spring-projects/spring-security (org.springframework.security:spring-security-test)
### [`v6.2.2`](https://togithub.com/spring-projects/spring-security/releases/tag/6.2.2)
[Compare Source](https://togithub.com/spring-projects/spring-security/compare/6.2.1...6.2.2)
##### :star: New Features
- Configuration examples in docs are out of date [#14392](https://togithub.com/spring-projects/spring-security/issues/14392)
##### :beetle: Bug Fixes
- "Span wasn't started - an observation must be started (not only created)" (Micrometer) due to observation handling in Spring Security Web? [#14568](https://togithub.com/spring-projects/spring-security/issues/14568)
- `HandlerMappingIntrospectorRequestTransformer` is registered twice in AOT [#14367](https://togithub.com/spring-projects/spring-security/issues/14367)
- `OAuth2AuthorizationExchange` is not serializable [#14405](https://togithub.com/spring-projects/spring-security/issues/14405)
- `WebTestUtilsTestRuntimeHints` should implement `RuntimeHintsRegistrar` [#14468](https://togithub.com/spring-projects/spring-security/issues/14468)
- Application context fails to load: Couldn't find FilterChainProxy [#14380](https://togithub.com/spring-projects/spring-security/issues/14380)
- Back-Channel Logout should use localhost for internal logout request [#14553](https://togithub.com/spring-projects/spring-security/issues/14553)
- Cannot configure `SecurityContextRepository` in `CasAuthenticationFilter` [#14536](https://togithub.com/spring-projects/spring-security/issues/14536)
- Documentation about configuring SecuritySocketAcceptorInterceptor in Spring Boot is confusing [#14348](https://togithub.com/spring-projects/spring-security/issues/14348)
- fix typo in anonymous.adoc [#14424](https://togithub.com/spring-projects/spring-security/pull/14424)
- fix: typo in Authentication Architecture ProviderManager [#14448](https://togithub.com/spring-projects/spring-security/pull/14448)
- Missing native-image reflection hint for `HandlerMappingIntrospectorCachFilterFactoryBean` [#14377](https://togithub.com/spring-projects/spring-security/issues/14377)
- Missing native-image reflection hint for CsrfTokenRequestAttributeHandler$SupplierCsrfToken [#14470](https://togithub.com/spring-projects/spring-security/issues/14470)
- ReactiveMethodSecurityConfiguration is initialized prematurely when the context contains a BeanPostProcessor [#14350](https://togithub.com/spring-projects/spring-security/issues/14350)
- SAML relying party logout filter is always ordered last [#14551](https://togithub.com/spring-projects/spring-security/issues/14551)
- Spring Security 6.2 defaults to InMemoryOidcSessionRegistry causing memory leaks in distributed systems with external session storage [#14558](https://togithub.com/spring-projects/spring-security/issues/14558)
- Test using `@WithMockUser` fails with 401 UNAUTHORIZED with 3.2 [#14207](https://togithub.com/spring-projects/spring-security/issues/14207)
- Typo: Update authorize-http-requests.adoc [#14563](https://togithub.com/spring-projects/spring-security/pull/14563)
- Unexpected Exception Handling in NimbusReactiveJwtDecoder decode Method [#14496](https://togithub.com/spring-projects/spring-security/issues/14496)
- X-Xss-Protection header "1; mode=block" differs in Servlet and Reactive [#14346](https://togithub.com/spring-projects/spring-security/issues/14346)
##### :hammer: Dependency Upgrades
- Bump com.fasterxml.jackson:jackson-bom from 2.15.3 to 2.15.4 [#14617](https://togithub.com/spring-projects/spring-security/pull/14617)
- Bump Gamesight/slack-workflow-status from 1.2.0 to 1.3.0 [#14582](https://togithub.com/spring-projects/spring-security/pull/14582)
- Bump Gradle Wrapper from 8.5 to 8.6 [#14547](https://togithub.com/spring-projects/spring-security/issues/14547)
- Bump gradle/gradle-build-action from 2 to 3 [#14503](https://togithub.com/spring-projects/spring-security/pull/14503)
