Java library for Javascript Object Signing and Encryption (JOSE) and JSON Web Tokens (JWT)

LicenseApache 2.0
CategoriesJWT Libraries
Tagssecurityjsonauthenticationjwt
Organization Connect2id Ltd.
HomePage https://bitbucket.org/connect2id/nimbus-jose-jwt
DateDec 08, 2023
Filespom (12 KB)  jar (761 KB)  View All
RepositoriesCentralAppodealGluuKyligence PublicLoohpJamesTalend PublicTerrestrisUnvusWSO2 Public
Ranking#464 in MvnRepository (See Top Artifacts)
#1 in JWT Libraries
Used By1,234 artifacts
VulnerabilitiesDirect vulnerabilities:
CVE-2025-53864

Vulnerabilities from dependencies:
CVE-2024-34447
CVE-2024-30172
CVE-2024-30171
View 3 more ...

Note: There is a new version for this artifact

New Version10.3.1

Scope:
Scope:
Format:
Scope:
Scope:
Scope:
Scope:
Scope:
Scope:

Compile Dependencies (6)

Category/License Group / ArtifactVersionUpdates
Annotation Lib
Apache 2.0
com.github.stephenc.jcip » jcip-annotations 1.0-1
Encryption Lib
Apache 2.0
com.google.crypto.tink » tink (optional) 1.12.01.18.0
Encryption Lib
BouncyCastle
org.bouncycastle » bcprov-jdk18on (optional) 4 vulnerabilities 1.771.81

BouncyCastle
org.bouncycastle » bcutil-jdk18on (optional) 1.771.81

BouncyCastle
org.bouncycastle » bc-fips (optional) [1.0.2,2.0.0)2.1.0
Encryption Lib
BouncyCastle
org.bouncycastle » bcpkix-jdk18on (optional) 1.771.81

Test Dependencies (4)

Licenses

LicenseURL
The Apache Software License, Version 2.0 https://www.apache.org/licenses/LICENSE-2.0.txt

Developers

NameEmailDev IdRolesOrganization
Vladimir Dzhuvinovvladimir<at>dzhuvinov.comvdzhuvinov