Joe Grandja
321e6a8742
Release 5.4.6
5 years ago
Joe Grandja
924ceac681
Lock Dependencies
5 years ago
Joe Grandja
951cb844dd
Update to Spring Boot 2.4.4
5 years ago
佚名
9570d0cada
Add null check in CsrfFilter and CsrfWebFilter
...
Solve the problem that CsrfFilter and CsrfWebFilter
throws NPE exception when comparing two byte array
is equal in low JDK version.
When JDK version is lower than 1.8.0_45, method
java.security.MessageDigest#isEqual does not verify
whether the two arrays are null. And the above two
class call this method without null judgment.
ZiQiang Zhao<1694392889@qq.com>
Closes gh-9561
5 years ago
Eleftheria Stein
e7ee70384d
Consider Order on SecurityFilterChain bean definitions
...
Closes gh-9154
5 years ago
Josh Cummings
d192b3eb91
Next Development Version
5 years ago
Josh Cummings
71e0967b53
Revert "Lock Dependencies for Release"
...
This reverts commit 8c04074264 .
5 years ago
Josh Cummings
45bca751c7
Release 5.4.5
5 years ago
Josh Cummings
8c04074264
Lock Dependencies for Release
5 years ago
Andy Wilkinson
7db6c9189e
Downgrade to Nimbus JOSE JWT 8.+
5 years ago
Josh Cummings
f6a2850753
Next Development Version
5 years ago
Josh Cummings
cf032d86d6
Revert "Lock Dependencies"
...
This reverts commit 9535a41d5a .
5 years ago
Josh Cummings
abc523c063
Release 5.4.4
5 years ago
Josh Cummings
9535a41d5a
Lock Dependencies
5 years ago
Rob Winch
4b6b417d5a
Additional Test for HttpSessionSecurityContextRepository
...
Issue gh-9387
5 years ago
Rob Winch
c72a6fac04
Optimize HttpSessionSecurityContextRepository
...
Closes gh-9387
5 years ago
Josh Cummings
357446ba9d
Next Development Version
5 years ago
Josh Cummings
f449da8b78
Revert "Lock Dependencies"
...
This reverts commit d17ebf53f9 .
5 years ago
Josh Cummings
9fbcfd9513
Release 5.4.3
5 years ago
Josh Cummings
d17ebf53f9
Lock Dependencies
5 years ago
Josh Cummings
c241f643ad
Update to GAE 1.9.86
...
Closes gh-9448
5 years ago
Josh Cummings
d4461dc856
Update to Spring Boot 2.4.2
...
Closes gh-9447
5 years ago
Josh Cummings
ad0ad06705
Update to Kotlin 1.4.30
...
Closes gh-9446
5 years ago
Josh Cummings
db76882f75
Fix Test Configuration
...
- Typo in PlaceholderConfig was causing Windows builds to
resolve the CLASSPATH environment variable
Closes gh-9421
5 years ago
kavi87
27e6743fd6
Update saml2-login.adoc
...
Fix example on registering custom marshaller for saml request
5 years ago
Josh Cummings
e79141a188
Downgrade nimbus-jose-jwt to 8.+
...
Closes gh-9399
5 years ago
Josh Cummings
da7141eb5b
Polish Tests
...
Issue gh-9331
5 years ago
happier233
e30d78086a
Configure CurrentSecurityContextArgumentResolver BeanResolver
...
Closes gh-9331
5 years ago
Mayur Patel
fc24c7991c
Allow null or empty authorities for DefaultOAuth2User
...
Make DefaultOAuth2User more inline with other part of
spring-security.
For example,
- DefaultOAuth2AuthenticatedPrincipal
- AbstractAuthenticationToken
Closes gh-9366
5 years ago
Josh Cummings
42013ee3a1
Change Example Name
...
Closes gh-9379
5 years ago
Rob Winch
21f03b53f2
Use spring-build-conventions:0.0.37
5 years ago
Benjamin Faal
f6b678f137
Make user info response status check error only
...
Closes gh-9336
5 years ago
Josh Cummings
76657631fd
Migrate SAML 2.0 Tests and Docs to PCFOne
...
Issue gh-9362
5 years ago
Josh Cummings
3f2057364e
Migrate SAML 2.0 Samples to PCFOne
...
Closes gh-9362
5 years ago
Josh Cummings
a8a66480be
Fix SAML 2.0 Javaconfig Sample
...
Issue gh-9362
5 years ago
Eleftheria Stein
1f4aa8fe4f
Provide artifactoryUsername/Password in docs and schema jobs
5 years ago
Eleftheria Stein
420e8227d4
Resolve artifacts from Maven Central first
...
- Use spring-build-conventions:0.0.36
- Add https://repo.spring.io/release to reference
Closes gh-9367
5 years ago
tristanessquare
580b988e7f
Fix NullPointerException
...
- Caused by a malformed WWW-Authenticate value
Closes gh-9364
5 years ago
Rob Winch
acb5ae607b
Constant Time Comparison for CSRF tokens
...
Closes gh-9291
5 years ago
Rob Winch
77a1befcc2
Fix Checkstyle for CsrfWebFilter
...
Issue gh-9337
5 years ago
Rob Winch
61b75bb2d6
Fix CsrfWebFilter error message when expected CSRF not found
...
Closes gh-9337
5 years ago
Eleftheria Stein
429caeacc9
Fix bug with multiple AuthenticationManager beans
...
Closes gh-9256
5 years ago
Josh Cummings
8c93d95818
Renew Sample Certificate
...
Closes gh-9320
5 years ago
Ovidiu Popa
b8175bccd2
OidcIdToken cannot be serialized to JSON if token contains claim of type JSONArray or JSONObject
...
ObjectToListStringConverter and ObjectToMapStringObjectConverter were checking if the source object is of type List or Map and if the first element or key is a String. If we have a JSONArray containing Strings the above check will pass, meaning that a JSONArray will be returned which is not serializable (same applies to JSONObject)
With this change, even if the check is passing a new List or Map will be returned.
Closes gh-9210
5 years ago
Josh Cummings
00375da173
Next Development Version
5 years ago
Josh Cummings
1af21a9d02
Revert "Lock Dependencies for 5.4.2"
...
This reverts commit 046bc9789f .
5 years ago
Josh Cummings
9effebe934
Release 5.4.2
5 years ago
Josh Cummings
046bc9789f
Lock Dependencies for 5.4.2
5 years ago
Josh Cummings
423d3682d0
Update to Google App Engine 1.9.83
...
Closes gh-9250
5 years ago
Josh Cummings
1f5591198e
Update to Kotlin 1.4.20
...
Closes gh-9249
5 years ago