Bump Microsoft.Identity.Client and 2 others#571
Closed
dependabot[bot] wants to merge 1 commit intomainfrom
Closed
Conversation
Bumps Microsoft.Identity.Client from 4.70.2 to 4.79.2 Bumps Microsoft.Identity.Web.Certificateless from 3.8.3 to 4.2.0 Bumps Microsoft.IdentityModel.Abstractions from 8.8.0 to 8.14.0 --- updated-dependencies: - dependency-name: Microsoft.Identity.Client dependency-version: 4.79.2 dependency-type: direct:production update-type: version-update:semver-minor - dependency-name: Microsoft.Identity.Web.Certificateless dependency-version: 4.2.0 dependency-type: direct:production update-type: version-update:semver-major - dependency-name: Microsoft.IdentityModel.Abstractions dependency-version: 8.14.0 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
Member
|
Resolved by #552 |
Contributor
Author
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. You can also ignore all major, minor, or patch releases for a dependency by adding an If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Updated Microsoft.Identity.Client from 4.70.2 to 4.79.2.
Release notes
Sourced from Microsoft.Identity.Client's releases.
4.79.2
What's Changed
Full Changelog: AzureAD/microsoft-authentication-library-for-dotnet@4.79.0...4.79.2
4.79.0
What's Changed
IMsalMtlsHttpClientFactoryinterface public by @cpp11nullptr in MakeIMsalMtlsHttpClientFactoryinterface public AzureAD/microsoft-authentication-library-for-dotnet#5559Full Changelog: AzureAD/microsoft-authentication-library-for-dotnet@4.78.0...4.79.0
4.78.0
Changes
Bug Fixes
4.77.1
What's Changed
Full Changelog: AzureAD/microsoft-authentication-library-for-dotnet@4.77.0...4.77.1
4.77.0
Features
Changes
x-client-osas a query parameter in the authorization URI. Remove passing x-client-os as query param in authorization uri AzureAD/microsoft-authentication-library-for-dotnet#5456Microsoft.IdentityModel.Abstractionsto a supported version. Bump Microsoft.IdentityModel.Abstractions as current version is out o… AzureAD/microsoft-authentication-library-for-dotnet#5452Bug fixes
4.76.0
What's Changed
ExperimentalFeaturesflag onWithMtlsProofOfPossessionAPI: by @gladjohn in Removal ofExperimentalFeaturesflag onWithMtlsProofOfPossessionAPI: AzureAD/microsoft-authentication-library-for-dotnet#5402New Contributors
Full Changelog: AzureAD/microsoft-authentication-library-for-dotnet@4.74.1...4.76.0
4.74.1
Bug fixes
When you configure MSAL with WithOidcAuthority(), the library now confirms that the issuer returned by the OIDC discovery endpoint matches the expected authority (including CIAM patterns) and throws an exception if it does not. Add issuer validation when making call to OIDC endpoint AzureAD/microsoft-authentication-library-for-dotnet#5358
Re-expose public AuthenticationResult constructor. A public, test-friendly constructor of AuthenticationResult was inadvertently hidden behind [Obsolete] and [EditorBrowsable(Never)]. The constructor is now publicly available again. [Bug] AuthenticationResult has no public constructor AzureAD/microsoft-authentication-library-for-dotnet#5392
4.74.0
Features
Bug fixes
4.73.1
What's Changed
Full Changelog: AzureAD/microsoft-authentication-library-for-dotnet@4.73.0...4.73.1
4.73.0
What's Changed
Full Changelog: AzureAD/microsoft-authentication-library-for-dotnet@4.72.1...4.73.0
4.72.1
4.72.1
Bug Fixes
Full Changelog: AzureAD/microsoft-authentication-library-for-dotnet@4.72.0...4.72.1
4.72.0
4.72.0
Features
Bug Fixes
4.71.1
Bug Fixes
Full Changelog: AzureAD/microsoft-authentication-library-for-dotnet@4.71.0...4.71.1
4.71.0
Bug Fixes
httpClientfrom the factory with ssl validation callback. See Issue #5220Full changelog: 4.70.2 .. 4.71.0
Commits viewable in compare view.
Updated Microsoft.Identity.Web.Certificateless from 3.8.3 to 4.2.0.
Release notes
Sourced from Microsoft.Identity.Web.Certificateless's releases.
4.2.0
What's Changed
New features
##Bug fixes
Dependencies updates
Fundamentals
Full Changelog: AzureAD/microsoft-identity-web@4.1.1...4.2.0
4.1.1
Bug fixes
New features
Fundamentals
4.1.0
New features
Dependencies updates
Entra ID SDK sidecar
Documentation
Fundamentals
4.0.1
Bugs fixes
Fundamentals
Sidecar
4.0.0
4.0.0
Breaking Changes
Removed support for .NET 6.0 and .NET 7.0 - Microsoft Identity Web 4.0.0 no longer targets .NET 6.0 and .NET 7.0, following Microsoft's support lifecycle. The supported target frameworks are now .NET 8.0, .NET 9.0, .NET Framework 4.6.2, .NET Framework 4.7.2, and .NET Standard 2.0.
