Skip to content

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Jul 21, 2025

This PR contains the following updates:

Package Change Age Confidence
org.springframework.security:spring-security-core (source) 6.5.1 -> 6.5.2 age confidence

Release Notes

spring-projects/spring-security (org.springframework.security:spring-security-core)

v6.5.2

Compare Source

🪲 Bug Fixes

  • <websocket-message-broker> should pick up a bean named csrfChannelInterceptor #​17495
  • Add 7.0 Migration Steps for Messaging PathPattern Usage #​17509
  • EnableReactiveMethodSecurity should not import Servlet configuration #​17545
  • Fix equals and hashCode in PathPatternRequestMatcher to include HTTP method #​17337
  • Fix securityContextRepository() initialization in oauth2Login() DSL #​17557
  • OAuth2Login DSL should support post-processing AuthenticationProvider implementations #​17176
  • Websocket XML config should pick up PathPatternMessageMatcher.Builder #​17508

🔨 Dependency Upgrades

  • Bump com.webauthn4j:webauthn4j-core from 0.29.3.RELEASE to 0.29.4.RELEASE #​17483
  • Bump com.webauthn4j:webauthn4j-core from 0.29.3.RELEASE to 0.29.4.RELEASE #​17444
  • Bump io-spring-javaformat from 0.0.46 to 0.0.47 #​17470
  • Bump io-spring-javaformat from 0.0.46 to 0.0.47 #​17441
  • Bump io-spring-javaformat from 0.0.46 to 0.0.47 #​17398
  • Bump io-spring-javaformat from 0.0.46 to 0.0.47 #​17375
  • Bump io-spring-javaformat from 0.0.46 to 0.0.47 #​17354
  • Bump io-spring-javaformat from 0.0.46 to 0.0.47 #​17335
  • Bump io.micrometer:micrometer-observation from 1.14.8 to 1.14.9 #​17570
  • Bump io.micrometer:micrometer-observation from 1.14.8 to 1.14.9 #​17554
  • Bump io.micrometer:micrometer-observation from 1.14.8 to 1.14.9 #​17520
  • Bump io.mockk:mockk from 1.14.2 to 1.14.4 #​17467
  • Bump io.mockk:mockk from 1.14.2 to 1.14.4 #​17407
  • Bump io.mockk:mockk from 1.14.2 to 1.14.4 #​17376
  • Bump io.mockk:mockk from 1.14.2 to 1.14.4 #​17349
  • Bump io.mockk:mockk from 1.14.4 to 1.14.5 #​17572
  • Bump io.mockk:mockk from 1.14.4 to 1.14.5 #​17556
  • Bump io.mockk:mockk from 1.14.4 to 1.14.5 #​17539
  • Bump org-apache-maven-resolver from 1.9.23 to 1.9.24 #​17469
  • Bump org-apache-maven-resolver from 1.9.23 to 1.9.24 #​17445
  • Bump org.apache.maven:maven-resolver-provider from 3.9.10 to 3.9.11 #​17555
  • Bump org.apache.maven:maven-resolver-provider from 3.9.10 to 3.9.11 #​17528
  • Bump org.hibernate.orm:hibernate-core from 6.6.17.Final to 6.6.18.Final #​17377
  • Bump org.hibernate.orm:hibernate-core from 6.6.17.Final to 6.6.18.Final #​17353
  • Bump org.hibernate.orm:hibernate-core from 6.6.17.Final to 6.6.18.Final #​17279
  • Bump org.hibernate.orm:hibernate-core from 6.6.17.Final to 6.6.18.Final #​17261
  • Bump org.hibernate.orm:hibernate-core from 6.6.17.Final to 6.6.19.Final #​17408
  • Bump org.hibernate.orm:hibernate-core from 6.6.17.Final to 6.6.19.Final #​17403
  • Bump org.hibernate.orm:hibernate-core from 6.6.17.Final to 6.6.20.Final #​17491
  • Bump org.hibernate.orm:hibernate-core from 6.6.20.Final to 6.6.21.Final #​17552
  • Bump org.hibernate.orm:hibernate-core from 6.6.20.Final to 6.6.21.Final #​17522
  • Bump org.hibernate.orm:hibernate-core from 6.6.20.Final to 6.6.22.Final #​17571
  • Bump org.springframework.data:spring-data-bom from 2024.1.6 to 2024.1.7 #​17466
  • Bump org.springframework.data:spring-data-bom from 2024.1.6 to 2024.1.7 #​17443
  • Bump org.springframework.data:spring-data-bom from 2024.1.6 to 2024.1.7 #​17404
  • Bump org.springframework.data:spring-data-bom from 2024.1.6 to 2024.1.7 #​17374
  • Bump org.springframework.data:spring-data-bom from 2024.1.6 to 2024.1.7 #​17352
  • Bump org.springframework.data:spring-data-bom from 2024.1.6 to 2024.1.7 #​17276
  • Bump org.springframework.data:spring-data-bom from 2024.1.6 to 2024.1.7 #​17270
  • Bump org.springframework.data:spring-data-bom from 2024.1.7 to 2024.1.8 #​17569
  • Bump org.springframework.ldap:spring-ldap-core from 3.2.12 to 3.2.13 #​17468
  • Bump org.springframework.ldap:spring-ldap-core from 3.2.12 to 3.2.13 #​17442
  • Bump org.springframework.ldap:spring-ldap-core from 3.2.12 to 3.2.13 #​17406
  • Bump org.springframework.ldap:spring-ldap-core from 3.2.12 to 3.2.13 #​17401
  • Bump org.springframework.ldap:spring-ldap-core from 3.2.12 to 3.2.13 #​17277
  • Bump org.springframework.ldap:spring-ldap-core from 3.2.12 to 3.2.13 #​17264
  • Bump org.springframework:spring-framework-bom from 6.2.7 to 6.2.8 #​17481
  • Bump org.springframework:spring-framework-bom from 6.2.7 to 6.2.8 #​17411
  • Bump org.springframework:spring-framework-bom from 6.2.7 to 6.2.8 #​17395
  • Bump org.springframework:spring-framework-bom from 6.2.7 to 6.2.8 #​17378
  • Bump org.springframework:spring-framework-bom from 6.2.7 to 6.2.8 #​17355
  • Bump org.springframework:spring-framework-bom from 6.2.7 to 6.2.8 #​17275
  • Bump org.springframework:spring-framework-bom from 6.2.7 to 6.2.8 #​17268
  • Bump org.springframework:spring-framework-bom from 6.2.8 to 6.2.9 #​17568
  • Bump org.springframework:spring-framework-bom from 6.2.8 to 6.2.9 #​17553

❤️ Contributors

Thank you to all the contributors who worked on this release:

@​fkowal and @​therepanic


Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot added bot dependencies Pull requests that update a dependency file labels Jul 21, 2025
@mergify mergify bot merged commit 37000ac into master Jul 21, 2025
6 checks passed
@mergify mergify bot deleted the renovate/spring-security branch July 21, 2025 23:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bot dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants