BlocklyProp
BlocklyProp copied to clipboard
Bump org.apache.shiro:shiro-web from 1.6.0 to 1.12.0
Bumps org.apache.shiro:shiro-web from 1.6.0 to 1.12.0.
Changelog
Sourced from org.apache.shiro:shiro-web's changelog.
Licensed to the Apache Software Foundation (ASF) under one
or more contributor license agreements. See the NOTICE file
distributed with this work for additional information
regarding copyright ownership. The ASF licenses this file
to you under the Apache License, Version 2.0 (the
"License"); you may not use this file except in compliance
with the License. You may obtain a copy of the License at
http://www.apache.org/licenses/LICENSE-2.0
Unless required by applicable law or agreed to in writing,
software distributed under the License is distributed on an
"AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
KIND, either express or implied. See the License for the
specific language governing permissions and limitations
under the License.
This is not an official release notes document. It exists for Shiro developers to jot down their notes while working in the source code. These notes will be combined with Jira’s auto-generated release notes during a release for the total set.
###########################################################
2.0.0
###########################################################
Improvement
[SHIRO-290] Implement bcrypt and argon2 KDF algorithms
Backwards Incompatible Changes
- Changed default DefaultPasswordService.java algorithm to "Argon2id".
- PasswordService.encryptPassword(Object plaintext) will now throw a NullPointerException on null parameter. It was never specified how this method would behave.
- Made salt non-nullable.
- Removed methods in PasswordMatcher.
###########################################################
1.7.1
###########################################################
Bug
[SHIRO-797] - Shiro 1.7.0 is lower than using springboot version 2.0.7 dependency error
###########################################################
... (truncated)
Commits
c8a294a
[maven-release-plugin] prepare release shiro-root-1.12.0c3ede3f
Adds improved path filter2eac0dc
Merge pull request #1002 from lprimak/hz-4-5468684a
[SHIRO-816] Hazelcast support does not support HZ v4+ by@cstamas
0a037b6
Merge pull request #998 from apache/dependabot/maven/1.12.x/com.google.guava-...5960b91
build(deps): bump guava from 32.1.0-jre to 32.1.1-jre1d1a968
Merge pull request #995 from apache/dependabot/maven/1.12.x/ch.qos.logback-lo...90445bd
build(deps): bump logback-classic from 1.2.11 to 1.2.123881d03
Merge pull request #969 from apache/dependabot/maven/1.12.x/com.google.guava-...20c6fcb
build(deps): bump guava from 32.0.1-jre to 32.1.0-jre- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase
.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebase
will rebase this PR -
@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it -
@dependabot merge
will merge this PR after your CI passes on it -
@dependabot squash and merge
will squash and merge this PR after your CI passes on it -
@dependabot cancel merge
will cancel a previously requested merge and block automerging -
@dependabot reopen
will reopen this PR if it is closed -
@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the Security Alerts page.