-
Notifications
You must be signed in to change notification settings - Fork 6k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Add serialize/deserialize PublicKeyCredentialCreationOptions
support with ObjectMapper
#16434
Labels
Comments
rwinch
added
status: waiting-for-triage
An issue we've not yet triaged
type: enhancement
A general enhancement
labels
Jan 16, 2025
I will give it a go. |
justincranford
added a commit
to justincranford/spring-security
that referenced
this issue
Jan 19, 2025
justincranford
added a commit
to justincranford/spring-security
that referenced
this issue
Jan 20, 2025
…icKeyCredentialRequestOptions support with ObjectMapper spring-projectsgh-16433 PublicKeyCredentialRequestOptions spring-projectsgh-16434 PublicKeyCredentialCreationOptions
justincranford
added a commit
to justincranford/spring-security
that referenced
this issue
Jan 20, 2025
…icKeyCredentialRequestOptions support with ObjectMapper spring-projectsgh-16433 PublicKeyCredentialRequestOptions spring-projectsgh-16434 PublicKeyCredentialCreationOptions
justincranford
added a commit
to justincranford/spring-security
that referenced
this issue
Jan 25, 2025
…icKeyCredentialRequestOptions support with ObjectMapper Signed-off-by: Justin Cranford <[email protected]> spring-projectsgh-16433 PublicKeyCredentialRequestOptions spring-projectsgh-16434 PublicKeyCredentialCreationOptions
justincranford
added a commit
to justincranford/spring-security
that referenced
this issue
Jan 25, 2025
…icKeyCredentialRequestOptions support with ObjectMapper Signed-off-by: Justin Cranford <[email protected]> spring-projectsgh-16433 PublicKeyCredentialRequestOptions spring-projectsgh-16434 PublicKeyCredentialCreationOptions
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
Spring Security should add support for serialize/deserialize
PublicKeyCredentialCreationOptions
withObjectMapper
so it is easier to persist with Spring Session.NOTE:
WebauthnJackson2Module
is used for reading/writing to the HTTP Response which includes untrusted inputs. This means that it cannot enable default-typing otherwise it could create deserialization vulnerabilities.The text was updated successfully, but these errors were encountered: