-
-
Notifications
You must be signed in to change notification settings - Fork 178
Pull requests: OpenIdentityPlatform/OpenAM
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
Run the CodeQL security-and-quality suite
ci
CI, GitHub Actions, or build pipeline
security
Security fix or hardening (CVE, GHSA, XSS/CSRF/SSRF)
#1140
opened Sep 18, 2026 by
vharseko
Member
Loading…
Read SAML parameters from their binding in the .NET Fedlet; run e2e scripts without a shell
dotnet
Changes to the .NET Fedlet (C# service-provider library and sample)
javascript
Pull requests that update Javascript code
saml
SAML / SAML2 federation
security
Security fix or hardening (CVE, GHSA, XSS/CSRF/SSRF)
tests
Test suite: coverage, fixtures, or test infrastructure
#1139
opened Sep 18, 2026 by
vharseko
Member
Loading…
Keep stack traces and exception messages out of HTTP responses
java
Pull requests that update java code
security
Security fix or hardening (CVE, GHSA, XSS/CSRF/SSRF)
tests
Test suite: coverage, fixtures, or test infrastructure
#1138
opened Sep 18, 2026 by
vharseko
Member
Loading…
Keep a logged value from forging a debug record
java
Pull requests that update java code
security
Security fix or hardening (CVE, GHSA, XSS/CSRF/SSRF)
tests
Test suite: coverage, fixtures, or test infrastructure
#1137
opened Sep 18, 2026 by
vharseko
Member
Loading…
Set the Secure and HttpOnly cookie flags from creation
java
Pull requests that update java code
security
Security fix or hardening (CVE, GHSA, XSS/CSRF/SSRF)
tests
Test suite: coverage, fixtures, or test infrastructure
#1136
opened Sep 18, 2026 by
vharseko
Member
Loading…
Check the SAML 1.x TARGET and the WS-Federation wreply against the realm's valid goto URLs
java
Pull requests that update java code
saml
SAML / SAML2 federation
security
Security fix or hardening (CVE, GHSA, XSS/CSRF/SSRF)
tests
Test suite: coverage, fixtures, or test infrastructure
#1135
opened Sep 18, 2026 by
vharseko
Member
Loading…
Close the cheap CodeQL findings: pinned actions, token scopes, TLS identity, private temp files
ci
CI, GitHub Actions, or build pipeline
dependencies
Pull requests that update a dependency file
java
Pull requests that update java code
security
Security fix or hardening (CVE, GHSA, XSS/CSRF/SSRF)
tests
Test suite: coverage, fixtures, or test infrastructure
#1134
opened Sep 18, 2026 by
vharseko
Member
Loading…
Run the security filters on every dispatch type
java
Pull requests that update java code
security
Security fix or hardening (CVE, GHSA, XSS/CSRF/SSRF)
tests
Test suite: coverage, fixtures, or test infrastructure
#1133
opened Sep 18, 2026 by
vharseko
Member
Loading…
Fix Device Code session propagation and OIDC claims
#1108
opened Aug 15, 2026 by
dairoca90
Contributor
Loading…
Update org.openidentityplatform.opendj to 5.2.0-SNAPSHOT
#1102
opened Aug 6, 2026 by
vharseko
Member
Loading…
Migrate configurator/upgrade wizard from Apache Click to Jakarta Servlets + FreeMarker
dependencies
Pull requests that update a dependency file
java
Pull requests that update java code
needs testing
refactoring
Code cleanup, refactor, dead-code or dependency removal
tests
Test suite: coverage, fixtures, or test infrastructure
ui
XUI / admin console / end-user UI
Enable HttpOnly session cookies by default
help wanted
needs testing
security
Security fix or hardening (CVE, GHSA, XSS/CSRF/SSRF)
JAXB3 Migration
help wanted
needs testing
refactoring
Code cleanup, refactor, dead-code or dependency removal
ProTip!
Type g i on any issue or pull request to go back to the issue listing page.