{"id":99,"name":"com.google.guava:guava","ecosystem":"maven","repository_url":"https://github.com/google/guava","issues_count":1948,"created_at":"2025-06-06T15:01:32.722Z","updated_at":"2025-06-06T15:01:32.722Z","purl":"pkg:maven/com.google.guava:guava","metadata":{"id":5081167,"name":"com.google.guava:guava","ecosystem":"maven","description":"Guava is a suite of core and expanded libraries that include utility classes, Google's collections, I/O classes, and much more.","homepage":"https://github.com/google/guava","licenses":"Apache License, Version 2.0","normalized_licenses":["Apache-2.0"],"repository_url":"https://github.com/google/guava","keywords_array":[],"namespace":"com.google.guava","versions_count":150,"first_release_published_at":"2010-04-26T13:06:11.000Z","latest_release_published_at":"2014-02-03T22:45:28.000Z","latest_release_number":"16.0.1","last_synced_at":"2025-06-05T18:01:30.559Z","created_at":"2022-07-28T20:05:33.665Z","updated_at":"2025-06-05T18:01:30.560Z","registry_url":"https://central.sonatype.com/artifact/com.google.guava/guava/","install_command":null,"documentation_url":"https://appdoc.app/artifact/com.google.guava/guava/","metadata":{},"repo_metadata":{"uuid":"20300177","full_name":"google/guava","owner":"google","description":"Google core libraries for Java","archived":false,"fork":false,"pushed_at":"2023-11-21T22:04:24.000Z","size":447413,"stargazers_count":48633,"open_issues_count":727,"forks_count":10889,"subscribers_count":2403,"default_branch":"master","last_synced_at":"2023-11-23T12:52:30.042Z","etag":null,"topics":["guava","java"],"latest_commit_sha":null,"homepage":"","language":"Java","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"apache-2.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/google.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":"CONTRIBUTING.md","funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null}},"created_at":"2014-05-29T16:23:17.000Z","updated_at":"2023-11-24T16:32:52.514Z","dependencies_parsed_at":"2023-11-24T16:43:04.948Z","dependency_job_id":null,"html_url":"https://github.com/google/guava","commit_stats":{"total_commits":6027,"total_committers":441,"mean_commits":"13.666666666666666","dds":0.7187655550024887,"last_synced_commit":"1b9849143b4a5e555ff40663340aaf656390a430"},"previous_names":[],"tags_count":103,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/google","download_url":"https://codeload.github.com/google/guava/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":173525754,"owners_count":9985227,"icon_url":"https://github.com/github.png","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"},"owner_record":{"login":"google","name":"Google","uuid":"1342004","kind":"organization","description":"Google ❤️ Open Source","email":"opensource@google.com","website":"https://opensource.google/","location":null,"twitter":"GoogleOSS","company":null,"icon_url":"https://avatars.githubusercontent.com/u/1342004?v=4","repositories_count":2445,"last_synced_at":"2023-04-09T05:37:45.829Z","metadata":{"has_sponsors_listing":false},"html_url":"https://github.com/google","created_at":"2022-11-02T16:20:58.973Z","updated_at":"2023-04-09T05:37:58.691Z","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/google","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/google/repositories"},"tags":[{"name":"failureaccess-v1.0.2","sha":"76b3b3f16dd95766f4fae27caa61699465cffc78","kind":"commit","published_at":"2023-10-17T02:24:23.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/failureaccess-v1.0.2","html_url":"https://github.com/google/guava/releases/tag/failureaccess-v1.0.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/failureaccess-v1.0.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/failureaccess-v1.0.2/manifests"},{"name":"v32.1.3","sha":"c1088508ddc78bd60d096d2cc3ceef4a82ec909d","kind":"commit","published_at":"2023-10-10T20:34:53.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v32.1.3","html_url":"https://github.com/google/guava/releases/tag/v32.1.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v32.1.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v32.1.3/manifests"},{"name":"v32.1.2","sha":"db74bd2fdac443223d45e6fc5c66548542be1081","kind":"commit","published_at":"2023-07-31T21:01:20.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v32.1.2","html_url":"https://github.com/google/guava/releases/tag/v32.1.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v32.1.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v32.1.2/manifests"},{"name":"v32.1.1","sha":"427223e9f94406013f1bc77fa0bd1231a1475645","kind":"commit","published_at":"2023-06-30T14:23:44.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v32.1.1","html_url":"https://github.com/google/guava/releases/tag/v32.1.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v32.1.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v32.1.1/manifests"},{"name":"v32.1.0","sha":"53bb66554b195ab3aec3da285f1f140b1abae44d","kind":"commit","published_at":"2023-06-29T18:37:59.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v32.1.0","html_url":"https://github.com/google/guava/releases/tag/v32.1.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v32.1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v32.1.0/manifests"},{"name":"v32.0.1","sha":"8f6c43d803901e7d8bd9ca16a3a049969ddc35e4","kind":"commit","published_at":"2023-06-08T22:27:10.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v32.0.1","html_url":"https://github.com/google/guava/releases/tag/v32.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v32.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v32.0.1/manifests"},{"name":"v32.0.0","sha":"6b1f97ced922d48f071153ad9e631d06383033a4","kind":"commit","published_at":"2023-05-26T22:14:55.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v32.0.0","html_url":"https://github.com/google/guava/releases/tag/v32.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v32.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v32.0.0/manifests"},{"name":"v31.1","sha":"0a17f4a429323589396c38d8ce75ca058faa6c64","kind":"commit","published_at":"2022-02-28T21:06:35.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v31.1","html_url":"https://github.com/google/guava/releases/tag/v31.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v31.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v31.1/manifests"},{"name":"v31.0.1","sha":"ba824dfb4c4f64d8c3b8d07e2042bf1ecdd53e28","kind":"commit","published_at":"2021-09-27T19:06:33.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v31.0.1","html_url":"https://github.com/google/guava/releases/tag/v31.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v31.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v31.0.1/manifests"},{"name":"v31.0","sha":"6edcfc0a649e4031f4a48ea7f41aa0cb4801db2b","kind":"commit","published_at":"2021-09-24T20:15:46.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v31.0","html_url":"https://github.com/google/guava/releases/tag/v31.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v31.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v31.0/manifests"},{"name":"v30.1.1","sha":"43a53bc0328c7efd1da152f3b56b1fd241c88d4c","kind":"commit","published_at":"2021-03-19T15:29:15.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v30.1.1","html_url":"https://github.com/google/guava/releases/tag/v30.1.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v30.1.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v30.1.1/manifests"},{"name":"v30.1","sha":"eda0b7f30a1919b7a56136aa1f37700dcc0ca9bd","kind":"commit","published_at":"2020-12-14T15:52:01.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v30.1","html_url":"https://github.com/google/guava/releases/tag/v30.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v30.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v30.1/manifests"},{"name":"v30.0","sha":"f75cd01d3afe83623bb8bd1a8a816ea5245bf285","kind":"commit","published_at":"2020-10-16T20:27:24.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v30.0","html_url":"https://github.com/google/guava/releases/tag/v30.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v30.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v30.0/manifests"},{"name":"v29.0","sha":"2d655e59ee0af2a0cabf877d5f85ababf813ff8e","kind":"commit","published_at":"2020-04-13T21:13:10.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v29.0","html_url":"https://github.com/google/guava/releases/tag/v29.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v29.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v29.0/manifests"},{"name":"v28.2","sha":"a1b3c06876803a0b0e5d2f16708e1328da1bac09","kind":"commit","published_at":"2019-12-27T03:06:54.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v28.2","html_url":"https://github.com/google/guava/releases/tag/v28.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v28.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v28.2/manifests"},{"name":"v28.1","sha":"e30495f4e09e2511b4f2bb95d2b9e1b262c4215d","kind":"commit","published_at":"2019-08-28T20:42:58.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v28.1","html_url":"https://github.com/google/guava/releases/tag/v28.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v28.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v28.1/manifests"},{"name":"v28.0","sha":"9957203c956016b485696ce9d1a4d60f1019c5fd","kind":"commit","published_at":"2019-06-11T23:05:47.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v28.0","html_url":"https://github.com/google/guava/releases/tag/v28.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v28.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v28.0/manifests"},{"name":"v27.1","sha":"b34c2da9e5bbf8216a31c6794619689053210f16","kind":"commit","published_at":"2019-03-08T16:10:10.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v27.1","html_url":"https://github.com/google/guava/releases/tag/v27.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v27.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v27.1/manifests"},{"name":"v27.0.1","sha":"777f0f939dda3feb36263315da5bc39516a076a1","kind":"commit","published_at":"2018-11-19T19:00:17.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v27.0.1","html_url":"https://github.com/google/guava/releases/tag/v27.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v27.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v27.0.1/manifests"},{"name":"failureaccess-v1.0.1","sha":"b8d5ecd40b9cfbd9cafc08bf50bd2382369812e9","kind":"commit","published_at":"2018-11-16T16:07:24.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/failureaccess-v1.0.1","html_url":"https://github.com/google/guava/releases/tag/failureaccess-v1.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/failureaccess-v1.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/failureaccess-v1.0.1/manifests"},{"name":"v27.0","sha":"a35bfd9ea855539354b783ee74839e384f7af98a","kind":"commit","published_at":"2018-10-18T18:07:14.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v27.0","html_url":"https://github.com/google/guava/releases/tag/v27.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v27.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v27.0/manifests"},{"name":"released-all-futures","sha":"b62d52926b904a8def90fd427acad53d79fa0e9f","kind":"commit","published_at":"2018-09-12T21:42:09.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/released-all-futures","html_url":"https://github.com/google/guava/releases/tag/released-all-futures","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/released-all-futures","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/released-all-futures/manifests"},{"name":"v26.0","sha":"bbf9295088d668c06e573cea03f01375985c1814","kind":"commit","published_at":"2018-08-01T21:39:54.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v26.0","html_url":"https://github.com/google/guava/releases/tag/v26.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v26.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v26.0/manifests"},{"name":"v23.6.1","sha":"5a5c62b533b65c32b5d4cf6b796657486709dbbe","kind":"commit","published_at":"2018-05-29T14:42:12.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v23.6.1","html_url":"https://github.com/google/guava/releases/tag/v23.6.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.6.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.6.1/manifests"},{"name":"v25.1","sha":"b28b5850d11b948a5b0f9240894636e0b5bec22a","kind":"commit","published_at":"2018-05-23T17:42:57.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v25.1","html_url":"https://github.com/google/guava/releases/tag/v25.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v25.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v25.1/manifests"},{"name":"v24.1.1","sha":"49fad5af840b2a28dd0dc24ecfd58b4baa8d67bc","kind":"commit","published_at":"2018-04-26T02:31:24.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v24.1.1","html_url":"https://github.com/google/guava/releases/tag/v24.1.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v24.1.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v24.1.1/manifests"},{"name":"v25.0","sha":"0819c57c91b3ba2695a792b828ae239258681a3e","kind":"commit","published_at":"2018-04-25T22:12:31.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v25.0","html_url":"https://github.com/google/guava/releases/tag/v25.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v25.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v25.0/manifests"},{"name":"v24.1","sha":"4360cdbb3065c743d6e64e0a5ed5e967682e2086","kind":"commit","published_at":"2018-03-14T21:55:35.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v24.1","html_url":"https://github.com/google/guava/releases/tag/v24.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v24.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v24.1/manifests"},{"name":"v24.0","sha":"cebf66be35cceb2c04990805f127506b2197fe33","kind":"commit","published_at":"2018-02-01T20:16:14.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v24.0","html_url":"https://github.com/google/guava/releases/tag/v24.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v24.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v24.0/manifests"},{"name":"v23.6","sha":"a763d18e40634908d7d138899c85f0458202ed3a","kind":"commit","published_at":"2017-12-21T00:52:22.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v23.6","html_url":"https://github.com/google/guava/releases/tag/v23.6","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.6","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.6/manifests"},{"name":"v23.5","sha":"538d60aed09e945f59077770686df9cbd4e0048d","kind":"commit","published_at":"2017-11-22T20:20:42.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v23.5","html_url":"https://github.com/google/guava/releases/tag/v23.5","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.5","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.5/manifests"},{"name":"v23.4","sha":"b9bfab0366a89922a72cff8e9ae41f94a4132b43","kind":"commit","published_at":"2017-11-09T17:21:58.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v23.4","html_url":"https://github.com/google/guava/releases/tag/v23.4","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.4","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.4/manifests"},{"name":"v23.3","sha":"a39d0a17e3275120e29e38aff7ba1a5516857f84","kind":"commit","published_at":"2017-10-26T19:54:19.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v23.3","html_url":"https://github.com/google/guava/releases/tag/v23.3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.3/manifests"},{"name":"v23.2","sha":"738473319bad6485a1027fcfd6bb63f09a89e054","kind":"commit","published_at":"2017-10-11T22:41:29.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v23.2","html_url":"https://github.com/google/guava/releases/tag/v23.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.2/manifests"},{"name":"v23.1","sha":"2cb235929ce7ae9284482be7572f364bc4bc32e1","kind":"commit","published_at":"2017-09-27T19:34:46.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v23.1","html_url":"https://github.com/google/guava/releases/tag/v23.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.1/manifests"},{"name":"v23.0","sha":"b48cdeb618388a7b1d1c782e1ce2cc60b4f4efca","kind":"commit","published_at":"2017-08-04T20:30:56.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v23.0","html_url":"https://github.com/google/guava/releases/tag/v23.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.0/manifests"},{"name":"v23.0-rc1","sha":"6dae21fe0e3c77f1cf1e92653134cdd4a05742fc","kind":"commit","published_at":"2017-07-24T20:02:50.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v23.0-rc1","html_url":"https://github.com/google/guava/releases/tag/v23.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v23.0-rc1/manifests"},{"name":"v22.0","sha":"7bbdb221feb446cbd38202c133818bc383c413ae","kind":"commit","published_at":"2017-05-22T18:46:19.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v22.0","html_url":"https://github.com/google/guava/releases/tag/v22.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v22.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v22.0/manifests"},{"name":"v22.0-rc1","sha":"4c70a77f1673d493758bc9b9507e3b6d111e9491","kind":"commit","published_at":"2017-05-02T21:06:51.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v22.0-rc1","html_url":"https://github.com/google/guava/releases/tag/v22.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v22.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v22.0-rc1/manifests"},{"name":"v21.0","sha":"0f025e5d5d39a5d1ab709917f725d48a8464df50","kind":"commit","published_at":"2017-01-12T19:09:51.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v21.0","html_url":"https://github.com/google/guava/releases/tag/v21.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v21.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v21.0/manifests"},{"name":"v21.0-rc2","sha":"cef6bdc11c67b01ebca34b3a83e293add2733f24","kind":"commit","published_at":"2017-01-03T21:34:20.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v21.0-rc2","html_url":"https://github.com/google/guava/releases/tag/v21.0-rc2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v21.0-rc2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v21.0-rc2/manifests"},{"name":"v21.0-rc1","sha":"c963e69c9cbea48eb221b7d5f915f5494875bf30","kind":"commit","published_at":"2016-12-19T17:47:37.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v21.0-rc1","html_url":"https://github.com/google/guava/releases/tag/v21.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v21.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v21.0-rc1/manifests"},{"name":"v20.0","sha":"65f6b4f4b132a051616403bcf74e4034a19d92a1","kind":"commit","published_at":"2016-10-28T20:30:44.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v20.0","html_url":"https://github.com/google/guava/releases/tag/v20.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v20.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v20.0/manifests"},{"name":"v20.0-rc1","sha":"32130d5762f306641150ecd2325bb510036b14ff","kind":"commit","published_at":"2016-10-04T20:21:56.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v20.0-rc1","html_url":"https://github.com/google/guava/releases/tag/v20.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v20.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v20.0-rc1/manifests"},{"name":"v19.0","sha":"daa84b68f31898f67a51207e193ee2ddabb088bf","kind":"commit","published_at":"2015-12-09T20:56:41.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v19.0","html_url":"https://github.com/google/guava/releases/tag/v19.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v19.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v19.0/manifests"},{"name":"v19.0-rc3","sha":"8d4cf0a55f703d31c7e5d4680094b1141dc5ee68","kind":"commit","published_at":"2015-12-01T20:12:45.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v19.0-rc3","html_url":"https://github.com/google/guava/releases/tag/v19.0-rc3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v19.0-rc3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v19.0-rc3/manifests"},{"name":"v19.0-rc2","sha":"07326071e771c9244123791f00b848cc4f44fd9f","kind":"commit","published_at":"2015-09-11T20:34:06.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v19.0-rc2","html_url":"https://github.com/google/guava/releases/tag/v19.0-rc2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v19.0-rc2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v19.0-rc2/manifests"},{"name":"v19.0-rc1","sha":"46d6b3cf6b814720b1cae280ac53d27c932d2bde","kind":"commit","published_at":"2015-07-23T19:56:58.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v19.0-rc1","html_url":"https://github.com/google/guava/releases/tag/v19.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v19.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v19.0-rc1/manifests"},{"name":"jdk5-backport-v17.0-compatibility","sha":"96d2f8d1b90f82d89053cd0c151054671d1218db","kind":"commit","published_at":"2015-02-12T18:40:16.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/jdk5-backport-v17.0-compatibility","html_url":"https://github.com/google/guava/releases/tag/jdk5-backport-v17.0-compatibility","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-v17.0-compatibility","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-v17.0-compatibility/manifests"},{"name":"release","sha":"798803f026bb9517bcf4e0e9ab2d2e0345023182","kind":"commit","published_at":"2014-08-25T18:39:22.