-
Bug
-
Resolution: Done
-
Critical
-
7.4.0.CD19
-
None
-
Release Notes, User Experience
-
Regression
-
-
-
-
-
-
-
+
-
When corrupted public key (a valid key cannot be extracted from the string value) is supplied to JWT verifier, user is not informed since there is no error message in log and clients receives 401 status code in response instead of an error code of 500.
This is a regression when compared against state when the feature was being merged.
- clones
-
WFLY-13164 When "corrupted" public key is supplied to server, user is not informed
- Resolved
- is incorporated by
-
JBEAP-24651 Upgrade smallrye-jwt from 3.0.0.redhat-00001 to 3.2.1.redhat-00008
- Closed