Update javascript/2020-11-09-jwt.md

Co-authored-by: Asger F <asgerf@github.com>
This commit is contained in:
Erik Krogh Kristensen
2020-11-11 21:06:30 +01:00
committed by GitHub
parent ae7c7607f1
commit 67d581edec

View File

@@ -1,5 +1,5 @@
lgtm,codescanning
* Libraries implementing JWT have been modeled.
* The security queries now track taint through JWT decoding, and warns about hard-coded JWT signing keys.
Affected packages are
[jsonwebtoken](https://www.npmjs.com/package/jsonwebtoken) and
[jwt-decode](https://www.npmjs.com/package/jwt-decode)