Skip to content

pip(deps-dev): bump joserfc from 1.7.4 to 1.7.5 - #2910

Open
dependabot[bot] wants to merge 1 commit into
developfrom
dependabot/pip/develop/joserfc-1.7.5
Open

dependabot[bot] wants to merge 1 commit into
developfrom
dependabot/pip/develop/joserfc-1.7.5

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 29, 2026 •

Copy link
Copy Markdown
Contributor

Bumps joserfc from 1.7.4 to 1.7.5.

Release notes

Sourced from joserfc's releases.

1.7.5

   🚀 Features

   🐞 Bug Fixes

    View changes on GitHub
Changelog

Sourced from joserfc's changelog.

1.7.5

Released on August 29, 2026

  • JWK: Ignore keys with unknown kty values when importing a key set.
  • JWE: Add max_recipients to JWERegistry.
Commits
  • 357c319 chore: release 1.7.5
  • d6dc8df feat: add max_recipients on JWERegistry
  • 26a1027 docs: update sponsors link
  • 4dcd363 fix: ignore unknown kty in KeySet.import_key_set (RFC 7517 §5) (#103)
  • See full diff in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Sep 29, 2026
Bumps [joserfc](https://github.com/authlib/joserfc) from 1.7.4 to 1.7.5.
- [Release notes](https://github.com/authlib/joserfc/releases)
- [Changelog](https://github.com/authlib/joserfc/blob/main/docs/changelog.rst)
- [Commits](authlib/joserfc@1.7.4...1.7.5)

---
updated-dependencies:
- dependency-name: joserfc
  dependency-version: 1.7.5
  dependency-type: indirect
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/pip/develop/joserfc-1.7.5 branch from 7118000 to 02af7ec Compare October 1, 2026 00:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update Python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants