jsontokens
Advanced tools
Comparing version 3.1.0 to 3.1.1
@@ -31,3 +31,3 @@ "use strict"; | ||
} | ||
const derSignature = Buffer.from(secp.signSync(signingInputHash, privateKey, { der: true, canonical: false })); | ||
const derSignature = Buffer.from(secp.signSync(signingInputHash, privateKey.slice(0, 64), { der: true, canonical: false })); | ||
if (format === 'der') | ||
@@ -34,0 +34,0 @@ return derSignature.toString('hex'); |
{ | ||
"name": "jsontokens", | ||
"version": "3.1.0", | ||
"version": "3.1.1", | ||
"description": "node.js library for encoding, decoding, and verifying JSON Web Tokens (JWTs)", | ||
@@ -123,3 +123,3 @@ "main": "lib/index.js", | ||
"assets": [ | ||
"**/*.{json,md}" | ||
"*.{json,md}" | ||
] | ||
@@ -126,0 +126,0 @@ } |
Sorry, the diff of this file is too big to display
Sorry, the diff of this file is not supported yet
Major refactor
Supply chain riskPackage has recently undergone a major refactor. It may be unstable or indicate significant internal changes. Use caution when updating to versions that include significant changes.
Found 1 instance in 1 package
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
134695
0