What's Changed
- chore(deps): bump org.htmlunit:htmlunit from 4.17.0 to 4.18.0 by @dependabot[bot] in #2355
- chore: hide deprecation warning in AD test by @lprimak in #2352
- chore(deps): bump github/codeql-action from 4.31.0 to 4.31.2 in the github-dependencies group by @dependabot[bot] in #2353
- chore(deps): bump bytebuddy.version from 1.17.8 to 1.18.1 by @dependabot[bot] in #2369
- chore(deps): bump org.owasp:dependency-check-maven from 12.1.8 to 12.1.9 by @dependabot[bot] in #2367
- chore(deps): bump org.omnifaces:omnifaces from 3.14.11 to 3.14.12 by @dependabot[bot] in #2364
- [#953] - Allow CORS preflight requests to bypass authentication by @celikfatih in #2372
- chore: put back changes that were overwritten by maven release plugin by @lprimak in #2375
- chore(deps): bump bytebuddy.version from 1.18.1 to 1.18.2 by @dependabot[bot] in #2389
- chore(deps): bump org.quartz-scheduler:quartz from 2.5.1 to 2.5.2 by @dependabot[bot] in #2387
- chore(deps): bump org.codehaus.mojo:taglist-maven-plugin from 3.2.1 to 3.2.2 by @dependabot[bot] in #2380
- chore(deps): bump org.codehaus.mojo:versions-maven-plugin from 2.19.1 to 2.20.1 by @dependabot[bot] in #2379
- chore(deps): bump org.htmlunit:htmlunit from 4.18.0 to 4.19.0 by @dependabot[bot] in #2377
- chore(deps): bump org.owasp.encoder:encoder from 1.3.1 to 1.4.0 by @dependabot[bot] in #2374
- chore(deps): bump the github-dependencies group with 2 updates by @dependabot[bot] in #2373
- Configure EditorConfig for
.rdfby @jbampton in #2386 - Remove
typeattributes from HTMLscripttags by @jbampton in #2382 - pre-commit: add 3 more hooks; fix end of files by @jbampton in #2360
- Pin all actions workflows by @jbampton in #2385
- Add pre-commit hook to trim trailing whitespace by @jbampton in #2406
- gha: use pre-commit run
--color=alwaysby @jbampton in #2407 - chore: pin python and it's depenendencies for pre-commit check on GitHub by @lprimak in #2408
- chore: pin python pre-commit workflow dependency with hash by @lprimak in #2410
- Add descriptions to all pre-commit hooks by @jbampton in #2409
- chore: fix vulnerabilities in tests reported by OpenSSF tool by @lprimak in #2411
- chore(deps): bump org.htmlunit:htmlunit from 4.19.0 to 4.20.0 by @dependabot[bot] in #2415
- chore(deps): bump the github-dependencies group with 5 updates by @dependabot[bot] in #2414
- chore(deps): bump mockito.version from 5.20.0 to 5.21.0 by @dependabot[bot] in #2420
- chore(deps): bump ch.qos.logback:logback-core from 1.5.21 to 1.5.22 by @dependabot[bot] in #2419
- chore(deps): bump ch.qos.logback:logback-classic from 1.5.21 to 1.5.22 by @dependabot[bot] in #2417
- chore(deps): bump the github-dependencies group with 3 updates by @dependabot[bot] in #2418
- chore(security): update log4-core by @lprimak in #2430
- chore(deps): bump org.codehaus.mojo:exec-maven-plugin from 3.6.2 to 3.6.3 by @dependabot[bot] in #2429
- chore(deps): bump ch.qos.logback:logback-core from 1.5.22 to 1.5.23 by @dependabot[bot] in #2427
- chore(deps): bump com.github.siom79.japicmp:japicmp-maven-plugin from 0.24.2 to 0.25.1 by @dependabot[bot] in #2428
