Alerts This Week
Warning Icon 1 1,220
Alerts This Week
Warning Icon 1 1,220

SUSE Linux Micro 6.2 Security Advisory Notice for python-PyJWT 2026-30959-2

suse
Calendar Grey March 27, 2026
Dist Suse Esm H88
Stay informed about the important SUSE update for python-PyJWT that addresses CVE-2026-32597 vulnerability.
An update that solves one vulnerability can now be installed.

Summary

## This update for python-PyJWT fixes the following issue: Update to PyJWT 2.12.1: * CVE-2026-32597: PyJWT accepts unknown `crit` header extensions (bsc#1259616). Changelog: Update to 2.12.1: * Add missing typing_extensions dependency for Python < 3.11 in #1150 Update to 2.12.0: * Annotate PyJWKSet.keys for pyright by @tamird in #1134 * Close HTTPError response to prevent ResourceWarning on Python 3.14 by @veeceey in #1133 * Do not keep algorithms dict in PyJWK instances by @akx in #1143 * Use PyJWK algorithm when encoding without explicit algorithm in #1148 * Docs: Add PyJWKClient API reference and document the two-tier caching system (JWK Set cache and signing key LRU cache). Update to 2.11.0: * Enforce ECDSA curve validation per RFC 7518 Section 3.4. * Fix build system warnings by @kurtmckee in #1105

References

* bsc#1259616

Cross-

* CVE-2026-32597

CVSS scores:

* CVE-2026-32597 ( SUSE ): 8.7

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N

* CVE-2026-32597 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

* CVE-2026-32597 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Affected Products:

* SUSE Linux Micro 6.2

An update that solves one vulnerability can now be installed.

##

* https://www.suse.com/security/cve/CVE-2026-32597.html

* https://bugzilla.suse.com/show_bug.cgi?id=1259616

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2026:20839-1
Release Date: 2026-03-25T18:07:39Z
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here