": {
4242
"symfony/clock": "<6.4",

0 commit comments

Comments
 (0)