added the "-index" option to verify a specific signature or
modify its unauthenticated attributes
added CAT file verification
added listing the contents of a CAT file with the "-verbose"
option
added the new "extract-data" command to extract a PKCS#7 data
content to be signed with "sign" and attached with "attach-signature"
added PKCS9_SEQUENCE_NUMBER authenticated attribute support
added the "-ignore-cdp" option to disable CRL Distribution
Points (CDP) online verification
unsuccessful CRL retrieval and verification changed into a
critical error the "-p" option modified to also use to
configured proxy to connect CRL Distribution Points
added implicit allowlisting of the Microsoft Root Authority
serial number 00C1008B3C3C8811D13EF663ECDF40
added listing of certificate chain retrieved from the
signature in case of verification failure