GitHub / spring-projects/spring-authorization-server issues and pull requests
#2099 - Bump org.mockito:mockito-core from 4.11.0 to 5.18.0
Pull Request -
State: open - Opened by dependabot[bot] 15 days ago
Labels: type: dependency-upgrade
#2098 - Bump org.sonarsource.scanner.gradle:sonarqube-gradle-plugin from 2.8.0.1969 to 3.3
Pull Request -
State: open - Opened by dependabot[bot] 15 days ago
Labels: type: dependency-upgrade
#2094 - Bump @springio/antora-extensions from 1.14.4 to 1.14.6 in /docs
Pull Request -
State: closed - Opened by dependabot[bot] 20 days ago
Labels: type: dependency-upgrade
#2077 - Bump org-bouncycastle from 1.79 to 1.81
Pull Request -
State: closed - Opened by dependabot[bot] 21 days ago
Labels: type: dependency-upgrade
#2076 - Bump com-squareup-okhttp3 from 4.12.0 to 5.1.0
Pull Request -
State: closed - Opened by dependabot[bot] 21 days ago
Labels: type: dependency-upgrade
#2075 - [Documentation] Improve the official documentation code
Issue -
State: open - Opened by PunkFleet 27 days ago
Labels: type: enhancement
#2074 - .requestMatchers("/favicon.ico").permitAll() cause {status:999, error: None} response after first OAuth login
Issue -
State: open - Opened by SellerJoke 27 days ago
Labels: type: bug
#2073 - Certificate is invalid
Issue -
State: closed - Opened by MichaelZett 29 days ago
- 1 comment
Labels: type: task
#2072 - Bump com.nimbusds:nimbus-jose-jwt from 9.47 to 10.3.1
Pull Request -
State: closed - Opened by dependabot[bot] 29 days ago
Labels: type: dependency-upgrade
#2071 - [Documentation] Improve the official documentation code
Issue -
State: closed - Opened by PunkFleet about 1 month ago
- 1 comment
Labels: status: invalid
#2070 - Is there any plan to support the "registration_access_token" endpoint for OIDC dynamic registration?
Issue -
State: open - Opened by haojava about 1 month ago
- 2 comments
Labels: status: feedback-provided
#2069 - Remove explicit type
Pull Request -
State: open - Opened by ngocnhan-tran1996 about 1 month ago
Labels: status: waiting-for-triage
#2068 - feat(config): disable device_code grant by default
Pull Request -
State: open - Opened by renechoi about 1 month ago
Labels: status: waiting-for-triage
#2067 - JdbcOAuth2AuthorizationService caches incorrect metadata when tables don't exist at startup
Issue -
State: closed - Opened by RalfsVetra about 1 month ago
- 1 comment
Labels: status: invalid
#2066 - Bump io-spring-javaformat from 0.0.46 to 0.0.47
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
Labels: type: dependency-upgrade
#2065 - Bump io.spring.security.release from 1.0.6 to 1.0.8
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
Labels: type: dependency-upgrade
#2064 - Bump org.gradle.wrapper-upgrade from 0.11.4 to 0.12
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
Labels: type: dependency-upgrade
#2063 - Bump org.assertj:assertj-core from 3.26.3 to 3.27.3
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
Labels: type: dependency-upgrade
#2062 - Bump com.nimbusds:nimbus-jose-jwt from 9.47 to 10.3
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
- 1 comment
Labels: type: dependency-upgrade
#2061 - Bump io-spring-javaformat from 0.0.46 to 0.0.47
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
Labels: type: dependency-upgrade
#2060 - Bump io.spring.security.release from 1.0.6 to 1.0.8
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
Labels: type: dependency-upgrade
#2059 - Bump io.spring.security.release from 1.0.6 to 1.0.8
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
Labels: type: dependency-upgrade
#2058 - Bump io.spring.security.release from 1.0.6 to 1.0.8
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
Labels: type: dependency-upgrade
#2057 - Bump io-spring-javaformat from 0.0.46 to 0.0.47
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
Labels: type: dependency-upgrade
#2056 - Bump io-spring-javaformat from 0.0.46 to 0.0.47
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
Labels: type: dependency-upgrade
#2055 - Bump io.spring.security.release from 1.0.6 to 1.0.7
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
- 1 comment
Labels: type: dependency-upgrade
#2054 - Bump io.spring.security.release from 1.0.6 to 1.0.7
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
- 1 comment
Labels: type: dependency-upgrade
#2053 - Bump io.spring.security.release from 1.0.6 to 1.0.7
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
- 1 comment
Labels: type: dependency-upgrade
#2052 - Support DPoP key type in addition to Bearer
Issue -
State: closed - Opened by everflux about 1 month ago
- 1 comment
Labels: status: invalid
#2051 - Bump org.springframework.security:spring-security-bom from 6.3.9 to 6.3.10
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
Labels: type: dependency-upgrade
#2050 - Bump org.springframework.security:spring-security-bom from 6.4.6 to 6.4.7
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
Labels: type: dependency-upgrade
#2049 - Bump org.springframework.security:spring-security-bom from 6.5.0 to 6.5.1
Pull Request -
State: closed - Opened by dependabot[bot] about 1 month ago
Labels: type: dependency-upgrade
#2048 - Add Predicate for authorizationConsentRequired for device code grant
Pull Request -
State: open - Opened by dineshgupta630 about 1 month ago
- 1 comment
Labels: type: enhancement
#2047 - Add device verification authentication context support
Pull Request -
State: closed - Opened by dineshgupta630 about 2 months ago
Labels: status: invalid
#2046 - Bump org.springframework:spring-framework-bom from 6.1.20 to 6.1.21
Pull Request -
State: closed - Opened by dependabot[bot] about 2 months ago
Labels: type: dependency-upgrade
#2045 - Bump org.springframework:spring-framework-bom from 6.2.7 to 6.2.8
Pull Request -
State: closed - Opened by dependabot[bot] about 2 months ago
Labels: type: dependency-upgrade
#2044 - Bump org.springframework:spring-framework-bom from 6.2.7 to 6.2.8
Pull Request -
State: closed - Opened by dependabot[bot] about 2 months ago
Labels: type: dependency-upgrade
#2043 - OAuth2 Pushed Authorization Request `request_uri` should not be revalidated during the second authorization request after authentication
Issue -
State: closed - Opened by said026 about 2 months ago
- 2 comments
Labels: status: invalid
#2042 - Make OAuth2 Pushed Authorization Request `request_uri` expiry configurable
Issue -
State: open - Opened by said026 about 2 months ago
- 1 comment
Labels: type: enhancement
#2041 - OAuth2 RefreshTokenAuthenticationConverter fails to refresh token in Spring Security OAuth2 Authorization Server 1.4.2
Issue -
State: closed - Opened by XiaoHDZXF 4 months ago
- 1 comment
Labels: status: duplicate
#2040 - Bump com.fasterxml.jackson:jackson-bom from 2.18.4 to 2.18.4.1
Pull Request -
State: closed - Opened by dependabot[bot] about 2 months ago
Labels: type: dependency-upgrade
#2039 - Bump com.fasterxml.jackson:jackson-bom from 2.18.4 to 2.18.4.1
Pull Request -
State: closed - Opened by dependabot[bot] about 2 months ago
Labels: type: dependency-upgrade
#2038 - Unhandled AuthenticationServiceException in the default exception handing of http filter chain
Issue -
State: closed - Opened by kpur-sbab about 2 months ago
- 1 comment
Labels: type: bug
#2037 - 500 Error on Refresh Token Request in Device Code Flow When Using openid Scope
Issue -
State: open - Opened by VedantPinggy about 2 months ago
- 3 comments
Labels: type: bug
#2036 - Bump webpack-dev-server and @angular-devkit/build-angular in /samples/spa-client
Pull Request -
State: open - Opened by dependabot[bot] about 2 months ago
Labels: javascript, dependencies
#2035 - auth_time claim doesn't show the time of the original authentication.
Issue -
State: open - Opened by peter-san about 2 months ago
- 5 comments
Labels: type: bug
#2034 - Bump io.spring.develocity.conventions from 0.0.22 to 0.0.23
Pull Request -
State: closed - Opened by dependabot[bot] about 2 months ago
Labels: type: dependency-upgrade
#2033 - Bump io.spring.develocity.conventions from 0.0.22 to 0.0.23
Pull Request -
State: closed - Opened by dependabot[bot] about 2 months ago
Labels: type: dependency-upgrade
#2032 - Bump io.spring.develocity.conventions from 0.0.22 to 0.0.23
Pull Request -
State: closed - Opened by dependabot[bot] about 2 months ago
Labels: type: dependency-upgrade
#2031 - Bump io-spring-javaformat from 0.0.45 to 0.0.46
Pull Request -
State: closed - Opened by dependabot[bot] about 2 months ago
Labels: type: dependency-upgrade
#2030 - Bump io-spring-javaformat from 0.0.45 to 0.0.46
Pull Request -
State: closed - Opened by dependabot[bot] about 2 months ago
Labels: type: dependency-upgrade
#2029 - Bump io-spring-javaformat from 0.0.45 to 0.0.46
Pull Request -
State: closed - Opened by dependabot[bot] about 2 months ago
Labels: type: dependency-upgrade
#2028 - Public client token cannot be revoked
Issue -
State: closed - Opened by kendi223 about 2 months ago
- 2 comments
Labels: status: duplicate
#2027 - cannot register a client dynamically
Issue -
State: closed - Opened by jantolino 2 months ago
- 2 comments
Labels: for: stackoverflow
#2026 - I’m facing an issue with OIDC logout when the ID Token is expired.
Issue -
State: closed - Opened by VithouDjuna 2 months ago
Labels: status: invalid
#2025 - Polish logging in OAuth2ClientAuthenticationFilter
Issue -
State: closed - Opened by gmazza 2 months ago
- 4 comments
Labels: type: enhancement
#2024 - OAuth2 Pushed Authorization Request request_uri expiry is too short
Issue -
State: closed - Opened by said026 2 months ago
- 5 comments
Labels: type: bug
#2023 - Bump org.springframework.security:spring-security-bom from 6.4.5 to 6.4.6
Pull Request -
State: closed - Opened by dependabot[bot] 2 months ago
Labels: type: dependency-upgrade
#2022 - Bump io-spring-javaformat from 0.0.43 to 0.0.45
Pull Request -
State: closed - Opened by dependabot[bot] 2 months ago
Labels: type: dependency-upgrade
#2021 - Bump org.springframework.security:spring-security-bom from 6.5.0-RC1 to 6.5.0
Pull Request -
State: closed - Opened by dependabot[bot] 2 months ago
Labels: type: dependency-upgrade
#2020 - Bump io-spring-javaformat from 0.0.43 to 0.0.45
Pull Request -
State: closed - Opened by dependabot[bot] 2 months ago
Labels: type: dependency-upgrade
#2019 - Bump io-spring-javaformat from 0.0.43 to 0.0.45
Pull Request -
State: closed - Opened by dependabot[bot] 2 months ago
Labels: type: dependency-upgrade
#2015 - Use token_type_hint for introspection and revocation
Issue -
State: closed - Opened by KasmicSupes 3 months ago
- 5 comments
Labels: status: declined, type: enhancement
#2005 - Create SECURITY.md
Pull Request -
State: open - Opened by nkcomputer-crypto 3 months ago
Labels: status: waiting-for-triage
#2004 - add setClock in the JWT token
Pull Request -
State: open - Opened by AlessandroMinoccheri 3 months ago
- 1 comment
Labels: type: enhancement
#2003 - Allow consent step to modify the stored OAuth2Authorization
Issue -
State: open - Opened by OrangeDog 3 months ago
Labels: type: enhancement
#2002 - Bump com.fasterxml.jackson:jackson-bom from 2.18.3 to 2.18.4
Pull Request -
State: open - Opened by dependabot[bot] 3 months ago
Labels: type: dependency-upgrade
#2001 - Bump com.fasterxml.jackson:jackson-bom from 2.18.3 to 2.18.4
Pull Request -
State: open - Opened by dependabot[bot] 3 months ago
Labels: type: dependency-upgrade
#2000 - Bump io.spring.security.release from 1.0.5 to 1.0.6
Pull Request -
State: open - Opened by dependabot[bot] 3 months ago
Labels: type: dependency-upgrade
#1999 - Bump io.spring.security.release from 1.0.5 to 1.0.6
Pull Request -
State: open - Opened by dependabot[bot] 3 months ago
Labels: type: dependency-upgrade
#1998 - Bump io.spring.security.release from 1.0.5 to 1.0.6
Pull Request -
State: open - Opened by dependabot[bot] 3 months ago
Labels: type: dependency-upgrade
#1997 - Check user code expiry and invalidity
Pull Request -
State: closed - Opened by antoinelauzon-bell 3 months ago
- 3 comments
Labels: type: bug
#1996 - AuthenticationSuccessHandler for OAuth2TokenIntrospectionEndpointConfigurer :: AuthenticationSuccessHandler's code needs to be duplicated to give the introspect response
Issue -
State: open - Opened by kpur-sbab 3 months ago
- 1 comment
Labels: type: enhancement
#1995 - Prevent NPE
Issue -
State: closed - Opened by jgrandja 3 months ago
Labels: type: bug, status: forward-port
#1994 - RedisOAuth2AuthorizationService.java save opens java.net" to unnamed module
Issue -
State: closed - Opened by silverwind85 3 months ago
- 3 comments
Labels: for: stackoverflow
#1993 - Expose default error/success handlers in OAuth2AuthorizationEndpointFilter
Issue -
State: open - Opened by OrangeDog 3 months ago
- 1 comment
Labels: type: enhancement
#1992 - Add clear() method to InMemoryOAuth2AuthorizationService
Issue -
State: closed - Opened by OrangeDog 3 months ago
- 3 comments
Labels: status: declined
#1991 - Use OAuth2ParameterNames.REQUEST_URI
Issue -
State: closed - Opened by jgrandja 3 months ago
Labels: type: enhancement
#1990 - Bump org.springframework.security:spring-security-bom from 6.5.0-M3 to 6.5.0-RC1
Pull Request -
State: closed - Opened by dependabot[bot] 3 months ago
Labels: type: dependency-upgrade
#1989 - Bump org.springframework.security:spring-security-bom from 6.4.4 to 6.4.5
Pull Request -
State: closed - Opened by dependabot[bot] 3 months ago
Labels: type: dependency-upgrade
#1988 - Bump io.spring.security.release from 1.0.4 to 1.0.5
Pull Request -
State: closed - Opened by dependabot[bot] 3 months ago
Labels: type: dependency-upgrade
#1987 - Bump io.spring.security.release from 1.0.4 to 1.0.5
Pull Request -
State: closed - Opened by dependabot[bot] 3 months ago
Labels: type: dependency-upgrade
#1986 - Bump org.springframework.security:spring-security-bom from 6.3.8 to 6.3.9
Pull Request -
State: closed - Opened by dependabot[bot] 3 months ago
Labels: type: dependency-upgrade
#1985 - Bump io.spring.security.release from 1.0.4 to 1.0.5
Pull Request -
State: closed - Opened by dependabot[bot] 3 months ago
Labels: type: dependency-upgrade
#1984 - Problem while Deserializing java.timeDuration.class with org.springframework.security.oauth2.server.authorization.jackson2.DurationMixin with JdbcRegisteredClientRepository
Issue -
State: closed - Opened by Ibanezos92 3 months ago
- 1 comment
Labels: for: stackoverflow
#1983 - Allow customizing client authentication failures with AuthenticationEntryPoint
Pull Request -
State: closed - Opened by jgrandja 3 months ago
- 1 comment
Labels: status: declined
#1982 - client_secret_basic authentication failures should return challenge
Issue -
State: closed - Opened by jgrandja 3 months ago
Labels: type: bug, status: forward-port
#1981 - OAuth2Authorization will exist in redis when refresh_token expired
Issue -
State: closed - Opened by wzkris 3 months ago
- 1 comment
Labels: status: invalid
#1980 - Bump org.springframework:spring-framework-bom from 6.2.5 to 6.2.6
Pull Request -
State: closed - Opened by dependabot[bot] 3 months ago
Labels: type: dependency-upgrade
#1979 - Bump org.springframework:spring-framework-bom from 6.2.5 to 6.2.6
Pull Request -
State: closed - Opened by dependabot[bot] 3 months ago
Labels: type: dependency-upgrade
#1978 - Bump org.springframework:spring-framework-bom from 6.1.18 to 6.1.19
Pull Request -
State: closed - Opened by dependabot[bot] 3 months ago
Labels: type: dependency-upgrade
#1977 - User Code expiration is not considered
Issue -
State: closed - Opened by antoinelauzon-bell 3 months ago
- 1 comment
Labels: status: duplicate, type: bug
#1976 - Add request token with code example to DefaultAuthorizationServerApplicationTests
Pull Request -
State: closed - Opened by DevDengChao 4 months ago
- 1 comment
Labels: status: declined
#1975 - Add authorization server metadata for OAuth 2.0 Pushed Authorization Requests (PAR)
Issue -
State: closed - Opened by jgrandja 4 months ago
Labels: type: enhancement
#1974 - Enforce one-time use for request_uri used in PAR
Issue -
State: closed - Opened by jgrandja 4 months ago
Labels: type: enhancement
#1973 - Validate expiry for request_uri used in PAR
Issue -
State: closed - Opened by jgrandja 4 months ago
Labels: type: enhancement
#1972 - Replace @MockBean with @MockitoBean
Pull Request -
State: closed - Opened by DevDengChao 4 months ago
- 1 comment
Labels: type: enhancement
#1971 - request_uri used in PAR must be bound to the client
Issue -
State: closed - Opened by jgrandja 4 months ago
Labels: type: enhancement
#1970 - Provide a Jackson2Module for OAuth2Authorization
Issue -
State: closed - Opened by OrangeDog 4 months ago
- 8 comments
Labels: status: duplicate
#1969 - Redis samples should use the TTL feature
Issue -
State: closed - Opened by OrangeDog 4 months ago
- 6 comments
Labels: status: declined