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/release","html_url":"https://github.com/google/guava/releases/tag/release","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/release","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/release/manifests"},{"name":"v18.0","sha":"798803f026bb9517bcf4e0e9ab2d2e0345023182","kind":"commit","published_at":"2014-08-25T18:39:22.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v18.0","html_url":"https://github.com/google/guava/releases/tag/v18.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v18.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v18.0/manifests"},{"name":"v18.0-rc2","sha":"f294d1e9c59b51e7372a1ce064aefbecbc562498","kind":"commit","published_at":"2014-08-18T19:30:02.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v18.0-rc2","html_url":"https://github.com/google/guava/releases/tag/v18.0-rc2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v18.0-rc2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v18.0-rc2/manifests"},{"name":"v18.0-rc1","sha":"652d361ff64b539581f93740d0d1c5793c2ef576","kind":"commit","published_at":"2014-08-05T18:38:04.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v18.0-rc1","html_url":"https://github.com/google/guava/releases/tag/v18.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v18.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v18.0-rc1/manifests"},{"name":"jdk5-backport-v17.0-post","sha":"79a6e1c92664bd384d9f08c41fcbd6bca62b3d4a","kind":"commit","published_at":"2014-05-08T16:01:38.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/jdk5-backport-v17.0-post","html_url":"https://github.com/google/guava/releases/tag/jdk5-backport-v17.0-post","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-v17.0-post","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-v17.0-post/manifests"},{"name":"jdk5-backport-release","sha":"f31c0f31210fbe756f40ee7b6301de3bdecf4731","kind":"commit","published_at":"2014-04-22T21:00:23.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/jdk5-backport-release","html_url":"https://github.com/google/guava/releases/tag/jdk5-backport-release","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-release","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-release/manifests"},{"name":"jdk5-backport-v17.0","sha":"f31c0f31210fbe756f40ee7b6301de3bdecf4731","kind":"commit","published_at":"2014-04-22T21:00:23.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/jdk5-backport-v17.0","html_url":"https://github.com/google/guava/releases/tag/jdk5-backport-v17.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-v17.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-v17.0/manifests"},{"name":"v17.0","sha":"904234dc2f365314c636d29385780faf72db2477","kind":"commit","published_at":"2014-04-22T19:59:22.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v17.0","html_url":"https://github.com/google/guava/releases/tag/v17.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v17.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v17.0/manifests"},{"name":"jdk5-backport-v17.0-rc2","sha":"b67a30412ffc4ec2ae582ab98db385d7fa37e13f","kind":"commit","published_at":"2014-04-10T20:55:34.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/jdk5-backport-v17.0-rc2","html_url":"https://github.com/google/guava/releases/tag/jdk5-backport-v17.0-rc2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-v17.0-rc2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-v17.0-rc2/manifests"},{"name":"v17.0-rc2","sha":"ff75ff6535d4ba6dc0e7a717e178c8408c43adca","kind":"commit","published_at":"2014-04-10T20:30:16.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v17.0-rc2","html_url":"https://github.com/google/guava/releases/tag/v17.0-rc2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v17.0-rc2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v17.0-rc2/manifests"},{"name":"jdk5-backport-v17.0-rc1","sha":"a686287d12b1a7fe47458ffd876194499cf96d56","kind":"commit","published_at":"2014-04-08T20:42:34.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/jdk5-backport-v17.0-rc1","html_url":"https://github.com/google/guava/releases/tag/jdk5-backport-v17.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-v17.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-v17.0-rc1/manifests"},{"name":"v17.0-rc1","sha":"305f7b5b9f2746ffafcfc16aa12e16fdbd136e72","kind":"commit","published_at":"2014-04-08T19:09:49.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v17.0-rc1","html_url":"https://github.com/google/guava/releases/tag/v17.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v17.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v17.0-rc1/manifests"},{"name":"jdk5-backport-v16.0","sha":"794750f2d7a00c559b60a0d52addaac3a9e0f069","kind":"commit","published_at":"2014-02-10T21:59:54.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/jdk5-backport-v16.0","html_url":"https://github.com/google/guava/releases/tag/jdk5-backport-v16.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-v16.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-v16.0/manifests"},{"name":"v16.0.1","sha":"0ba7ccf36f5384a321cb78d62375bf7574e7bc24","kind":"commit","published_at":"2014-02-03T22:42:39.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v16.0.1","html_url":"https://github.com/google/guava/releases/tag/v16.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v16.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v16.0.1/manifests"},{"name":"jdk5-backport-v16.0-rc1","sha":"c77a9a527c8cbf6ea4627dee6951333c40a0daf8","kind":"commit","published_at":"2014-01-31T20:06:06.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/jdk5-backport-v16.0-rc1","html_url":"https://github.com/google/guava/releases/tag/jdk5-backport-v16.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-v16.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-v16.0-rc1/manifests"},{"name":"v16.0","sha":"2537d1ed4795f8fad737a7bf6d6f93fbdfa28e54","kind":"commit","published_at":"2014-01-17T21:23:13.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v16.0","html_url":"https://github.com/google/guava/releases/tag/v16.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v16.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v16.0/manifests"},{"name":"jdk5-backport-base","sha":"e159902e2da1602f01a59a6f727efd0d38b9a919","kind":"commit","published_at":"2014-01-10T22:44:56.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/jdk5-backport-base","html_url":"https://github.com/google/guava/releases/tag/jdk5-backport-base","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-base","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-base/manifests"},{"name":"v16.0-rc1","sha":"55c550939dcbdf948f96152cadd1b7a018ddb7cf","kind":"commit","published_at":"2013-12-19T22:56:51.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v16.0-rc1","html_url":"https://github.com/google/guava/releases/tag/v16.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v16.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v16.0-rc1/manifests"},{"name":"jdk5-backport-branch-point","sha":"00caedba5f5f1a16be7b7b63fb6d833c8ea750e9","kind":"commit","published_at":"2013-12-19T22:39:32.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/jdk5-backport-branch-point","html_url":"https://github.com/google/guava/releases/tag/jdk5-backport-branch-point","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-branch-point","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/jdk5-backport-branch-point/manifests"},{"name":"v15.0-cdi1.0","sha":"e6c06b006e143f741bc8b8e8871d8df1d71ed470","kind":"commit","published_at":"2013-10-28T15:00:43.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v15.0-cdi1.0","html_url":"https://github.com/google/guava/releases/tag/v15.0-cdi1.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v15.0-cdi1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v15.0-cdi1.0/manifests"},{"name":"v15.0","sha":"7ce15119ae3b8ea71bdfd43bd6a0b96f851187d0","kind":"commit","published_at":"2013-09-06T19:34:09.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v15.0","html_url":"https://github.com/google/guava/releases/tag/v15.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v15.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v15.0/manifests"},{"name":"v15.0-rc1","sha":"18f29834c588cbe6b937746ce1a133ffd4f0c7e9","kind":"commit","published_at":"2013-08-23T18:30:58.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v15.0-rc1","html_url":"https://github.com/google/guava/releases/tag/v15.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v15.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v15.0-rc1/manifests"},{"name":"v14.0.1","sha":"c3bd8eb49f9b355a140cbb56ab592e973fea4c0d","kind":"commit","published_at":"2013-03-14T23:27:36.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v14.0.1","html_url":"https://github.com/google/guava/releases/tag/v14.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v14.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v14.0.1/manifests"},{"name":"v14.0","sha":"a3c71e0264ee5bf5eebd341c506dda655c3a6356","kind":"commit","published_at":"2013-02-25T18:43:45.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v14.0","html_url":"https://github.com/google/guava/releases/tag/v14.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v14.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v14.0/manifests"},{"name":"v14.0-rc3","sha":"469b0d2a43e17fbaddc942de13472dbe6ea188f4","kind":"commit","published_at":"2013-02-13T19:53:48.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v14.0-rc3","html_url":"https://github.com/google/guava/releases/tag/v14.0-rc3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v14.0-rc3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v14.0-rc3/manifests"},{"name":"v14.0-rc2","sha":"7da2ed74e1f61d4a9e0ae78212bf18378d972661","kind":"commit","published_at":"2013-01-17T19:06:33.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v14.0-rc2","html_url":"https://github.com/google/guava/releases/tag/v14.0-rc2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v14.0-rc2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v14.0-rc2/manifests"},{"name":"v14.0-rc1","sha":"c71e08d074a4af96f5e94041f40e792b877b5c3b","kind":"commit","published_at":"2012-12-14T20:10:04.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v14.0-rc1","html_url":"https://github.com/google/guava/releases/tag/v14.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v14.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v14.0-rc1/manifests"},{"name":"v13.0.1","sha":"c523556ab7d0f05afadebd20e7768d4c16af8771","kind":"commit","published_at":"2012-08-27T21:27:39.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v13.0.1","html_url":"https://github.com/google/guava/releases/tag/v13.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v13.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v13.0.1/manifests"},{"name":"v13.0","sha":"c8511677c7827ab687b7412925ccdae76b6bbff1","kind":"commit","published_at":"2012-08-02T20:19:28.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v13.0","html_url":"https://github.com/google/guava/releases/tag/v13.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v13.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v13.0/manifests"},{"name":"v13.0-rc2","sha":"9df9a23de5323275f5614aa7e732a636029f9b70","kind":"commit","published_at":"2012-07-20T19:07:19.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v13.0-rc2","html_url":"https://github.com/google/guava/releases/tag/v13.0-rc2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v13.0-rc2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v13.0-rc2/manifests"},{"name":"v13.0-final","sha":"9df9a23de5323275f5614aa7e732a636029f9b70","kind":"commit","published_at":"2012-07-20T19:07:19.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v13.0-final","html_url":"https://github.com/google/guava/releases/tag/v13.0-final","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v13.0-final","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v13.0-final/manifests"},{"name":"v12.0.1","sha":"75d93f4737a9969d9fc0aedab0375db7629d7ee8","kind":"commit","published_at":"2012-07-10T11:21:40.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v12.0.1","html_url":"https://github.com/google/guava/releases/tag/v12.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v12.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v12.0.1/manifests"},{"name":"v13.0-rc1","sha":"3db22e7a7f468ae268352ad95b3389183162da81","kind":"commit","published_at":"2012-06-26T19:44:10.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v13.0-rc1","html_url":"https://github.com/google/guava/releases/tag/v13.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v13.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v13.0-rc1/manifests"},{"name":"v12.0","sha":"72d281266d52f95bc7df228cd37294c9fa6effe3","kind":"commit","published_at":"2012-04-30T18:04:06.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v12.0","html_url":"https://github.com/google/guava/releases/tag/v12.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v12.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v12.0/manifests"},{"name":"v12.0-rc2","sha":"3b733e24922c94b2babdd096532b6bf1f04415f6","kind":"commit","published_at":"2012-04-17T12:21:58.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v12.0-rc2","html_url":"https://github.com/google/guava/releases/tag/v12.0-rc2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v12.0-rc2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v12.0-rc2/manifests"},{"name":"v12.0-rc1","sha":"fcd0a111a0b206d70b6054efc869dd33a1757ecd","kind":"commit","published_at":"2012-03-30T13:44:06.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v12.0-rc1","html_url":"https://github.com/google/guava/releases/tag/v12.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v12.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v12.0-rc1/manifests"},{"name":"v11.0.2","sha":"78c34456423e680ec69059f21a5841296ab23277","kind":"commit","published_at":"2012-02-22T13:59:24.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v11.0.2","html_url":"https://github.com/google/guava/releases/tag/v11.0.2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v11.0.2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v11.0.2/manifests"},{"name":"v11.0.1","sha":"95cd4a6be05b8acb2f02630caa1d11af4ac07db1","kind":"commit","published_at":"2012-01-09T20:39:28.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v11.0.1","html_url":"https://github.com/google/guava/releases/tag/v11.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v11.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v11.0.1/manifests"},{"name":"v11.0","sha":"5a6bf80c7403d77df18adb41b5b15ea34d28186d","kind":"commit","published_at":"2011-12-17T17:18:18.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v11.0","html_url":"https://github.com/google/guava/releases/tag/v11.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v11.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v11.0/manifests"},{"name":"v11.0-rc1","sha":"5ba62b182d588e3dbc5bf736bf797db8ae9bc439","kind":"commit","published_at":"2011-12-14T19:45:17.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v11.0-rc1","html_url":"https://github.com/google/guava/releases/tag/v11.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v11.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v11.0-rc1/manifests"},{"name":"v10.0.1","sha":"22eb4ada1211093d21b6a209f8e03d107ba48580","kind":"commit","published_at":"2011-10-10T14:06:14.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v10.0.1","html_url":"https://github.com/google/guava/releases/tag/v10.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v10.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v10.0.1/manifests"},{"name":"v10.0","sha":"baf008c5a3de60e8399852f23979bf69f2660023","kind":"commit","published_at":"2011-09-27T18:22:36.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v10.0","html_url":"https://github.com/google/guava/releases/tag/v10.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v10.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v10.0/manifests"},{"name":"v10.0-rc3","sha":"b0b6251c2177fdb63ad0f1d0ff0b155950d57fb2","kind":"commit","published_at":"2011-09-23T17:41:14.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v10.0-rc3","html_url":"https://github.com/google/guava/releases/tag/v10.0-rc3","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v10.0-rc3","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v10.0-rc3/manifests"},{"name":"v10.0-rc2","sha":"014745efe7279bd95e83abe9399be0c294088d89","kind":"commit","published_at":"2011-09-19T17:29:15.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v10.0-rc2","html_url":"https://github.com/google/guava/releases/tag/v10.0-rc2","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v10.0-rc2","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v10.0-rc2/manifests"},{"name":"v10.0-rc1","sha":"6f76191d1b1d2b82223088040a8a34bc822704e1","kind":"commit","published_at":"2011-09-13T19:20:48.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v10.0-rc1","html_url":"https://github.com/google/guava/releases/tag/v10.0-rc1","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v10.0-rc1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v10.0-rc1/manifests"},{"name":"v9.0","sha":"28d17c4fafb4d37b3d540e0e76ff8142d2aaad6b","kind":"commit","published_at":"2011-04-08T14:35:37.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v9.0","html_url":"https://github.com/google/guava/releases/tag/v9.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v9.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v9.0/manifests"},{"name":"v8.0","sha":"0bb8549ef75fd8a7f367560ade790eae39d9279f","kind":"commit","published_at":"2011-01-31T17:56:14.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v8.0","html_url":"https://github.com/google/guava/releases/tag/v8.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v8.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v8.0/manifests"},{"name":"v7.0","sha":"13bc6c9bf52aa45fe4371357546b7ca66f317df2","kind":"commit","published_at":"2010-09-22T19:12:43.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v7.0","html_url":"https://github.com/google/guava/releases/tag/v7.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v7.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v7.0/manifests"},{"name":"v6.0","sha":"9b62975717d16970f86441a9cb42ba84db33309f","kind":"commit","published_at":"2010-07-08T21:54:56.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v6.0","html_url":"https://github.com/google/guava/releases/tag/v6.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v6.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v6.0/manifests"},{"name":"v5.0","sha":"1ab3ec73dfcbc91bb989ec9dcb0fea790500eb54","kind":"commit","published_at":"2010-06-03T00:26:58.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v5.0","html_url":"https://github.com/google/guava/releases/tag/v5.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v5.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v5.0/manifests"},{"name":"v4.0","sha":"00efa0ca1b0ab665d1f3d6deacbb156cf797ebdf","kind":"commit","published_at":"2010-06-03T00:26:58.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v4.0","html_url":"https://github.com/google/guava/releases/tag/v4.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v4.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v4.0/manifests"},{"name":"v3.0","sha":"a393220268c8bfc6c81f7631a7930386942f96dd","kind":"commit","published_at":"2010-06-03T00:26:58.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v3.0","html_url":"https://github.com/google/guava/releases/tag/v3.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v3.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v3.0/manifests"},{"name":"v1.0","sha":"14dd2269fa72913d92038876162babb8d9736f9b","kind":"commit","published_at":"2010-04-09T17:32:12.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v1.0","html_url":"https://github.com/google/guava/releases/tag/v1.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v1.0/manifests"},{"name":"v2.0","sha":"f5ad01f0326405c321a4d1a7bbafb01b7d4d5074","kind":"commit","published_at":"2010-01-11T17:13:23.000Z","download_url":"https://codeload.github.com/google/guava/tar.gz/v2.0","html_url":"https://github.com/google/guava/releases/tag/v2.0","dependencies_parsed_at":null,"dependency_job_id":null,"tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v2.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/google%2Fguava/tags/v2.0/manifests"}]},"repo_metadata_updated_at":"2023-11-28T06:02:27.805Z","dependent_packages_count":29526,"downloads":null,"downloads_period":null,"dependent_repos_count":219576,"rankings":{"downloads":null,"dependent_repos_count":0.0034062675322593574,"dependent_packages_count":0.0006011060351045924,"stargazers_count":0.40734952312254546,"forks_count":0.7449707461729582,"docker_downloads_count":0.000400737356736395,"average":0.2313456760439208},"purl":"pkg:maven/com.google.guava/guava","advisories":[{"uuid":"MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLW12cjItOXBqNi03dzVq","url":"https://github.com/advisories/GHSA-mvr2-9pj6-7w5j","title":"Denial of Service in Google Guava","description":"Unbounded memory allocation in Google Guava 11.0 through 24.x before 24.1.1 allows remote attackers to conduct denial of service attacks against servers that depend on this library and deserialize attacker-provided data, because the AtomicDoubleArray class (when serialized with Java serialization) and the CompoundOrdering class (when serialized with GWT serialization) perform eager allocation without appropriate checks on what a client has sent and whether the data size is reasonable.","origin":"UNSPECIFIED","severity":"MODERATE","published_at":"2020-06-15T20:35:11.000Z","withdrawn_at":null,"classification":"GENERAL","cvss_score":0.0,"cvss_vector":null,"references":["https://nvd.nist.gov/vuln/detail/CVE-2018-10237","https://github.com/google/guava/wiki/CVE-2018-10237","https://groups.google.com/d/topic/guava-announce/xqWALw4W1vs/discussion","http://www.securitytracker.com/id/1041707","https://access.redhat.com/errata/RHSA-2018:2423","https://access.redhat.com/errata/RHSA-2018:2424","https://access.redhat.com/errata/RHSA-2018:2425","https://access.redhat.com/errata/RHSA-2018:2428","https://access.redhat.com/errata/RHSA-2018:2598","https://access.redhat.com/errata/RHSA-2018:2643","https://access.redhat.com/errata/RHSA-2018:2740","https://access.redhat.com/errata/RHSA-2018:2741","https://access.redhat.com/errata/RHSA-2018:2742","https://access.redhat.com/errata/RHSA-2018:2743","https://access.redhat.com/errata/RHSA-2018:2927","https://access.redhat.com/errata/RHSA-2019:2858","https://access.redhat.com/errata/RHSA-2019:3149","https://lists.apache.org/thread.html/053d9ce4d579b02203db18545fee5e33f35f2932885459b74d1e4272@%3Cissues.activemq.apache.org%3E","https://lists.apache.org/thread.html/19fa48533bc7ea1accf6b12746a74ed888ae6e49a5cf81ae4f807495@%3Ccommon-dev.hadoop.apache.org%3E","https://lists.apache.org/thread.html/33c6bccfeb7adf644d4d79894ca8f09370be6ed4b20632c2e228d085@%3Ccommits.cassandra.apache.org%3E","https://lists.apache.org/thread.html/3d5dbdd92ac9ceaef90e40f78599f9109f2f345252e0ac9d98e7e084@%3Cgitbox.activemq.apache.org%3E","https://lists.apache.org/thread.html/3ddd79c801edd99c0978e83dbe2168ebd36fd42acfa5dac38fb03dd6@%3Cissues.activemq.apache.org%3E","https://lists.apache.org/thread.html/519eb0fd45642dcecd9ff74cb3e71c20a4753f7d82e2f07864b5108f@%3Cdev.drill.apache.org%3E","https://lists.apache.org/thread.html/b0656d359c7d40ec9f39c8cc61bca66802ef9a2a12ee199f5b0c1442@%3Cdev.drill.apache.org%3E","https://lists.apache.org/thread.html/cc48fe770c45a74dc3b37ed0817393e0c96701fc49bc431ed922f3cc@%3Chdfs-dev.hadoop.apache.org%3E","https://lists.apache.org/thread.html/f9bc3e55f4e28d1dcd1a69aae6d53e609a758e34d2869b4d798e13cc@%3Cissues.drill.apache.org%3E","https://lists.apache.org/thread.html/ff8dcfe29377088ab655fda9d585dccd5b1f07fabd94ae84fd60a7f8@%3Ccommits.pulsar.apache.org%3E","https://lists.apache.org/thread.html/r27eb79a87a760335226dbfa6a7b7bffea539a535f8e80c41e482106d@%3Cdev.cxf.apache.org%3E","https://lists.apache.org/thread.html/r2ea4e5e5aa8ad73b001a466c582899620961f47d77a40af712c1fdf9@%3Cdev.cxf.apache.org%3E","https://lists.apache.org/thread.html/r38e2ab87528d3c904e7fac496e8fd766b9277656ff95b97d6b6b6dcd@%3Cdev.cxf.apache.org%3E","https://lists.apache.org/thread.html/r43491b25b2e5c368c34b106a82eff910a5cea3e90de82ad75cc16540@%3Cdev.syncope.apache.org%3E","https://lists.apache.org/thread.html/r95799427b335807a4c54776908125c3e66597b65845ae50096d9278a@%3Cdev.cxf.apache.org%3E","https://lists.apache.org/thread.html/ra0adb9653c7de9539b93cc8434143b655f753b9f60580ff260becb2b@%3Cusers.kafka.apache.org%3E","https://lists.apache.org/thread.html/rc78f6e84f82cc662860e96526d8ab969f34dbe12dc560e22d9d147a3@%3Cdev.cxf.apache.org%3E","https://lists.apache.org/thread.html/rc8467f357b943ceaa86f289f8bc1a5d1c7955b75d3bac1426f2d4ac1@%3Ccommon-dev.hadoop.apache.org%3E","https://lists.apache.org/thread.html/rd0c8ec6e044aa2958dd0549ebf8ecead7f5968c9474ba73a504161b2@%3Cdev.cxf.apache.org%3E","https://www.oracle.com/security-alerts/cpuapr2020.html","https://www.oracle.com/security-alerts/cpujul2020.html","https://lists.apache.org/thread.html/r02e39d7beb32eebcdbb4b516e95f67d71c90d5d462b26f4078d21eeb@%3Cdev.flink.apache.org%3E","https://lists.apache.org/thread.html/r02e39d7beb32eebcdbb4b516e95f67d71c90d5d462b26f4078d21eeb@%3Cuser.flink.apache.org%3E","https://lists.apache.org/thread.html/r223bc776a077d0795786c38cbc6e7dd808fce1a9161b00ba9c0a5d55@%3Cissues.lucene.apache.org%3E","https://lists.apache.org/thread.html/r50fc0bcc734dd82e691d36d209258683141bfc0083739a77e56ad92d@%3Cdev.flink.apache.org%3E","https://lists.apache.org/thread.html/ra4f44016926dcb034b3b230280a18102062f94ae55b8a31bb92fed84@%3Cissues.lucene.apache.org%3E","https://lists.apache.org/thread.html/ra8906723927aef2a599398c238eacfc845b74d812e0093ec2fc70a7d@%3Cissues.flink.apache.org%3E","https://lists.apache.org/thread.html/rb3da574c34bc6bd37972d2266af3093b90d7e437460423c24f477919@%3Cissues.lucene.apache.org%3E","https://lists.apache.org/thread.html/rdc56c15693c236e31e1e95f847b8e5e74fc0a05741d47488e7fc8c45@%3Cissues.flink.apache.org%3E","https://www.oracle.com/security-alerts/cpujan2021.html","https://lists.apache.org/thread.html/r841c5e14e1b55281523ebcde661ece00b38a0569e00ef5e12bd5f6ba@%3Cissues.maven.apache.org%3E","https://lists.apache.org/thread.html/r22c8173b804cd4a420c43064ba4e363d0022aa421008b1989f7354d4@%3Cissues.flink.apache.org%3E","https://lists.apache.org/thread.html/r30e7d7b6bfa630dacc41649a0e96dad75165d50474c1241068aa0f94@%3Cissues.storm.apache.org%3E","https://lists.apache.org/thread.html/r352e40ca9874d1beb4ad95403792adca7eb295e6bc3bd7b65fabcc21@%3Ccommits.samza.apache.org%3E","https://lists.apache.org/thread.html/r3c3b33ee5bef0c67391d27a97cbfd89d44f328cf072b601b58d4e748@%3Ccommits.pulsar.apache.org%3E","https://lists.apache.org/thread.html/rd01f5ff0164c468ec7abc96ff7646cea3cce6378da2e4aa29c6bcb95@%3Cgithub.arrow.apache.org%3E","https://www.oracle.com/security-alerts/cpuoct2021.html","https://security.netapp.com/advisory/ntap-20220629-0008/","https://github.com/advisories/GHSA-mvr2-9pj6-7w5j"],"source_kind":"github","identifiers":["GHSA-mvr2-9pj6-7w5j","CVE-2018-10237"],"repository_url":"https://github.com/google/guava","blast_radius":0.0,"packages":[{"versions":[{"first_patched_version":"24.1.1-android","vulnerable_version_range":"\u003e= 11.0, \u003c 24.1.1-android"}],"ecosystem":"maven","package_name":"com.google.guava:guava"},{"versions":[{"first_patched_version":null,"vulnerable_version_range":"= 0.11.1"}],"ecosystem":"maven","package_name":"org.sonatype.sisu:sisu-guava"},{"versions":[{"first_patched_version":null,"vulnerable_version_range":"\u003c= 14.0.1-h-3"}],"ecosystem":"maven","package_name":"org.hudsonci.lib.guava:guava"},{"versions":[{"first_patched_version":null,"vulnerable_version_range":"\u003c= 7.4.0"}],"ecosystem":"maven","package_name":"de.mhus.ports:vaadin-shared-deps"},{"versions":[{"first_patched_version":null,"vulnerable_version_range":"\u003c= 11.0.1"}],"ecosystem":"maven","package_name":"com.googlecode.guava-osgi:guava-osgi"},{"versions":[{"first_patched_version":null,"vulnerable_version_range":"\u003c= 17.0"}],"ecosystem":"maven","package_name":"com.google.guava:guava-jdk5"}],"created_at":"2022-12-21T16:11:56.330Z","updated_at":"2025-05-19T01:11:15.026Z","epss_percentage":0.03259,"epss_percentile":0.86509},{"uuid":"GSA_kwCzR0hTQS03ZzQ1LTRybTYtM21tM84AAz3U","url":"https://github.com/advisories/GHSA-7g45-4rm6-3mm3","title":"Guava vulnerable to insecure use of temporary directory","description":"Use of Java's default temporary directory for file creation in `FileBackedOutputStream` in Google Guava versions 1.0 to 31.1 on Unix systems and Android Ice Cream Sandwich allows other users and apps on the machine with access to the default Java temporary directory to be able to access the files created by the class.\n\nEven though the security vulnerability is fixed in version 32.0.0, maintainers recommend using version 32.0.1 as version 32.0.0 breaks some functionality under Windows.","origin":"UNSPECIFIED","severity":"MODERATE","published_at":"2023-06-14T18:30:38.000Z","withdrawn_at":null,"classification":"GENERAL","cvss_score":0.0,"cvss_vector":null,"references":["https://nvd.nist.gov/vuln/detail/CVE-2023-2976","https://github.com/google/guava/issues/2575","https://github.com/google/guava/issues/6532","https://github.com/google/guava/commit/feb83a1c8fd2e7670b244d5afd23cba5aca43284","https://github.com/google/guava/releases/tag/v32.0.0","https://security.netapp.com/advisory/ntap-20230818-0008","https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01006.html","https://github.com/advisories/GHSA-7g45-4rm6-3mm3"],"source_kind":"github","identifiers":["GHSA-7g45-4rm6-3mm3","CVE-2023-2976"],"repository_url":"https://github.com/google/guava","blast_radius":0.0,"packages":[{"versions":[{"first_patched_version":"32.0.0-android","vulnerable_version_range":"\u003e= 1.0, \u003c 32.0.0-android"}],"ecosystem":"maven","package_name":"com.google.guava:guava"}],"created_at":"2023-06-14T22:03:19.700Z","updated_at":"2025-02-13T18:58:59.000Z","epss_percentage":0.00042,"epss_percentile":0.12269},{"uuid":"MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTVtZzgtdzIzdy03NGgz","url":"https://github.com/advisories/GHSA-5mg8-w23w-74h3","title":"Information Disclosure in Guava","description":"A temp directory creation vulnerability exists in Guava prior to version 32.0.0 allowing an attacker with access to the machine to potentially access data in a temporary directory created by the Guava `com.google.common.io.Files.createTempDir()`. The permissions granted to the directory created default to the standard unix-like /tmp ones, leaving the files open. Maintainers recommend explicitly changing the permissions after the creation of the directory, or removing uses of the vulnerable method.\n","origin":"UNSPECIFIED","severity":"LOW","published_at":"2021-03-25T17:04:19.000Z","withdrawn_at":null,"classification":"GENERAL","cvss_score":0.0,"cvss_vector":null,"references":["https://nvd.nist.gov/vuln/detail/CVE-2020-8908","https://github.com/google/guava/issues/4011","https://github.com/google/guava/commit/fec0dbc4634006a6162cfd4d0d09c962073ddf40","https://lists.apache.org/thread.html/r215b3d50f56faeb2f9383505f3e62faa9f549bb23e8a9848b78a968e@%3Ccommits.ws.apache.org%3E","https://lists.apache.org/thread.html/r4776f62dfae4a0006658542f43034a7fc199350e35a66d4e18164ee6@%3Ccommits.cxf.apache.org%3E","https://lists.apache.org/thread.html/r68d86f4b06c808204f62bcb254fcb5b0432528ee8d37a07ef4bc8222@%3Ccommits.ws.apache.org%3E","https://lists.apache.org/thread.html/r841c5e14e1b55281523ebcde661ece00b38a0569e00ef5e12bd5f6ba@%3Cissues.maven.apache.org%3E","https://lists.apache.org/thread.html/rb8c0f1b7589864396690fe42a91a71dea9412e86eec66dc85bbacaaf@%3Ccommits.cxf.apache.org%3E","https://lists.apache.org/thread.html/rbc7642b9800249553f13457e46b813bea1aec99d2bc9106510e00ff3@%3Ctorque-dev.db.apache.org%3E","https://lists.apache.org/thread.html/rc2dbc4633a6eea1fcbce6831876cfa17b73759a98c65326d1896cb1a@%3Ctorque-dev.db.apache.org%3E","https://lists.apache.org/thread.html/rd5d58088812cf8e677d99b07f73c654014c524c94e7fedbdee047604@%3Ctorque-dev.db.apache.org%3E","https://snyk.io/vuln/SNYK-JAVA-COMGOOGLEGUAVA-1015415","https://lists.apache.org/thread.html/r3c3b33ee5bef0c67391d27a97cbfd89d44f328cf072b601b58d4e748@%3Ccommits.pulsar.apache.org%3E","https://lists.apache.org/thread.html/rfc27e2727a20a574f39273e0432aa97486a332f9b3068f6ac1346594@%3Cdev.myfaces.apache.org%3E","https://lists.apache.org/thread.html/rd01f5ff0164c468ec7abc96ff7646cea3cce6378da2e4aa29c6bcb95@%3Cgithub.arrow.apache.org%3E","https://lists.apache.org/thread.html/r037fed1d0ebde50c9caf8d99815db3093c344c3f651c5a49a09824ce@%3Cdev.drill.apache.org%3E","https://lists.apache.org/thread.html/r07ed3e4417ad043a27bee7bb33322e9bfc7d7e6d1719b8e3dfd95c14@%3Cdev.drill.apache.org%3E","https://lists.apache.org/thread.html/r161b87f8037bbaff400194a63cd2016c9a69f5949f06dcc79beeab54@%3Cdev.drill.apache.org%3E","https://lists.apache.org/thread.html/r2fe45d96eea8434b91592ca08109118f6308d60f6d0e21d52438cfb4@%3Cdev.drill.apache.org%3E","https://lists.apache.org/thread.html/r6874dfe26eefc41b7c9a5e4a0487846fc4accf8c78ff948b24a1104a@%3Cdev.drill.apache.org%3E","https://www.oracle.com/security-alerts/cpuApr2021.html","https://lists.apache.org/thread.html/r007add131977f4f576c232b25e024249a3d16f66aad14a4b52819d21@%3Ccommon-issues.hadoop.apache.org%3E","https://lists.apache.org/thread.html/r294be9d31c0312d2c0837087204b5d4bf49d0552890e6eec716fa6a6@%3Cyarn-issues.hadoop.apache.org%3E","https://lists.apache.org/thread.html/r3dd8881de891598d622227e9840dd7c2ef1d08abbb49e9690c7ae1bc@%3Cissues.geode.apache.org%3E","https://lists.apache.org/thread.html/r49549a8322f62cd3acfa4490d25bfba0be04f3f9ff4d14fe36199d27@%3Cyarn-dev.hadoop.apache.org%3E","https://lists.apache.org/thread.html/r58a8775205ab1839dba43054b09a9ab3b25b423a4170b2413c4067ac@%3Ccommon-issues.hadoop.apache.org%3E","https://lists.apache.org/thread.html/r5b3d93dfdfb7708e796e8762ab40edbde8ff8add48aba53e5ea26f44@%3Cissues.geode.apache.org%3E","https://lists.apache.org/thread.html/r5d61b98ceb7bba939a651de5900dbd67be3817db6bfcc41c6e04e199@%3Cyarn-issues.hadoop.apache.org%3E","https://lists.apache.org/thread.html/r79e47ed555bdb1180e528420a7a2bb898541367a29a3bc6bbf0baf2c@%3Cissues.hive.apache.org%3E","https://lists.apache.org/thread.html/r7b0e81d8367264d6cad98766a469d64d11248eb654417809bfdacf09@%3Cyarn-issues.hadoop.apache.org%3E","https://lists.apache.org/thread.html/ra7ab308481ee729f998691e8e3e02e93b1dedfc98f6b1cd3d86923b3@%3Cyarn-issues.hadoop.apache.org%3E","https://lists.apache.org/thread.html/rb2364f4cf4d274eab5a7ecfaf64bf575cedf8b0173551997c749d322@%3Cgitbox.hive.apache.org%3E","https://lists.apache.org/thread.html/rc607bc52f3507b8b9c28c6a747c3122f51ac24afe80af2a670785b97@%3Cissues.geode.apache.org%3E","https://lists.apache.org/thread.html/rcafc3a637d82bdc9a24036b2ddcad1e519dd0e6f848fcc3d606fd78f@%3Cdev.hive.apache.org%3E","https://lists.apache.org/thread.html/rd2704306ec729ccac726e50339b8a8f079515cc29ccb77713b16e7c5@%3Cissues.hive.apache.org%3E","https://lists.apache.org/thread.html/re120f6b3d2f8222121080342c5801fdafca2f5188ceeb3b49c8a1d27@%3Cyarn-issues.hadoop.apache.org%3E","https://lists.apache.org/thread.html/reebbd63c25bc1a946caa419cec2be78079f8449d1af48e52d47c9e85@%3Cissues.geode.apache.org%3E","https://lists.apache.org/thread.html/rf00b688ffa620c990597f829ff85fdbba8bf73ee7bfb34783e1f0d4e@%3Cyarn-dev.hadoop.apache.org%3E","https://lists.apache.org/thread.html/rf9f0fa84b8ae1a285f0210bafec6de2a9eba083007d04640b82aa625@%3Cissues.geode.apache.org%3E","https://www.oracle.com//security-alerts/cpujul2021.html","https://www.oracle.com/security-alerts/cpuoct2021.html","https://lists.apache.org/thread.html/rd7e12d56d49d73e2b8549694974b07561b79b05455f7f781954231bf@%3Cdev.pig.apache.org%3E","https://www.oracle.com/security-alerts/cpujan2022.html","https://security.netapp.com/advisory/ntap-20220210-0003/","https://www.oracle.com/security-alerts/cpuapr2022.html","https://lists.apache.org/thread.html/r007add131977f4f576c232b25e024249a3d16f66aad14a4b52819d21%40%3Ccommon-issues.hadoop.apache.org%3E","https://lists.apache.org/thread.html/r07ed3e4417ad043a27bee7bb33322e9bfc7d7e6d1719b8e3dfd95c14%40%3Cdev.drill.apache.org%3E","https://lists.apache.org/thread.html/r161b87f8037bbaff400194a63cd2016c9a69f5949f06dcc79beeab54%40%3Cdev.drill.apache.org%3E","https://lists.apache.org/thread.html/r215b3d50f56faeb2f9383505f3e62faa9f549bb23e8a9848b78a968e%40%3Ccommits.ws.apache.org%3E","https://lists.apache.org/thread.html/r294be9d31c0312d2c0837087204b5d4bf49d0552890e6eec716fa6a6%40%3Cyarn-issues.hadoop.apache.org%3E","https://lists.apache.org/thread.html/r2fe45d96eea8434b91592ca08109118f6308d60f6d0e21d52438cfb4%40%3Cdev.drill.apache.org%3E","https://lists.apache.org/thread.html/r3c3b33ee5bef0c67391d27a97cbfd89d44f328cf072b601b58d4e748%40%3Ccommits.pulsar.apache.org%3E","https://lists.apache.org/thread.html/r3dd8881de891598d622227e9840dd7c2ef1d08abbb49e9690c7ae1bc%40%3Cissues.geode.apache.org%3E","https://lists.apache.org/thread.html/r4776f62dfae4a0006658542f43034a7fc199350e35a66d4e18164ee6%40%3Ccommits.cxf.apache.org%3E","https://lists.apache.org/thread.html/r49549a8322f62cd3acfa4490d25bfba0be04f3f9ff4d14fe36199d27%40%3Cyarn-dev.hadoop.apache.org%3E","https://lists.apache.org/thread.html/r58a8775205ab1839dba43054b09a9ab3b25b423a4170b2413c4067ac%40%3Ccommon-issues.hadoop.apache.org%3E","https://lists.apache.org/thread.html/r5b3d93dfdfb7708e796e8762ab40edbde8ff8add48aba53e5ea26f44%40%3Cissues.geode.apache.org%3E","https://lists.apache.org/thread.html/r5d61b98ceb7bba939a651de5900dbd67be3817db6bfcc41c6e04e199%40%3Cyarn-issues.hadoop.apache.org%3E","https://lists.apache.org/thread.html/r6874dfe26eefc41b7c9a5e4a0487846fc4accf8c78ff948b24a1104a%40%3Cdev.drill.apache.org%3E","https://lists.apache.org/thread.html/r68d86f4b06c808204f62bcb254fcb5b0432528ee8d37a07ef4bc8222%40%3Ccommits.ws.apache.org%3E","https://lists.apache.org/thread.html/r79e47ed555bdb1180e528420a7a2bb898541367a29a3bc6bbf0baf2c%40%3Cissues.hive.apache.org%3E","https://lists.apache.org/thread.html/r7b0e81d8367264d6cad98766a469d64d11248eb654417809bfdacf09%40%3Cyarn-issues.hadoop.apache.org%3E","https://lists.apache.org/thread.html/r841c5e14e1b55281523ebcde661ece00b38a0569e00ef5e12bd5f6ba%40%3Cissues.maven.apache.org%3E","https://lists.apache.org/thread.html/ra7ab308481ee729f998691e8e3e02e93b1dedfc98f6b1cd3d86923b3%40%3Cyarn-issues.hadoop.apache.org%3E","https://lists.apache.org/thread.html/rb2364f4cf4d274eab5a7ecfaf64bf575cedf8b0173551997c749d322%40%3Cgitbox.hive.apache.org%3E","https://lists.apache.org/thread.html/rb8c0f1b7589864396690fe42a91a71dea9412e86eec66dc85bbacaaf%40%3Ccommits.cxf.apache.org%3E","https://lists.apache.org/thread.html/rbc7642b9800249553f13457e46b813bea1aec99d2bc9106510e00ff3%40%3Ctorque-dev.db.apache.org%3E","https://lists.apache.org/thread.html/rc2dbc4633a6eea1fcbce6831876cfa17b73759a98c65326d1896cb1a%40%3Ctorque-dev.db.apache.org%3E","https://lists.apache.org/thread.html/rc607bc52f3507b8b9c28c6a747c3122f51ac24afe80af2a670785b97%40%3Cissues.geode.apache.org%3E","https://lists.apache.org/thread.html/rcafc3a637d82bdc9a24036b2ddcad1e519dd0e6f848fcc3d606fd78f%40%3Cdev.hive.apache.org%3E","https://lists.apache.org/thread.html/rd01f5ff0164c468ec7abc96ff7646cea3cce6378da2e4aa29c6bcb95%40%3Cgithub.arrow.apache.org%3E","https://lists.apache.org/thread.html/rd2704306ec729ccac726e50339b8a8f079515cc29ccb77713b16e7c5%40%3Cissues.hive.apache.org%3E","https://lists.apache.org/thread.html/rd5d58088812cf8e677d99b07f73c654014c524c94e7fedbdee047604%40%3Ctorque-dev.db.apache.org%3E","https://lists.apache.org/thread.html/rd7e12d56d49d73e2b8549694974b07561b79b05455f7f781954231bf%40%3Cdev.pig.apache.org%3E","https://lists.apache.org/thread.html/re120f6b3d2f8222121080342c5801fdafca2f5188ceeb3b49c8a1d27%40%3Cyarn-issues.hadoop.apache.org%3E","https://lists.apache.org/thread.html/reebbd63c25bc1a946caa419cec2be78079f8449d1af48e52d47c9e85%40%3Cissues.geode.apache.org%3E","https://lists.apache.org/thread.html/rf00b688ffa620c990597f829ff85fdbba8bf73ee7bfb34783e1f0d4e%40%3Cyarn-dev.hadoop.apache.org%3E","https://lists.apache.org/thread.html/rf9f0fa84b8ae1a285f0210bafec6de2a9eba083007d04640b82aa625%40%3Cissues.geode.apache.org%3E","https://lists.apache.org/thread.html/rfc27e2727a20a574f39273e0432aa97486a332f9b3068f6ac1346594%40%3Cdev.myfaces.apache.org%3E","https://github.com/google/guava/issues/4011#issuecomment-1578991974","https://github.com/google/guava/commit/feb83a1c8fd2e7670b244d5afd23cba5aca43284","https://github.com/advisories/GHSA-5mg8-w23w-74h3"],"source_kind":"github","identifiers":["GHSA-5mg8-w23w-74h3","CVE-2020-8908"],"repository_url":"https://github.com/google/guava","blast_radius":0.0,"packages":[{"versions":[{"first_patched_version":"32.0.0-android","vulnerable_version_range":"\u003c 32.0.0-android"}],"ecosystem":"maven","package_name":"com.google.guava:guava"}],"created_at":"2022-12-21T16:12:40.216Z","updated_at":"2023-11-09T18:44:38.000Z","epss_percentage":0.00008,"epss_percentile":0.005}],"docker_usage_url":"https://docker.ecosyste.ms/usage/maven/com.google.guava:guava","docker_dependents_count":30118,"docker_downloads_count":16505530815,"usage_url":"https://repos.ecosyste.ms/usage/maven/com.google.guava:guava","dependent_repositories_url":"https://repos.ecosyste.ms/api/v1/usage/maven/com.google.guava:guava/dependencies","status":null,"funding_links":[],"critical":true,"versions_url":"https://packages.ecosyste.ms/api/v1/registries/repo1.maven.org/packages/com.google.guava:guava/versions","version_numbers_url":"https://packages.ecosyste.ms/api/v1/registries/repo1.maven.org/packages/com.google.guava:guava/version_numbers","dependent_packages_url":"https://packages.ecosyste.ms/api/v1/registries/repo1.maven.org/packages/com.google.guava:guava/dependent_packages","related_packages_url":"https://packages.ecosyste.ms/api/v1/registries/repo1.maven.org/packages/com.google.guava:guava/related_packages","maintainers":[],"registry":{"name":"repo1.maven.org","url":"https://repo.maven.apache.org/maven2","ecosystem":"maven","default":true,"packages_count":517639,"maintainers_count":0,"namespaces_count":68787,"keywords_count":32037,"github":"maven-central","metadata":{"funded_packages_count":24975},"icon_url":"https://github.com/maven-central.png","created_at":"2022-07-21T16:40:13.074Z","updated_at":"2025-06-06T05:59:03.422Z","packages_url":"https://packages.ecosyste.ms/api/v1/registries/repo1.maven.org/packages","maintainers_url":"https://packages.ecosyste.ms/api/v1/registries/repo1.maven.org/maintainers","namespaces_url":"https://packages.ecosyste.ms/api/v1/registries/repo1.maven.org/namespaces"}},"unique_repositories_count":1215,"unique_repositories_count_past_30_days":28,"recent_issues":[{"uuid":"5478331689","node_id":"PR_kwDOBk-9i88AAAABD0AKYw","number":16569,"state":"open","title":"Bump com.google.guava:guava from 33.6.0-android to 33.7.0-android","user":"dependabot[bot]","labels":["bot: dependencies update"],"assignees":[],"locked":false,"comments_count":3,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-16T18:17:54.000Z","updated_at":"2026-09-16T18:24:49.