Skip to content

Releases: auth0/nextjs-auth0

v3.8.0

10 Jun 13:15
a3fbdae
Compare
Choose a tag to compare

Full Changelog

Security

  • Upgrade jose and openid-client to fix security vulnerabilities #2104
  • refactor: use a single client assertion audience #2024

Changed

  • Update JSDocs to mention idpLogout defaults to true #2083
  • Update useUser example to use a tag instead of Link #2087
  • Add storeIDToken to config params docs #2103

v4.6.1

04 Jun 03:12
1f04fa3
Compare
Choose a tag to compare

Fixed

  • Fixes CVE-2025-48947
  • Fix Missing idToken during Session Migration from v3 to v4 #2116 #2120 (KentoMoriwaki)
  • fix(session): prevent accidental deletion of legacy-named session cookie #2114 (nandan-bhat)
  • fix(client): add type-safe return for getAccessToken #2115 (nandan-bhat)

v4.6.0

21 May 06:03
7bd8398
Compare
Choose a tag to compare

Added

Changed

  • Update middleware combination example to prevent unintended backend execution #2076 (tusharpandey13)
  • Update deleteByLogoutToken arg type in EXAMPLES.md #2067 (ammubhave)

Fixed

v4.5.1

29 Apr 18:08
c44432c
Compare
Choose a tag to compare

Security

v4.5.0

25 Apr 14:26
6bc280a
Compare
Choose a tag to compare

Added

Changed

Fixed

v4.4.2

08 Apr 15:51
56888c3
Compare
Choose a tag to compare

Revert

Fixed

v4.4.1

03 Apr 12:46
1a1555d
Compare
Choose a tag to compare

Fixed

v4.4.0

01 Apr 12:09
16c9768
Compare
Choose a tag to compare

Added

Fixed

v4.3.0

28 Mar 16:48
b92c9bf
Compare
Choose a tag to compare

Added

v4.2.1

24 Mar 06:21
3caf259
Compare
Choose a tag to compare

Changed