1.26.0 (2026-09-30)
Features Added
ManagedIdentityCredentialnow supports user-assigned managed identities on Azure Arc-enabled servers. An identity can be selected by client ID, object ID, or resource ID. Token responses that do not confirm the requested identity are rejected. (#48967)
Bugs Fixed
- Fixed synchronous Service Fabric managed identity authentication with MSAL 1.39.0 and later. Service Fabric now uses the session from an Azure Core
RequestsTransport. (#48967) - Fixed an issue where
AuthorizationCodeCredentialand the asynchronousOnBehalfOfCredentialcould return a cached token for another account when multiple credentials shared a token cache. (#49001)
Other Changes
- Added
RequestIdPolicyto the default pipeline policies to ensure a uniquex-ms-client-request-idheader is sent with each request. (#46070) CertificateCredentialnow passes the PEM private key to MSAL as astrrather thanbytes, matching MSAL's documentedclient_credentialcontract. (#46801)- Bumped the minimum dependency on
msalto>=1.39.0.