webauthn4j-spring-security icon indicating copy to clipboard operation
webauthn4j-spring-security copied to clipboard

WebAuthn4J Extension for Spring Security

Results 71 webauthn4j-spring-security issues
Sort by recently updated
recently updated
newest added

Bumps [webdrivermanager](https://github.com/bonigarcia/webdrivermanager) from 5.2.3 to 5.3.0. Changelog Sourced from webdrivermanager's changelog. [5.3.0] - 2022-08-21 Added Include workflow to create mirror of geckodriver, operadriver, and selenium from api.github.com Replace api.github.com URLs...

dependencies
java

Bumps dependency-check-gradle from 7.1.1 to 7.1.2. [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.owasp:dependency-check-gradle&package-manager=gradle&previous-version=7.1.1&new-version=7.1.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a...

dependencies
java

At least it passes MDS3 test cases: ![image](https://user-images.githubusercontent.com/2139672/166948916-d312799a-7a44-4d51-8256-0dfd5bfcf4d8.png)

Looking at the code, I spotted: https://github.com/webauthn4j/webauthn4j-spring-security/blob/90e9566cbb84dd8fa91f487bebb15d126097eb82/samples/spa/src/main/java/com/webauthn4j/springframework/security/webauthn/sample/app/config/WebSecurityConfig.java#L142 I interpret this as POST on /api/profile is public, while I would expect this route to be private. Did I miss something? Thanks

Bumps dependency-check-gradle from 7.1.2 to 7.3.0. [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.owasp:dependency-check-gradle&package-manager=gradle&previous-version=7.1.2&new-version=7.3.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a...

dependencies
java

Bumps com.github.node-gradle.node from 3.4.0 to 3.5.0. [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.github.node-gradle.node&package-manager=gradle&previous-version=3.4.0&new-version=3.5.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a...

dependencies
java

Bumps build-info-extractor-gradle from 4.29.0 to 4.29.2. [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.jfrog.buildinfo:build-info-extractor-gradle&package-manager=gradle&previous-version=4.29.0&new-version=4.29.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a...

dependencies
java

Bumps [spring-security-bom](https://github.com/spring-projects/spring-security) from 5.7.3 to 5.7.4. Commits 89c8150 Fix Index Out of Bounds ff055cf Remote antoraUpdateVersion task from CI b08a06a Release 5.6.8 465d80c Remove antoreUpdateVersion task from release automation 4992e8c...

dependencies
java

Bumps [bootstrap](https://github.com/webjars/bootstrap) from 5.2.0 to 5.2.2. Commits aba83b5 [maven-release-plugin] prepare release bootstrap-5.2.2 5476bba [maven-release-plugin] prepare for next development iteration d136623 [maven-release-plugin] prepare release bootstrap-5.2.1 a7aadf3 [maven-release-plugin] prepare for next development...

dependencies
java

Bumps `webauthn4jVersion` from 0.20.3.RELEASE to 0.20.4.RELEASE. Updates `webauthn4j-util` from 0.20.3.RELEASE to 0.20.4.RELEASE Release notes Sourced from webauthn4j-util's releases. 0.20.4.RELEASE :package: Dependency Upgrades Bump slf4j-api from 2.0.0 to 2.0.3 #701#703#709 Bump...

dependencies
java