- Bump io-spring-javaformat from 0.0.40 to 0.0.41 [#14439](https://togithub.com/spring-projects/spring-security/pull/14439)
- Bump io.micrometer:micrometer-observation from 1.12.1 to 1.12.2 [#14429](https://togithub.com/spring-projects/spring-security/pull/14429)
- Bump io.micrometer:micrometer-observation from 1.12.2 to 1.12.3 [#14589](https://togithub.com/spring-projects/spring-security/pull/14589)
- Bump io.mockk:mockk from 1.13.8 to 1.13.9 [#14412](https://togithub.com/spring-projects/spring-security/pull/14412)
- Bump io.projectreactor:reactor-bom from 2023.0.1 to 2023.0.2 [#14430](https://togithub.com/spring-projects/spring-security/pull/14430)
- Bump io.projectreactor:reactor-bom from 2023.0.2 to 2023.0.3 [#14612](https://togithub.com/spring-projects/spring-security/pull/14612)
- Bump io.spring.ge.conventions from 0.0.14 to 0.0.15 [#14463](https://togithub.com/spring-projects/spring-security/pull/14463)
- Bump org-aspectj from 1.9.21 to 1.9.21.1 [#14605](https://togithub.com/spring-projects/spring-security/pull/14605)
- Bump org-eclipse-jetty from 11.0.18 to 11.0.19 [#14354](https://togithub.com/spring-projects/spring-security/pull/14354)
- Bump org-eclipse-jetty from 11.0.19 to 11.0.20 [#14518](https://togithub.com/spring-projects/spring-security/pull/14518)
- Bump org.apereo.cas.client:cas-client-core from 4.0.3 to 4.0.4 [#14440](https://togithub.com/spring-projects/spring-security/pull/14440)
- Bump org.jetbrains.kotlin:kotlin-bom from 1.9.21 to 1.9.22 [#14364](https://togithub.com/spring-projects/spring-security/pull/14364)
- Bump org.jetbrains.kotlin:kotlin-gradle-plugin from 1.9.21 to 1.9.22 [#14363](https://togithub.com/spring-projects/spring-security/pull/14363)
- Bump org.junit:junit-bom from 5.10.1 to 5.10.2 [#14543](https://togithub.com/spring-projects/spring-security/pull/14543)
- Bump org.slf4j:slf4j-api from 2.0.10 to 2.0.11 [#14422](https://togithub.com/spring-projects/spring-security/pull/14422)
- Bump org.slf4j:slf4j-api from 2.0.11 to 2.0.12 [#14554](https://togithub.com/spring-projects/spring-security/pull/14554)
- Bump org.slf4j:slf4j-api from 2.0.9 to 2.0.10 [#14387](https://togithub.com/spring-projects/spring-security/pull/14387)
- Bump org.springframework.data:spring-data-bom from 2023.1.1 to 2023.1.2 [#14455](https://togithub.com/spring-projects/spring-security/pull/14455)
- Bump org.springframework.data:spring-data-bom from 2023.1.2 to 2023.1.3 [#14624](https://togithub.com/spring-projects/spring-security/pull/14624)
- Bump org.springframework.ldap:spring-ldap-core from 3.2.1 to 3.2.2 [#14616](https://togithub.com/spring-projects/spring-security/pull/14616)
- Bump org.springframework:spring-framework-bom from 6.1.2 to 6.1.3 [#14454](https://togithub.com/spring-projects/spring-security/pull/14454)
- Bump org.springframework:spring-framework-bom from 6.1.3 to 6.1.4 [#14615](https://togithub.com/spring-projects/spring-security/pull/14615)
- Bump slackapi/slack-github-action from 1.24.0 to 1.25.0 [#14504](https://togithub.com/spring-projects/spring-security/pull/14504)
- Bump spring-io/spring-github-workflows from [`eaf17a1`](https://togithub.com/spring-projects/spring-security/commit/eaf17a1890b1ef1b337f015d6eb263baaf8c6dab) to [`1e8b058`](https://togithub.com/spring-projects/spring-security/commit/1e8b0587a1f4f01697f9753fa3339c3e0d30f396) [#14583](https://togithub.com/spring-projects/spring-security/pull/14583)
##### :heart: Contributors
Thank you to all the contributors who worked on this release:
[@Amitmahato](https://togithub.com/Amitmahato), [@andreasbuechel](https://togithub.com/andreasbuechel), [@boulce](https://togithub.com/boulce), and [@dependabot](https://togithub.com/dependabot)\[bot]
### [`v6.2.1`](https://togithub.com/spring-projects/spring-security/releases/tag/6.2.1)
[Compare Source](https://togithub.com/spring-projects/spring-security/compare/6.2.0...6.2.1)
#### :star: New Features
- docs: make XML and Java/Kotlin consistent with AspectJExpressionPointcut [#14219](https://togithub.com/spring-projects/spring-security/pull/14219)
- Document that Shibboleth Repository is Required for SAML Support [#14295](https://togithub.com/spring-projects/spring-security/issues/14295)
- Fix typo in architecture.adoc [#14254](https://togithub.com/spring-projects/spring-security/pull/14254)
- Fixing link in authentication/architecture.adoc [#13593](https://togithub.com/spring-projects/spring-security/pull/13593)
- Integrate HandlerMappingIntrospector Caching [#14332](https://togithub.com/spring-projects/spring-security/issues/14332)
- OAuth2 Resource Server is exposing server information. [#14278](https://togithub.com/spring-projects/spring-security/issues/14278)
#### :beetle: Bug Fixes
- Update Java Config Spring MVC documentation [#14234](https://togithub.com/spring-projects/spring-security/issues/14234)
- add missing \[tabs] fix typo in docs [#14208](https://togithub.com/spring-projects/spring-security/pull/14208)
- AnnotationConfigurationException when using PreAuthorize, CGLIB and EnableMethodSecurity [#14267](https://togithub.com/spring-projects/spring-security/issues/14267)
- Correct What's New in 6.2 reference to forServletPattern [#14200](https://togithub.com/spring-projects/spring-security/issues/14200)
- Fix typo in getClaimAsMap docstring [#14183](https://togithub.com/spring-projects/spring-security/pull/14183)
- Fix typo in the 'Authorizing Requests' example [#14169](https://togithub.com/spring-projects/spring-security/pull/14169)
- fix wrong document about "jws-algorithms" [#14280](https://togithub.com/spring-projects/spring-security/issues/14280)
- Improve error message when ServletRegistration API is unavailable [#14232](https://togithub.com/spring-projects/spring-security/issues/14232)
- Update Javadoc Comments in AuthorizationEvent Class [#14175](https://togithub.com/spring-projects/spring-security/pull/14175)
#### :hammer: Dependency Upgrades
- Bump actions/checkout from 3 to 4 [#14323](https://togithub.com/spring-projects/spring-security/pull/14323)
- Bump actions/setup-java from 3 to 4 [#14320](https://togithub.com/spring-projects/spring-security/pull/14320)
- Bump ch.qos.logback:logback-classic from 1.4.11 to 1.4.13 [#14213](https://togithub.com/spring-projects/spring-security/pull/14213)
- Bump ch.qos.logback:logback-classic from 1.4.13 to 1.4.14 [#14239](https://togithub.com/spring-projects/spring-security/pull/14239)
- Bump com.unboundid:unboundid-ldapsdk from 6.0.10 to 6.0.11 [#14223](https://togithub.com/spring-projects/spring-security/pull/14223)
- Bump Gamesight/slack-workflow-status from 1.0.1 to 1.2.0 [#14328](https://togithub.com/spring-projects/spring-security/pull/14328)
- Bump Gradle Wrapper from 8.4 to 8.5 [#14222](https://togithub.com/spring-projects/spring-security/issues/14222)
- Bump io.micrometer:micrometer-observation from 1.12.0 to 1.12.1 [#14284](https://togithub.com/spring-projects/spring-security/pull/14284)
- Bump io.projectreactor:reactor-bom from 2023.0.0 to 2023.0.1 [#14289](https://togithub.com/spring-projects/spring-security/pull/14289)
- Bump org-apache-maven-resolver from 1.9.16 to 1.9.17 [#14184](https://togithub.com/spring-projects/spring-security/pull/14184)
- Bump org-apache-maven-resolver from 1.9.17 to 1.9.18 [#14197](https://togithub.com/spring-projects/spring-security/pull/14197)
- Bump org-aspectj from 1.9.20.1 to 1.9.21 [#14271](https://togithub.com/spring-projects/spring-security/pull/14271)
- Bump org.apache.maven:maven-resolver-provider from 3.9.5 to 3.9.6 [#14228](https://togithub.com/spring-projects/spring-security/pull/14228)
- Bump org.hibernate.orm:hibernate-core from 6.3.1.Final to 6.3.2.Final [#14190](https://togithub.com/spring-projects/spring-security/pull/14190)
- Bump org.jetbrains.kotlin:kotlin-bom from 1.9.20 to 1.9.21 [#14192](https://togithub.com/spring-projects/spring-security/pull/14192)
