I noticed that PKCS1_OAEP defaults to the SHA-1 hash algorithm when no other algorithm is specified. NIST already considered SHA-1 to be EOL in 2022. See https://www.nist.gov/news-events/news/2022/12/nist-retires-sha-1-cryptographic-algorithm.
Should we update the default algorithm to SHA-2?
I noticed that PKCS1_OAEP defaults to the SHA-1 hash algorithm when no other algorithm is specified. NIST already considered SHA-1 to be EOL in 2022. See https://www.nist.gov/news-events/news/2022/12/nist-retires-sha-1-cryptographic-algorithm.
Should we update the default algorithm to SHA-2?