Security update for python-PyJWT
This update for python-PyJWT fixes the following issue:
Update to PyJWT 2.12.1:
crit header extensions (bsc#1259616).Changelog:
Update to 2.12.1:
#1150
Update to 2.12.0:
Python 3.14 by @veeceey in #1133
#1143
algorithm in #1148
two-tier caching system (JWK Set cache and signing key LRU
cache).
Update to 2.11.0:
#964
by @pachewise in #1040
by @pachewise in #1045
@nikitagashkov in #1068
escape sequences by @kurtmckee in #1103
suite setup times by @kurtmckee in #1114
Python versions, increase the strictness of the type
checking, and remove the mypy pre-commit hook by @kurtmckee
in #1112
@kurtmckee in #1104
CI by @kurtmckee in #1108
test suite code by @kurtmckee in #1115
#1110
#1034
jwt.algorithms docs by @pachewise in #1045
by @cleder in #1088
@kurtmckee in #1109
(CWE-326). Warns by default via InsecureKeyLengthWarning
when keys are below minimum recommended lengths per RFC
7518 Section 3.2 (HMAC) and NIST SP 800-131A (RSA). Pass
enforce_minimum_key_length=True in options to PyJWT or
PyJWS to raise InvalidKeyError instead.
calling global api_jws functions.
SUSE-SU-2026:20839-1 is recorded against 1 package.
Published on 25 March 2026 and last revised on 28 March 2026. No public exploit is currently recorded for this entry. Record sourced from OSV.
www.suse.com (Advisory)
bugzilla.suse.com (Report)
www.suse.com (Web)
Details
Affected Packages
| Software | From version | Fixed in |
|---|---|---|
| python-pyjwt | — | 2.12.1-160000.1.1 |
References
Similar Threats
Free Vulnerability Check
BotEraser helps you identify potentially vulnerable plugins and themes by checking your installation against SUSE-SU-2026:20839-1 and other known CVE records.
Scan My Site Free →No credit card required · Results in minutes
ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.
Stay up to date with the latest from Boteraser.
We use cookies to improve your experience on our site. By using our site, you consent to cookies.
Manage your cookie preferences below:
Essential cookies enable basic functions and are necessary for the proper function of the website.
CloudFlare provides web performance and security solutions, enhancing site speed and protecting against threats.
Service URL: developers.cloudflare.com (opens in a new window)
These cookies are needed for adding comments on this website.
These cookies are used for managing login functionality on this website.
Statistics cookies collect information anonymously. This information helps us understand how visitors use our website.
Google Analytics is a powerful tool that tracks and analyzes website traffic for informed marketing decisions.
Service URL: policies.google.com (opens in a new window)
You can find more information in our Cookie Policy and Privacy Policy.