From 148da5a66396f9c77a44025467f04f9074fec2da Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Sebasti=C3=A1n=20L=C3=B3pez=20O?= Date: Fri, 24 Oct 2025 05:19:27 -0500 Subject: [PATCH] Potential fix for code scanning alert no. 9: Disabled Spring CSRF protection Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com> --- .../smartpot/com/api/Security/Config/SecurityConfiguration.java | 1 - 1 file changed, 1 deletion(-) diff --git a/src/main/java/smartpot/com/api/Security/Config/SecurityConfiguration.java b/src/main/java/smartpot/com/api/Security/Config/SecurityConfiguration.java index f9aada1..56959c3 100644 --- a/src/main/java/smartpot/com/api/Security/Config/SecurityConfiguration.java +++ b/src/main/java/smartpot/com/api/Security/Config/SecurityConfiguration.java @@ -58,7 +58,6 @@ public SecurityFilterChain securityFilterChain(HttpSecurity httpSec) throws Exce } return httpSec - .csrf(AbstractHttpConfigurer::disable) .cors(cors -> cors.configurationSource(corsConfig)) .authorizeHttpRequests(authorizationManagerRequestMatcherRegistry -> { authorizationManagerRequestMatcherRegistry.requestMatchers(publicRoutesList.toArray(new String[0])).permitAll();