Skip to content
This repository was archived by the owner on May 7, 2018. It is now read-only.

Conversation

@luisgf
Copy link

@luisgf luisgf commented Aug 21, 2015

This pull request is a fix to the issue described here #30.

The problem is that jws library that's bundle with openbadges-validator is too old and don't work properly with ECDSA signatures. This pull request updates the package dependencies version and some changes to the code in order to work with the new library version.

@ottonomy
Copy link
Contributor

Oh, wow! This took so few lines of code too! I'm glad the jws package was properly updated.

The Travis build is failing though, so let's see if we can marshall some review from Mozilla, fix whatever check is failing and then get this put into production.

Thanks so much for working on it!

@baisong baisong mentioned this pull request Dec 22, 2015
@baisong
Copy link
Contributor

baisong commented Dec 23, 2015

Incidentally, jws versions less than 3.0.0 have a security vulnerability.

@baisong
Copy link
Contributor

baisong commented Jan 19, 2016

This can be closed: These changes were incorporated in https://github.com/mozilla/openbadges-validator/pull/34/files

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants