Skip to content

Pull requests: spring-projects/spring-security

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Reviews
Assignee
Filter by who’s assigned
Assigned to nobody Loading
Sort

Pull requests list

Change FilterBasedLdapUserSearch to use LdapClient status: waiting-for-triage An issue we've not yet triaged
#17384 opened Jun 29, 2025 by therepanic Loading…
Allow specifying a ServerAuthenticationConverter for x509() status: waiting-for-triage An issue we've not yet triaged
#17382 opened Jun 27, 2025 by blake-bauman Loading…
Allow multiple ServerLogoutHandler instances in WebFlux status: waiting-for-triage An issue we've not yet triaged
#17381 opened Jun 27, 2025 by blake-bauman Loading…
Remove AllowFromStrategy in favor of ContentSecurityPolicy status: waiting-for-triage An issue we've not yet triaged
#17358 opened Jun 25, 2025 by therepanic Loading…
Remove deprecated classes moved to other packages in: core An issue in spring-security-core type: breaks-passivity A change that breaks passivity with the previous release type: enhancement A general enhancement
#17330 opened Jun 22, 2025 by ronodhirSoumik Loading…
1 task done
7.0.x
Remove RelyingPartyRegistration deprecations in: saml2 An issue in SAML2 modules type: breaks-passivity A change that breaks passivity with the previous release type: enhancement A general enhancement
#17329 opened Jun 22, 2025 by ngocnhan-tran1996 Loading… 7.0.x
Remove Nimbus(Reactive)OpaqueTokenIntrospector in: oauth2 An issue in OAuth2 modules (oauth2-core, oauth2-client, oauth2-resource-server, oauth2-jose) type: breaks-passivity A change that breaks passivity with the previous release type: enhancement A general enhancement
#17326 opened Jun 21, 2025 by ngocnhan-tran1996 Loading… 7.0.x
Use LdapName instead of DistinguishedName in: ldap An issue in spring-security-ldap type: breaks-passivity A change that breaks passivity with the previous release type: enhancement A general enhancement
#17325 opened Jun 21, 2025 by therepanic Loading… 7.0.x
Default to XorCsrfChannelInterceptor in XML configuration status: waiting-for-triage An issue we've not yet triaged
#17323 opened Jun 20, 2025 by msqr Loading…
Remove deprecated elements using AuthorizationDecision status: waiting-for-triage An issue we've not yet triaged type: breaks-passivity A change that breaks passivity with the previous release
#17322 opened Jun 20, 2025 by ngocnhan-tran1996 Loading…
Remove RequestVariablesExtractor in favor of RequestMatcher#matcher status: waiting-for-triage An issue we've not yet triaged type: breaks-passivity A change that breaks passivity with the previous release
#17320 opened Jun 20, 2025 by therepanic Loading…
Adjust log message to include guidance for XML users status: waiting-for-triage An issue we've not yet triaged
#17317 opened Jun 20, 2025 by x7Git Loading…
Remove deprecated elements from DaoAuthenticationProvider status: waiting-for-triage An issue we've not yet triaged type: breaks-passivity A change that breaks passivity with the previous release
#17315 opened Jun 19, 2025 by ngocnhan-tran1996 Loading…
Remove deprecated elements of RoleHierarchyImpl status: waiting-for-triage An issue we've not yet triaged type: breaks-passivity A change that breaks passivity with the previous release
#17313 opened Jun 19, 2025 by ngocnhan-tran1996 Loading…
Remove PrePostTemplateDefaults status: waiting-for-triage An issue we've not yet triaged type: breaks-passivity A change that breaks passivity with the previous release
#17312 opened Jun 19, 2025 by ngocnhan-tran1996 Loading…
Remove EnableWebMvcSecurity status: waiting-for-triage An issue we've not yet triaged type: breaks-passivity A change that breaks passivity with the previous release
#17311 opened Jun 19, 2025 by ngocnhan-tran1996 Loading…
Polish status: waiting-for-triage An issue we've not yet triaged
#17310 opened Jun 18, 2025 by ngocnhan-tran1996 Loading…
Ensure ID Token is updated after refresh token (Reactive) in: oauth2 An issue in OAuth2 modules (oauth2-core, oauth2-client, oauth2-resource-server, oauth2-jose) type: enhancement A general enhancement
#17246 opened Jun 14, 2025 by evgeniycheban Draft 7.0.x
Fix PublicKeyCredentialType.PUBLIC_KEY comparison with Spring Session in: web An issue in web modules (web, webmvc) status: waiting-for-feedback We need additional information before we can continue type: bug A general bug
#17223 opened Jun 10, 2025 by ltanguy Loading…
Add Support DPoP Customization in: oauth2 An issue in OAuth2 modules (oauth2-core, oauth2-client, oauth2-resource-server, oauth2-jose) type: enhancement A general enhancement
#17202 opened Jun 3, 2025 by franticticktick Draft 7.0.x
Support custom OAuth2AuthenticatedPrincipal in Jwt-based authentication flow in: oauth2 An issue in OAuth2 modules (oauth2-core, oauth2-client, oauth2-resource-server, oauth2-jose) type: enhancement A general enhancement
#17191 opened Jun 1, 2025 by therepanic Loading…
Make X509CertificateThumbprintValidator to be public and non-final class in: oauth2 An issue in OAuth2 modules (oauth2-core, oauth2-client, oauth2-resource-server, oauth2-jose) type: enhancement A general enhancement
#17178 opened May 28, 2025 by edmundham Loading…
ProTip! Find all pull requests that aren't related to any open issues with -linked:issue.