-
Notifications
You must be signed in to change notification settings - Fork 21
chore: [DevOps] bump the production-minor-patch group across 1 directory with 9 updates #712
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
chore: [DevOps] bump the production-minor-patch group across 1 directory with 9 updates #712
Conversation
…ory with 9 updates Bumps the production-minor-patch group with 9 updates in the / directory: | Package | From | To | | --- | --- | --- | | [org.wiremock:wiremock](https://github.com/wiremock/wiremock) | `3.10.0` | `3.11.0` | | [commons-codec:commons-codec](https://github.com/apache/commons-codec) | `1.17.2` | `1.18.0` | | [com.sap.cloud.security:java-bom](https://github.com/SAP/cloud-security-xsuaa-integration) | `3.5.7` | `3.5.8` | | [io.vavr:vavr](https://github.com/vavr-io/vavr) | `0.10.5` | `0.10.6` | | [com.google.code.gson:gson](https://github.com/google/gson) | `2.11.0` | `2.12.1` | | [com.auth0:java-jwt](https://github.com/auth0/java-jwt) | `4.4.0` | `4.5.0` | | [org.apache.httpcomponents.client5:httpclient5](https://github.com/apache/httpcomponents-client) | `5.4.1` | `5.4.2` | | [org.checkerframework:checker-qual](https://github.com/typetools/checker-framework) | `3.48.4` | `3.49.0` | | [joda-time:joda-time](https://github.com/JodaOrg/joda-time) | `2.13.0` | `2.13.1` | Updates `org.wiremock:wiremock` from 3.10.0 to 3.11.0 - [Release notes](https://github.com/wiremock/wiremock/releases) - [Commits](wiremock/wiremock@3.10.0...3.11.0) Updates `commons-codec:commons-codec` from 1.17.2 to 1.18.0 - [Changelog](https://github.com/apache/commons-codec/blob/master/RELEASE-NOTES.txt) - [Commits](apache/commons-codec@rel/commons-codec-1.17.2...rel/commons-codec-1.18.0) Updates `com.sap.cloud.security:java-bom` from 3.5.7 to 3.5.8 - [Release notes](https://github.com/SAP/cloud-security-xsuaa-integration/releases) - [Changelog](https://github.com/SAP/cloud-security-services-integration-library/blob/main/CHANGELOG.md) - [Commits](SAP/cloud-security-services-integration-library@3.5.7...3.5.8) Updates `io.vavr:vavr` from 0.10.5 to 0.10.6 - [Release notes](https://github.com/vavr-io/vavr/releases) - [Commits](vavr-io/vavr@v0.10.5...v0.10.6) Updates `com.google.code.gson:gson` from 2.11.0 to 2.12.1 - [Release notes](https://github.com/google/gson/releases) - [Changelog](https://github.com/google/gson/blob/main/CHANGELOG.md) - [Commits](google/gson@gson-parent-2.11.0...gson-parent-2.12.1) Updates `com.auth0:java-jwt` from 4.4.0 to 4.5.0 - [Release notes](https://github.com/auth0/java-jwt/releases) - [Changelog](https://github.com/auth0/java-jwt/blob/master/CHANGELOG.md) - [Commits](auth0/java-jwt@4.4.0...4.5.0) Updates `org.apache.httpcomponents.client5:httpclient5` from 5.4.1 to 5.4.2 - [Changelog](https://github.com/apache/httpcomponents-client/blob/rel/v5.4.2/RELEASE_NOTES.txt) - [Commits](apache/httpcomponents-client@rel/v5.4.1...rel/v5.4.2) Updates `org.checkerframework:checker-qual` from 3.48.4 to 3.49.0 - [Release notes](https://github.com/typetools/checker-framework/releases) - [Changelog](https://github.com/typetools/checker-framework/blob/master/docs/CHANGELOG.md) - [Commits](typetools/checker-framework@checker-framework-3.48.4...checker-framework-3.49.0) Updates `joda-time:joda-time` from 2.13.0 to 2.13.1 - [Release notes](https://github.com/JodaOrg/joda-time/releases) - [Changelog](https://github.com/JodaOrg/joda-time/blob/main/RELEASE-NOTES.txt) - [Commits](JodaOrg/joda-time@v2.13.0...v2.13.1) --- updated-dependencies: - dependency-name: org.wiremock:wiremock dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-minor-patch - dependency-name: commons-codec:commons-codec dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-minor-patch - dependency-name: com.sap.cloud.security:java-bom dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-minor-patch - dependency-name: io.vavr:vavr dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-minor-patch - dependency-name: com.google.code.gson:gson dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-minor-patch - dependency-name: com.auth0:java-jwt dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-minor-patch - dependency-name: org.apache.httpcomponents.client5:httpclient5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-minor-patch - dependency-name: org.checkerframework:checker-qual dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-minor-patch - dependency-name: joda-time:joda-time dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-minor-patch ... Signed-off-by: dependabot[bot] <support@github.com>
dependency-bundles/bom/pom.xml
Outdated
| <httpcore.version>4.4.16</httpcore.version> | ||
| <httpcore5.version>5.3.3</httpcore5.version> | ||
| <httpclient5.version>5.4.1</httpclient5.version> | ||
| <httpclient5.version>5.4.2</httpclient5.version> |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Revert until discussed. Dependency update be handled separately.
Changelog:
Do not add Upgrade header if Connection header already present (the caller manually manages connection state).
| <httpclient5.version>5.4.2</httpclient5.version> | |
| <httpclient5.version>5.4.1</httpclient5.version> |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.

Bumps the production-minor-patch group with 9 updates in the / directory:
3.10.03.11.01.17.21.18.03.5.73.5.80.10.50.10.62.11.02.12.14.4.04.5.05.4.15.4.23.48.43.49.02.13.02.13.1Updates
org.wiremock:wiremockfrom 3.10.0 to 3.11.0Release notes
Sourced from org.wiremock:wiremock's releases.
Commits
dd8e739Fixed test broken by suppression of HTTPS upgrade by the Apache HTTP Clienta7d9ac8Bumped minor versionbd17065Merge pull request #2918 from ianprime0509/xml-default-instance63a3a12Update after-pattern.yaml to fix typo (#2949)437e3ecDisable problematic protocol update for httpclient 5.4 (#2951)c3f3319Bump jetty 12 version to12.0.16(#2947)9ccb1c8improve performance of EqualToXmlPattern. (#2944)f913265Make EqualToXmlPattern namespace aware by default. (#2945)6217b77Merge pull request #2943 from Ashish-CodeJourney/masterafe7de8Merge pull request #1 from Ashish-CodeJourney/Ashish-CodeJourney-patch-1Updates
commons-codec:commons-codecfrom 1.17.2 to 1.18.0Changelog
Sourced from commons-codec:commons-codec's changelog.
Commits
5f76abbUpdate contributing file from user feedbacka38de95Prepare for the next release candidate0689dc8Prepare for the next release candidate4098222Port from Doxia 1 to 2ebb29e9Make test fixture package private110a9f8Don't need to end a paragraph with an extra line break6444237Remove background color from site page9062af4Merge branch 'master' of963ee73Include more in the source assembly94b9c51Add a file extension to TODO fileUpdates
com.sap.cloud.security:java-bomfrom 3.5.7 to 3.5.8Release notes
Sourced from com.sap.cloud.security:java-bom's releases.
Changelog
Sourced from com.sap.cloud.security:java-bom's changelog.
Commits
31569aaSet release version to 3.5.8 (#1710)a94f7beReactor fix and wiremock downgrade (#1709)2293491Bump org.apache.httpcomponents.client5:httpclient5 from 5.4.1 to 5.4.2 (#1708)e64878eBump io.projectreactor:reactor-test from 3.7.1 to 3.7.2 (#1699)52f6023Bump org.assertj:assertj-core from 3.27.2 to 3.27.3 (#1703)d7bf44cBump spring.boot.version from 3.4.1 to 3.4.2 (#1705)e12bceaBump spring.core.version from 6.2.1 to 6.2.2 (#1701)93c7214Bump io.projectreactor:reactor-core from 3.7.1 to 3.7.2 (#1700)a86623dBump org.mockito:mockito-core from 5.14.2 to 5.15.2 (#1698)Updates
io.vavr:vavrfrom 0.10.5 to 0.10.6Release notes
Sourced from io.vavr:vavr's releases.
Commits
feeec95[maven-release-plugin] prepare release v0.10.6dcbaf35Update Copyright to 2025 (#2964)661d46aFix CheckedRunnableTest#shouldApplyAnUncheckedFunctionThatThrows (#2956)75250e3Remove outdated comment (#2957)9b25d02Use new 'vavrjava' ASCII art in README (#2920)c2008ccUse new 'vavrjava' ASCII art for 0.x versions as well (#2919)42a302cUse 'https://vavr.io' instead of 'http://vavr.io' (#2918)58bd285Bump org.codehaus.mojo:exec-maven-plugin from 3.4.1 to 3.5.0 (#2917)2267f62Bump org.junit.jupiter:junit-jupiter from 5.11.2 to 5.11.3 (#2916)d5a86e4Replace synchronization by Lock in FutureImpl (#2912)Updates
com.google.code.gson:gsonfrom 2.11.0 to 2.12.1Release notes
Sourced from com.google.code.gson:gson's releases.
Commits
29e3d1d[maven-release-plugin] prepare release gson-parent-2.12.1be456cfMake the import of com.google.errorprone optional (#2795)b2e26faBump the github-actions group with 3 updates (#2785)10bdd6dSimplify collection type adapters slightly. (#2791)ab9c54f[maven-release-plugin] prepare for next development iterationaaf7a12[maven-release-plugin] prepare release gson-parent-2.12.0a2b1c3cAllow registering adapters forJsonElementagain (#2789)e5dce84Bump the maven group with 8 updates (#2784)84e5f16Bump the maven group with 7 updates (#2777)9f3e577Bump the github-actions group with 2 updates (#2778)Updates
com.auth0:java-jwtfrom 4.4.0 to 4.5.0Release notes
Sourced from com.auth0:java-jwt's releases.
Changelog
Sourced from com.auth0:java-jwt's changelog.
Commits
ee7332bRelease 4.5.0 (#716)051e1c3Release 4.5.0293a77bModified WorkFlow (#715)05bc002added JAVA_HOME38ff89eRelease 4.5.0 (#714)ca4f842Release 4.5.051be7dfAdded JAVA_HOME (#713)dcbc560added JAVA_HOME path2b0b2baUpgraded Plugin (#711)6e76728upgraded pluginUpdates
org.apache.httpcomponents.client5:httpclient5from 5.4.1 to 5.4.2Changelog
Sourced from org.apache.httpcomponents.client5:httpclient5's changelog.
Commits
34f1b02HttpClient 5.4.2 release2145d2cUpdated release notes for HttpClient 5.4.2 release7e48abbUpgraded HttpCore to version 5.3.31119d49Disabled a test case that fails intermittently with GitHub Actions, pending r...9433bcaImproved internal state representation of the internal async execution runtim...7f56b8eHTTPCLIENT-2357, regression: Classic HttpClient fails to release connect in c...8958b36HTTPCLIENT-2355, regression: Reset protocol version in the execution context ...f7f8069Upgraded HttpCore to version 5.3.2d048550Fix HTTPCLIENT-2354 by updating ResponseCachingPolicy to allow caching of res...5ab09eaDo not addUpgradeheader ifConnectionheader already present (the calle...Updates
org.checkerframework:checker-qualfrom 3.48.4 to 3.49.0Release notes
Sourced from org.checkerframework:checker-qual's releases.
Changelog
Sourced from org.checkerframework:checker-qual's changelog.
Commits
8ae32b8new release 3.49.08521889Prep for release.637c79aImprove diagnostics1f69ec2Update dependency gradle to v8.12.1 (#6937)64e84dfFix Gradle deprecation warningsb7aea1eUpdate to Gradle 8.12b48f3b4Fix favicon problem. (#6964)de51e9fUse built in file tools rather than exec in Gradle code3531816Move code that adds favicon to separate task441b527Remove exec from settings in Gradle codeUpdates
joda-time:joda-timefrom 2.13.0 to 2.13.1Release notes
Sourced from joda-time:joda-time's releases.
Commits
935d44eRelease v2.13.1f42d2d0Update time zone data to 2025agtz (#805)3fcd96cUpdate CI fuzz version8430877Add workflow dispatch2ce9b4cUpdate changes.xmlDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions