spring-security
https://github.com/spring-projects/spring-security
Java
Spring Security
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
Java not yet supported201 Subscribers
View all SubscribersAdd a CodeTriage badge to spring-security
Help out
- Issues
- WebInvocationPrivilegeEvaluator is not using rules defined with @PreAuthorize annotation.
- SEC-2126: Session fixation attacks possible when specifying authentication filter unless explicitly prevented
- DSL builder constructs inconsistent state with custom RememberMeServices
- Logout and InvalidSessionStrategy
- SEC-2225: Concurrency Control Refactor
- Login returns indefinitely HttpSession returned null object for SPRING_SECURITY_CONTEXT
- SEC-1966: LdapServerBeanDefinitionParser is making decision based on unresolved value of url attribute
- SEC-2717: initFilterBean() is not called within AbstractAuthenticationProcessingFilter
- SEC-2616: PermissionEvaluator chain-of-responsibility implementation
- SEC-2112: ExceptionMappingAuthenticationFailureHandler does not forward to failure destination
- Docs
- Java not yet supported