See MIGRATION_GUIDE_V4
New features
Bug Fixes
Fundamentals
3.14.1
3.14.1
Bug fixe
3.14.0
New features
3.13.1
3.13.1
Dependencies updates
3.13.0
3.13.0
Dependencies updates
Bug fixes
Fundamentals
3.12.0
3.12.0
Dependencies updates
Bug fix
Reload certificates for all client credential based issues to solve the issue that when a bad certificate was installed on the machine and picked up, and subsequently rotated, a service restart was needed for the new certificate to be used. See issue #3429 and PR #3430
New features
3.11.0
3.11.0
Dependencies updates
global.jsonto the latest .NET 9 runtime framework 9.0.108. See PR #3422 for details.Bug fixes
IDW10405error when using managed identity with common tenant. See PR #3415 for details.OidcIdpSignedAssertionLoaderto remove hard dependency on IConfiguration registration. See PR #3414 for details.New feature
ExtraHeaderParametersandExtraQueryParametersproperties onDownstreamApiOptionsto simplify adding custom headers and query parameters to downstream API requests. See PR #3413 for details.What's Changed
New Contributors
Full Changelog: AzureAD/microsoft-identity-web@3.10.0...3.11.0
3.10.0
3.10.0
Dependencies updates
global.jsonto the latest .NET 9 runtime framework 9.0.107 (#3385).New feature
introducing the
Microsoft.Identity.Web.AgentIdentitiespackage .Bug fixes
Fundamentals
3.9.4
3.9.4
Package updates
Bug fix
DefaultAuthorizationHeaderProviderto update theAcquireTokenOptions.LongRunningWebApiSessionKeyafter the token is acquired so that the key can be used in the next OBO call. See PR #3381 for details.Fundamentals
What's Changed
Full Changelog: AzureAD/microsoft-identity-web@3.9.3...3.9.4
3.9.3
3.9.3
Package updates
Fundamentals
.clinerulesto help with AI tooling.What's Changed
Full Changelog: AzureAD/microsoft-identity-web@3.9.2...3.9.3
3.9.2
3.9.2
Package updates
Fundamentals:
What's Changed
Full Changelog: AzureAD/microsoft-identity-web@3.9.1...3.9.2
3.9.1
3.9.1
Package updates
Fundamentals
What's Changed
Full Changelog: AzureAD/microsoft-identity-web@3.9.0...3.9.1
3.9.0
3.9.0
Package updates
Bug fixes
New feature
Fundamentals
External contributions
Thank you @evan-buss for your contribution and fixing the issue where RequiredScopeOrAppPermission extension method didn’t work with Minimal APIs. See #3323.
Thank you @neha-bhargava for your contribution and ensuring AcquireTokenForConfidentialClient correctly passes MSAL exceptions. See #3345.
3.8.4
3.8.4
Package updates
Bug fixes
New feature
Fundamentals
Commits viewable in compare view.
Updated Microsoft.IdentityModel.Abstractions from 8.8.0 to 8.14.0.
Release notes
Sourced from Microsoft.IdentityModel.Abstractions's releases.
8.14.0
8.14.0
Bug Fixes
ValidationResultinstead ofOperationResultwhen validating a token in a new experimental validation flow. Additionally removed the dependency on Microsoft.IdentityModel.Abstractions. See #3299 for details.8.13.1
8.13.1
Dependencies
Microsoft.IdentityModel now depends on Microsoft.Identity.Abstractions 9.3.0
Bug Fixes
Work related to redesign of IdentityModel's token validation logic #2711
8.13.0
8.13.0
8.13.0
Fundamentals
CaseSensitiveClaimsIdentity.SecurityTokensetter is now protected internal (was internal). See PR #3278 for details.What's Changed
New Contributors
Full Changelog: AzureAD/azure-activedirectory-identitymodel-extensions-for-dotnet@8.12.1...8.13.0
8.12.1
8.12.1
Fundamentals
What's Changed
Full Changelog: AzureAD/azure-activedirectory-identitymodel-extensions-for-dotnet@8.12.0...8.12.1
8.12.0
8.12.0
New Features
Added event handling capabilities to the
ConfigurationManager, enabling consumers to subscribe to configuration change events. This enhancement improves extensibility and allows more responsive applications. For details see #3253Bug Fixes
Introduced the expected overload of
Base64UrlEncoder.Decodefor .NET 6 and 8, ensuring compatibility and preventing missing method issues on these frameworks.For details see #3249
Fundamentals
Incorporated AI assist rules to enhance AI agents effectiveness.
For details see #3255
Upgraded analyzer packages for improved diagnostics and code consistency (in particular delegates are added).
For details see #3256
Centralized suppression of RS006 warnings in project files for easier management.
For details see #3230
What's Changed
Full Changelog: AzureAD/azure-activedirectory-identitymodel-extensions-for-dotnet@8.11.0...8.12.0
8.11.0
8.11.0
New Features:
JsonWebTokenHandler.DecryptTokenWithConfigurationAsync, which decrypts a JWE token using keys from eitherTokenValidationParametersor, if not present, from configuration (such as via a ConfigurationManager). This enhancement improves developer experience by enabling asynchronous, cancellation-aware JWE decryption scenarios, aligning with modern .NET async patterns and making integration with external key/configuration sources more robust and observable. See PR #3243 for details.What's Changed
Full Changelog: AzureAD/azure-activedirectory-identitymodel-extensions-for-dotnet@8.10.0...8.11.0
8.10.0
8.10.0
Bug Fixes
Fundamentals
8.9.0
8.9.0
Bug Fixes
New Features
Fundamentals
Commits viewable in compare view.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)