python-jose through 3.3.0 has algorithm confusion with OpenSSH ECDSA keys and other key formats. This is similar to CVE-2022-29217.
{ "binaries": [ { "binary_name": "python3-jose", "binary_version": "3.3.0+dfsg-1" } ] }
{ "binaries": [ { "binary_name": "python3-jose", "binary_version": "3.3.0+dfsg-4" } ] }