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"com.google.guava:guava","old_version":"33.6.0-android","new_version":"33.7.0-android","repository_url":"https://github.com/google/guava"}],"path":null,"ecosystem":"maven"},"body":"Bumps [com.google.guava:guava](https://github.com/google/guava) from 33.6.0-android to 33.7.0-android.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.0-jre/guava-33.7.0-jre.jar\"\u003e33.7.0-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.0-android/guava-33.7.0-android.jar\"\u003e33.7.0-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.0-jre/api/docs/\"\u003e33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.0-android/api/docs/\"\u003e33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.0-jre/api/diffs/\"\u003e33.7.0-jre vs. 33.6.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.0-android/api/diffs/\"\u003e33.7.0-android vs. 33.6.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.0-android/api/androiddiffs/\"\u003e33.7.0-android vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe Android jar now contains our Proguard configs. (b0668e7174)\u003c/li\u003e\n\u003cli\u003eThe Guava \u003ccode\u003emodule-info.class\u003c/code\u003e is now present at the root of the jar instead of under \u003ca href=\"https://openjdk.org/jeps/238\"\u003ea multi-release root\u003c/a\u003e. This prevents the jar from containing a file at \u003ccode\u003eMETA-INF/versions/9/OSGI-INF/MANIFEST.MF\u003c/code\u003e, which occasionally causes \u003ca href=\"https://redirect.github.com/jspecify/jspecify/issues/484#issuecomment-2819506604\"\u003etrouble for some users\u003c/a\u003e. (230019b31e)\u003c/li\u003e\n\u003cli\u003eOur Android \u003ccode\u003eminSdkVersion\u003c/code\u003e is now 24 (Nougat). This follows the minimum of Google's foundational Android libraries, and we expect it to have no practical impact on users. (ea0af870d5)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ecollect\u003c/code\u003e: Changed some \u003ccode\u003eImmutableMap\u003c/code\u003e implementations to create a new, lightweight object on each call to view methods like \u003ccode\u003ekeySet()\u003c/code\u003e, rather than creating and storing that object during the first call for reuse later. This is likely to slightly improve performance for some users, but it could lead to regressions in unusual cases, such as repeatedly calling \u003ccode\u003easMultimap().inverse()\u003c/code\u003e on the same \u003ccode\u003eImmutableMap\u003c/code\u003e instance. (e87d019e47)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enet\u003c/code\u003e: Added \u003ccode\u003eHttpHeaders\u003c/code\u003e constant for \u003ccode\u003eon-prefetch-activation\u003c/code\u003e. (abd06a3679)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enet\u003c/code\u003e: Added \u003ccode\u003eMediaType\u003c/code\u003e constants for \u003ccode\u003eapplication/yaml\u003c/code\u003e and \u003ccode\u003eapplication/x-pem-file\u003c/code\u003e. (a8e9533b49, 1d40e27a4b)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eutil.concurrent\u003c/code\u003e: Fixed \u003ccode\u003eExecutionSequencer\u003c/code\u003e queue stall when delegate executor throws \u003ccode\u003eRejectedExecutionException\u003c/code\u003e. (8410194eed)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.google.guava:guava\u0026package-manager=gradle\u0026previous-version=33.6.0-android\u0026new-version=33.7.0-android)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/woocommerce/woocommerce-android/pull/16569","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/woocommerce%2Fwoocommerce-android/issues/16569","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/16569/packages"},{"uuid":"5469234376","node_id":"PR_kwDODnpKsM8AAAABDsq6nw","number":90,"state":"open","title":"Bump the build-dependencies group across 1 directory with 25 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-16T01:43:48.000Z","updated_at":"2026-09-16T01:43:49.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"build-dependencies","update_count":25,"packages":[{"name":"net.bytebuddy:byte-buddy","old_version":"1.18.11","new_version":"1.18.13","repository_url":"https://github.com/raphw/byte-buddy"},{"name":"org.slf4j:slf4j-api","old_version":"2.0.18","new_version":"2.0.19"},{"name":"org.apache.groovy:groovy-jsr223","old_version":"5.0.7","new_version":"5.1.2","repository_url":"https://github.com/apache/groovy"},{"name":"org.easymock:easymock","old_version":"5.6.0","new_version":"5.7.0","repository_url":"https://github.com/easymock/easymock"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"org.springframework:spring-expression","old_version":"7.0.8","new_version":"7.0.9","repository_url":"https://github.com/spring-projects/spring-framework"},{"name":"tools.jackson:jackson-bom","old_version":"3.2.1","new_version":"3.2.2","repository_url":"https://github.com/FasterXML/jackson-bom"},{"name":"com.puppycrawl.tools:checkstyle","old_version":"13.8.0","new_version":"14.1.0","repository_url":"https://github.com/checkstyle/checkstyle"},{"name":"org.codehaus.mojo:build-helper-maven-plugin","old_version":"3.6.1","new_version":"3.6.2","repository_url":"https://github.com/mojohaus/build-helper-maven-plugin"},{"name":"org.apache.maven.plugins:maven-jar-plugin","old_version":"3.5.0","new_version":"3.5.1","repository_url":"https://github.com/apache/maven-jar-plugin"},{"name":"org.apache.maven.plugins:maven-compiler-plugin","old_version":"3.15.0","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-compiler-plugin"},{"name":"org.apache.maven.plugins:maven-surefire-plugin","old_version":"3.5.6","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-surefire"},{"name":"org.apache.maven.plugins:maven-surefire-report-plugin","old_version":"3.5.6","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-surefire"},{"name":"org.apache.maven.plugins:maven-install-plugin","old_version":"3.1.4","new_version":"3.2.0","repository_url":"https://github.com/apache/maven-install-plugin"},{"name":"org.apache.felix:maven-bundle-plugin","old_version":"6.0.2","new_version":"6.1.2"},{"name":"org.apache.maven.plugins:maven-deploy-plugin","old_version":"3.1.4","new_version":"3.2.0","repository_url":"https://github.com/apache/maven-deploy-plugin"},{"name":"com.github.siom79.japicmp:japicmp-maven-plugin","old_version":"0.26.1","new_version":"0.26.2","repository_url":"https://github.com/siom79/japicmp"},{"name":"jakarta.tck:sigtest-maven-plugin","old_version":"2.6","new_version":"2.7","repository_url":"https://github.com/eclipse-ee4j/jakartaee-tck-tools"},{"name":"org.codehaus.mojo:flatten-maven-plugin","old_version":"1.7.3","new_version":"1.8.0","repository_url":"https://github.com/mojohaus/flatten-maven-plugin"},{"name":"com.diffplug.spotless:spotless-maven-plugin","old_version":"3.8.0","new_version":"3.10.2","repository_url":"https://github.com/diffplug/spotless"},{"name":"org.eclipse.sisu:sisu-maven-plugin","old_version":"1.0.1","new_version":"1.1.0"},{"name":"org.codehaus.mojo:versions-maven-plugin","old_version":"2.21.0","new_version":"2.22.0","repository_url":"https://github.com/mojohaus/versions"},{"name":"org.slf4j:slf4j-log4j12","old_version":"2.0.18","new_version":"2.0.19"},{"name":"com.gradle:common-custom-user-data-maven-extension","old_version":"2.3.0","new_version":"2.4.0","repository_url":"https://github.com/gradle/common-custom-user-data-maven-extension"}],"path":null,"ecosystem":"maven"},"body":"Bumps the build-dependencies group with 24 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [net.bytebuddy:byte-buddy](https://github.com/raphw/byte-buddy) | `1.18.11` | `1.18.13` |\n| org.slf4j:slf4j-api | `2.0.18` | `2.0.19` |\n| [org.apache.groovy:groovy-jsr223](https://github.com/apache/groovy) | `5.0.7` | `5.1.2` |\n| [org.easymock:easymock](https://github.com/easymock/easymock) | `5.6.0` | `5.7.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [org.springframework:spring-expression](https://github.com/spring-projects/spring-framework) | `7.0.8` | `7.0.9` |\n| [tools.jackson:jackson-bom](https://github.com/FasterXML/jackson-bom) | `3.2.1` | `3.2.2` |\n| [com.puppycrawl.tools:checkstyle](https://github.com/checkstyle/checkstyle) | `13.8.0` | `14.1.0` |\n| [org.codehaus.mojo:build-helper-maven-plugin](https://github.com/mojohaus/build-helper-maven-plugin) | `3.6.1` | `3.6.2` |\n| [org.apache.maven.plugins:maven-jar-plugin](https://github.com/apache/maven-jar-plugin) | `3.5.0` | `3.5.1` |\n| [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin) | `3.15.0` | `3.16.0` |\n| [org.apache.maven.plugins:maven-surefire-plugin](https://github.com/apache/maven-surefire) | `3.5.6` | `3.6.0` |\n| [org.apache.maven.plugins:maven-surefire-report-plugin](https://github.com/apache/maven-surefire) | `3.5.6` | `3.6.0` |\n| [org.apache.maven.plugins:maven-install-plugin](https://github.com/apache/maven-install-plugin) | `3.1.4` | `3.2.0` |\n| org.apache.felix:maven-bundle-plugin | `6.0.2` | `6.1.2` |\n| [org.apache.maven.plugins:maven-deploy-plugin](https://github.com/apache/maven-deploy-plugin) | `3.1.4` | `3.2.0` |\n| [com.github.siom79.japicmp:japicmp-maven-plugin](https://github.com/siom79/japicmp) | `0.26.1` | `0.26.2` |\n| [jakarta.tck:sigtest-maven-plugin](https://github.com/eclipse-ee4j/jakartaee-tck-tools) | `2.6` | `2.7` |\n| [org.codehaus.mojo:flatten-maven-plugin](https://github.com/mojohaus/flatten-maven-plugin) | `1.7.3` | `1.8.0` |\n| [com.diffplug.spotless:spotless-maven-plugin](https://github.com/diffplug/spotless) | `3.8.0` | `3.10.2` |\n| org.eclipse.sisu:sisu-maven-plugin | `1.0.1` | `1.1.0` |\n| [org.codehaus.mojo:versions-maven-plugin](https://github.com/mojohaus/versions) | `2.21.0` | `2.22.0` |\n| org.slf4j:slf4j-log4j12 | `2.0.18` | `2.0.19` |\n| [com.gradle:common-custom-user-data-maven-extension](https://github.com/gradle/common-custom-user-data-maven-extension) | `2.3.0` | `2.4.0` |\n\n\nUpdates `net.bytebuddy:byte-buddy` from 1.18.11 to 1.18.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/releases\"\u003enet.bytebuddy:byte-buddy's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eByte Buddy 1.18.13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eByte Buddy 1.18.12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eAdd support for native attach on Windows for ARM64.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/blob/master/release-notes.md\"\u003enet.bytebuddy:byte-buddy's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003e2. September 2026: version 1.18.13\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e17. July 2026: version 1.18.12\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003cli\u003eSupport dynamic attach on Windows ARM64 by shipping a native \u003ccode\u003eattach_hotspot_windows\u003c/code\u003e library for \u003ccode\u003ewin32-aarch64\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/d4da51578490c841b56b38c9c8fc9d3e8815f046\"\u003e\u003ccode\u003ed4da515\u003c/code\u003e\u003c/a\u003e [publish] Releasing Byte Buddy 1.18.13\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/bb914e33837267c05704f167179ba31abe3bf787\"\u003e\u003ccode\u003ebb914e3\u003c/code\u003e\u003c/a\u003e [release] Release new version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/af2034b8c55c2596f6430e63152586e02d06fd0e\"\u003e\u003ccode\u003eaf2034b\u003c/code\u003e\u003c/a\u003e Create Gradle tasks via the task registration API if available to avoid the u...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/30aca5581534d52570a60ffd524109adb3671759\"\u003e\u003ccode\u003e30aca55\u003c/code\u003e\u003c/a\u003e Shortcut traversal of previously visited type hierarchies and harden 1-1 tran...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/debd527b31bb095c26ff6943545cfe01a9045f32\"\u003e\u003ccode\u003edebd527\u003c/code\u003e\u003c/a\u003e Bump actions/checkout from 6.0.2 to 7.0.1 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1910\"\u003e#1910\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/8315af6acb72b5e0d913ad65c4112e828f01d735\"\u003e\u003ccode\u003e8315af6\u003c/code\u003e\u003c/a\u003e Bump step-security/harden-runner from 2.16.1 to 2.19.4 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1909\"\u003e#1909\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/e30e24f4106f6be28b97a34c81bf6d5dccfa34bb\"\u003e\u003ccode\u003ee30e24f\u003c/code\u003e\u003c/a\u003e Bump actions/cache from 5.0.3 to 5.0.5 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1914\"\u003e#1914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/1885f2a1e77d70d3cc57ff935e2b5a4b675cde85\"\u003e\u003ccode\u003e1885f2a\u003c/code\u003e\u003c/a\u003e Bump github/codeql-action from 3.27.6 to 4.36.2 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1916\"\u003e#1916\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/de4ed85e1e4e1e83dcfd90fc791684e3607459fa\"\u003e\u003ccode\u003ede4ed85\u003c/code\u003e\u003c/a\u003e Correct Javadoc of Gradle plugin to avoid errors and warnings during generation.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/5d3a3129ceb66ec0c168c9648757cbffccf18aec\"\u003e\u003ccode\u003e5d3a312\u003c/code\u003e\u003c/a\u003e Bump actions/setup-java from 5.2.0 to 5.4.0 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1918\"\u003e#1918\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/raphw/byte-buddy/compare/byte-buddy-1.18.11...byte-buddy-1.18.13\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.slf4j:slf4j-api` from 2.0.18 to 2.0.19\n\nUpdates `org.apache.groovy:groovy-jsr223` from 5.0.7 to 5.1.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/apache/groovy/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.easymock:easymock` from 5.6.0 to 5.7.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/easymock/easymock/releases\"\u003eorg.easymock:easymock's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.7.0\u003c/h2\u003e\n\u003cp\u003eAdd Java 26 support where bytebuddy isn't using unsafe anymore.\u003c/p\u003e\n\u003ch2\u003eChange log\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd mock() methods without parameters using varargs reification (\u003ca href=\"https://redirect.github.com/easymock/easymock/issues/933\"\u003e#933\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eMock creation fails with JDK 26 and ByteBuddy 1.18.10 (\u003ca href=\"https://redirect.github.com/easymock/easymock/issues/908\"\u003e#908\u003c/a\u003e)git log --oneline\u003c/li\u003e\n\u003cli\u003eUse new Maven central plugin\u003c/li\u003e\n\u003cli\u003eUse a github_token instead\u003c/li\u003e\n\u003cli\u003eAdd the missing REST calls to fully automated the release\u003c/li\u003e\n\u003cli\u003eMove to .mvn style version\u003c/li\u003e\n\u003cli\u003eUse assertThrows all over the place\u003c/li\u003e\n\u003cli\u003eOptimize imports and finish updating to JUnit 5\u003c/li\u003e\n\u003cli\u003eUpdate eclipse configuration\u003c/li\u003e\n\u003cli\u003eMove all to UTF-8 like it should already be\u003c/li\u003e\n\u003cli\u003eUse https for xsd\u003c/li\u003e\n\u003cli\u003eUpdate objenesis to 3.6\u003c/li\u003e\n\u003cli\u003eUpdate copyrights to 2026\u003c/li\u003e\n\u003cli\u003eRemove Hamcrest usage\u003c/li\u003e\n\u003cli\u003eAdd Maven cache\u003c/li\u003e\n\u003cli\u003eBump actions/checkout from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/917\"\u003e#917\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump actions/github-script from 8 to 9 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/887\"\u003e#887\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump actions/setup-java from 5.6.0 to 5.7.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/918\"\u003e#918\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump activesupport from 8.1.2 to 8.1.2.1 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/882\"\u003e#882\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump addressable from 2.8.8 to 2.9.0 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/886\"\u003e#886\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump ch.qos.logback:logback-classic from 1.3.14 to 1.6.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/930\"\u003e#930\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.github.spotbugs:spotbugs from 4.8.6 to 4.10.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/921\"\u003e#921\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.github.spotbugs:spotbugs-maven-plugin from 4.8.6.6 to 4.10.3.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/922\"\u003e#922\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.mycila:license-maven-plugin from 4.6 to 5.1.1 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/919\"\u003e#919\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.puppycrawl.tools:checkstyle from 13.9.0 to 13.11.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/931\"\u003e#931\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump concurrent-ruby from 1.3.6 to 1.3.7 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/913\"\u003e#913\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump faraday from 2.14.2 to 2.14.3 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/912\"\u003e#912\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump json from 2.20.0 to 2.21.2 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/924\"\u003e#924\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump junit.jupiter.version from 5.14.1 to 6.1.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/926\"\u003e#926\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump net.bytebuddy:byte-buddy from 1.18.8 to 1.18.12 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/932\"\u003e#932\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump nokogiri from 1.19.3 to 1.19.4 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/911\"\u003e#911\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.felix:maven-bundle-plugin from 5.1.9 to 6.1.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/929\"\u003e#929\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-assembly-plugin from 3.7.1 to 3.8.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/832\"\u003e#832\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-compiler-plugin from 3.14.1 to 3.15.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/863\"\u003e#863\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-dependency-plugin from 3.10.0 to 3.11.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/899\"\u003e#899\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-enforcer-plugin from 3.6.2 to 3.6.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/894\"\u003e#894\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-jar-plugin from 3.4.2 to 3.5.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/833\"\u003e#833\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-resources-plugin from 3.4.0 to 3.5.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/879\"\u003e#879\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-shade-plugin from 3.6.1 to 3.6.2 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/880\"\u003e#880\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-source-plugin from 3.3.1 to 3.4.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/837\"\u003e#837\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-surefire-plugin from 3.5.5 to 3.5.6 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/900\"\u003e#900\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-toolchains-plugin from 3.2.0 to 3.3.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/928\"\u003e#928\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.surefire:surefire-testng from 3.5.5 to 3.5.6 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/897\"\u003e#897\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:animal-sniffer-maven-plugin from 1.26 to 1.27 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/852\"\u003e#852\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:exec-maven-plugin from 3.6.2 to 3.6.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/844\"\u003e#844\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/easymock/easymock/blob/master/ReleaseNotes.md\"\u003eorg.easymock:easymock's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003cp\u003eAdd Java 26 support where bytebuddy isn't using unsafe anymore.\u003c/p\u003e\n\u003ch2\u003eChange log\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd mock() methods without parameters using varargs reification (\u003ca href=\"https://redirect.github.com/easymock/easymock/issues/933\"\u003e#933\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eMock creation fails with JDK 26 and ByteBuddy 1.18.10 (\u003ca href=\"https://redirect.github.com/easymock/easymock/issues/908\"\u003e#908\u003c/a\u003e)git log --oneline\u003c/li\u003e\n\u003cli\u003eUse new Maven central plugin\u003c/li\u003e\n\u003cli\u003eUse a github_token instead\u003c/li\u003e\n\u003cli\u003eAdd the missing REST calls to fully automated the release\u003c/li\u003e\n\u003cli\u003eMove to .mvn style version\u003c/li\u003e\n\u003cli\u003eUse assertThrows all over the place\u003c/li\u003e\n\u003cli\u003eOptimize imports and finish updating to JUnit 5\u003c/li\u003e\n\u003cli\u003eUpdate eclipse configuration\u003c/li\u003e\n\u003cli\u003eMove all to UTF-8 like it should already be\u003c/li\u003e\n\u003cli\u003eUse https for xsd\u003c/li\u003e\n\u003cli\u003eUpdate objenesis to 3.6\u003c/li\u003e\n\u003cli\u003eUpdate copyrights to 2026\u003c/li\u003e\n\u003cli\u003eRemove Hamcrest usage\u003c/li\u003e\n\u003cli\u003eAdd Maven cache\u003c/li\u003e\n\u003cli\u003eBump actions/checkout from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/917\"\u003e#917\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump actions/github-script from 8 to 9 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/887\"\u003e#887\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump actions/setup-java from 5.6.0 to 5.7.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/918\"\u003e#918\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump activesupport from 8.1.2 to 8.1.2.1 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/882\"\u003e#882\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump addressable from 2.8.8 to 2.9.0 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/886\"\u003e#886\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump ch.qos.logback:logback-classic from 1.3.14 to 1.6.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/930\"\u003e#930\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.github.spotbugs:spotbugs from 4.8.6 to 4.10.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/921\"\u003e#921\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.github.spotbugs:spotbugs-maven-plugin from 4.8.6.6 to 4.10.3.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/922\"\u003e#922\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.mycila:license-maven-plugin from 4.6 to 5.1.1 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/919\"\u003e#919\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.puppycrawl.tools:checkstyle from 13.9.0 to 13.11.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/931\"\u003e#931\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump concurrent-ruby from 1.3.6 to 1.3.7 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/913\"\u003e#913\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump faraday from 2.14.2 to 2.14.3 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/912\"\u003e#912\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump json from 2.20.0 to 2.21.2 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/924\"\u003e#924\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump junit.jupiter.version from 5.14.1 to 6.1.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/926\"\u003e#926\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump net.bytebuddy:byte-buddy from 1.18.8 to 1.18.12 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/932\"\u003e#932\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump nokogiri from 1.19.3 to 1.19.4 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/911\"\u003e#911\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.felix:maven-bundle-plugin from 5.1.9 to 6.1.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/929\"\u003e#929\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-assembly-plugin from 3.7.1 to 3.8.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/832\"\u003e#832\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-compiler-plugin from 3.14.1 to 3.15.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/863\"\u003e#863\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-dependency-plugin from 3.10.0 to 3.11.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/899\"\u003e#899\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-enforcer-plugin from 3.6.2 to 3.6.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/894\"\u003e#894\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-jar-plugin from 3.4.2 to 3.5.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/833\"\u003e#833\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-resources-plugin from 3.4.0 to 3.5.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/879\"\u003e#879\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-shade-plugin from 3.6.1 to 3.6.2 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/880\"\u003e#880\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-source-plugin from 3.3.1 to 3.4.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/837\"\u003e#837\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-surefire-plugin from 3.5.5 to 3.5.6 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/900\"\u003e#900\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-toolchains-plugin from 3.2.0 to 3.3.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/928\"\u003e#928\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.surefire:surefire-testng from 3.5.5 to 3.5.6 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/897\"\u003e#897\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:animal-sniffer-maven-plugin from 1.26 to 1.27 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/852\"\u003e#852\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:exec-maven-plugin from 3.6.2 to 3.6.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/844\"\u003e#844\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:jdepend-maven-plugin from 2.1 to 2.2.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/855\"\u003e#855\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/a8422b97046b58a1671ebd4493729db070281645\"\u003e\u003ccode\u003ea8422b9\u003c/code\u003e\u003c/a\u003e Move to version 5.7.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/c0ffdcc99d2b29cd127a1e553aaac1e0e3804066\"\u003e\u003ccode\u003ec0ffdcc\u003c/code\u003e\u003c/a\u003e Flatten for oss\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/dc07999c696465eee8b5f04315f3a9adcfeadb17\"\u003e\u003ccode\u003edc07999\u003c/code\u003e\u003c/a\u003e Add missing headers\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/6047a3c60be00801eeb3887d45c6b286eaf4f10b\"\u003e\u003ccode\u003e6047a3c\u003c/code\u003e\u003c/a\u003e Class can be static\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/e208b61da22d603562342a80945bbf6a361d6c15\"\u003e\u003ccode\u003ee208b61\u003c/code\u003e\u003c/a\u003e Upgrade samples to JUnit 5 and reified calls\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/f833ee7fbf2e4f4ea6a889c5bc66bfdfee8001f7\"\u003e\u003ccode\u003ef833ee7\u003c/code\u003e\u003c/a\u003e Add reified methods (close \u003ca href=\"https://redirect.github.com/easymock/easymock/issues/933\"\u003e#933\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/ffaa64ba5001d6a2b02db5d82cb06398f75d6bb4\"\u003e\u003ccode\u003effaa64b\u003c/code\u003e\u003c/a\u003e Add flatten-maven-plugin\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/02e038e95c77116bcb7136dec58133a1a5cf363a\"\u003e\u003ccode\u003e02e038e\u003c/code\u003e\u003c/a\u003e Bump com.puppycrawl.tools:checkstyle from 13.10.0 to 13.11.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/dd4dcf8fc8acb6a1b5e5cc0c8652020ecc28da00\"\u003e\u003ccode\u003edd4dcf8\u003c/code\u003e\u003c/a\u003e Bump net.bytebuddy:byte-buddy from 1.18.11 to 1.18.12\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/4d66c46c87de489f58a23562be1eb2ad5cae0702\"\u003e\u003ccode\u003e4d66c46\u003c/code\u003e\u003c/a\u003e CI has been github actions for years now\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/easymock/easymock/compare/easymock-5.6.0...easymock-5.7.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.springframework:spring-expression` from 7.0.8 to 7.0.9\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/spring-projects/spring-framework/releases\"\u003eorg.springframework:spring-expression's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.0.9\u003c/h2\u003e\n\u003ch2\u003e:warning: Attention Required\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eIn Spring Framework 7.0.9, \u003ccode\u003eForwardedHeaderFilter\u003c/code\u003e (Spring MVC) and \u003ccode\u003eForwardedHeaderTransformer\u003c/code\u003e (WebFlux) each provide a boolean constructor argument whether to use the standard \u0026quot;Forwarded\u0026quot; header or the \u0026quot;X-Forwarded\u0026quot; alternative headers. A separate property turns on and off use of \u0026quot;X-Forwarded-Prefix\u0026quot;. While the default constructor preserves the existing behavior, we recommend to use the new constructor to explicitly specify which forwarded headers to use to make the processing more deterministic and aligned with what is expected from the proxy. Please, see the updated \u003ca href=\"https://docs.spring.io/spring-framework/reference/7.0.9-SNAPSHOT/web/webmvc/filters.html#filters-forwarded-headers-security\"\u003eSecurity Considerations\u003c/a\u003e section for details. In 7.1 with \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37072\"\u003e#37072\u003c/a\u003e the default constructor is deprecated and marked for removal. \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37090\"\u003e#37090\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIn Spring Framework 7.0.9, \u003ccode\u003eSimpleEvaluationContext\u003c/code\u003e no longer supports expression compilation by default, regardless of the compiler mode configured via \u003ccode\u003eSpelParserConfiguration\u003c/code\u003e or the \u003ccode\u003espring.expression.compiler.mode\u003c/code\u003e system property or Spring property. Applications that intentionally use \u003ccode\u003eSimpleEvaluationContext\u003c/code\u003e with trusted expressions and require compilation for performance reasons can opt in by calling \u003ccode\u003ewithCompilationSupported()\u003c/code\u003e on the \u003ccode\u003eSimpleEvaluationContext\u003c/code\u003e builder. Care should be taken when opting in to compilation, as doing so removes the safety guards applied during interpreted evaluation. \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37035\"\u003e#37035\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:star: New Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore an empty port value in URI parsing \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37117\"\u003e#37117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid retaining class files in annotation metadata \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/pull/37112\"\u003e#37112\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003e@Nullable\u003c/code\u003e annotations when treating \u003ccode\u003eMap.remove()\u003c/code\u003e as returning \u003ccode\u003e@Nullable\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/pull/37067\"\u003e#37067\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRevisit SSE view fragments handling \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37061\"\u003e#37061\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCheck list index after auto-grow in \u003ccode\u003eAbstractNestablePropertyAccessor\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37036\"\u003e#37036\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDisable SpEL expression compilation by default in \u003ccode\u003eSimpleEvaluationContext\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37035\"\u003e#37035\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eLimit result size of \u003ccode\u003eBigDecimal\u003c/code\u003e/\u003ccode\u003eBigInteger\u003c/code\u003e power operations in SpEL \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37034\"\u003e#37034\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor redirect handling in UrlHandlerFilter \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37030\"\u003e#37030\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRevise stylesheet source handling in XsltView \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37029\"\u003e#37029\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRevise view name handling in UrlFilenameViewController \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37027\"\u003e#37027\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHandle pre-flight requests in functional endpoint setup without DispatcherHandler \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37024\"\u003e#37024\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove WebSocket handshake error logging \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37023\"\u003e#37023\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix missing nullability in JdbcTemplate.batchUpdate \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/pull/37012\"\u003e#37012\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eTimeout property in RetryPolicy does not have a default constant \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36983\"\u003e#36983\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWrite native configuration files as UTF-8 \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/pull/36972\"\u003e#36972\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDefaultServerRequest.ServletParametersMap.entrySet() does not retain HttpServletRequest.getParameterMap() order \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36966\"\u003e#36966\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePerform nextKey within synchronization for SQLite as well \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36959\"\u003e#36959\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd support for custom ObjectInputFilter on DefaultDeserializer \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36958\"\u003e#36958\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRevise resource bundle caching for common locales \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36957\"\u003e#36957\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove nullability for \u003ccode\u003egetSession(*)\u003c/code\u003e in \u003ccode\u003eMockHttpServletRequest\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36926\"\u003e#36926\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove fallback logic in ParameterContentNegotiationStrategy and ParameterContentTypeResolver \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36925\"\u003e#36925\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove ambiguous match check on preflight request \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36903\"\u003e#36903\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove Groovy markup template loading \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36902\"\u003e#36902\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove request path handling on a Reactor Netty server \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36893\"\u003e#36893\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove JettyWebSocketSession error handling \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36891\"\u003e#36891\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:lady_beetle: Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eEclipseLinkJpaDialect singleton lock in EclipseLinkConnectionHandle.getConnection() serializes all JDBC connection acquisitions under load \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37085\"\u003e#37085\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadataReader fails to read byte[] array from annotation \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37083\"\u003e#37083\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEnsure parsing/tostring symmetry in ContentDisposition \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37064\"\u003e#37064\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCharacter outside of permitted range in Content Disposition \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37062\"\u003e#37062\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRelease Jackson BufferRecycler to its pool in encoders \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/pull/37059\"\u003e#37059\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEnsure consistent error escaping \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37055\"\u003e#37055\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefine template name processing \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37054\"\u003e#37054\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReset TwoByteMatcher partial match on mismatching byte \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/pull/37053\"\u003e#37053\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor async XML parsing limit checks \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37031\"\u003e#37031\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix part constraint checks in PartEventHttpMessageReader \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37028\"\u003e#37028\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix buffer leak in RSocket SETUP frame handling \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37026\"\u003e#37026\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEnsure correct Jetty core response cookie handling \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37025\"\u003e#37025\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAlign \u003ccode\u003edomainToAscii\u003c/code\u003e with current WhatWG spec \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37018\"\u003e#37018\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEnsure consistent \u003ccode\u003eButtonTag\u003c/code\u003e value attribute processing \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37017\"\u003e#37017\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/82a6b40b9366ec181ededdad282b307ee5381a52\"\u003e\u003ccode\u003e82a6b40\u003c/code\u003e\u003c/a\u003e Release Spring Framework 7.0.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/a7b1b59cbd79175ed79b0f4aa967be70288bb2ee\"\u003e\u003ccode\u003ea7b1b59\u003c/code\u003e\u003c/a\u003e Upgrade to Reactor 2025.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/996e3d3f18dbb13d92a2eaf988abfe77b06928d4\"\u003e\u003ccode\u003e996e3d3\u003c/code\u003e\u003c/a\u003e Upgrade to Micrometer 1.16.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/73f5ddddcd4278580c9c879b2effdac29aa3bff5\"\u003e\u003ccode\u003e73f5ddd\u003c/code\u003e\u003c/a\u003e Refactor maxInMemory limit handling for async XML parsing\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/675f25de72e7ac31db1ffe0dc324381d7cc1a308\"\u003e\u003ccode\u003e675f25d\u003c/code\u003e\u003c/a\u003e Leading slash handling in UrlHandlerFilter\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/692dbc9160de3b5de50ccedeee014716d0cedb7b\"\u003e\u003ccode\u003e692dbc9\u003c/code\u003e\u003c/a\u003e Apply ResourceHandlerUtils checks in XsltView\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/8647e90bc7b2da9b299566296f2b253a6fd9c128\"\u003e\u003ccode\u003e8647e90\u003c/code\u003e\u003c/a\u003e Consistent maxPartSize check in PartEventHttpMessageReader\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/b9379e33d52b491e227715776a072d07bcccddab\"\u003e\u003ccode\u003eb9379e3\u003c/code\u003e\u003c/a\u003e Check viewName for special prefixes in UrlFilenameViewController\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/a784dbe286beaa70e5a88638b6af7f58f458c07e\"\u003e\u003ccode\u003ea784dbe\u003c/code\u003e\u003c/a\u003e Ensure Payload release on early error in createHeaders\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/3b492f3908df3fe0adc639b7da98f737d1ff7a02\"\u003e\u003ccode\u003e3b492f3\u003c/code\u003e\u003c/a\u003e Return sameSite cookie value in Jetty response\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/spring-projects/spring-framework/compare/v7.0.8...v7.0.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `tools.jackson:jackson-bom` from 3.2.1 to 3.2.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/719429d87e0d92615d67668cb3329b8dd1505b37\"\u003e\u003ccode\u003e719429d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-bom-3.2.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/d0b98774d055e546461f1a7c7da3f3bc5361a881\"\u003e\u003ccode\u003ed0b9877\u003c/code\u003e\u003c/a\u003e Prep for 3.2.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/e32f526099b197d4dfb54de78f61b6fb60d716f0\"\u003e\u003ccode\u003ee32f526\u003c/code\u003e\u003c/a\u003e Merge branch '3.1' into 3.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/113f6a1c10d68bc7d5c68e3f32e460fb9ed3059d\"\u003e\u003ccode\u003e113f6a1\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/46176f6827827d1be11758b12cdfadac0bf15b6d\"\u003e\u003ccode\u003e46176f6\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/8b4a513d2b5a34079eaa358109d87fbc99639d78\"\u003e\u003ccode\u003e8b4a513\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-bom-3.1.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/adeda6f6cf5e631ff7155a0cda3c56e8fc828a96\"\u003e\u003ccode\u003eadeda6f\u003c/code\u003e\u003c/a\u003e Prep for 3.1.6 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/c3a4debfa3d36192ea8a7ea4b54a698f46b025b8\"\u003e\u003ccode\u003ec3a4deb\u003c/code\u003e\u003c/a\u003e Merge branch '3.1' into 3.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/3c74470ab201f11de73204a35abe38150640360b\"\u003e\u003ccode\u003e3c74470\u003c/code\u003e\u003c/a\u003e Merge branch '2.x' into 3.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/06416bab1a4a7258531eee9686b80c619bfecea6\"\u003e\u003ccode\u003e06416ba\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/FasterXML/jackson-bom/issues/129\"\u003e#129\u003c/a\u003e from FasterXML/tatu/2.23/woodstox-7.2.2\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-bom/compare/jackson-bom-3.2.1...jackson-bom-3.2.