Skip to content

Allow nullable results from method security filtering - #19782

Open
zemiles wants to merge 1 commit into
spring-projects:mainfrom
zemiles:main
Open

zemiles wants to merge 1 commit into
spring-projects:mainfrom
zemiles:main

Conversation

@zemiles

@zemiles zemiles commented Sep 24, 2026

Copy link
Copy Markdown

Fixes #19781.

Declare nullable filter results in MethodSecurityExpressionHandler and its
default implementation so custom Kotlin handlers can return null.

Update Kotlin tests for the nullable contract and add a regression test.

Tests: ./gradlew :spring-security-core:test --tests org.springframework.security.access.expression.method.DefaultMethodSecurityExpressionHandlerKotlinTests

Signed-off-by: 안승현 <abeb3@naver.com>
@spring-projects-issues spring-projects-issues added the status: waiting-for-triage An issue we've not yet triaged label Sep 24, 2026

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

status: waiting-for-triage An issue we've not yet triaged

Projects

None yet

Development

Successfully merging this pull request may close these issues.

MethodSecurityExpressionHandler doesn't allow null to be returned when filtering

2 participants