Bump org.springframework.security:spring-security-bom from 6.5.0 to 6.5.1 in /spring
Open
Number: #2173
Type: Pull Request
State: Open
Type: Pull Request
State: Open
Author:
dependabot[bot]
Association: Contributor
Comments: 0
Association: Contributor
Comments: 0
Created:
June 23, 2025 at 03:09 PM UTC
(12 months ago)
(12 months ago)
Updated:
June 25, 2025 at 01:32 PM UTC
(12 months ago)
(12 months ago)
Labels:
backport 1.2
backport 1.2
Description:
Bumps org.springframework.security:spring-security-bom from 6.5.0 to 6.5.1.
Release notes
Sourced from org.springframework.security:spring-security-bom's releases.
6.5.1
:star: New Features
:beetle: Bug Fixes
- ClearSiteDataHeaderWriter log is misleading #17166
- Fix to allow multiple AuthenticationFilter instances to process each request #17216
- Inconsistent constructor declaration on bean with name '_reactiveMethodSecurityConfiguration' #17210
- OAuth2ResourceServer using authenticationManagerResolver results in
tokenAuthenticationManager cannot be nullwhile startup #17172- Publishing a default TargetVisitor should not override Spring MVC support #17189
- Use HttpStatus in back-channel logout filters #17157
:hammer: Dependency Upgrades
- Bump com.fasterxml.jackson:jackson-bom from 2.18.4 to 2.18.4.1 #17233
- Bump com.webauthn4j:webauthn4j-core from 0.29.2.RELEASE to 0.29.3.RELEASE #17192
- Bump io-spring-javaformat from 0.0.43 to 0.0.45 #17152
- Bump io.micrometer:micrometer-observation from 1.14.7 to 1.14.8 #17220
- Bump io.projectreactor:reactor-bom from 2023.0.18 to 2023.0.19 #17232
- Bump io.spring.develocity.conventions from 0.0.22 to 0.0.23 #17204
- Bump org.apache.maven:maven-resolver-provider from 3.9.9 to 3.9.10 #17214
- Bump org.hibernate.orm:hibernate-core from 6.6.15.Final to 6.6.17.Final #17184
- Bump org.hibernate.orm:hibernate-core from 6.6.17.Final to 6.6.18.Final #17256
- Bump org.springframework.data:spring-data-bom from 2024.1.6 to 2024.1.7 #17257
- Bump org.springframework.ldap:spring-ldap-core from 3.2.12 to 3.2.13 #17239
- Bump org.springframework:spring-framework-bom from 6.2.7 to 6.2.8 #17238
:heart: Contributors
Thank you to all the contributors who worked on this release:
Commits
ebdd6c2Release 6.5.1f7cff8dMerge branch '6.4.x' into 6.5.xb8c19f9Bump org.hibernate.orm:hibernate-core from 6.6.17.Final to 6.6.18.Finalf2dbe28Merge branch '6.4.x' into 6.5.x17fe96eMerge branch '6.3.x' into 6.4.x1828d56Bump org.springframework:spring-framework-bom from 6.2.7 to 6.2.871851deBump org.springframework.ldap:spring-ldap-core from 3.2.12 to 3.2.1360a930aBump org.hibernate.orm:hibernate-core from 6.6.17.Final to 6.6.18.Final2b51705Bump org.springframework.data:spring-data-bom from 2024.1.6 to 2024.1.70a15dcaBump org.springframework:spring-framework-bom from 6.2.7 to 6.2.8- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Pull Request Statistics
Commits:
0
0
Files Changed:
0
0
Additions:
+0
+0
Deletions:
-0
-0
Package Dependencies
Ecosystem:
maven
maven
Version Change:
6.5.0 → 6.5.1
Update Type:
Patch
Patch
Path:
/spring
Technical Details
| ID: | 2318625 |
| UUID: | 2611990800 |
| Node ID: | PR_kwDOHloRjM6br9EQ |
| Host: | GitHub |
| Repository: | inrupt/solid-client-java |