github spring-projects/spring-security 5.7.8

latest releases: 6.4.0-M4, 6.4.0-M3, 6.3.3...
17 months ago

⭐ New Features

  • Clarify documentation code snippet(s) (unclear where static imported methods come from) #6597
  • Document relationship between registrationId, EntityID, and resolving a relying party #12764

🪲 Bug Fixes

  • Add test to SimpleUrlAuthenticationSuccessHandlerTests #12740
  • Avoid NPE in FilterInvocation #12922
  • EntityId ignored in xml relying-party-registration #11898
  • Fix a javadoc typo in ReactiveAuthorizationManager #12998
  • Fix a javadoc typo in ReactiveAuthorizationManager #12978
  • Fix typo in SessionManagementConfigurer javadoc #12820
  • Missing spring-security-oauth2 xsds after release #12804
  • NimbusReactiveJwtDecoder.JwkSetUriReactiveJwtDecoderBuilder holds a reference to JWSVerificationKeySelector before ConfigurableJWTProcessor.setJWSKeySelector is executed #12960
  • RelyingPartyRegistrations should not fail when SPSSODescriptor elements are present #12664
  • SwitchUserFilter should use HttpSessionSecurityContextRepository by default #12834

🔨 Dependency Upgrades

  • Update blockhound to 1.0.8.RELEASE #13016
  • Update io.projectreactor to 2020.0.31 #13014
  • Update logback-classic to 1.2.12 #13013
  • Update org.eclipse.jetty to 9.4.51.v20230217 #13017
  • Update org.springframework to 5.3.27 #13018
  • Update org.springframework.data to 2021.2.11 #13019
  • Update reactor-netty to 1.0.31 #13015

❤️ Contributors

We'd like to thank all the contributors who worked on this release!

Don't miss a new spring-security release

NewReleases is sending notifications on new releases.