-
Notifications
You must be signed in to change notification settings - Fork 5.8k
Pull requests: spring-projects/spring-security
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
Bump Gradle Wrapper from 8.7 to 8.8
status: waiting-for-triage
An issue we've not yet triaged
#15188
opened Jun 1, 2024 by
github-actions
bot
Loading…
Add methods to augment allowed headers and parameters in StrictHttpFi…
in: web
An issue in web modules (web, webmvc)
type: enhancement
A general enhancement
#15048
opened May 12, 2024 by
baezzys
Loading…
The SecuredAuthorizationManager can now find @Secured annotations on …
in: core
An issue in spring-security-core
status: blocked
An issue that's blocked on an external project change
type: enhancement
A general enhancement
Expose user name attribute name in An issue in OAuth2 modules (oauth2-core, oauth2-client, oauth2-resource-server, oauth2-jose)
type: enhancement
A general enhancement
OAuth2UserAuthority
in: oauth2
#15012
opened May 6, 2024 by
filiphr
Loading…
Improved error message for PasswordEncoder
in: crypto
An issue in spring-security-crypto
type: enhancement
A general enhancement
#14968
opened Apr 26, 2024 by
bottlerocketjonny
Loading…
Support expressions in MethodAuthorizationDeniedHandler
in: core
An issue in spring-security-core
type: enhancement
A general enhancement
#14912
opened Apr 15, 2024 by
CrazyParanoid
Loading…
AuthorizationManager should return AuthorizationResult
status: waiting-for-triage
An issue we've not yet triaged
#14846
opened Apr 4, 2024 by
CrazyParanoid
Loading…
Fix HeadersConfigurer#permissionsPolicy method with customizer
for: team-attention
This ticket should be discussed as a team before proceeding
in: config
An issue in spring-security-config
type: enhancement
A general enhancement
#14839
opened Apr 3, 2024 by
florianberthe
Loading…
Add support customizing the serverLogoutSuccessHandler for OidcClientInitiatedServerLogoutSuccessHandler
in: oauth2
An issue in OAuth2 modules (oauth2-core, oauth2-client, oauth2-resource-server, oauth2-jose)
type: enhancement
A general enhancement
Add BearerTokenAuthenticationConverter
in: oauth2
An issue in OAuth2 modules (oauth2-core, oauth2-client, oauth2-resource-server, oauth2-jose)
type: enhancement
A general enhancement
#14791
opened Mar 22, 2024 by
CrazyParanoid
Loading…
Add ContinueRequestSessionInformationExpiredStrategy
status: waiting-for-triage
An issue we've not yet triaged
#14765
opened Mar 16, 2024 by
Ilpyo-Yang
Loading…
Use relative URLs in /login redirects
status: waiting-for-triage
An issue we've not yet triaged
#14714
opened Mar 10, 2024 by
Pistolnik
Loading…
Send saml logout response even when validation errors happen
in: saml2
An issue in SAML2 modules
status: feedback-provided
Feedback has been provided
type: enhancement
A general enhancement
#14676
opened Mar 3, 2024 by
1livv
Loading…
Improve JdbcUserDetailsManager.userExists method
status: waiting-for-triage
An issue we've not yet triaged
#14649
opened Feb 24, 2024 by
Shenker93
Loading…
Publish Authorization Events on WebFlux
in: web
An issue in web modules (web, webmvc)
type: enhancement
A general enhancement
#14361
opened Dec 21, 2023 by
marcusdacoregio
•
Draft
Remove deprecated methods from CookieServerCsrfTokenRepository
in: web
An issue in web modules (web, webmvc)
type: breaks-passivity
A change that breaks passivity with the previous release
type: enhancement
A general enhancement
Allow at+jwt, according to RFC-9068
in: oauth2
An issue in OAuth2 modules (oauth2-core, oauth2-client, oauth2-resource-server, oauth2-jose)
status: duplicate
A duplicate of another issue
status: waiting-for-feedback
We need additional information before we can continue
type: enhancement
A general enhancement
#13186
opened May 16, 2023 by
ymajoros
Loading…
TestCsrfTokenRepository should delegate to the configured CsrfTokenRepository
status: waiting-for-triage
An issue we've not yet triaged
Decouple SAML 2.0 Single Logout from the authenticated principal's type
in: saml2
An issue in SAML2 modules
status: duplicate
A duplicate of another issue
type: enhancement
A general enhancement
#11338
opened Jun 6, 2022 by
chschu
Loading…
ProTip!
Updated in the last three days: updated:>2024-05-30.