-
Notifications
You must be signed in to change notification settings - Fork 6.3k
Issues
is:issue state:open
is:issue state:open
Issue creation is restricted in this repository
Search results
Allow OAuth2 Authorization Server to provide JWT scope claim aligned with OAuth2 Spec (space delimited)
status: waiting-for-triageAn issue we've not yet triagedAn issue we've not yet triagedtype: enhancementA general enhancementA general enhancementStatus: Open.#19392 In spring-projects/spring-security;TokenType reference comparison is used in BearerTokenAuthentication
status: waiting-for-triageAn issue we've not yet triagedAn issue we've not yet triagedtype: bugA general bugA general bugStatus: Open.#19377 In spring-projects/spring-security;Error on Spring Authorization server when issuing Id token after migrating from Spring boot 4.0.5 -> 4.0.7
status: waiting-for-triageAn issue we've not yet triagedAn issue we've not yet triagedtype: bugA general bugA general bugStatus: Open.#19371 In spring-projects/spring-security;InetOrgPerson uid should not be a mandatory field - may cause regression as of version 7.1.0
status: waiting-for-triageAn issue we've not yet triagedAn issue we've not yet triagedtype: bugA general bugA general bugStatus: Open.#19370 In spring-projects/spring-security;credentials validation in CasAuthenticationToken.Builder uses Assert.notNull on a boolean instead of Assert.isTrue
status: waiting-for-triageAn issue we've not yet triagedAn issue we've not yet triagedStatus: Open.#19368 In spring-projects/spring-security;NullPointerException during WebAuthn registration when authenticator transport is unknown (e.g. "cable")
status: waiting-for-triageAn issue we've not yet triagedAn issue we've not yet triagedtype: bugA general bugA general bugStatus: Open.#19366 In spring-projects/spring-security;Update to OpenSAML 5.2
status: waiting-for-triageAn issue we've not yet triagedAn issue we've not yet triagedtype: enhancementA general enhancementA general enhancementStatus: Open.#19349 In spring-projects/spring-security;with
spring-security-oatuh2-jose-7.1.0ajwtwithloavaluenullalways returns an errorstatus: waiting-for-triageAn issue we've not yet triagedAn issue we've not yet triagedtype: bugA general bugA general bugStatus: Open.#19346 In spring-projects/spring-security;OidcProviderConfigurationEndpointFilter (multi-issuer) only matches the path-append discovery location, not path-insertion — asymmetric with OAuth2AuthorizationServerMetadataEndpointFilter and breaks MCP discovery priority #2
status: waiting-for-triageAn issue we've not yet triagedAn issue we've not yet triagedtype: bugA general bugA general bugStatus: Open.#19342 In spring-projects/spring-security;InMemoryReactiveSessionRegistry can lose a session under concurrent save/remove
status: waiting-for-triageAn issue we've not yet triagedAn issue we've not yet triagedStatus: Open.#19338 In spring-projects/spring-security;InMemoryUserDetailsManager.changePassword fails for non-lowercase usernames
status: waiting-for-triageAn issue we've not yet triagedAn issue we've not yet triagedStatus: Open.#19336 In spring-projects/spring-security;DefaultAuthorizationManagerFactory.anonymous() applies additionalAuthorization
status: waiting-for-triageAn issue we've not yet triagedAn issue we've not yet triagedStatus: Open.#19334 In spring-projects/spring-security;