Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix(deps): update dependency org.springframework.security:spring-security-web to v6 #323

Closed
wants to merge 1 commit into from

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Nov 21, 2022

Mend Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
org.springframework.security:spring-security-web (source) 5.8.1 -> 6.0.1 age adoption passing confidence

Release Notes

spring-projects/spring-security

v6.0.1

Compare Source

⭐ New Features

  • Add EnableWebSecurity migration steps to 5.8 guide #​12354
  • Replace deprecated set-state set-output GitHub Action's commands #​12299

🪲 Bug Fixes

  • codes in spring security docs fail to work #​12342
  • codes in spring security docs fail to work #​12341
  • DefaultLdapAuthoritiesPopulator throws NullPointerException #​12409
  • Error in ACLS document #​12270
  • Fix AuthorizationFilter diagram in docs #​12288
  • Incorrect Javadoc for class ExpressionAuthorizationDecision #​12435
  • Incorrect sample code in securityMatcher migration docs #​12303
  • Incorrect sample code in securityMatcher migration docs #​12302
  • It's not possible to disable micrometer obversability #​12268
  • ProxyFactoryBean on AuthenticationManager does not work in native mode #​12367
  • SecurityContextHolderFilter does not apply to async dispatch #​12369
  • SecurityContextHolderFilter does not apply to async dispatch #​12368

🔨 Dependency Upgrades

❤️ Contributors

We'd like to thank all the contributors who worked on this release!

v6.0.0

Compare Source

⏪ Breaking Changes
  • CsrfAuthenticationStrategy is not consistent with CsrfFilter #​12235
  • Register FilterChainProxy for all dispatcher types #​12180
⭐ New Features
  • Add test runtime hints for annotations using @WithSecurityContext #​12215
  • Add WebTestUtils test runtime hints #​12216
  • Align with Servlet API 6 #​12146
  • Document Configure Default SessionAuthenticationStrategy #​12192
  • Document DelegatingSecurityContextRepository #​12185
  • Improve deprecation notice in WebSecurityConfigurerAdapter #​12262
  • Log a warning when AuthorizationGrantType does not exactly match a pre-defined constant #​12234
  • Migration guide for the removal of CAS #​12163
  • Polish Span and Meter Names #​12225
  • Register FilterChainProxy for All Dispatcher Types Migration Steps #​12212
  • Restructure 6.0 Migration Guide #​12242
  • Support Jakarta WebSocket 2.1 #​12148
🪲 Bug Fixes
  • CsrfAuthenticationStrategy does not check for existing token #​12241
  • Ensure instrumentation names align with semantic conventions #​12156
  • Incorrect scope map fix #​12207
  • SAML logout: Incorrect log messages #​12210
  • Saml2MetadataFilter response should configure writer to UTF-8 #​12223
🔨 Dependency Upgrades
  • Update micrometer-observation to 1.10.1 #​12250
  • Update org.springframework to 6.0.0 #​12255
  • Update org.springframework.data to 2022.0.0 #​12256
  • Update r2dbc-h2 to 1.0.0.RELEASE #​12251
  • Update slf4j-api to 2.0.4 #​12254
  • Update spring-ldap-core to 3.0.0 #​12257
❤️ Contributors

We'd like to thank all the contributors who worked on this release!


Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate. View repository job log here.

@renovate renovate bot added the renovate label Nov 21, 2022
@renovate renovate bot force-pushed the renovate/major-spring-security branch from 9af1566 to 529bd7f Compare December 14, 2022 11:44
@renovate renovate bot changed the title fix(deps): update dependency org.springframework.security:spring-security-web to v6 Update dependency org.springframework.security:spring-security-web to v6 Dec 17, 2022
@renovate renovate bot changed the title Update dependency org.springframework.security:spring-security-web to v6 fix(deps): update dependency org.springframework.security:spring-security-web to v6 Dec 17, 2022
@renovate renovate bot force-pushed the renovate/major-spring-security branch from 529bd7f to c814608 Compare December 19, 2022 16:15
@renovate renovate bot force-pushed the renovate/major-spring-security branch from c814608 to 327b4dd Compare December 19, 2022 18:57
@totto totto closed this Dec 19, 2022
@renovate
Copy link
Contributor Author

renovate bot commented Dec 19, 2022

Renovate Ignore Notification

Because you closed this PR without merging, Renovate will ignore this update. You will not get PRs for any future 6.x releases. But if you manually upgrade to 6.x then Renovate will re-enable minor and patch updates automatically.

If you accidentally closed this PR, or if you changed your mind: rename this PR to get a fresh replacement PR.

@renovate renovate bot deleted the renovate/major-spring-security branch December 19, 2022 21:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant