From f83c7a88df599dbc6eef6b9953a7c01fbe569d5d Mon Sep 17 00:00:00 2001 From: stveep Date: Sun, 30 Oct 2016 08:52:28 +0000 Subject: [PATCH] Specify SHA-256 algorithm for JWT --- app/helpers/admin/stripe_helper.rb | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/app/helpers/admin/stripe_helper.rb b/app/helpers/admin/stripe_helper.rb index 23009fc1b0..60b1d8adc5 100644 --- a/app/helpers/admin/stripe_helper.rb +++ b/app/helpers/admin/stripe_helper.rb @@ -60,11 +60,11 @@ module Admin private def jwt_encode payload - JWT.encode(payload, Openfoodnetwork::Application.config.secret_token) + JWT.encode(payload, Openfoodnetwork::Application.config.secret_token, 'HS256') end def jwt_decode token - JWT.decode(token, Openfoodnetwork::Application.config.secret_token)[0] # only returns the original payload + JWT.decode(token, Openfoodnetwork::Application.config.secret_token, 'HS256')[0] # only returns the original payload end end end