-
Notifications
You must be signed in to change notification settings - Fork 6.1k
Issues: spring-projects/spring-security
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
Ensure ID Token is updated after refresh token (Reactive)
in: oauth2
An issue in OAuth2 modules (oauth2-core, oauth2-client, oauth2-resource-server, oauth2-jose)
type: enhancement
A general enhancement
JwtIssuerValidator default ports not match
status: waiting-for-triage
An issue we've not yet triaged
type: bug
A general bug
#17187
opened May 30, 2025 by
ashraf-revo
Publishing a default TargetVisitor should not override Spring MVC support
in: config
An issue in spring-security-config
type: bug
A general bug
PathPatternRequestMatcher equals() only considers pattern instead of pattern, method, ...
status: waiting-for-triage
An issue we've not yet triaged
type: bug
A general bug
#17180
opened May 28, 2025 by
bartvr
6.4 -> 6.5 cannot be cast to class
status: waiting-for-triage
An issue we've not yet triaged
type: bug
A general bug
#17175
opened May 27, 2025 by
fkowal
Kotlin security configuration examples call An issue we've not yet triaged
type: bug
A general bug
AuthorizeHttpRequestsDsl::authorize
with an array of patterns, but this signature doesn't exist
status: waiting-for-triage
#17174
opened May 27, 2025 by
sh-at-cs
DPoP filter is ignored when another AuthenticationFilter is present
in: oauth2
An issue in OAuth2 modules (oauth2-core, oauth2-client, oauth2-resource-server, oauth2-jose)
type: bug
A general bug
OAuth2ResourceServer using authenticationManagerResolver results in An issue we've not yet triaged
type: bug
A general bug
tokenAuthenticationManager cannot be null
while startup
status: waiting-for-triage
#17172
opened May 26, 2025 by
aykborstelmann
Add support setting X509PrincipalExtractor as bean
status: waiting-for-triage
An issue we've not yet triaged
type: enhancement
A general enhancement
#17170
opened May 26, 2025 by
franticticktick
Reactive WebClient OAuth2 SSO authentication performs too many /oauth2/token request when token expires
status: waiting-for-triage
An issue we've not yet triaged
type: bug
A general bug
#17167
opened May 25, 2025 by
System25
WebAuthn: credential registration fails with an unknown credential type error
status: waiting-for-triage
An issue we've not yet triaged
type: bug
A general bug
#17164
opened May 23, 2025 by
ltanguy
WebSecurity.ignoring().anyRequest() no longer works
status: waiting-for-triage
An issue we've not yet triaged
type: bug
A general bug
#17155
opened May 21, 2025 by
crmky
When updating to 6.5, BeanDefinitionParsingException is referring to old versions
status: feedback-provided
Feedback has been provided
type: enhancement
A general enhancement
#17153
opened May 20, 2025 by
evandongen
Ability to disable anonymous authentication in RSocketSecurity
in: config
An issue in spring-security-config
status: ideal-for-contribution
An issue that we actively are looking for someone to help us with
type: enhancement
A general enhancement
#17132
opened May 18, 2025 by
Aaur1s
Document Application-Scoped Access Tokens for Reactive OAuth2 Client Applications
status: waiting-for-triage
An issue we've not yet triaged
type: enhancement
A general enhancement
#17129
opened May 16, 2025 by
FryingHellfish
org.springframework.security.test.web.servlet.response.SecurityMockMvcResultMatchers assertion issue
status: waiting-for-triage
An issue we've not yet triaged
type: enhancement
A general enhancement
#17127
opened May 16, 2025 by
OlehPalamarchuk21
Graalvm Could not resolve matching constructor on bean class [org.springframework.security.authentication.AuthenticationManager]
status: waiting-for-triage
An issue we've not yet triaged
type: bug
A general bug
#17123
opened May 16, 2025 by
yyyyyyyysssss
Spring Webflux + Spring Security Interaction - Why does the WebFilter run twice?
status: waiting-for-triage
An issue we've not yet triaged
type: enhancement
A general enhancement
#17119
opened May 15, 2025 by
dreamstar-enterprises
Document Upgrading Password Encoding
in: docs
An issue in Documentation or samples
status: ideal-for-contribution
An issue that we actively are looking for someone to help us with
type: enhancement
A general enhancement
#17112
opened May 14, 2025 by
rwinch
Jackson 3 Support
status: waiting-for-triage
An issue we've not yet triaged
type: enhancement
A general enhancement
type: theme
An issue that describes a theme for a release
Remove GET request support from Saml2AuthenticationTokenConverter
in: saml2
An issue in SAML2 modules
status: ideal-for-contribution
An issue that we actively are looking for someone to help us with
type: enhancement
A general enhancement
#17099
opened May 13, 2025 by
jzheaux
2 tasks
NimbusJwtEncoder does not support Edwards Curve signature (EdDSA) family algorithms.
status: waiting-for-triage
An issue we've not yet triaged
type: bug
A general bug
#17098
opened May 13, 2025 by
TRUSTMEIMJEDI
Update Contribution Guidelines regarding Stream usage
in: docs
An issue in Documentation or samples
type: enhancement
A general enhancement
#17097
opened May 13, 2025 by
jzheaux
MockMvc still does not work in combination with a CookieCsrfTokenRepository
in: test
An issue in spring-security-test
status: feedback-provided
Feedback has been provided
#17082
opened May 9, 2025 by
andrekappes
Previous Next
ProTip!
Find all open issues with in progress development work with linked:pr.