1134 Commits (5.5.8)

Author SHA1 Message Date
Rob Winch 66d1cd592a StrictHttpFirewall allows CJKV characters 4 years ago
Rob Winch c6461d61ba AntRegexRequestMatcher Optimization 4 years ago
Rob Winch 4405cf18f3 Extract rejectNonPrintableAsciiCharactersInFieldName 4 years ago
Marcus Da Coregio 9792e2a0fa Use ServletContext in AuthorizationManagerWebInvocationPrivilegeEvaluator 4 years ago
Marcus Da Coregio 44508df940 AuthorizationManagerWebInvocationPrivilegeEvaluator grant access when AuthorizationManager abstains 4 years ago
Josh Cummings a09f6e15ad Polish ignoring() log messaging 4 years ago
Manuel Jordan 7e0302be5c Print ignore message DefaultSecurityFilterChain 4 years ago
Marcus Da Coregio 893b651aea RequestMatcherDelegatingWebInvocationPrivilegeEvaluator doesn't provided access to the ServletContext 4 years ago
Josh Cummings ca353d6781 Use noNullElements 4 years ago
Marcus Da Coregio 60595f2801 Fix @since tag 4 years ago
Marcus Da Coregio ba810e468f Configure WebInvocationPrivilegeEvaluator bean for multiple filter chains 4 years ago
Marcus Da Coregio 40dfe8f259 Add RequestMatcherEntry 4 years ago
Marcus Da Coregio b448954f43 Introduce AuthorizationManagerWebInvocationPrivilegeEvaluator 4 years ago
Steve Riesenberg 47b8860681 Update copyright year 4 years ago
Steve Riesenberg 828cac8889 Fix case sensitive headers comparison 4 years ago
Marcus Da Coregio 2bf7a5ae80 Improve log message when no CSRF token found 4 years ago
Marcus Da Coregio 00f4033b9b Update DefaultWebInvocationPrivilegeEvaluator to use current ServletContext 4 years ago
Rob Winch e4a76b0ec9 Checkstyle Fixes 4 years ago
Josh Cummings 6e86fab19d Restructure SwitchUserFilter Logs 4 years ago
Marcus Hert da Coregio 29f4193529 Adjust createNewSessionIfAllowed to prevent NPE 5 years ago
Josh Cummings df6ebc7051
Rename DelegatingAuthorizationManager 5 years ago
Thomas Vitale e2993d93e1 Make Csrf cookie secure flag configurable (WebFlux) 5 years ago
Josh Cummings cb6e4f4a11
Add NPE Guards 5 years ago
Craig Andrews 7dc4de05b1 Add guard around logger.debug statement 5 years ago
Josh Cummings 4f7d529c5d
Polish Csrf Tests 5 years ago
佚名 87ed527023
Add null check in CsrfFilter and CsrfWebFilter 5 years ago
Rob Winch f3f1106624 Update io.spring.javaformat to 0.0.27 5 years ago
Rob Winch 60d3db5798 add management platform(project(":spring-security-dependencies")) 5 years ago
Rob Winch 1a76ee7442 Update Gradle configuration names 5 years ago
Eleftheria Stein 4a492846f1 Revert "Lock dependencies for 2.5.0-M3" 5 years ago
Eleftheria Stein f05cc6269c Lock dependencies for 2.5.0-M3 5 years ago
Rob Winch 95da12110b
Additional Test for HttpSessionSecurityContextRepository 5 years ago
Rob Winch 3116369f02
Optimize HttpSessionSecurityContextRepository 5 years ago
Josh Cummings c4be1c6a56
Revert "Lock Dependencies" 5 years ago
Josh Cummings a85caa4098
Lock Dependencies 5 years ago
Josh Cummings 107f38fff9
Polish Tests 5 years ago
happier233 873b9bdbca
Configure CurrentSecurityContextArgumentResolver BeanResolver 5 years ago
Evgeniy Cheban 77484018bb Reconsider AntPathRequestMatcher matching logic 5 years ago
Rob Winch 0201c31deb Fix Checkstyle for CsrfWebFilter 5 years ago
Rob Winch a1083d9a5c Fix CsrfWebFilter error message when expected CSRF not found 5 years ago
Josh Cummings 160a4a3676
Reformat MvcRequestMatcher 5 years ago
Evgeniy Cheban 8449df9fd2
Consider Aligning MvcRequestMatcher's matching methods 5 years ago
Zeeshan Adnan 848bd44837
Remove unused code 5 years ago
Rob Winch 40e027c56d Constant Time Comparison for CSRF tokens 5 years ago
Josh Cummings c066e23a86
Add @since attributes 5 years ago
Evgeniy Cheban 34b4b1054f Add AuthorizationManager 5 years ago
Nick McKinney 5306d4c4d5 Minor cleanup on Ant / Regex Request Matchers 5 years ago
Nick McKinney 6be25df1db Introduced DispatcherType request matcher 5 years ago
Christophe Gilles 54d3839f63 Add permissionsPolicy http header 5 years ago
Serdar Kuzucu 48ef27b80a Make assertion messages in CookieCsrfTokenRepository clearer 5 years ago