Documentation for ServletBearerExchangeFilterFunction incomplete or incorrect #15460
EnableMethodSecurity should publish only one bean of each AuthorizationAdvisor #15592
Fix Compromised Password Checker Docs Sample Not Working #15305
Fix for #15172 introduces significant performance degredation #15324
Pre/PostAuthorize should not ignore HandleAuthorizationDenied#handlerClass when ApplicationContext is not provided #15535
Update prerequisites documentation with Java 17 #15340
Use Correct Meta-Annotation in Kotlin Sample #15472
Using sec:authorize in JSPX causes 'java.lang.NullPointerException: Cannot invoke "jakarta.servlet.ServletRegistration.getClassName()" because "registration" is null' #15440
:hammer: Dependency Upgrades
Bump ch.qos.logback:logback-classic from 1.5.6 to 1.5.7 #15619
Bump com.fasterxml.jackson:jackson-bom from 2.17.1 to 2.17.2 #15374
Bump com.github.spullara.mustache.java:compiler from 0.9.13 to 0.9.14 #15373
Bump io.micrometer:micrometer-observation from 1.12.7 to 1.12.8 #15383
Bump io.micrometer:micrometer-observation from 1.12.8 to 1.12.9 #15581
Bump io.mockk:mockk from 1.13.11 to 1.13.12 #15430
Bump io.projectreactor:reactor-bom from 2023.0.7 to 2023.0.8 #15388
Bump io.projectreactor:reactor-bom from 2023.0.8 to 2023.0.9 #15597
Bump jakarta.servlet.jsp.jstl:jakarta.servlet.jsp.jstl-api from 3.0.0 to 3.0.1 #15582
Bump org-apache-maven-resolver from 1.9.20 to 1.9.21 #15372
Bump org-apache-maven-resolver from 1.9.21 to 1.9.22 #15545
Bump org-eclipse-jetty from 11.0.21 to 11.0.22 #15356
Bump org.apache.maven:maven-resolver-provider from 3.9.7 to 3.9.8 #15268
Bump org.apache.maven:maven-resolver-provider from 3.9.8 to 3.9.9 #15642
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
- `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Bumps org.springframework.security:spring-security-core from 6.3.1 to 6.3.2.
Release notes
Sourced from org.springframework.security:spring-security-core's releases.
... (truncated)
Commits
8fb44fe
Release 6.3.2ae8e4d1
Produce Exactly One AuthorizationAdvisor Per Annotation27af1df
Simplify Method Interceptor Configuration2403657
Merge branch '6.2.x' into 6.3.xb731623
Fix checkstyle errors with@Deprecated
b92ed92
Fix checkstyle errors with@Deprecated
912062d
Merge branch '6.2.x' into 6.3.x79fb011
Bump io-spring-javaformat from 0.0.42 to 0.0.43cb5cb5f
Merge branch '6.2.x' into 6.3.x6118ef6
Bump org.apache.maven:maven-resolver-provider from 3.9.8 to 3.9.9Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show