NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
npm · #4948 most downloaded on npm
Nest - modern, fast, powerful node.js web framework (@jwt)
Last release 20 days ago
14 Sep 2026
Release timing varies
gaps range from 3 weeks to 1.2 years
Some releases are documented
notes for 18 of 31 stable releases
Nothing withdrawn
no release was ever pulled
8 years old
31 releases · first in 2018
fix(jwt): add type overloads for decode with complete option and nullable return by @Asadshah7950 in #2269
Full Changelog: 12.0.1...12.0.2
fix: jsonwebtoken esm imports
One column per quarter.
@nestjs/jwt is now a native ES module , and the major version is aligned with the Nest 12 release line
@nestjs/jwt is now a native ES module, and the major version is aligned with the Nest 12 release line
The package is published as pure ESM ("type": "module", compiled with NodeNext) behind a proper exports map. The legacy root index.js / index.d.ts / index.ts shims are gone, and deep imports into build internals are no longer resolvable — import from the package root.
// ✅
import { JwtModule, JwtService } from '@nestjs/jwt';
// ❌ no longer resolvable
import { JwtService } from '@nestjs/jwt/dist/jwt.service';You do not need to convert your app to ESM. Thanks to Node's require(esm) support (Node 20.19+, 22.12+, and all of 24.x), a CommonJS Nest application can keep requiring the package exactly as before:
const { JwtModule, JwtService } = require('@nestjs/jwt');TypeScript users compiling to CommonJS are unaffected as long as their runtime is on a supported Node version. On older Node releases, require() of this package will throw ERR_REQUIRE_ESM — upgrade Node, or switch the consuming code to import.
jsonwebtoken re-exportsThe error classes re-exported from jsonwebtoken (TokenExpiredError, NotBeforeError, JsonWebTokenError) are now re-exported explicitly by name instead of via a star export, so they resolve correctly under ESM interop with the CJS jsonwebtoken package. No import changes are needed on your side:
import { TokenExpiredError } from '@nestjs/jwt';npm install @nestjs/jwt@12For most applications this is a drop-in upgrade. Action is only required if you were relying on deep imports into dist/, or are running a Node version older than 20.19 with a CommonJS app.
fix(deps): update dependency jsonwebtoken to v9.0.3 by @renovate[bot] in https://github.com/nestjs/jwt/pull/2088
Full Changelog: https://github.com/nestjs/jwt/compare/11.0.1...11.0.2
chore: mark api public in jwt module by @Tony133 in https://github.com/nestjs/jwt/pull/1890
secret and publicKey options to be crypto.KeyObject (2x to 50x faster calls) by @dbaty in https://github.com/nestjs/jwt/pull/1971Full Changelog: https://github.com/nestjs/jwt/compare/11.0.0...11.0.1
secret and publicKey options to be crypto.KeyObject (2x to 50x faster calls) by @dbaty in #1971Full Changelog: 11.0.0...11.0.1
chore(deps): update nest monorepo to v11
Merge branch 'drlappies-allow-decode-generic-return-type'
secretOrKeyProvider (b0089b4)Merge pull request #1426 from guilopesn/master
Merge pull request #1314 from nestjs/renovate/npm-vm2-vulnerability
Merge branch 'master' of https://github.com/nestjs/jwt
Merge pull request #1195 from nestjs/renovate/npm-http-cache-semantics-vulnerability
Merge pull request #1155 from nestjs/renovate/npm-jsonwebtoken-vulnerability
Nothing published for this version
Merge pull request #904 from nestjs/dependabot/npm_and_yarn/minimist-1.2.6
Merge pull request #867 from nestjs/renovate/npm-path-parse-vulnerability
Merge pull request #634 from nestjs/renovate/jsonwebtoken-8.x
Merge branch 'maitrungduc1410-master'
Merge pull request #336 from wprk/master
Merge pull request #197 from nestjs/renovate/major-nest-monorepo
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →