commits
Thread
Date
Earlier messages
Messages by Thread
(struts-intellij-plugin) tag v261.19027-nightly.3 created (now 00c6d0b)
github-bot
(struts) branch main updated: build(deps): bump org.apache.logging.log4j:log4j-bom (#1685)
lukaszlenart
(struts) branch dependabot/maven/main/org.apache.logging.log4j-log4j-bom-2.26.0 deleted (was 764b6bfcf)
lukaszlenart
(struts) branch dependabot/maven/release/struts-6-8-x/log4j2.version-2.26.0 deleted (was a8316be07)
lukaszlenart
(struts) branch dependabot/maven/support/struts-6-x-x/org.apache.felix-org.apache.felix.framework-7.0.5 deleted (was 5e5497eae)
lukaszlenart
(struts) branch dependabot/maven/support/struts-6-x-x/log4j2.version-2.26.0 deleted (was 5b779983b)
lukaszlenart
(struts) branch support/struts-6-x-x updated: build(deps): bump log4j2.version from 2.25.4 to 2.26.0 (#1706)
lukaszlenart
(struts) branch dependabot/maven/support/struts-6-x-x/commons-io-commons-io-2.22.0 deleted (was 40c2156ef)
lukaszlenart
(struts) branch dependabot/maven/support/struts-6-x-x/asm.version-9.10 deleted (was 9a40b15de)
lukaszlenart
(struts) branch support/struts-6-x-x updated: build(deps): bump asm.version from 9.9.1 to 9.10 (#1703)
lukaszlenart
(struts) branch dependabot/maven/support/struts-6-x-x/slf4j.version-2.0.18 deleted (was 07fbea253)
lukaszlenart
(struts) branch support/struts-6-x-x updated: build(deps): bump slf4j.version from 2.0.17 to 2.0.18 (#1704)
lukaszlenart
(struts) branch dependabot/maven/release/struts-6-8-x/asm.version-9.10 deleted (was 96a46287b)
lukaszlenart
(struts) branch release/struts-6-8-x updated: build(deps): bump asm.version from 9.9.1 to 9.10 (#1699)
lukaszlenart
(struts) branch dependabot/maven/main/asm.version-9.10 deleted (was d5c183bff)
lukaszlenart
(struts) branch main updated: build(deps): bump asm.version from 9.9.1 to 9.10 (#1695)
lukaszlenart
(struts) branch dependabot/maven/support/struts-6-x-x/org.apache.felix-org.apache.felix.framework-7.0.5 created (now 5e5497eae)
github-bot
(struts) branch dependabot/maven/support/struts-6-x-x/log4j2.version-2.26.0 created (now 5b779983b)
github-bot
(struts) branch dependabot/maven/support/struts-6-x-x/commons-io-commons-io-2.22.0 created (now 40c2156ef)
github-bot
(struts) branch dependabot/maven/support/struts-6-x-x/slf4j.version-2.0.18 created (now 07fbea253)
github-bot
(struts) branch dependabot/maven/support/struts-6-x-x/asm.version-9.10 created (now 9a40b15de)
github-bot
(struts) branch ci/dependabot-cooldown-default-days deleted (was 6cb6922b0)
lukaszlenart
(struts) branch main updated: ci(dependabot): fix cooldown property name (#1702)
lukaszlenart
(struts) branch ci/dependabot-cooldown-default-days created (now 6cb6922b0)
lukaszlenart
(struts) 01/01: ci(dependabot): fix cooldown property name
lukaszlenart
(struts) branch dependabot/maven/release/struts-6-8-x/org.hibernate-hibernate-core-7.3.5.Final deleted (was 93d941b5f)
lukaszlenart
(struts) branch dependabot/maven/main/org.hibernate-hibernate-core-7.3.5.Final deleted (was 7fb356660)
lukaszlenart
(struts) branch dependabot/maven/release/struts-6-8-x/org.apache.maven.plugins-maven-enforcer-plugin-3.6.3 deleted (was 26b43aee9)
lukaszlenart
(struts) branch release/struts-6-8-x updated: build(deps-dev): bump org.apache.maven.plugins:maven-enforcer-plugin (#1697)
lukaszlenart
(struts) branch dependabot/maven/main/org.apache.maven.plugins-maven-enforcer-plugin-3.6.3 deleted (was 08f6f4270)
lukaszlenart
(struts) branch main updated: build(deps-dev): bump org.apache.maven.plugins:maven-enforcer-plugin (#1698)
lukaszlenart
(struts) branch dependabot/github_actions/github/codeql-action-4.35.5 deleted (was 645b04e14)
lukaszlenart
(struts) branch main updated: build(deps): bump github/codeql-action from 4.35.4 to 4.35.5 (#1694)
lukaszlenart
(struts) branch WW-5623-postback-result-xss-6x created (now 90751ff9a)
lukaszlenart
(struts) 01/01: WW-5623 fix(core): HTML-encode form action in PostbackResult to prevent XSS
lukaszlenart
(struts) branch dependabot/maven/main/org.hibernate-hibernate-core-7.3.5.Final created (now 7fb356660)
github-bot
(struts) branch dependabot/maven/release/struts-6-8-x/asm.version-9.10 created (now 96a46287b)
github-bot
(struts) branch dependabot/maven/main/org.apache.maven.plugins-maven-enforcer-plugin-3.6.3 created (now 08f6f4270)
github-bot
(struts) branch dependabot/maven/release/struts-6-8-x/org.apache.maven.plugins-maven-enforcer-plugin-3.6.3 created (now 26b43aee9)
github-bot
(struts) branch dependabot/maven/release/struts-6-8-x/org.hibernate-hibernate-core-7.3.5.Final created (now 93d941b5f)
github-bot
(struts) branch dependabot/maven/main/asm.version-9.10 created (now d5c183bff)
github-bot
(struts) branch dependabot/github_actions/github/codeql-action-4.35.5 created (now 645b04e14)
github-bot
(struts) branch WW-5535-class-annotation-fallback-6x created (now 4724b71e7)
lukaszlenart
(struts) 01/01: WW-5535 fix(core): enforce class-level HTTP method annotations for wildcard-resolved unannotated methods
lukaszlenart
(struts-intellij-plugin) branch dependabot/github_actions/codecov/codecov-action-6.0.1 deleted (was 091f6d6)
lukaszlenart
(struts-intellij-plugin) branch main updated: ci(deps): bump codecov/codecov-action from 6.0.0 to 6.0.1 (#85)
lukaszlenart
(struts-intellij-plugin) branch dependabot/github_actions/codecov/codecov-action-6.0.1 created (now 091f6d6)
github-bot
(struts) branch WW-5535-wildcard-integration-test deleted (was 381a687c0)
lukaszlenart
(struts) branch main updated: WW-5535 test(core): cover wildcard-resolved unannotated methods via real proxy (#1692)
lukaszlenart
(struts) branch WW-5535-wildcard-integration-test created (now 381a687c0)
lukaszlenart
(struts) 01/01: WW-5535 test(core): cover wildcard-resolved unannotated methods via real proxy
lukaszlenart
(struts) branch main updated: fix(core): enforce class-level HTTP method annotations for wildcard-resolved unannotated methods (#1690)
lukaszlenart
(struts) branch chore/rats-exclude-docs deleted (was 14165eee6)
lukaszlenart
(struts) branch main updated: chore(rat): excludes Markdown files in docs/ folder (#1691)
lukaszlenart
(struts) branch chore/rats-exclude-docs created (now 14165eee6)
lukaszlenart
(struts) 01/01: chore(rat): excludes Markdown files in docs/ folder
lukaszlenart
(struts) branch WW-5627-cookie-authorization deleted (was 590aca61a)
lukaszlenart
(struts) branch main updated: WW-5627 Gate CookieInterceptor through ParameterAuthorizer (#1681)
lukaszlenart
(struts) branch chore/agentsmd deleted (was dcc2a256b)
lukaszlenart
(struts) branch main updated: chore(agents): defines a new AGENTS.md focused on reporting vulnerabilities (#1680)
lukaszlenart
(struts) branch WW-5627-cookie-authorization updated (a751b5998 -> 590aca61a)
lukaszlenart
(struts) branch dependabot/maven/main/org.hibernate-hibernate-core-7.3.4.Final deleted (was 763648c7d)
lukaszlenart
(struts) branch main updated: WW-5626 per-property authorization for Jackson REST handlers (#1674)
lukaszlenart
(struts) branch release/struts-6-8-x updated: build(deps): bump slf4j.version from 2.0.17 to 2.0.18 (#1684)
lukaszlenart
(struts) branch dependabot/maven/main/slf4j.version-2.0.18 deleted (was e921c5a5a)
lukaszlenart
(struts) branch main updated: build(deps): bump slf4j.version from 2.0.17 to 2.0.18 (#1683)
lukaszlenart
(struts) branch dependabot/github_actions/github/codeql-action-4.35.4 deleted (was bacd9a02f)
lukaszlenart
(struts) branch main updated: build(deps): bump github/codeql-action from 4.35.3 to 4.35.4 (#1682)
lukaszlenart
(struts) branch chore/agentsmd updated (378684d5c -> dcc2a256b)
lukaszlenart
(struts-site) branch feature/eol-versions-page deleted (was 80b118fc5)
lukaszlenart
(struts-site) branch main updated: docs: add EOL versions page and cross-link from related pages (#291)
lukaszlenart
(struts) branch chore/agentsmd updated (a0b8f040d -> 378684d5c)
rgielen
(struts) branch chore/agentsmd updated (b0e0a36dd -> a0b8f040d)
lukaszlenart
(struts) branch dependabot/maven/main/org.hibernate-hibernate-core-7.3.4.Final created (now 763648c7d)
github-bot
(struts) branch dependabot/maven/release/struts-6-8-x/slf4j.version-2.0.18 created (now 1a0f3eff8)
github-bot
(struts) branch dependabot/maven/release/struts-6-8-x/org.hibernate-hibernate-core-7.3.4.Final created (now 786a40213)
github-bot
(struts) branch dependabot/maven/release/struts-6-8-x/log4j2.version-2.26.0 created (now a8316be07)
github-bot
(struts) branch dependabot/maven/main/org.apache.logging.log4j-log4j-bom-2.26.0 created (now 764b6bfcf)
github-bot
(struts) branch dependabot/maven/main/slf4j.version-2.0.18 created (now e921c5a5a)
github-bot
(struts) branch dependabot/maven/main/slf4j.version-2.0.18 created (now e921c5a5a)
github-bot
(struts) branch dependabot/github_actions/github/codeql-action-4.35.4 created (now bacd9a02f)
github-bot
(struts) branch WW-5627-cookie-authorization updated (87803213f -> 73f456b8d)
lukaszlenart
(struts) branch WW-5627-cookie-authorization created (now 87803213f)
lukaszlenart
(struts) 01/09: WW-5627 add ParameterAllowlister interface and STRUTS_PARAMETER_ALLOWLISTER constant
lukaszlenart
(struts) 03/09: WW-5627 register ParameterAllowlister bean in struts-default DI
lukaszlenart
(struts) 04/09: WW-5627 delegate ParametersInterceptor OGNL allowlisting to OgnlParameterAllowlister
lukaszlenart
(struts) 07/09: WW-5627 cover CookieInterceptor authorization matrix in CookieInterceptorAnnotationTest
lukaszlenart
(struts) 05/09: WW-5627 test(cookie): failing test for unannotated setter skip
lukaszlenart
(struts) 06/09: WW-5627 gate CookieInterceptor cookie injection through ParameterAuthorizer
lukaszlenart
(struts) 08/09: WW-5627 docs(cookie): document new 5-arg extension hook and deprecation
lukaszlenart
(struts) 09/09: WW-5627 wire OgnlParameterAllowlister in StrutsParameterAnnotationTest fixture
lukaszlenart
(struts) 02/09: WW-5627 add OgnlParameterAllowlister default implementation
lukaszlenart
(struts) branch WW-5626-approach-c updated (262b495a2 -> 69ffeb0fe)
lukaszlenart
(struts) branch dependabot/maven/main/com.github.ben-manes.caffeine-caffeine-3.2.4 deleted (was 4e190abc1)
lukaszlenart
(struts) branch main updated: build(deps): bump com.github.ben-manes.caffeine:caffeine (#1679)
lukaszlenart
(struts) branch dependabot/maven/release/struts-6-8-x/org.owasp-dependency-check-maven-12.2.2 deleted (was 4aee87f5c)
lukaszlenart
(struts) branch release/struts-6-8-x updated: build(deps): bump org.owasp:dependency-check-maven from 12.2.1 to 12.2.2 (#1678)
lukaszlenart
(struts) branch main updated: build(deps): bump org.owasp:dependency-check-maven from 12.2.1 to 12.2.2 (#1677)
lukaszlenart
(struts) branch dependabot/maven/main/org.owasp-dependency-check-maven-12.2.2 deleted (was 299c37a20)
lukaszlenart
(struts) branch dependabot/maven/main/org.glassfish.jaxb-jaxb-bom-4.0.8 deleted (was 9b69c99d6)
lukaszlenart
(struts) branch main updated: build(deps): bump org.glassfish.jaxb:jaxb-bom from 4.0.7 to 4.0.8 (#1676)
lukaszlenart
(struts) branch dependabot/github_actions/github/codeql-action-4.35.3 deleted (was 60dd938e9)
lukaszlenart
(struts) branch main updated: build(deps): bump github/codeql-action from 4.35.2 to 4.35.3 (#1675)
lukaszlenart
(struts) branch WW-5626-cleanup deleted (was d1d67d66c)
lukaszlenart
(struts) branch WW-5626-approach-c updated (3c0be4a3b -> 262b495a2)
lukaszlenart
(struts) branch main updated: WW-5626 cleanup follow-ups for @StrutsParameter JSON/REST enforcement (#1673)
lukaszlenart
(struts) branch chore/agentsmd updated (b39f029a1 -> b0e0a36dd)
lukaszlenart
(struts) branch chore/agentsmd created (now b39f029a1)
lukaszlenart
(struts) 01/01: chore(agents): defines a new AGENTS.md focused on reporting vulnerabilities
lukaszlenart
(struts) branch dependabot/maven/main/com.github.ben-manes.caffeine-caffeine-3.2.4 created (now 4e190abc1)
github-bot
(struts) branch dependabot/maven/release/struts-6-8-x/org.owasp-dependency-check-maven-12.2.2 created (now 4aee87f5c)
github-bot
(struts) branch dependabot/github_actions/github/codeql-action-4.35.3 created (now 60dd938e9)
github-bot
(struts) branch dependabot/maven/main/org.owasp-dependency-check-maven-12.2.2 created (now 299c37a20)
github-bot
(struts) branch dependabot/maven/main/org.glassfish.jaxb-jaxb-bom-4.0.8 created (now 9b69c99d6)
github-bot
(struts) branch WW-5626-approach-c updated (0166c6a0b -> 3c0be4a3b)
lukaszlenart
(struts) branch WW-5626-approach-c created (now 0166c6a0b)
lukaszlenart
(struts) 04/11: WW-5626 add AuthorizationAwareContentTypeHandler marker interface
lukaszlenart
(struts) 09/11: WW-5626 add integration tests proving the new Jackson authorization path is used
lukaszlenart
(struts) 01/11: WW-5626 spike: validate Jackson per-property authorization mechanism
lukaszlenart
(struts) 05/11: WW-5626 add AuthorizingSettableBeanProperty for Jackson per-property authorization
lukaszlenart
(struts) 10/11: WW-5626 deprecate XStreamHandler in favor of JacksonXmlHandler
lukaszlenart
(struts) 06/11: WW-5626 add ParameterAuthorizingModule installing the property wrapper on Jackson mappers
lukaszlenart
(struts) 02/11: WW-5626 add ParameterAuthorizationContext for deserializer-level authorization
lukaszlenart
(struts) 03/11: WW-5626 address review feedback on ParameterAuthorizationContext
lukaszlenart
(struts) 07/11: WW-5626 register ParameterAuthorizingModule on default Jackson REST handlers
lukaszlenart
(struts) 11/11: WW-5626 remove Jackson auth spike; replaced by production tests
lukaszlenart
(struts) 08/11: WW-5626 use AuthorizationAwareContentTypeHandler path when handler supports it
lukaszlenart
(struts) branch WW-5626-cleanup created (now d1d67d66c)
lukaszlenart
(struts) 03/05: WW-5626 defensively skip non-String JSON keys in authorization filter
lukaszlenart
(struts) 04/05: WW-5626 add real JacksonJsonHandler integration tests for @StrutsParameter filtering
lukaszlenart
(struts) 01/05: WW-5626 add ParameterAuthorizer#resolveTarget for centralized ModelDriven resolution
lukaszlenart
(struts) 02/05: WW-5626 delegate ModelDriven target resolution to ParameterAuthorizer
lukaszlenart
(struts) 05/05: WW-5626 make ParameterAuthorizer#resolveTarget a default method to preserve SAM
lukaszlenart
(struts) branch dependabot/maven/main/commons-io-commons-io-2.22.0 deleted (was 40214dfb1)
lukaszlenart
(struts) branch main updated: build(deps): bump commons-io:commons-io from 2.21.0 to 2.22.0 (#1672)
lukaszlenart
(struts) branch dependabot/maven/release/struts-6-8-x/commons-io-commons-io-2.22.0 deleted (was 9f7aee48c)
lukaszlenart
(struts) branch main updated: build(deps): bump com.fasterxml.jackson:jackson-bom (#1669)
lukaszlenart
(struts) branch dependabot/maven/release/struts-6-8-x/jackson.version-2.21.3 deleted (was b0ad58bf6)
lukaszlenart
(struts) branch release/struts-6-8-x updated: build(deps): bump jackson.version from 2.21.2 to 2.21.3 (#1670)
lukaszlenart
(struts) branch dependabot/github_actions/github/codeql-action-4.35.2 deleted (was 7ece9133d)
lukaszlenart
(struts) branch main updated: build(deps): bump github/codeql-action from 4.35.1 to 4.35.2 (#1668)
lukaszlenart
(struts) branch dependabot/maven/main/com.fasterxml.jackson-jackson-bom-2.21.3 deleted (was f80d5477c)
lukaszlenart
(struts) branch main updated: WW-5624: Enforce @StrutsParameter on JSON/REST body deserialization (#1657)
lukaszlenart
(struts) branch main updated: fix(core): WW-5623 HTML-encode form action in PostbackResult to prevent XSS (#1653)
lukaszlenart
(struts) branch struts-6-9-0-RC deleted (was aeeaabfb9)
lukaszlenart
(struts) branch support/struts-6-x-x updated: Struts 6.9.0 (#1662)
lukaszlenart
(struts-intellij-plugin) tag v261.19027-nightly.2 created (now 11d5ad4)
github-bot
(struts-site) branch feature/eol-versions-page updated (6e0ee1858 -> 80b118fc5)
lukaszlenart
(struts-site) branch docs/releases-add-6.8.0-prior deleted (was 200f792da)
lukaszlenart
(struts-site) branch main updated: docs: add 6.8.0 to Prior Releases and document the dependency (#298)
lukaszlenart
(struts-site) branch docs/releases-add-6.8.0-prior created (now 200f792da)
lukaszlenart
(struts-site) 01/01: docs: add 6.8.0 to Prior Releases and document the dependency
lukaszlenart
(struts-site) branch docs/idea-plugin-button-only deleted (was 2f682b517)
lukaszlenart
(struts-site) branch main updated: docs: simplify IDEA plugin install to a single Marketplace button (#297)
lukaszlenart
(struts-site) branch docs/idea-plugin-button-only created (now 2f682b517)
lukaszlenart
(struts-site) branch main updated: docs: fix broken rendering of IDEA plugin Marketplace card (#296)
lukaszlenart
(struts-site) branch docs/idea-plugin-card-fix deleted (was 1302ee66a)
lukaszlenart
(struts-site) branch docs/idea-plugin-card-fix updated (48c38f51f -> 1302ee66a)
lukaszlenart
(struts-site) branch docs/idea-plugin-card-fix created (now 48c38f51f)
lukaszlenart
(struts-site) 01/01: docs: fix broken rendering of IDEA plugin Marketplace card
lukaszlenart
(struts-site) branch docs/idea-plugin-static-card deleted (was ccd921646)
lukaszlenart
(struts-site) branch main updated: docs: replace blocked Marketplace iframes with static card (#295)
lukaszlenart
(struts-site) branch docs/idea-plugin-static-card created (now ccd921646)
lukaszlenart
(struts-site) 01/01: docs: replace blocked Marketplace iframes with static card
lukaszlenart
(struts-site) branch main updated: docs: link IDEA plugin page to Marketplace and GitHub releases (#294)
lukaszlenart
(struts-site) branch docs/idea-plugin-marketplace deleted (was 87b58acd1)
lukaszlenart
(struts-site) branch docs/idea-plugin-marketplace created (now 87b58acd1)
lukaszlenart
(struts-site) 01/01: docs: link IDEA plugin page to Marketplace and GitHub releases
lukaszlenart
(struts-site) branch feature/eol-versions-page updated (364ec19aa -> 6e0ee1858)
lukaszlenart
(struts-intellij-plugin) branch dependabot/github_actions/JetBrains/qodana-action-2026.1.0 deleted (was caac2aa)
lukaszlenart
(struts-intellij-plugin) branch main updated: ci(deps): bump JetBrains/qodana-action from 2025.3.2 to 2026.1.0 (#84)
lukaszlenart
(struts-intellij-plugin) tag v261.19027-nightly.1 created (now 2a514e1)
github-bot
(struts) branch dependabot/maven/main/commons-io-commons-io-2.22.0 created (now 40214dfb1)
github-bot
(struts) branch dependabot/maven/release/struts-6-8-x/commons-io-commons-io-2.22.0 created (now 9f7aee48c)
github-bot
(struts) branch dependabot/maven/release/struts-6-8-x/jackson.version-2.21.3 created (now b0ad58bf6)
github-bot
(struts) branch dependabot/maven/main/com.fasterxml.jackson-jackson-bom-2.21.3 created (now f80d5477c)
github-bot
(struts-intellij-plugin) branch dependabot/github_actions/JetBrains/qodana-action-2026.1.0 created (now caac2aa)
github-bot
(struts-intellij-plugin) branch chore/bump-plugin-version-261.19027.1 deleted (was c99d311)
lukaszlenart
(struts-intellij-plugin) branch main updated: Bump pluginVersion to 261.19027.1 (#83)
lukaszlenart
(struts-intellij-plugin) branch main updated: ci(release): auto-bump pluginVersion after publish (#82)
lukaszlenart
(struts-intellij-plugin) branch ci/release-bump-plugin-version deleted (was 70cbb49)
lukaszlenart
(struts-intellij-plugin) branch chore/bump-plugin-version-261.19027.1 created (now c99d311)
lukaszlenart
(struts-intellij-plugin) branch ci/release-bump-plugin-version updated (ef5c62e -> 70cbb49)
lukaszlenart
(struts-intellij-plugin) branch changelog-update-261.19017.1 deleted (was bd353f0)
lukaszlenart
(struts-intellij-plugin) branch main updated: Changelog update - 261.19017.1 (#81)
lukaszlenart
(struts-intellij-plugin) branch ci/release-bump-plugin-version created (now ef5c62e)
lukaszlenart
(struts-intellij-plugin) 01/01: ci(release): auto-bump pluginVersion after publish
lukaszlenart
(struts-intellij-plugin) branch ci/release-skip-duplicate-upload deleted (was 272b672)
lukaszlenart
(struts-intellij-plugin) branch main updated: ci(release): skip duplicate asset upload in publish workflow (#80)
lukaszlenart
(struts-intellij-plugin) branch changelog-update-261.19017.1 created (now bd353f0)
lukaszlenart
(struts-intellij-plugin) 01/01: Changelog update - 261.19017.1
lukaszlenart
(struts-intellij-plugin) branch ci/release-skip-duplicate-upload created (now 272b672)
lukaszlenart
(struts-site) branch fix/remove-stale-maven-snapshot created (now 6353ac75c)
lukaszlenart
(struts-site) branch fix/remove-stale-maven-snapshot deleted (was 6353ac75c)
lukaszlenart
(struts-site) branch main updated: Adds announcement about Apache Struts 6.9.0 GA release (#292)
lukaszlenart
(struts-site) branch ann/struts-6.9.0 deleted (was a08ffc3f6)
lukaszlenart
(struts-site) branch ann/struts-6.9.0 updated (bbd3434d9 -> a08ffc3f6)
lukaszlenart
(struts-site) branch ann/struts-6.9.0 created (now bbd3434d9)
lukaszlenart
svn commit: r84122 - dev/struts/6.9.0 release/struts/6.9.0
lukaszlenart
(struts) branch dependabot/github_actions/github/codeql-action-4.35.2 created (now 7ece9133d)
github-bot
Earlier messages