Spring Security SEC-1888: Mixing @Secured and @PreAuthorize annotations on a secured object causes one or the other to be silently ignored

Richard Bradley (Migrated from SEC-1888) said:If I secure an object with a mixture of @PreAuthorize and @Secured annotat...

Spring Security 6.0.x should use samplesBranch=6.0.x

Comment From: Leila-CodesPlease do! Or otherwise would it be possible to update the links to point at the Spring Securit...

Spring Security spring-security-saml2-service-provider RelyingPartyRegistration chooses the wrong RelyingPartyRegistration.Builder from metadata

Describe the bugspring-security-saml2-service-provider RelyingPartyRegistration chooses the wrong RelyingPartyRegistrati...

Spring Security CsrfToken Description

Hello,I noticed that in the documentation for the org.springframework.security.web.server.csrf package, there is no desc...

Spring Security Many configuration tags are not recommended after Spring security version 3.1.0

When I use Spring Boot parent version 3.1.0, the default security is also 3.1.0. In my development tool, it prompts that...

Spring Security rolePrefix with empty string returns HTTP 400 as of version 6.0.3

Describe the bugIn version 6.0.3 our application returns a HTTP 400 with message Administrator should not start with si...

Spring Security Missing response body for 401 response in resource server

When trying to access any protected endpoint without including an access token in the header, the response code is 401 (...

Spring Security Request: Include a simple fix for a bug with IE11 that was moved to v6 in a v5 release

This issue: https://github.com/spring-projects/spring-security/issues/13106It has a fix that was initially slated for 5....

Spring Security ACL change Permission#getMask() type from "int" to "long"

Expected BehaviorPermission#getMask() returns long.Current BehaviorPermission#getMask() returns int.ContextIn our projec...

Spring Security AOT Fails to proxy

Forward port of #13368Comment From: marcusdacoregioClosed via https://github.com/spring-projects/spring-security/commit/...

Spring Security AOT Fails to proxy

The spring-aot-proxy-tests fail when trying to proxy methods. The problem seems to be related to this change https://git...

Spring Security Update jackson-datatype-jsr310 to 2.13.5

Comment From: marcusdacoregioClosed via https://github.com/spring-projects/spring-security/commit/9656f79afec076da527d30...

Spring Security Update jackson-databind to 2.13.5

Comment From: marcusdacoregioClosed via https://github.com/spring-projects/spring-security/commit/9656f79afec076da527d30...

Spring Security Update reactor-netty to 1.0.33

Comment From: marcusdacoregioClosed via https://github.com/spring-projects/spring-security/commit/08b84502e370ca460ff07b...

Spring Security Update org.junit.jupiter to 5.9.3

Comment From: marcusdacoregioClosed via https://github.com/spring-projects/spring-security/commit/f402679996346df66f16d9...

Spring Security Update reactor-netty to 1.0.33

Comment From: marcusdacoregioClosed via https://github.com/spring-projects/spring-security/commit/81723fca9a5fb34331f500...

Spring Security Update reactor-netty to 1.0.33

Comment From: marcusdacoregioClosed via https://github.com/spring-projects/spring-security/commit/08b84502e370ca460ff07b...

Spring Security permitAll() broken?

I am upgrading from Spring 2.7.10 to 3.1. Part of that is converting authorizeRequests to authorizeHttpRequests.I'm usin...

Spring Security running gradle build on 5.8.x fails on unauthorized repo

Describe the bug + To ReproduceI'm getting:Could not GET 'https://repo.spring.io/plugins-release/io/projectreactor/react...

Spring Security Fix Documentation Title

Forward port of issue #13314 to 6.1.1.Comment From: marcusdacoregioClosed via https://github.com/spring-projects/spring-...
上一页 下一页
.