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.puppycrawl.tools:checkstyle` from 13.8.0 to 14.1.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/checkstyle/checkstyle/releases\"\u003ecom.puppycrawl.tools:checkstyle's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003echeckstyle-14.1.0\u003c/h2\u003e\n\u003cp\u003eCheckstyle 14.1.0 - \u003ca href=\"https://checkstyle.org/releasenotes.html#Release_14.1.0\"\u003ehttps://checkstyle.org/releasenotes.html#Release_14.1.0\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eNew:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/14872\"\u003e#14872\u003c/a\u003e - UnnecessaryParentheses: no violation if casting is present before expression.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21163\"\u003e#21163\u003c/a\u003e - SuppressWarnings: no support for module declarations.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21161\"\u003e#21161\u003c/a\u003e - NoLineWrap: no support for module declarations.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21162\"\u003e#21162\u003c/a\u003e - OpenjdkAnnotationLocation: no support for module declarations.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20692\"\u003e#20692\u003c/a\u003e - new Check: ExpressionOverBlockLambda.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21062\"\u003e#21062\u003c/a\u003e - New Check: InappropriateJavadocBlockTagsOnField.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19967\"\u003e#19967\u003c/a\u003e - New Check: ModuleImportOrder.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21063\"\u003e#21063\u003c/a\u003e - New Check: InappropriateJavadocBlockTagsOnPackage.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21088\"\u003e#21088\u003c/a\u003e - New Check: ModuleDirectiveOrder.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19968\"\u003e#19968\u003c/a\u003e - New Check: AvoidModuleImport.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20982\"\u003e#20982\u003c/a\u003e - New check: JavadocEndCommentDelimiter.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19885\"\u003e#19885\u003c/a\u003e - New Check: UnnecessaryFullyQualifiedTypeCheck.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/12596\"\u003e#12596\u003c/a\u003e - Add UnusedPrivateField  check for unused private fields.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19937\"\u003e#19937\u003c/a\u003e - New check: JavadocLinkFirstOccurrence.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20792\"\u003e#20792\u003c/a\u003e - New check: JavadocNoErrorInThrowsTag.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21061\"\u003e#21061\u003c/a\u003e - New Check: InappropriateJavadocBlockTagsOnType.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19938\"\u003e#19938\u003c/a\u003e - New check: JavadocLinkWellKnownApi.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19698\"\u003e#19698\u003c/a\u003e - New check: JavadocThrowsOrderCheck.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/8990\"\u003e#8990\u003c/a\u003e - New check JavadocParamOrder: to validate method parameter order in javadoc to match parameter order in method.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20986\"\u003e#20986\u003c/a\u003e - new Check: PreferCodeOrSnippetJavadocInlineTag.\u003c/p\u003e\n\u003cp\u003eBug fixes:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21199\"\u003e#21199\u003c/a\u003e - JavadocPackage: false positive \u0026quot;Missing package-info.java file\u0026quot; on module-info.java.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/4454\"\u003e#4454\u003c/a\u003e - Fix wrong implementation of compareTo in LocalizedMessages.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19156\"\u003e#19156\u003c/a\u003e - VariableDeclarationUsageDistance: no violation on variable used in inner class.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/3885\"\u003e#3885\u003c/a\u003e - FallThrough check doesn't handle infinite loops.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21343\"\u003e#21343\u003c/a\u003e - Update Documentation Comments Style Guide: add JavadocEndCommentDelimiter.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21331\"\u003e#21331\u003c/a\u003e - False Positive: IllegalInstantiationCheck does not recognize records shadowing java.lang.Boolean.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19948\"\u003e#19948\u003c/a\u003e - Update Documentation Comments Style Guide: param description separator.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20227\"\u003e#20227\u003c/a\u003e - ClassMemberImpliedModifierCheck: nested enum/interface missing implied static not flagged in compact source files (JEP 512).\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21336\"\u003e#21336\u003c/a\u003e - Update Documentation Comments Style Guide: add JavadocNoErrorInThrowsTagCheck.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20978\"\u003e#20978\u003c/a\u003e - Extend OpenjdkAnnotationLocationCheck to allow Annotation on target line for all single line targets and add check in openjdk_checks.xml.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21320\"\u003e#21320\u003c/a\u003e - Update Documentation Comments Style Guide:  add JavadocLinkWellKnownApi JavadocLinkFirstOccurrence.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21218\"\u003e#21218\u003c/a\u003e - Enable in Doc Comments style guide: JavadocParamOrder and JavadocThrowsOrderare.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20555\"\u003e#20555\u003c/a\u003e - WriteTagCheck: first top-level method's Javadoc tags not reported in compact source files (JEP 512).\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/1bfc2e23003d419835b0c9c6f60247b9d0c8b1bb\"\u003e\u003ccode\u003e1bfc2e2\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release checkstyle-14.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/bdf617f9076a5a4b0a2f4d059893da50469e24a4\"\u003e\u003ccode\u003ebdf617f\u003c/code\u003e\u003c/a\u003e doc: release notes for 14.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/ae866b226284057bad8481419bc3b1f557234e03\"\u003e\u003ccode\u003eae866b2\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/12189\"\u003e#12189\u003c/a\u003e: Test ArchUnit unnecessary suppressions\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/88ab43ffa9a123002580651313fc745c40ebb725\"\u003e\u003ccode\u003e88ab43f\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21229\"\u003e#21229\u003c/a\u003e: Align AtclauseOrder examples with property count\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/a2703ce6656769ef4f740d99040e258990d08bbe\"\u003e\u003ccode\u003ea2703ce\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21229\"\u003e#21229\u003c/a\u003e: Align LineEnding examples with property count\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/8d88ee0783fb1ceef6df6a34eca7633f0d0733d6\"\u003e\u003ccode\u003e8d88ee0\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20692\"\u003e#20692\u003c/a\u003e: Add new check ExpressionOverBlockLambda\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/07e06a612a07cb94f6deb537bd49846429babcd0\"\u003e\u003ccode\u003e07e06a6\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21229\"\u003e#21229\u003c/a\u003e: Align JavadocBlockTagLocation examples with property count\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/4205f8df9fbdcbcadfc42870e742c5b5e75b96f2\"\u003e\u003ccode\u003e4205f8d\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21393\"\u003e#21393\u003c/a\u003e: Improper indentation in property_types.html code snippets\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/ee4191b2517085565b9e237a6786360ff9c34dec\"\u003e\u003ccode\u003eee4191b\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21062\"\u003e#21062\u003c/a\u003e: Add InappropriateJavadocBlockTagsOnField check\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/47b4b774648d2229c40e78572e37def1e1b26c45\"\u003e\u003ccode\u003e47b4b77\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/13159\"\u003e#13159\u003c/a\u003e: naming convention change for xdoc files\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/checkstyle/checkstyle/compare/checkstyle-13.8.0...checkstyle-14.1.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.codehaus.mojo:build-helper-maven-plugin` from 3.6.1 to 3.6.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/releases\"\u003eorg.codehaus.mojo:build-helper-maven-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.6.2\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReplace raw \u003ccode\u003eNPEx\u003c/code\u003e with customized exception message (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/239\"\u003e#239\u003c/a\u003e) \u003ca href=\"https://github.com/pzygielo\"\u003e\u003ccode\u003e@​pzygielo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove redundant maven-resolver-api dependency and ignore Resolver/SLF4J 2.x in Dependabot (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/248\"\u003e#248\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cul\u003e\n\u003cli\u003eRemove redundant maven-resolver-api dependency and ignore Resolver/SLF4J 2.x in Dependabot (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/248\"\u003e#248\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-utils from 4.0.3 to 4.1.0 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/247\"\u003e#247\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/244\"\u003e#244\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 96 to 97 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/246\"\u003e#246\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/245\"\u003e#245\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-utils from 4.0.2 to 4.0.3 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/241\"\u003e#241\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 95 to 96 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/240\"\u003e#240\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 94 to 95 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/235\"\u003e#235\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 93 to 94 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/233\"\u003e#233\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 92 to 93 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/232\"\u003e#232\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 91 to 92 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/231\"\u003e#231\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/813bc7d2f03f2c9975de1f079cf7a7334211e0b6\"\u003e\u003ccode\u003e813bc7d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release 3.6.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/07d91091b06db894178bcb6e71bc55f857546f46\"\u003e\u003ccode\u003e07d9109\u003c/code\u003e\u003c/a\u003e Remove redundant maven-resolver-api and ignore Resolver/SLF4J 2.x in Dependabot\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/9abd552f324e429beb586407139eb4d43127344a\"\u003e\u003ccode\u003e9abd552\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-utils from 4.0.3 to 4.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/3c15526bf151e28d6ce651197b36958164da4d4a\"\u003e\u003ccode\u003e3c15526\u003c/code\u003e\u003c/a\u003e Bump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/3b1f104096756ce33e8fc3e4c3062b1ccd8cf227\"\u003e\u003ccode\u003e3b1f104\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.mojo:mojo-parent from 96 to 97\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/1749855c90317f651eed427e45cb27c52cf8a542\"\u003e\u003ccode\u003e1749855\u003c/code\u003e\u003c/a\u003e Bump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/52300415d70e84a20924c06c26d9375b152e5409\"\u003e\u003ccode\u003e5230041\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-utils from 4.0.2 to 4.0.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/c0e937567a4604534e32cf3cc4c3abb43bfa243c\"\u003e\u003ccode\u003ec0e9375\u003c/code\u003e\u003c/a\u003e Delete .github/release-drafter.yml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/84a839e4cb9b84b3afbbeef7f6c950ba5b478b31\"\u003e\u003ccode\u003e84a839e\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.mojo:mojo-parent from 95 to 96\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/a85c668b83334b423844fc448709b1d6e53cb32c\"\u003e\u003ccode\u003ea85c668\u003c/code\u003e\u003c/a\u003e Replace raw \u003ccode\u003eNPEx\u003c/code\u003e with customized exception message\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/compare/3.6.1...3.6.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.maven.plugins:maven-jar-plugin` from 3.5.0 to 3.5.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/maven-jar-plugin/releases\"\u003eorg.apache.maven.plugins:maven-jar-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.5.1\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e📝 Documentation updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/550\"\u003e#550\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/550\"\u003e#550\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse plugin version properties (3.x) (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/535\"\u003e#535\u003c/a\u003e) \u003ca href=\"https://github.com/Bukama\"\u003e\u003ccode\u003e@​Bukama\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 48 to 49 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/547\"\u003e#547\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-archiver from 4.11.0 to 4.12.0 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/538\"\u003e#538\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.15 to 3.9.16 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/536\"\u003e#536\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 47 to 48 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/534\"\u003e#534\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump commons-io:commons-io from 2.21.0 to 2.22.0 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/529\"\u003e#529\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.14 to 3.9.15 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/528\"\u003e#528\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.12 to 3.9.14 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/526\"\u003e#526\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugin-testing:maven-plugin-testing-harness from 3.5.0 to 3.5.1 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/523\"\u003e#523\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 46 to 47 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/519\"\u003e#519\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-archiver from 4.10.4 to 4.11.0 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/516\"\u003e#516\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugin-testing:maven-plugin-testing-harness from 3.4.0 to 3.5.0 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/517\"\u003e#517\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 45 to 46 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/514\"\u003e#514\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven:maven-archiver from 3.6.5 to 3.6.6 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/511\"\u003e#511\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.11 to 3.9.12 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/509\"\u003e#509\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/b0cd63d0ad544aa552f06e4492faf984bf2c85c1\"\u003e\u003ccode\u003eb0cd63d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release maven-jar-plugin-3.5.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/5318a4feaf529d6fa22c4622fff2d54fefe7f7dd\"\u003e\u003ccode\u003e5318a4f\u003c/code\u003e\u003c/a\u003e Add AGENTS.md + SECURITY.md security-model pointer for scanner discoverability\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/8e0b9bb307fc29b8d267f18eca9d47be0a7f16e0\"\u003e\u003ccode\u003e8e0b9bb\u003c/code\u003e\u003c/a\u003e Bump org.apache.maven.plugins:maven-plugins from 48 to 49 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/issues/547\"\u003e#547\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/d5a438b6add9a9115f5a2c9b27db67e0d962bb74\"\u003e\u003ccode\u003ed5a438b\u003c/code\u003e\u003c/a\u003e Fix javadoc\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/774fac9215d92bfac67ece082872b00475580b21\"\u003e\u003ccode\u003e774fac9\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-archiver from 4.11.0 to 4.12.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/b71f40368edc878b3dcaa9840d950bd7d297d4c4\"\u003e\u003ccode\u003eb71f403\u003c/code\u003e\u003c/a\u003e Bump mavenVersion from 3.9.15 to 3.9.16 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/issues/536\"\u003e#536\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/9f2a001a00fcbb0408219a11f62b48c4dfde78d3\"\u003e\u003ccode\u003e9f2a001\u003c/code\u003e\u003c/a\u003e Use plugin version properties (3.x) (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/issues/535\"\u003e#535\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/68a978f952ba510f7378fd287c5172dc560079e3\"\u003e\u003ccode\u003e68a978f\u003c/code\u003e\u003c/a\u003e Bump org.apache.maven.plugins:maven-plugins from 47 to 48 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/issues/534\"\u003e#534\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/e1058217f657691a3e50b0c7e0620fd13c8e83c3\"\u003e\u003ccode\u003ee105821\u003c/code\u003e\u003c/a\u003e Bump commons-io:commons-io from 2.21.0 to 2.22.0 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/issues/529\"\u003e#529\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/953dc1abbb527b8128657f2aeadfdca0557d974d\"\u003e\u003ccode\u003e953dc1a\u003c/code\u003e\u003c/a\u003e Bump mavenVersion from 3.9.14 to 3.9.15 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/issues/528\"\u003e#528\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/maven-jar-plugin/compare/maven-jar-plugin-3.5.0...maven-jar-plugin-3.5.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.maven.plugins:maven-compiler-plugin` from 3.15.0 to 3.16.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/maven-compiler-plugin/releases\"\u003eorg.apache.maven.plugins:maven-compiler-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.16.0\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRecompile when dependencies change (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1102\"\u003e#1102\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix incremental detection of empty sources, 3.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1075\"\u003e#1075\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-578\"\u003e[MCOMPILER-578]\u003c/a\u003e - Track outputs across compiler executions (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1091\"\u003e#1091\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBuild fails when annotation processor list is empty (but present) (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1077\"\u003e#1077\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-374\"\u003e[MCOMPILER-374]\u003c/a\u003e - Unable to compile MR-JAR code against older directories when module-info.java is present (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1093\"\u003e#1093\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake mcompiler-120 IT locale independent (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1063\"\u003e#1063\u003c/a\u003e) \u003ca href=\"https://github.com/anilvdl\"\u003e\u003ccode\u003e@​anilvdl\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📝 Documentation updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-569\"\u003e[MCOMPILER-569]\u003c/a\u003e - Document implicitly compiled excluded sources (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1092\"\u003e#1092\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1074\"\u003e#1074\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAvoid using deprecated method CompilerConfiguration.setCompilerVersion (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1121\"\u003e#1121\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReplace adopt-openj9 by semeru JDK distribution on GH (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1122\"\u003e#1122\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePort the site documentation from APT to Markdown (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1110\"\u003e#1110\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eVerify against Maven 4.0.0-rc-6 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1105\"\u003e#1105\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix tests on Jenkins (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1100\"\u003e#1100\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1074\"\u003e#1074\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor compiler mojo to use dependency injection and improve string… (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1066\"\u003e#1066\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix ITs for Maven 3.10.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1061\"\u003e#1061\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate maven-surefire-plugin version to 3.x in the MCOMPILER-481 IT (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1035\"\u003e#1035\u003c/a\u003e) \u003ca href=\"https://github.com/cdouillard\"\u003e\u003ccode\u003e@​cdouillard\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump plexusCompilerVersion from 2.16.2 to 2.17.0 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1112\"\u003e#1112\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1113\"\u003e#1113\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003euse latest Maven 4 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1045\"\u003e#1045\u003c/a\u003e) \u003ca href=\"https://github.com/hboutemy\"\u003e\u003ccode\u003e@​hboutemy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1083\"\u003e#1083\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/pr-automation.