Version 2.8.2
Security fixes:
- Fixed issue where
RelyingParty.finishAssertionandRelyingPartyV2.finishAssertioncould return a successful authentication result even though the authenticated credential is owned by a different user thanStartAssertionOptions.username. For details see YSA-2026-02: https://www.yubico.com/support/security-advisories/ysa-2026-02/
Artifacts built with openjdk version "17.0.18" 2026-01-20.