Joe Grandja
d7819ea4da
Update jackson-bom to 2.13.3
...
Closes gh-11399
4 years ago
Joe Grandja
37ee70ae86
Add dependency update exclusion for spring-javaformat-checkstyle
4 years ago
Joe Grandja
8ea37360ac
Add dependency exclusion rules
4 years ago
Rob Winch
29db051f7a
Cache SecurityContextRepository.loadContext(HttpServletRequest) Result
...
Closes gh-11390
4 years ago
Josh Cummings
f035c30edb
Encode postLogoutRedirectUri query params
...
Closes gh-11379
4 years ago
Josh Cummings
d22277ce36
Add missing KeyInfo
...
Closes gh-11354
4 years ago
Josh Cummings
bd60a0f8c9
Add OpenSamlSigningUtilsTests
...
Issue gh-11354
4 years ago
Zhivko Delchev
d882bfcf2b
Reverse content type check
...
When MultipartFormData is enabled currently the CsrfWebFilter compares
the content-type header against MULTIPART_FORM_DATA MediaType which
leads to NullPointerExecption when there is no content-type header.
This commit reverse the check to compare the MULTIPART_FORM_DATA
MediaType against the content-type which contains null check and avoids
the exception.
closes gh-11204
Closes gh-11205
4 years ago
Rob Winch
6c3f53ac0a
Fix typo in BasicLookupStrategy Javadoc
...
Issue gh-11336
4 years ago
shirohoo
b274431c07
Fix typo in BasicLookupStrategy Javadoc
...
Closes gh-11336
4 years ago
Rob Winch
3d5e5ff556
Enable BackportBot on 5.7.x
4 years ago
sKai.fun
a3e996a66b
Fix title render issue of Digest Authentication document
...
Closes gh-11272
4 years ago
André Luis Gomes
0c31cb21dc
Update opaque-token.adoc
...
Fixing yaml sample in Servlet and Reactive pages
4 years ago
Claudio Consolmagno
c39d39b35f
Use 'md:' prefix in EntityDescriptor XML
...
Create the EntityDescriptor object with
EntityDescriptor.DEFAULT_ELEMENT_NAME instead of
EntityDescriptor.ELEMENT_QNAME. That ensures the EntityDescriptor tag
is marshalled to xml with the 'md:' prefix, consistent with all other
metadata tags.
Closes #11283
4 years ago
Josh Cummings
292585080a
Correct access(String) reference
...
Closes gh-11280
4 years ago
Josh Cummings
8690accd57
Improve ContextConfiguration Docs
...
Point to updated Spring Reference
Issue gh-10934
4 years ago
Josh Cummings
e3c15260e7
Polish ExtendWith Docs
...
Use spring-framework-reference-url placeholder
Issue gh-10934
4 years ago
nor-ek
9625382b22
Update JUnit 5 annotations in documentation
...
- replace Before with BeforeEach
- replace RunWith with ExtendWith
Closes gh-10934
4 years ago
Evgeniy Cheban
48ef3f4719
Some Security Expressions cause NPE when used within Query annotation
...
Added trustResolver, roleHierarchy, permissionEvaluator, defaultRolePrefix
fields to SecurityEvaluationContextExtension.
Closes gh-11196
Closes gh-11289
4 years ago
Juny Tse
d0da160007
Use Base64 encoder with no CRLF in output for SAML 2.0 messages
...
Closes gh-11262
4 years ago
Rob Winch
4caf53e96d
Next Development Version
4 years ago
Rob Winch
22a1c99b9e
Release 5.7.1
4 years ago
Rob Winch
e2eed33eca
Add StrictHttpFirewall.allow* new lines and separators
...
Issue gh-11264
4 years ago
Rob Winch
5bf478e72e
Fix Formatting
...
Issue gh-11264
4 years ago
Rob Winch
e0a6a9efa9
StrictHttpFirewall allows CJKV characters
...
Issue gh-11264
4 years ago
Rob Winch
5155719877
Next Development Version
4 years ago
Rob Winch
3497b0ed68
Release 5.7.0
4 years ago
Josh Cummings
1229b27b87
Improve Upgrading
4 years ago
Rob Winch
ee28896f42
AntRegexRequestMatcher Optimization
...
Closes gh-11234
4 years ago
Rob Winch
6b823fb27e
Extract rejectNonPrintableAsciiCharactersInFieldName
...
Closes gh-11234
4 years ago
Rob Winch
fb3f38fe7b
Update org.springframework.data to 2021.2.0
...
Closes gh-11228
4 years ago
Rob Winch
2e37b7a299
Update spring-ldap-core to 2.4.0
...
Closes gh-11227
4 years ago
Rob Winch
7b6ff7794a
Update org.springframework to 5.3.20
...
Closes gh-11225
4 years ago
Rob Winch
7659c70e5d
Update htmlunit-driver to 2.61.0
...
Closes gh-11224
4 years ago
Rob Winch
771ca55102
Update org.jetbrains.kotlin to 1.6.21
...
Closes gh-11223
4 years ago
Rob Winch
949f95381a
Update htmlunit to 2.61.0
...
Closes gh-11222
4 years ago
Rob Winch
410961cd78
Update io.projectreactor to 2020.0.19
...
Closes gh-11220
4 years ago
Rob Winch
cc90685770
Update mockk to 1.12.4
...
Closes gh-11219
4 years ago
Rob Winch
59158ed8c0
Update aspectj-plugin to 6.4.3
...
Closes gh-11218
4 years ago
Rob Winch
1a902ab58c
Update com.nimbusds to 9.35
...
Closes gh-11217
4 years ago
Evgeniy Cheban
e01b1e7f38
Polish gh-11188
4 years ago
Marcus Da Coregio
991d5c8817
Use properties in the checkSamples job
...
Issue gh-10344
4 years ago
Marcus Da Coregio
34f280a5a3
Add initScripts and projectProperties to IncludeCheckRemotePlugin
...
Issue gh-10344
4 years ago
Evgeniy Cheban
89019fb340
Consider replacing an inner loop with Set of authority strings in AuthorityAuthorizationManager
...
Closes gh-11188
4 years ago
Marcus Da Coregio
d86ed6f523
Update copyright headers
...
Issue gh-10956
4 years ago
Marcus Da Coregio
1959c25a03
Fix mvcMatchers overriding previous paths
...
Closes gh-10956
4 years ago
Rob Winch
67830f4111
Fix WebSessionReactiveSecurityRepository Supports Cache
...
Fix the checkstyle for this feature
Closes gh-8422
4 years ago
Rob Winch
c6eaa05fc5
WebSessionReactiveSecurityRepository Supports Cache
4 years ago
Rob Winch
7b6fd598d0
Multiple <authentication-manager> Do Not Duplicate Alias
...
Previously, two authentication managers with different ids would duplicate
the alias to the global authentication manager. This would cause failures
for when allowBeanDefinitionOverriding = false.
This commit ensures that if the global authentication manager alias is
already set, then it is not set again. This means the first
<authentication-manager> will be used as the global AuthenticationManager.
Closes gh-8767
4 years ago
Evgeniy Cheban
286e95893a
@EnableMethodSecurity doesn't resolve Method Security annotations on interfaces through a Proxy
...
Removed proxy unwrapping in case of resolving Method Security annotations,
this cause an issue when interfaces which are implemented by the proxy was skipped,
resulting in a missing security checks on those methods.
Closes gh-11175
4 years ago