BlocklyProp
BlocklyProp copied to clipboard
Bump org.apache.shiro:shiro-web from 1.6.0 to 1.12.0
Bumps org.apache.shiro:shiro-web from 1.6.0 to 1.12.0.
Changelog
Sourced from org.apache.shiro:shiro-web's changelog.
Licensed to the Apache Software Foundation (ASF) under one
or more contributor license agreements. See the NOTICE file
distributed with this work for additional information
regarding copyright ownership. The ASF licenses this file
to you under the Apache License, Version 2.0 (the
"License"); you may not use this file except in compliance
with the License. You may obtain a copy of the License at
http://www.apache.org/licenses/LICENSE-2.0
Unless required by applicable law or agreed to in writing,
software distributed under the License is distributed on an
"AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
KIND, either express or implied. See the License for the
specific language governing permissions and limitations
under the License.
This is not an official release notes document. It exists for Shiro developers to jot down their notes while working in the source code. These notes will be combined with Jira’s auto-generated release notes during a release for the total set.
###########################################################
2.0.0
###########################################################
Improvement
[SHIRO-290] Implement bcrypt and argon2 KDF algorithmsBackwards Incompatible Changes
- Changed default DefaultPasswordService.java algorithm to "Argon2id".
- PasswordService.encryptPassword(Object plaintext) will now throw a NullPointerException on null parameter. It was never specified how this method would behave.
- Made salt non-nullable.
- Removed methods in PasswordMatcher.
###########################################################
1.7.1
###########################################################
Bug
[SHIRO-797] - Shiro 1.7.0 is lower than using springboot version 2.0.7 dependency error###########################################################
... (truncated)
Commits
c8a294a[maven-release-plugin] prepare release shiro-root-1.12.0c3ede3fAdds improved path filter2eac0dcMerge pull request #1002 from lprimak/hz-4-5468684a[SHIRO-816] Hazelcast support does not support HZ v4+ by@cstamas0a037b6Merge pull request #998 from apache/dependabot/maven/1.12.x/com.google.guava-...5960b91build(deps): bump guava from 32.1.0-jre to 32.1.1-jre1d1a968Merge pull request #995 from apache/dependabot/maven/1.12.x/ch.qos.logback-lo...90445bdbuild(deps): bump logback-classic from 1.2.11 to 1.2.123881d03Merge pull request #969 from apache/dependabot/maven/1.12.x/com.google.guava-...20c6fcbbuild(deps): bump guava from 32.0.1-jre to 32.1.0-jre- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the Security Alerts page.