- chore(deps): bump github/codeql-action from 4.31.8 to 4.31.9 in the github-dependencies group by @dependabot[bot] in #2424
- chore(deps): bump ch.qos.logback:logback-classic from 1.5.22 to 1.5.23 by @dependabot[bot] in #2426
- chore(deps): bump bytebuddy.version from 1.18.2 to 1.18.3 by @dependabot[bot] in #2425
- chore(deps): bump org.htmlunit:htmlunit from 4.20.0 to 4.21.0 by @dependabot[bot] in #2431
- chore(deps): bump ch.qos.logback:logback-classic from 1.5.23 to 1.5.24 by @dependabot[bot] in #2455
- chore(deps): bump org.owasp:dependency-check-maven from 12.1.9 to 12.2.0 by @dependabot[bot] in #2454
- chore(deps): bump com.github.siom79.japicmp:japicmp-maven-plugin from 0.25.1 to 0.25.4 by @dependabot[bot] in #2453
- chore(deps): bump ch.qos.logback:logback-core from 1.5.23 to 1.5.24 by @dependabot[bot] in #2452
- chore(deps): bump javax.enterprise:cdi-api from 2.0 to 2.0.SP1 by @dependabot[bot] in #2451
- chore(deps): bump org.jsoup:jsoup from 1.21.2 to 1.22.1 by @dependabot[bot] in #2442
- chore(deps): bump github/codeql-action from 4.31.9 to 4.31.10 in the github-dependencies group by @dependabot[bot] in #2449
- [#2460] bugfix: avoid duplicate proxying of StoppingAwareProxiedSession by @lprimak in #2459
- [#2458] Deploy next snapshot version as computed dynamically from latest release by @lprimak in #2456
- [#2460] test for recursively wrapped sessions by @bmarwell in #2470
- [#2471] remove experimental, unused class SimplePrincipalMap by @bmarwell in #2472
- Jakarta ee update by @lprimak in #2474
- chore(deps): bump ch.qos.logback:logback-core from 1.5.24 to 1.5.26 by @dependabot[bot] in #2480
- chore(deps): bump ch.qos.logback:logback-classic from 1.5.24 to 1.5.26 by @dependabot[bot] in #2479
- chore(deps-dev): bump org.assertj:assertj-core from 3.27.6 to 3.27.7 by @dependabot[bot] in #2478
- chore(deps): bump org.codehaus.gmavenplus:gmavenplus-plugin from 4.2.1 to 4.3.0 by @dependabot[bot] in #2476
- chore(deps): bump the github-dependencies group across 1 directory with 5 updates by @dependabot[bot] in #2477
- chore(deps-dev): bump org.codehaus.mojo:buildnumber-maven-plugin from 3.2.1 to 3.3.0 by @dependabot[bot] in #2467
- chore(deps-dev): bump org.codehaus.mojo:xml-maven-plugin from 1.2.0 to 1.2.1 by @dependabot[bot] in #2466
- chore(deps-dev): bump org.codehaus.mojo:versions-maven-plugin from 2.20.1 to 2.21.0 by @dependabot[bot] in #2465
- chore(deps-dev): bump org.codehaus.mojo:jdepend-maven-plugin from 2.1 to 2.2.0 by @dependabot[bot] in #2464
- chore(deps): bump bytebuddy.version from 1.18.3 to 1.18.4 by @dependabot[bot] in #2468
- [#1025] - Shiro's InvalidRequestFilter blocks valid paths with encoded slashes by @haster in #1026
- [#2421] bugfix: restored ability to match passwords from Shiro 1.x that have … by @lprimak in #2475
- Run
pre-commit autoupdateto update the hooks by @jbampton in #2486 - chore: Eclipse IDE ignores for license checks by @lprimak in #2484
- Update pre-commit workflow set
--show-diff-on-failureby @jbampton in #2487
New Contributors
- @celikfatih made their first contribution in #2372
- @haster made their first contribution in #1026
Full Changelog: shiro-root-2.0.6...shiro-root-2.1.0