spring-security
https://github.com/spring-projects/spring-security
Java
Spring Security
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
Java not yet supported214 Subscribers
View all SubscribersAdd a CodeTriage badge to spring-security
Help out
- Issues
- Update docs for stateless session management in 6.x
- Use micrometer context-propagation to propagate auth between threadlocal and reactor ops
- Consider CSRF protection with a fixed custom header
- `EnableWebSocketSecurity` is not 1:1 replacement for `AbstractSecurityWebSocketMessageBrokerConfigurer`
- Spring Security 6.1.2 String requestMatchers error UnsupportedOperationException
- Add support for RFC7807-style error responses
- Implementing Stateless Sessions with Spring Security and SAML2 Service Provider in Java Application
- Calling SecurityContextHolder.setStrategyName(strategy) breaks Spring filters
- Improve CVE-2023-34035 detection
- Switching users creates user sessions
- Docs
- Java not yet supported