[ https://issues.apache.org/jira/browse/CXF-7760?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Colm O hEigeartaigh updated CXF-7760: ------------------------------------- Fix Version/s: 3.1.17 3.2.6 > JOSE: JwsCompactConsumer parsing headers issue > ---------------------------------------------- > > Key: CXF-7760 > URL: https://issues.apache.org/jira/browse/CXF-7760 > Project: CXF > Issue Type: Bug > Components: JAX-RS Security > Affects Versions: 3.1.13 > Reporter: Juan > Assignee: Colm O hEigeartaigh > Priority: Major > Fix For: 3.2.6, 3.1.17 > > > When using the JwsCompactConsumer with a compact JWT whose kid contains a > slash, the json parser escapes it, which causes issues later on while > matching the kid to the one specified in the JWKS. For example: > Header: > { > "kid": "4pZbe4shQQGzZXHbeIlbDvmHOc1/H6jH6oBk3nUrcZE=", > "alg": "RS256" > } > > -- This message was sent by Atlassian JIRA (v7.6.3#76005)