- Bump org.jetbrains.kotlin:kotlin-gradle-plugin from 1.9.20 to 1.9.21 [#14191](https://togithub.com/spring-projects/spring-security/pull/14191)
- Bump org.springframework.data:spring-data-bom from 2023.1.0 to 2023.1.1 [#14341](https://togithub.com/spring-projects/spring-security/pull/14341)
- Bump org.springframework.ldap:spring-ldap-core from 3.2.0 to 3.2.1 [#14335](https://togithub.com/spring-projects/spring-security/pull/14335)
- Bump org.springframework:spring-framework-bom from 6.1.0 to 6.1.1 [#14189](https://togithub.com/spring-projects/spring-security/pull/14189)
- Bump org.springframework:spring-framework-bom from 6.1.1 to 6.1.2 [#14319](https://togithub.com/spring-projects/spring-security/pull/14319)
- Bump sjohnr/slack-workflow-status from 1.pre.beta to 1.1.0 [#14318](https://togithub.com/spring-projects/spring-security/pull/14318)
- Bump slackapi/slack-github-action from 1.19.0 to 1.24.0 [#14322](https://togithub.com/spring-projects/spring-security/pull/14322)
- Bump spring-io/spring-gradle-build-action from 1 to 2 [#14321](https://togithub.com/spring-projects/spring-security/pull/14321)
#### :heart: Contributors
Thank you to all the contributors who worked on this release:
[@ParkerM](https://togithub.com/ParkerM), [@YangSiJun528](https://togithub.com/YangSiJun528), [@aaron-to-go](https://togithub.com/aaron-to-go), [@ahmd-nabil](https://togithub.com/ahmd-nabil), [@andreilisa](https://togithub.com/andreilisa), [@dependabot](https://togithub.com/dependabot)\[bot], [@limvik](https://togithub.com/limvik), and [@prufrock](https://togithub.com/prufrock)
Configuration
š Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
š¦ Automerge: Disabled by config. Please merge this manually once you are satisfied.
ā» Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
š Ignore: Close this PR and you won't be reminded about this update again.
[ ] If you want to rebase/retry this PR, check this box
This PR has been generated by Mend Renovate. View repository job log here.
This PR contains the following updates:
6.2.0
->6.2.2
Release Notes
spring-projects/spring-security (org.springframework.security:spring-security-test)
### [`v6.2.2`](https://togithub.com/spring-projects/spring-security/releases/tag/6.2.2) [Compare Source](https://togithub.com/spring-projects/spring-security/compare/6.2.1...6.2.2) ##### :star: New Features - Configuration examples in docs are out of date [#14392](https://togithub.com/spring-projects/spring-security/issues/14392) ##### :beetle: Bug Fixes - "Span wasn't started - an observation must be started (not only created)" (Micrometer) due to observation handling in Spring Security Web? [#14568](https://togithub.com/spring-projects/spring-security/issues/14568) - `HandlerMappingIntrospectorRequestTransformer` is registered twice in AOT [#14367](https://togithub.com/spring-projects/spring-security/issues/14367) - `OAuth2AuthorizationExchange` is not serializable [#14405](https://togithub.com/spring-projects/spring-security/issues/14405) - `WebTestUtilsTestRuntimeHints` should implement `RuntimeHintsRegistrar` [#14468](https://togithub.com/spring-projects/spring-security/issues/14468) - Application context fails to load: Couldn't find FilterChainProxy [#14380](https://togithub.com/spring-projects/spring-security/issues/14380) - Back-Channel Logout should use localhost for internal logout request [#14553](https://togithub.com/spring-projects/spring-security/issues/14553) - Cannot configure `SecurityContextRepository` in `CasAuthenticationFilter` [#14536](https://togithub.com/spring-projects/spring-security/issues/14536) - Documentation about configuring SecuritySocketAcceptorInterceptor in Spring Boot is confusing [#14348](https://togithub.com/spring-projects/spring-security/issues/14348) - fix typo in anonymous.adoc [#14424](https://togithub.com/spring-projects/spring-security/pull/14424) - fix: typo in Authentication Architecture ProviderManager [#14448](https://togithub.com/spring-projects/spring-security/pull/14448) - Missing native-image reflection hint for `HandlerMappingIntrospectorCachFilterFactoryBean` [#14377](https://togithub.com/spring-projects/spring-security/issues/14377) - Missing native-image reflection hint for CsrfTokenRequestAttributeHandler$SupplierCsrfToken [#14470](https://togithub.com/spring-projects/spring-security/issues/14470) - ReactiveMethodSecurityConfiguration is initialized prematurely when the context contains a BeanPostProcessor [#14350](https://togithub.com/spring-projects/spring-security/issues/14350) - SAML relying party logout filter is always ordered last [#14551](https://togithub.com/spring-projects/spring-security/issues/14551) - Spring Security 6.2 defaults to InMemoryOidcSessionRegistry causing memory leaks in distributed systems with external session storage [#14558](https://togithub.com/spring-projects/spring-security/issues/14558) - Test using `@WithMockUser` fails with 401 UNAUTHORIZED with 3.2 [#14207](https://togithub.com/spring-projects/spring-security/issues/14207) - Typo: Update authorize-http-requests.adoc [#14563](https://togithub.com/spring-projects/spring-security/pull/14563) - Unexpected Exception Handling in NimbusReactiveJwtDecoder decode Method [#14496](https://togithub.com/spring-projects/spring-security/issues/14496) - X-Xss-Protection header "1; mode=block" differs in Servlet and Reactive [#14346](https://togithub.com/spring-projects/spring-security/issues/14346) ##### :hammer: Dependency Upgrades - Bump com.fasterxml.jackson:jackson-bom from 2.15.3 to 2.15.4 [#14617](https://togithub.com/spring-projects/spring-security/pull/14617) - Bump Gamesight/slack-workflow-status from 1.2.0 to 1.3.0 [#14582](https://togithub.com/spring-projects/spring-security/pull/14582) - Bump Gradle Wrapper from 8.5 to 8.6 [#14547](https://togithub.com/spring-projects/spring-security/issues/14547) - Bump gradle/gradle-build-action from 2 to 3 [#14503](https://togithub.com/spring-projects/spring-security/pull/14503) - Bump io-spring-javaformat from 0.0.40 to 0.0.41 [#14439](https://togithub.com/spring-projects/spring-security/pull/14439) - Bump io.micrometer:micrometer-observation from 1.12.1 to 1.12.2 [#14429](https://togithub.com/spring-projects/spring-security/pull/14429) - Bump io.micrometer:micrometer-observation from 1.12.2 to 1.12.3 [#14589](https://togithub.com/spring-projects/spring-security/pull/14589) - Bump io.mockk:mockk from 1.13.8 to 1.13.9 [#14412](https://togithub.com/spring-projects/spring-security/pull/14412) - Bump io.projectreactor:reactor-bom from 2023.0.1 to 2023.0.2 [#14430](https://togithub.com/spring-projects/spring-security/pull/14430) - Bump io.projectreactor:reactor-bom from 2023.0.2 to 2023.0.3 [#14612](https://togithub.com/spring-projects/spring-security/pull/14612) - Bump io.spring.ge.conventions from 0.0.14 to 0.0.15 [#14463](https://togithub.com/spring-projects/spring-security/pull/14463) - Bump org-aspectj from 1.9.21 to 1.9.21.1 [#14605](https://togithub.com/spring-projects/spring-security/pull/14605) - Bump org-eclipse-jetty from 11.0.18 to 11.0.19 [#14354](https://togithub.com/spring-projects/spring-security/pull/14354) - Bump org-eclipse-jetty from 11.0.19 to 11.0.20 [#14518](https://togithub.com/spring-projects/spring-security/pull/14518) - Bump org.apereo.cas.client:cas-client-core from 4.0.3 to 4.0.4 [#14440](https://togithub.com/spring-projects/spring-security/pull/14440) - Bump org.jetbrains.kotlin:kotlin-bom from 1.9.21 to 1.9.22 [#14364](https://togithub.com/spring-projects/spring-security/pull/14364) - Bump org.jetbrains.kotlin:kotlin-gradle-plugin from 1.9.21 to 1.9.22 [#14363](https://togithub.com/spring-projects/spring-security/pull/14363) - Bump org.junit:junit-bom from 5.10.1 to 5.10.2 [#14543](https://togithub.com/spring-projects/spring-security/pull/14543) - Bump org.slf4j:slf4j-api from 2.0.10 to 2.0.11 [#14422](https://togithub.com/spring-projects/spring-security/pull/14422) - Bump org.slf4j:slf4j-api from 2.0.11 to 2.0.12 [#14554](https://togithub.com/spring-projects/spring-security/pull/14554) - Bump org.slf4j:slf4j-api from 2.0.9 to 2.0.10 [#14387](https://togithub.com/spring-projects/spring-security/pull/14387) - Bump org.springframework.data:spring-data-bom from 2023.1.1 to 2023.1.2 [#14455](https://togithub.com/spring-projects/spring-security/pull/14455) - Bump org.springframework.data:spring-data-bom from 2023.1.2 to 2023.1.3 [#14624](https://togithub.com/spring-projects/spring-security/pull/14624) - Bump org.springframework.ldap:spring-ldap-core from 3.2.1 to 3.2.2 [#14616](https://togithub.com/spring-projects/spring-security/pull/14616) - Bump org.springframework:spring-framework-bom from 6.1.2 to 6.1.3 [#14454](https://togithub.com/spring-projects/spring-security/pull/14454) - Bump org.springframework:spring-framework-bom from 6.1.3 to 6.1.4 [#14615](https://togithub.com/spring-projects/spring-security/pull/14615) - Bump slackapi/slack-github-action from 1.24.0 to 1.25.0 [#14504](https://togithub.com/spring-projects/spring-security/pull/14504) - Bump spring-io/spring-github-workflows from [`eaf17a1`](https://togithub.com/spring-projects/spring-security/commit/eaf17a1890b1ef1b337f015d6eb263baaf8c6dab) to [`1e8b058`](https://togithub.com/spring-projects/spring-security/commit/1e8b0587a1f4f01697f9753fa3339c3e0d30f396) [#14583](https://togithub.com/spring-projects/spring-security/pull/14583) ##### :heart: Contributors Thank you to all the contributors who worked on this release: [@Amitmahato](https://togithub.com/Amitmahato), [@andreasbuechel](https://togithub.com/andreasbuechel), [@boulce](https://togithub.com/boulce), and [@dependabot](https://togithub.com/dependabot)\[bot] ### [`v6.2.1`](https://togithub.com/spring-projects/spring-security/releases/tag/6.2.1) [Compare Source](https://togithub.com/spring-projects/spring-security/compare/6.2.0...6.2.1) #### :star: New Features - docs: make XML and Java/Kotlin consistent with AspectJExpressionPointcut [#14219](https://togithub.com/spring-projects/spring-security/pull/14219) - Document that Shibboleth Repository is Required for SAML Support [#14295](https://togithub.com/spring-projects/spring-security/issues/14295) - Fix typo in architecture.adoc [#14254](https://togithub.com/spring-projects/spring-security/pull/14254) - Fixing link in authentication/architecture.adoc [#13593](https://togithub.com/spring-projects/spring-security/pull/13593) - Integrate HandlerMappingIntrospector Caching [#14332](https://togithub.com/spring-projects/spring-security/issues/14332) - OAuth2 Resource Server is exposing server information. [#14278](https://togithub.com/spring-projects/spring-security/issues/14278) #### :beetle: Bug Fixes - Update Java Config Spring MVC documentation [#14234](https://togithub.com/spring-projects/spring-security/issues/14234) - add missing \[tabs] fix typo in docs [#14208](https://togithub.com/spring-projects/spring-security/pull/14208) - AnnotationConfigurationException when using PreAuthorize, CGLIB and EnableMethodSecurity [#14267](https://togithub.com/spring-projects/spring-security/issues/14267) - Correct What's New in 6.2 reference to forServletPattern [#14200](https://togithub.com/spring-projects/spring-security/issues/14200) - Fix typo in getClaimAsMap docstring [#14183](https://togithub.com/spring-projects/spring-security/pull/14183) - Fix typo in the 'Authorizing Requests' example [#14169](https://togithub.com/spring-projects/spring-security/pull/14169) - fix wrong document about "jws-algorithms" [#14280](https://togithub.com/spring-projects/spring-security/issues/14280) - Improve error message when ServletRegistration API is unavailable [#14232](https://togithub.com/spring-projects/spring-security/issues/14232) - Update Javadoc Comments in AuthorizationEvent Class [#14175](https://togithub.com/spring-projects/spring-security/pull/14175) #### :hammer: Dependency Upgrades - Bump actions/checkout from 3 to 4 [#14323](https://togithub.com/spring-projects/spring-security/pull/14323) - Bump actions/setup-java from 3 to 4 [#14320](https://togithub.com/spring-projects/spring-security/pull/14320) - Bump ch.qos.logback:logback-classic from 1.4.11 to 1.4.13 [#14213](https://togithub.com/spring-projects/spring-security/pull/14213) - Bump ch.qos.logback:logback-classic from 1.4.13 to 1.4.14 [#14239](https://togithub.com/spring-projects/spring-security/pull/14239) - Bump com.unboundid:unboundid-ldapsdk from 6.0.10 to 6.0.11 [#14223](https://togithub.com/spring-projects/spring-security/pull/14223) - Bump Gamesight/slack-workflow-status from 1.0.1 to 1.2.0 [#14328](https://togithub.com/spring-projects/spring-security/pull/14328) - Bump Gradle Wrapper from 8.4 to 8.5 [#14222](https://togithub.com/spring-projects/spring-security/issues/14222) - Bump io.micrometer:micrometer-observation from 1.12.0 to 1.12.1 [#14284](https://togithub.com/spring-projects/spring-security/pull/14284) - Bump io.projectreactor:reactor-bom from 2023.0.0 to 2023.0.1 [#14289](https://togithub.com/spring-projects/spring-security/pull/14289) - Bump org-apache-maven-resolver from 1.9.16 to 1.9.17 [#14184](https://togithub.com/spring-projects/spring-security/pull/14184) - Bump org-apache-maven-resolver from 1.9.17 to 1.9.18 [#14197](https://togithub.com/spring-projects/spring-security/pull/14197) - Bump org-aspectj from 1.9.20.1 to 1.9.21 [#14271](https://togithub.com/spring-projects/spring-security/pull/14271) - Bump org.apache.maven:maven-resolver-provider from 3.9.5 to 3.9.6 [#14228](https://togithub.com/spring-projects/spring-security/pull/14228) - Bump org.hibernate.orm:hibernate-core from 6.3.1.Final to 6.3.2.Final [#14190](https://togithub.com/spring-projects/spring-security/pull/14190) - Bump org.jetbrains.kotlin:kotlin-bom from 1.9.20 to 1.9.21 [#14192](https://togithub.com/spring-projects/spring-security/pull/14192) - Bump org.jetbrains.kotlin:kotlin-gradle-plugin from 1.9.20 to 1.9.21 [#14191](https://togithub.com/spring-projects/spring-security/pull/14191) - Bump org.springframework.data:spring-data-bom from 2023.1.0 to 2023.1.1 [#14341](https://togithub.com/spring-projects/spring-security/pull/14341) - Bump org.springframework.ldap:spring-ldap-core from 3.2.0 to 3.2.1 [#14335](https://togithub.com/spring-projects/spring-security/pull/14335) - Bump org.springframework:spring-framework-bom from 6.1.0 to 6.1.1 [#14189](https://togithub.com/spring-projects/spring-security/pull/14189) - Bump org.springframework:spring-framework-bom from 6.1.1 to 6.1.2 [#14319](https://togithub.com/spring-projects/spring-security/pull/14319) - Bump sjohnr/slack-workflow-status from 1.pre.beta to 1.1.0 [#14318](https://togithub.com/spring-projects/spring-security/pull/14318) - Bump slackapi/slack-github-action from 1.19.0 to 1.24.0 [#14322](https://togithub.com/spring-projects/spring-security/pull/14322) - Bump spring-io/spring-gradle-build-action from 1 to 2 [#14321](https://togithub.com/spring-projects/spring-security/pull/14321) #### :heart: Contributors Thank you to all the contributors who worked on this release: [@ParkerM](https://togithub.com/ParkerM), [@YangSiJun528](https://togithub.com/YangSiJun528), [@aaron-to-go](https://togithub.com/aaron-to-go), [@ahmd-nabil](https://togithub.com/ahmd-nabil), [@andreilisa](https://togithub.com/andreilisa), [@dependabot](https://togithub.com/dependabot)\[bot], [@limvik](https://togithub.com/limvik), and [@prufrock](https://togithub.com/prufrock)Configuration
š Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
š¦ Automerge: Disabled by config. Please merge this manually once you are satisfied.
ā» Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
š Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate. View repository job log here.