Ecosyste.ms: Packages

An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

Top 1.0% on proxy.golang.org
Top 0.3% dependent packages on proxy.golang.org
Top 0.4% dependent repos on proxy.golang.org
Top 2.3% forks on proxy.golang.org
Top 0.2% docker downloads on proxy.golang.org

proxy.golang.org : github.com/lestrrat-go/jwx/v2

Package jwx contains tools that deal with the various JWx (JOSE) technologies such as JWT, JWS, JWE, etc in Go. Examples are stored in a separate Go module (to avoid adding dependencies to this module), and thus does not appear in the online documentation for this module. You can find the examples in Github at https://github.com/lestrrat-go/jwx/tree/v2/examples You can find more high level documentation at Github (https://github.com/lestrrat-go/jwx/tree/v2) FAQ style documentation can be found in the repository (https://github.com/lestrrat-go/jwx/tree/develop/v2/docs)

Registry - Source - Documentation - JSON
purl: pkg:golang/github.com/lestrrat-go/jwx/v2
Keywords: go, golang, jwe, jwk, jws, jwt, oidc
License: MIT
Latest release: 5 months ago
First release: about 2 years ago
Namespace: github.com/lestrrat-go/jwx
Dependent packages: 439
Dependent repositories: 301
Stars: 1,453 on GitHub
Forks: 143 on GitHub
Docker dependents: 120
Docker downloads: 421,750,506
See more repository details: repos.ecosyste.ms
Funding links: https://github.com/sponsors/lestrrat
Last synced: about 9 hours ago

Moderate
GSA_kwCzR0hTQS03Zjl4LWd3ODUtOGdyZs4AA3lA
lestrrat-go/jwx's malicious parameters in JWE can cause a DOS
Ecosystems: go
Packages: github.com/lestrrat-go/jwx/v2, github.com/lestrrat-go/jwx
Source: github
Published: 6 months ago
Moderate
GSA_kwCzR0hTQS1ybTh2LW14ajMtNXJtcc4AAz3K
github.com/lestrrat-go/jwx vulnerable to Potential Padding Oracle Attack
Ecosystems: go
Packages: github.com/lestrrat-go/jwx, github.com/lestrrat-go/jwx/v2
Source: github
Published: 12 months ago
Moderate
GSA_kwCzR0hTQS1wdmNyLXY4ajgtajVxM84AA4So
Parsing JSON serialized payload without protected field can lead to segfault
Ecosystems: go
Packages: github.com/lestrrat-go/jwx, github.com/lestrrat-go/jwx/v2
Source: github
Published: 5 months ago
Moderate
GSA_kwCzR0hTQS1oajN2LW02ODQtdjI1Oc4AA52y
JWX vulnerable to a denial of service attack using compressed JWE message
Ecosystems: go
Packages: github.com/lestrrat-go/jwx, github.com/lestrrat-go/jwx/v2
Source: github
Published: 3 months ago