From f5e910e6ec98cc4a221e677d75614eb6e27ce564 Mon Sep 17 00:00:00 2001 From: Andrew Millington Date: Sat, 13 Jul 2019 17:51:56 +0100 Subject: [PATCH 1/2] Remove jti replication from JWT Header --- src/Entities/Traits/AccessTokenTrait.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/Entities/Traits/AccessTokenTrait.php b/src/Entities/Traits/AccessTokenTrait.php index e9757264..44276de1 100644 --- a/src/Entities/Traits/AccessTokenTrait.php +++ b/src/Entities/Traits/AccessTokenTrait.php @@ -44,7 +44,7 @@ trait AccessTokenTrait { return (new Builder()) ->setAudience($this->getClient()->getIdentifier()) - ->setId($this->getIdentifier(), true) + ->setId($this->getIdentifier()) ->setIssuedAt(time()) ->setNotBefore(time()) ->setExpiration($this->getExpiryDateTime()->getTimestamp()) From dc3c74601ab8ed6391211c35cfe3bfcdc4d9f702 Mon Sep 17 00:00:00 2001 From: Andrew Millington Date: Sat, 13 Jul 2019 17:52:35 +0100 Subject: [PATCH 2/2] Update changelog --- CHANGELOG.md | 1 + 1 file changed, 1 insertion(+) diff --git a/CHANGELOG.md b/CHANGELOG.md index 446b920f..d4d7921a 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -25,6 +25,7 @@ and this project adheres to [Semantic Versioning](http://semver.org/spec/v2.0.0. ### Removed - `enableCodeExchangeProof` flag (PR #938) - Support for PHP 7.0 (PR #1014) +- Remove JTI claim from JWT header (PR #) ## [7.4.0] - released 2019-05-05