github spring-projects/spring-security 6.3.0-M2

latest releases: 6.4.0-RC1, 5.7.13, 5.8.15...
pre-release9 months ago

⭐ New Features

  • Add usernameParameter and passwordParameter to FormLoginDsl #14488
  • Add argument resolver for SecurityContext #14449
  • Add functionality to set custom web client in ReactiveOidcIdTokenDecoderFactory #13301
  • Cleanup Saml2MetadataFilter #14476
  • Customize when UserInfo is called #13259
  • Implement providing a custom AuthoritiesPopulator in ADLdapAuthProvider #14539
  • Migrate spring-security-rsa into spring-security-crypto #14202
  • Nested username attribute in DefaultOAuth2User #14265
  • Revise AuthorizationAnnotationUtils #14407
  • Spring Security annotations on subclasses support intercepting parent class methods. #14516

🪲 Bug Fixes

  • WebTestUtilsTestRuntimeHints should implement RuntimeHintsRegistrar #14469
  • Cannot configure SecurityContextRepository in CasAuthenticationFilter #14537
  • Fix wrong class name in JavaDoc #14466
  • Fixed Interceptor name in Method Security reference document #14475
  • Missing native-image reflection hint for CsrfTokenRequestAttributeHandler$SupplierCsrfToken #14471
  • Typo: Update anonymous.adoc #14541
  • Typo: Update rememberme.adoc #14542

🔨 Dependency Upgrades

  • Bump com.fasterxml.jackson:jackson-bom from 2.15.3 to 2.15.4 #14619
  • Bump Gamesight/slack-workflow-status from 1.2.0 to 1.3.0 #14578
  • Bump gradle/gradle-build-action from 2 to 3 #14502
  • Bump io.micrometer:micrometer-observation from 1.12.2 to 1.12.3 #14588
  • Bump io.projectreactor:reactor-bom from 2023.0.2 to 2023.0.3 #14613
  • Bump io.spring.ge.conventions from 0.0.14 to 0.0.15 #14462
  • Bump org-aspectj from 1.9.21 to 1.9.21.1 #14604
  • Bump org-eclipse-jetty from 11.0.19 to 11.0.20 #14517
  • Bump org.junit:junit-bom from 5.10.1 to 5.10.2 #14544
  • Bump org.slf4j:slf4j-api from 2.0.11 to 2.0.12 #14556
  • Bump org.springframework.data:spring-data-bom from 2023.1.2 to 2023.1.3 #14625
  • Bump org.springframework.ldap:spring-ldap-core from 3.2.1 to 3.2.2 #14620
  • Bump org.springframework:spring-framework-bom from 6.1.3 to 6.1.4 #14618
  • Bump slackapi/slack-github-action from 1.24.0 to 1.25.0 #14501
  • Bump spring-io/spring-github-workflows from eaf17a1890b1ef1b337f015d6eb263baaf8c6dab to 1e8b0587a1f4f01697f9753fa3339c3e0d30f396 #14579

❤️ Contributors

Thank you to all the contributors who worked on this release:

@Haarolean, @NerminKarapandzic, @ahmd-nabil, @boulce, @dependabot[bot], @irerin07, @kse-music, @leshalv, @sbrannen, @sonallux, @ty-v1, and @ubaid4j

Don't miss a new spring-security release

NewReleases is sending notifications on new releases.