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1082\"\u003e#1082\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1084\"\u003e#1084\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 48 to 49 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1068\"\u003e#1068\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-invoker-plugin from 3.9.1 to 3.10.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1047\"\u003e#1047\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 47 to 48 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1050\"\u003e#1050\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.14 to 3.9.16 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1054\"\u003e#1054\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.ow2.asm:asm from 9.10 to 9.10.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1059\"\u003e#1059\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.ow2.asm:asm from 9.9.1 to 9.10 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1053\"\u003e#1053\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.13 to 3.9.14 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1041\"\u003e#1041\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.12 to 3.9.13 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1038\"\u003e#1038\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugin-testing:maven-plugin-testing-harness from 3.5.0 to 3.5.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1032\"\u003e#1032\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/e7bba6ed5f9c17003d5c5d1413144bb214177408\"\u003e\u003ccode\u003ee7bba6e\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release maven-compiler-plugin-3.16.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"h...\n\n_Description has been truncated_","html_url":"https://github.com/changsongyang/hibernate-validator/pull/90","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/changsongyang%2Fhibernate-validator/issues/90","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/90/packages"},{"uuid":"5457492621","node_id":"PR_kwDOBNevYc8AAAABDjNTWQ","number":494,"state":"open","title":"chore(deps): Bump the maven-minor-patch group across 1 directory with 27 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":3,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-15T04:25:39.000Z","updated_at":"2026-09-15T04:26:54.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): Bump","group_name":"maven-minor-patch","update_count":27,"packages":[{"name":"org.projectlombok:lombok","old_version":"1.18.46","new_version":"1.18.48","repository_url":"https://github.com/projectlombok/lombok"},{"name":"io.smallrye.common:smallrye-common-function","old_version":"2.19.0","new_version":"2.20.0","repository_url":"https://github.com/smallrye/smallrye-common"},{"name":"org.hibernate.validator:hibernate-validator","old_version":"9.1.2.Final","new_version":"9.1.3.Final","repository_url":"https://github.com/hibernate/hibernate-validator"},{"name":"org.springframework.boot:spring-boot-starter-parent","old_version":"4.1.0","new_version":"4.1.1","repository_url":"https://github.com/spring-projects/spring-boot"},{"name":"org.apache.maven.plugins:maven-surefire-plugin","old_version":"3.5.6","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-surefire"},{"name":"org.apache.maven.plugins:maven-compiler-plugin","old_version":"3.15.0","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-compiler-plugin"},{"name":"org.codehaus.mojo:build-helper-maven-plugin","old_version":"3.6.1","new_version":"3.6.2","repository_url":"https://github.com/mojohaus/build-helper-maven-plugin"},{"name":"io.projectreactor:reactor-core","old_version":"3.8.6","new_version":"3.8.7","repository_url":"https://github.com/reactor/reactor-core"},{"name":"com.fasterxml.jackson.core:jackson-databind","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-databind"},{"name":"io.swagger.core.v3:swagger-annotations","old_version":"2.2.52","new_version":"2.2.55"},{"name":"org.freemarker:freemarker","old_version":"2.3.34","new_version":"2.3.35"},{"name":"net.bytebuddy:byte-buddy-agent","old_version":"1.18.11","new_version":"1.18.13","repository_url":"https://github.com/raphw/byte-buddy"},{"name":"net.bytebuddy:byte-buddy","old_version":"1.18.11","new_version":"1.18.13","repository_url":"https://github.com/raphw/byte-buddy"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"org.slf4j:slf4j-api","old_version":"2.0.18","new_version":"2.0.19"},{"name":"com.fasterxml.jackson.datatype:jackson-datatype-jsr310","old_version":"2.22.1","new_version":"2.22.2"},{"name":"com.fasterxml.jackson.dataformat:jackson-dataformat-yaml","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-dataformats-text"},{"name":"com.auth0:java-jwt","old_version":"4.6.0","new_version":"4.6.1","repository_url":"https://github.com/auth0/java-jwt"},{"name":"io.smallrye:jandex-maven-plugin","old_version":"3.2.7","new_version":"3.6.0","repository_url":"https://github.com/smallrye/jandex"},{"name":"io.projectreactor:reactor-test","old_version":"3.8.6","new_version":"3.8.7","repository_url":"https://github.com/reactor/reactor-core"},{"name":"io.quarkus:quarkus-rest","old_version":"3.38.0","new_version":"3.39.3"},{"name":"io.quarkus:quarkus-spring-di","old_version":"3.38.0","new_version":"3.39.3"},{"name":"io.helidon.webserver:helidon-webserver","old_version":"4.5.1","new_version":"4.5.4"},{"name":"org.apache.maven:maven-plugin-api","old_version":"3.9.9","new_version":"3.9.16","repository_url":"https://github.com/apache/maven"},{"name":"org.apache.maven:maven-core","old_version":"3.9.9","new_version":"3.9.16"},{"name":"org.apache.maven.plugin-tools:maven-plugin-annotations","old_version":"3.13.1","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-plugin-tools"},{"name":"org.apache.maven.plugins:maven-plugin-plugin","old_version":"3.13.1","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-plugin-tools"}],"path":null,"ecosystem":"maven"},"body":"Bumps the maven-minor-patch group with 27 updates in the /backend directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [org.projectlombok:lombok](https://github.com/projectlombok/lombok) | `1.18.46` | `1.18.48` |\n| [io.smallrye.common:smallrye-common-function](https://github.com/smallrye/smallrye-common) | `2.19.0` | `2.20.0` |\n| [org.hibernate.validator:hibernate-validator](https://github.com/hibernate/hibernate-validator) | `9.1.2.Final` | `9.1.3.Final` |\n| [org.springframework.boot:spring-boot-starter-parent](https://github.com/spring-projects/spring-boot) | `4.1.0` | `4.1.1` |\n| [org.apache.maven.plugins:maven-surefire-plugin](https://github.com/apache/maven-surefire) | `3.5.6` | `3.6.0` |\n| [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin) | `3.15.0` | `3.16.0` |\n| [org.codehaus.mojo:build-helper-maven-plugin](https://github.com/mojohaus/build-helper-maven-plugin) | `3.6.1` | `3.6.2` |\n| [io.projectreactor:reactor-core](https://github.com/reactor/reactor-core) | `3.8.6` | `3.8.7` |\n| [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson-databind) | `2.22.1` | `2.22.2` |\n| io.swagger.core.v3:swagger-annotations | `2.2.52` | `2.2.55` |\n| org.freemarker:freemarker | `2.3.34` | `2.3.35` |\n| [net.bytebuddy:byte-buddy-agent](https://github.com/raphw/byte-buddy) | `1.18.11` | `1.18.13` |\n| [net.bytebuddy:byte-buddy](https://github.com/raphw/byte-buddy) | `1.18.11` | `1.18.13` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| org.slf4j:slf4j-api | `2.0.18` | `2.0.19` |\n| com.fasterxml.jackson.datatype:jackson-datatype-jsr310 | `2.22.1` | `2.22.2` |\n| [com.fasterxml.jackson.dataformat:jackson-dataformat-yaml](https://github.com/FasterXML/jackson-dataformats-text) | `2.22.1` | `2.22.2` |\n| [com.auth0:java-jwt](https://github.com/auth0/java-jwt) | `4.6.0` | `4.6.1` |\n| [io.smallrye:jandex-maven-plugin](https://github.com/smallrye/jandex) | `3.2.7` | `3.6.0` |\n| [io.projectreactor:reactor-test](https://github.com/reactor/reactor-core) | `3.8.6` | `3.8.7` |\n| io.quarkus:quarkus-rest | `3.38.0` | `3.39.3` |\n| io.quarkus:quarkus-spring-di | `3.38.0` | `3.39.3` |\n| io.helidon.webserver:helidon-webserver | `4.5.1` | `4.5.4` |\n| [org.apache.maven:maven-plugin-api](https://github.com/apache/maven) | `3.9.9` | `3.9.16` |\n| org.apache.maven:maven-core | `3.9.9` | `3.9.16` |\n| [org.apache.maven.plugin-tools:maven-plugin-annotations](https://github.com/apache/maven-plugin-tools) | `3.13.1` | `3.16.0` |\n| [org.apache.maven.plugins:maven-plugin-plugin](https://github.com/apache/maven-plugin-tools) | `3.13.1` | `3.16.0` |\n\n\nUpdates `org.projectlombok:lombok` from 1.18.46 to 1.18.48\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/projectlombok/lombok/blob/master/doc/changelog.markdown\"\u003eorg.projectlombok:lombok's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003ev1.18.48 (September 1st, 2026)\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBREAKING CHANGE/BUGFIX: \u003ccode\u003e@Builder(builderClassName = \u0026quot;Builder\u0026quot;)\u003c/code\u003e now generates an error, because the type names collide. \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/3857\"\u003e#3857\u003c/a\u003e  (found after release)\u003c/li\u003e\n\u003cli\u003ePLATFORM: JDK27 support added \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/4072\"\u003e#4072\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eBUGFIX: \u003ccode\u003e@SneakyThrows\u003c/code\u003e usage on JDK26 no longer results in class files that require \u003ccode\u003elombok.jar\u003c/code\u003e to be on the runtime classpath (which should not be neccessary). \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/4040\"\u003e#4040\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eFEATURE: New \u003ca href=\"https://projectlombok.org/features/configuration\"\u003econfig key\u003c/a\u003e \u003ccode\u003elombok.checkReturnValueAnnotation\u003c/code\u003e (values: \u003ccode\u003enone\u003c/code\u003e, \u003ccode\u003elombok\u003c/code\u003e; default: \u003ccode\u003enone\u003c/code\u003e) lets lombok generate \u003ccode\u003e@lombok.CheckReturnValue\u003c/code\u003e on generated methods where the return value should not be ignored, such as \u003ccode\u003e@With\u003c/code\u003e methods and \u003ccode\u003e@Builder.build()\u003c/code\u003e. A future lombok release may flip the default to \u003ccode\u003elombok\u003c/code\u003e. \u003ca href=\"https://redirect.github.com/projectlombok/lombok/pull/4013\"\u003e#4013\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003ePROMOTION: \u003ccode\u003e@SuperBuilder\u003c/code\u003e has been promoted to the main package. Otherwise, no changes have been made to the annotation. The old experimental annotation will remain for a few versions, at which point it will be marked as a deprecated annotation. Eventually it'll be removed. If you had \u003ccode\u003elombok.config\u003c/code\u003e configuration for this annotation, the configuration keys for this feature have been renamed. \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/2209\"\u003e#2209\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eOLD-CRUFT: \u003ccode\u003elombok.experimental.Wither\u003c/code\u003e and \u003ccode\u003elombok.Delegate\u003c/code\u003e are deprecated remnants; these features were moved (to respectively \u003ccode\u003elombok.With\u003c/code\u003e and \u003ccode\u003elombok.experimental.Delegate\u003c/code\u003e over 5 years ago. They are now removed entirely. If your project is dependent on an older version of lombok which still has those; fret not, lombok still processes these annotations. It just no longer includes them in the jar.\u003c/li\u003e\n\u003cli\u003eFEATURE: CheckerFramework: Lombok now adds \u003ccode\u003e@SideEffectFree\u003c/code\u003e to constructors it makes if you have enabled checker framework via \u003ccode\u003elombok.config\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eBUGFIX: CheckerFramework: Lombok would add \u003ccode\u003e@SideEffectFree\u003c/code\u003e to the \u003ccode\u003ebuild()\u003c/code\u003e method of any generated builder, even if it is a builder for invoking a method; in that case, the side-effect-free nature of \u003ccode\u003ebuild()\u003c/code\u003e mirrors the side-effect-free nature of the method invocation you've built. Lombok now checks if the method it generated a builder for is side effect free / 'check return type'.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/b48657c83ce44d027984f539bd36048293ce5e8e\"\u003e\u003ccode\u003eb48657c\u003c/code\u003e\u003c/a\u003e [version] pre-release version bump v1.18.48\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/d1d003945f864d32bb3115cf81fa363e1c7bc6bb\"\u003e\u003ccode\u003ed1d0039\u003c/code\u003e\u003c/a\u003e Merge branch 'jdk27'\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/1a23dad52c01e7b18892573549841e36d6e4abde\"\u003e\u003ccode\u003e1a23dad\u003c/code\u003e\u003c/a\u003e [review][refactor] No meaningful changes: Improved comments, javadoc, and cle...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/40cdde815038a4bddc2bc31afce80c4c62e75e67\"\u003e\u003ccode\u003e40cdde8\u003c/code\u003e\u003c/a\u003e [changelog] JDK27 support\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/25eae29093410cba53e3f91e2da4ba1fbf1953f4\"\u003e\u003ccode\u003e25eae29\u003c/code\u003e\u003c/a\u003e Add Danish Nawab to AUTHORS\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/10ab92b5d9eb852ccac7295d8017203e7efd7449\"\u003e\u003ccode\u003e10ab92b\u003c/code\u003e\u003c/a\u003e Support JDK27: end positions moved from EndPosTable to JCTree.endpos\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/af01b7a27b469b723e88de508480186113569185\"\u003e\u003ccode\u003eaf01b7a\u003c/code\u003e\u003c/a\u003e Document the new configuration syntax for listy things\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/1be3857dfef96cde703012a43ec649a4c3f7eea9\"\u003e\u003ccode\u003e1be3857\u003c/code\u003e\u003c/a\u003e There is no more HtAccess\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/405985dd2512786439448e43f390c359e7595269\"\u003e\u003ccode\u003e405985d\u003c/code\u003e\u003c/a\u003e Semantic sections for website\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/04b73406d04a279401b43a74314aa1dcbadbc143\"\u003e\u003ccode\u003e04b7340\u003c/code\u003e\u003c/a\u003e [trivial] fixing some outdated tests (tests were broken, not lombok).\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/projectlombok/lombok/compare/v1.18.46...v1.18.48\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.smallrye.common:smallrye-common-function` from 2.19.0 to 2.20.0\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/defd310a881f1c168e958f8f73fc7c6518499a4e\"\u003e\u003ccode\u003edefd310\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release 2.20.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/ffc98f68f60160620b1156b233dd650104f09862\"\u003e\u003ccode\u003effc98f6\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/smallrye/smallrye-common/issues/581\"\u003e#581\u003c/a\u003e from smallrye/release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/7cf7fcc86bddc8a9e96f14a34ac292e617d0202b\"\u003e\u003ccode\u003e7cf7fcc\u003c/code\u003e\u003c/a\u003e Release 2.20.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/e6f3c592559944617e16f008f1d1ac3285fcef75\"\u003e\u003ccode\u003ee6f3c59\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/smallrye/smallrye-common/issues/579\"\u003e#579\u003c/a\u003e from smallrye/dependabot/maven/version.vertx4-4.5.30\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/232049fc7397665ed85ed6a57ae57574a7a2b84f\"\u003e\u003ccode\u003e232049f\u003c/code\u003e\u003c/a\u003e Bump version.vertx4 from 4.5.29 to 4.5.30\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/b89fee46677f6d62fa10cfb67adb16fbe9fe767a\"\u003e\u003ccode\u003eb89fee4\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/smallrye/smallrye-common/issues/576\"\u003e#576\u003c/a\u003e from smallrye/dependabot/maven/org.graalvm.sdk-native...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/d2c6a36fce245cb95cf3a08f8268c530f6eceeff\"\u003e\u003ccode\u003ed2c6a36\u003c/code\u003e\u003c/a\u003e Bump org.graalvm.sdk:nativeimage from 25.0.3 to 25.1.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/dc378965bead25b95112ee86c264ff88b41fd7e4\"\u003e\u003ccode\u003edc37896\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/smallrye/smallrye-common/issues/578\"\u003e#578\u003c/a\u003e from smallrye/dependabot/maven/version.vertx4-4.5.29\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/3d73326ea1c881fad45e48db7a67383359be1f35\"\u003e\u003ccode\u003e3d73326\u003c/code\u003e\u003c/a\u003e Bump version.vertx4 from 4.5.28 to 4.5.29\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/bdb9f0b6c1089eddb54a3959905d0316aa49db37\"\u003e\u003ccode\u003ebdb9f0b\u003c/code\u003e\u003c/a\u003e Bump io.smallrye:smallrye-parent from 50 to 51 (\u003ca href=\"https://redirect.github.com/smallrye/smallrye-common/issues/577\"\u003e#577\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/smallrye/smallrye-common/compare/2.19.0...2.20.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.hibernate.validator:hibernate-validator` from 9.1.2.Final to 9.1.3.Final\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/hibernate/hibernate-validator/releases\"\u003eorg.hibernate.validator:hibernate-validator's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eRelease 9.1.3.Final\u003c/h2\u003e\n\u003ch1\u003eHibernate Validator 9.1.3.Final released\u003c/h1\u003e\n\u003cp\u003eWe are pleased to announce the release of Hibernate Validator 9.1: 9.1.3.Final.\u003c/p\u003e\n\u003cp\u003eYou can find the full list of 9.1.3.Final changes \u003ca href=\"https://hibernate.atlassian.net/issues/?jql=project%20%3D%20HV%20AND%20fixVersion%20%3D%209.1.3.Final\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eWhat's new\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSee the \u003ca href=\"https://hibernate.org/validator/releases/9.1\"\u003ewebsite\u003c/a\u003e for requirements and compatibilities.\u003c/li\u003e\n\u003cli\u003eSee the \u003ca href=\"https://docs.hibernate.org/validator/9.1/whats-new/en-US/html_single/\"\u003eWhat's New\u003c/a\u003e guide for details about new features and capabilities.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eConclusion\u003c/h2\u003e\n\u003cp\u003eFor additional details, see:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003ethe \u003ca href=\"https://hibernate.org/validator/releases/9.1/\"\u003erelease page\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/validator/9.1/migration-guide/\"\u003eMigration Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/validator/9.1/reference/en-US/html_single/#validator-gettingstarted\"\u003eGetting started\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/validator/9.1/reference/en-US/html_single/\"\u003eReference Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/validator/9.1/api\"\u003eAPI docs\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eVisit the \u003ca href=\"https://hibernate.org/community/\"\u003ewebsite\u003c/a\u003e for details on getting in touch with us.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/hibernate/hibernate-validator/blob/9.1.3.Final/changelog.md\"\u003eorg.hibernate.validator:hibernate-validator's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e9.1.3.Final (2026-07-26)\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://hibernate.atlassian.net/projects/HV/versions/40065\"\u003eFull changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eBug\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HV-2231\"\u003eHV-2231\u003c/a\u003e - RegexpURLValidator throws NPE when URL has no authority component\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-validator/commit/8ab68bcc99e0727065e194693f5c3b03395fa87e\"\u003e\u003ccode\u003e8ab68bc\u003c/code\u003e\u003c/a\u003e [Jenkins release job] Preparing release 9.1.3.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-validator/commit/36a8551a92d42ae8ece6e2f534fa1d16df088943\"\u003e\u003ccode\u003e36a8551\u003c/code\u003e\u003c/a\u003e [Jenkins release job] changelog.md updated by release build 9.1.3.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-validator/commit/e8b4ebd670356e58c14d11a569044a228f63e09a\"\u003e\u003ccode\u003ee8b4ebd\u003c/code\u003e\u003c/a\u003e [Jenkins release job] README.md updated by release build 9.1.3.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-validator/commit/8ba5072bc668fc14d71d169c1897e11112a9e084\"\u003e\u003ccode\u003e8ba5072\u003c/code\u003e\u003c/a\u003e HV-2231 Fix NPE in RegexpURLValidator when URL has no host\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-validator/commit/e9d4856774aae38431feb9569e4fe58af02806f6\"\u003e\u003ccode\u003ee9d4856\u003c/code\u003e\u003c/a\u003e [9.1] Bump the build-dependencies group with 3 updates\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-validator/commit/7793c80bfa0d99390229863bc5a7b95dab8d34a7\"\u003e\u003ccode\u003e7793c80\u003c/code\u003e\u003c/a\u003e Use correct env var name for additional arguments in the release script\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-validator/commit/8cffdd8f9ca4a0d869772ff11686507b0fc0726e\"\u003e\u003ccode\u003e8cffdd8\u003c/code\u003e\u003c/a\u003e [Jenkins release job] Preparing next development iteration\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/hibernate/hibernate-validator/compare/9.1.2.Final...9.1.3.Final\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.springframework.boot:spring-boot-starter-parent` from 4.1.0 to 4.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/spring-projects/spring-boot/releases\"\u003eorg.springframework.boot:spring-boot-starter-parent's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.1.1\u003c/h2\u003e\n\u003ch2\u003e:warning: Attention Required\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSpring Boot's Gradle plugin no longer automatically configures gRPC when the Protobuf plugin is applied. This behavior caused problems for those using Protobuf without gRPC. To opt in to the configuration of gRPC, configure the \u003ccode\u003eprotobuf\u003c/code\u003e extension with the \u003ccode\u003egrpc\u003c/code\u003e plugin using an empty block. The Spring Boot Gradle plugin will then automatically configure the use of \u003ccode\u003eprotoc-gen-grpc-java\u003c/code\u003e as before. \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50822\"\u003e#50822\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:lady_beetle: Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eKafka consumer-specific security protocol is not taken into account \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51369\"\u003e#51369\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eStructured logging: a failed JSON encode corrupts the next log event written on the same thread \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51156\"\u003e#51156\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMicrometer registries pin the application context \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51135\"\u003e#51135\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eTemporary file is not deleted when ExportedImageTar construction fails \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51132\"\u003e#51132\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadata annotation processor ignores getter-level \u003ccode\u003e@NestedConfigurationProperty\u003c/code\u003e for records \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51098\"\u003e#51098\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring-boot-h2-console pulls servlet-api as transitive dependency \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51095\"\u003e#51095\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropertiesLauncher does not log nested archive paths \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51089\"\u003e#51089\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMethods that return the result of Map#remove are not declared with a \u003ccode\u003e@Nullable\u003c/code\u003e return type \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51087\"\u003e#51087\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eNativeImageResourceProvider flattens Flyway migration paths in subdirectories \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50964\"\u003e#50964\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix ordering of Kotlinx Serialization CodecCustomizer \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50961\"\u003e#50961\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJarFile is not closed when finding main class from archive \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50959\"\u003e#50959\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eApplication-managed JUL bridge handler should only be removed if installed \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50950\"\u003e#50950\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCloudFoundry reactive auto-configuration should not require a WebClient.Builder bean to be defined \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50944\"\u003e#50944\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails on reactive Cloud Foundry when using Actuator without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50942\"\u003e#50942\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eResources are not cleaned up when resolving an image that is not yet present in the builder \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50941\"\u003e#50941\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eGraphQlWebMvcAutoConfiguration should apply customizers in order \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50914\"\u003e#50914\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAuto-configured RedisMessageListenerContainer does not use virtual threads when spring.threads.virtual.enabled is true \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50884\"\u003e#50884\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails when using Actuator on Jersey without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50872\"\u003e#50872\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails on Cloud Foundry when using Actuator without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50871\"\u003e#50871\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIllegalStateException when binding properties to a \u003ccode\u003e@Validated\u003c/code\u003e class that contains a map whose value type is a wildcard \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50856\"\u003e#50856\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHigh number of connections due to Mongo health indicator \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50852\"\u003e#50852\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eInconsistent handling of empty string values of spring.security.oauth2.resourceserver.jwt issuer-uri and jwk-set-uri \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50849\"\u003e#50849\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReturn type nullability of ApplicationContextAssert's getBean methods does not indicate that bean may be null \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50845\"\u003e#50845\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropertiesWebClientHttpServiceGroupConfigurer has highest precedence, preventing other configurers from being ordered ahead of it \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50843\"\u003e#50843\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eExposing gRPC test server port should backoff if gRPC is not present \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50825\"\u003e#50825\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJpaBaseConfiguration#entityManagerConfiguration can cause a dependency loop on beans declaring AsyncTaskExecutor \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50801\"\u003e#50801\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring.grpc.server.health.include-overall-health is not taken into account \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50799\"\u003e#50799\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSetting 'server.servlet.session.cookie.partitioned' to false still emits the 'Partitioned' cookie attribute \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50790\"\u003e#50790\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eManaged version of Prometheus Client is not aligned with Micrometer's micrometer-registry-prometheus \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50780\"\u003e#50780\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMap properties bound from empty strings fail with ConverterNotFoundException \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50773\"\u003e#50773\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eProtobuf Common Protos should not be a managed dependency \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50772\"\u003e#50772\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAn application that depends on spring-boot-security-oauth2-resource-server may fail to start with a ClassNotFoundException when Reactor is on the classpath but WebFlux is not \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50764\"\u003e#50764\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eW3CHeaderParser's decoding is not compliant with RFC 3986 \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50650\"\u003e#50650\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:notebook_with_decorative_cover: Documentation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDescription of spring.graphql.websocket.connection-init-timeout does not render correctly in the reference guide \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51348\"\u003e#51348\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring.profiles.group should have a 'spring-profile-name' hint provider \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51284\"\u003e#51284\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove reference to removed InfluxDB auto-configuration \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51176\"\u003e#51176\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse JacksonJsonSerde in Kafka Streams documentation \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51161\"\u003e#51161\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDocument alternatives to HttpMessageConverters \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51129\"\u003e#51129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix stale type reference for OTLP logging transport metadata \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51119\"\u003e#51119\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadata for spring.test.mockmvc.htmlunit.url declares the wrong type \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51115\"\u003e#51115\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/6fdf67ea1552691e932604d4bf67a5e08ff0b0ea\"\u003e\u003ccode\u003e6fdf67e\u003c/code\u003e\u003c/a\u003e Release 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/fde599b28b40932e4ea6194399d89245923a01e7\"\u003e\u003ccode\u003efde599b\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Pulsar 2.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/9daa58f7d98b82bf16febcb91943ce267c220a50\"\u003e\u003ccode\u003e9daa58f\u003c/code\u003e\u003c/a\u003e Upgrade to Spring HATEOAS 3.1.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/353993ebc1d7b1ceccbb981b0439a42ba122a816\"\u003e\u003ccode\u003e353993e\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Data Bom 2026.0.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/24ba596bc4fa000614834016452435c834fdeda2\"\u003e\u003ccode\u003e24ba596\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Session 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/5cb5c294d1f4780e78d010a964049e47c074e4d6\"\u003e\u003ccode\u003e5cb5c29\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Security 7.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/4adc8eb130c4e0c688ed85316f385f4e04d47679\"\u003e\u003ccode\u003e4adc8eb\u003c/code\u003e\u003c/a\u003e Upgrade to Spring LDAP 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/4d9c19cbc0589f57a7265052b507bf4b961082ac\"\u003e\u003ccode\u003e4d9c19c\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Kafka 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/f30f6120c4f6f8f873ac56cba478ae1f011c276c\"\u003e\u003ccode\u003ef30f612\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Integration 7.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/b930283d97e92eb24da1de3721cdd41625266dea\"\u003e\u003ccode\u003eb930283\u003c/code\u003e\u003c/a\u003e Upgrade to Spring gRPC 1.1.1\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/spring-projects/spring-boot/compare/v4.1.0...v4.1.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.maven.plugins:maven-surefire-plugin` from 3.5.6 to 3.6.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/maven-surefire/releases\"\u003eorg.apache.maven.plugins:maven-surefire-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.6.0\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cp\u003ePlease refer to the main page for what's new \u003ca href=\"https://maven.apache.org/surefire/\"\u003ehttps://maven.apache.org/surefire/\u003c/a\u003e\nAnd the migration page \u003ca href=\"https://maven.apache.org/surefire/maven-surefire-plugin/whats-new-3-6-0.html\"\u003ehttps://maven.apache.org/surefire/maven-surefire-plugin/whats-new-3-6-0.html\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3303\"\u003e#3303\u003c/a\u003e: distinguish JUnit 6 ParameterizedClass invocations (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3432\"\u003e#3432\u003c/a\u003e) \u003ca href=\"https://github.com/AzazelSensei\"\u003e\u003ccode\u003e@​AzazelSensei\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/SUREFIRE-1639\"\u003e[SUREFIRE-1639]\u003c/a\u003e - Add ability to configure JUnit 5 TestExecutionListener (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3438\"\u003e#3438\u003c/a\u003e) \u003ca href=\"https://github.com/pan3793\"\u003e\u003ccode\u003e@​pan3793\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIssue \u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/838\"\u003e#838\u003c/a\u003e Implement extension point to run diagnosis tools when forked JVM times out (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3372\"\u003e#3372\u003c/a\u003e) \u003ca href=\"https://github.com/olamy\"\u003e\u003ccode\u003e@​olamy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/SUREFIRE-2148\"\u003e[SUREFIRE-2148]\u003c/a\u003e - Verify recovered BeforeAll does not fail build (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3419\"\u003e#3419\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/SUREFIRE-823\"\u003e[SUREFIRE-823]\u003c/a\u003e - Decouple -DskipTests from Failsafe plugin (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3371\"\u003e#3371\u003c/a\u003e) \u003ca href=\"https://github.com/olamy\"\u003e\u003ccode\u003e@​olamy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse StackWalker in StackTraceProvider when available (Java 9+) (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3374\"\u003e#3374\u003c/a\u003e) \u003ca href=\"https://github.com/olamy\"\u003e\u003ccode\u003e@​olamy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[Issue-3380] Send sourceQualifiedName to forked clients (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3380\"\u003e#3380\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3381\"\u003e#3381\u003c/a\u003e) \u003ca href=\"https://github.com/fabriciorby\"\u003e\u003ccode\u003e@​fabriciorby\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/SUREFIRE-523\"\u003e[SUREFIRE-523]\u003c/a\u003e - Link all reported tests to source XRef (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3445\"\u003e#3445\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/SUREFIRE-3446\"\u003e[SUREFIRE-3446]\u003c/a\u003e - Fix direct selection of JUnit Jupiter \u003ca href=\"https://github.com/Nested\"\u003e\u003ccode\u003e@​Nested\u003c/code\u003e\u003c/a\u003e classes (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3447\"\u003e#3447\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDiscover tests in a fork when a toolchain JDK is used (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3444\"\u003e#3444\u003c/a\u003e) \u003ca href=\"https://github.com/olamy\"\u003e\u003ccode\u003e@​olamy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[SUREFIRE-2239, SUREFIRE-2241, SUREFIRE-2260, SUREFIRE-2274, SUREFIRE-2300] Preserve JUnit Platform test identity across reruns (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3418\"\u003e#3418\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix \u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3428\"\u003e#3428\u003c/a\u003e: resolve parents via TestPlan.getParent for pre-1.8 platforms (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3429\"\u003e#3429\u003c/a\u003e) \u003ca href=\"https://github.com/kalayciburak\"\u003e\u003ccode\u003e@​kalayciburak\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/SUREFIRE-859\"\u003e[SUREFIRE-859]\u003c/a\u003e - Make random test order reproducible (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3421\"\u003e#3421\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[SUREFIRE-862, SUREFIRE-3178] Handle missing Failsafe summary files (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3417\"\u003e#3417\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: report AfterAll/AfterClass exceptions as errors again (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3412\"\u003e#3412\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3413\"\u003e#3413\u003c/a\u003e) \u003ca href=\"https://github.com/arimu1\"\u003e\u003ccode\u003e@​arimu1\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFixes \u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3264\"\u003e#3264\u003c/a\u003e : tests inside \u003ca href=\"https://github.com/Suite\"\u003e\u003ccode\u003e@​Suite\u003c/code\u003e\u003c/a\u003e incorrectly classified as flakes (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3342\"\u003e#3342\u003c/a\u003e) \u003ca href=\"https://github.com/mirkoalicastro\"\u003e\u003ccode\u003e@​mirkoalicastro\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix Windows flake in CommandChannelDecoderTest (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3400\"\u003e#3400\u003c/a\u003e) \u003ca href=\"https://github.com/ascheman\"\u003e\u003ccode\u003e@​ascheman\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix reportNameSuffix in XML testcase classname (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3379\"\u003e#3379\u003c/a\u003e) \u003ca href=\"https://github.com/goutamadwant\"\u003e\u003ccode\u003e@​goutamadwant\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix: resolve relative classpath elements against the fork's working dir (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3333\"\u003e#3333\u003c/a\u003e) \u003ca href=\"https://github.com/cwegener-79\"\u003e\u003ccode\u003e@​cwegener-79\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📝 Documentation updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMagnify the home, well at least have something rather than nothing :) (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3377\"\u003e#3377\u003c/a\u003e) \u003ca href=\"https://github.com/olamy\"\u003e\u003ccode\u003e@​olamy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRestore the straight quotes the FAQ conversion turned typographic (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3425\"\u003e#3425\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRestore the table borders lost in the APT conversion (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3424\"\u003e#3424\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eConvert the FAQ from FML to Markdown (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3423\"\u003e#3423\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eConvert the remaining site documentation from APT to Markdown (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3422\"\u003e#3422\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ejavadoc: clarify statelessTestsetReporter, consoleOutputReporter, (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3410\"\u003e#3410\u003c/a\u003e) \u003ca href=\"https://github.com/joshinii\"\u003e\u003ccode\u003e@​joshinii\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3387\"\u003e#3387\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate documentation we support Junit 6 as well :) (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3370\"\u003e#3370\u003c/a\u003e) \u003ca href=\"https://github.com/olamy\"\u003e\u003ccode\u003e@​olamy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eStop dependabot from updating test fixtures (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3440\"\u003e#3440\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMigrate legacy plugin Javadoc annotations (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3416\"\u003e#3416\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse the resolver's own HTTP transport in the report plugin tests (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3414\"\u003e#3414\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePin maven-jar-plugin 3.5.1 in modular IT fixtures (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3398\"\u003e#3398\u003c/a\u003e) \u003ca href=\"https://github.com/ascheman\"\u003e\u003ccode\u003e@​ascheman\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3387\"\u003e#3387\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/0ff622b160253f362511a72d29a1f8067631f9d3\"\u003e\u003ccode\u003e0ff622b\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release surefire-3.6.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/bb3932a10a9706df70cf8095e2402348b7a64f0b\"\u003e\u003ccode\u003ebb3932a\u003c/code\u003e\u003c/a\u003e Let's go for 3.6.0 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/3002a1648cc8092dbd80492aa00509c825fd58e7\"\u003e\u003ccode\u003e3002a16\u003c/code\u003e\u003c/a\u003e Bump mavenVersion from 3.9.14 to 3.9.16\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/61a531d5981b0e70f8e88a329150f75501bb73e4\"\u003e\u003ccode\u003e61a531d\u003c/code\u003e\u003c/a\u003e Bump Maven parent version from 47 to 49 (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3449\"\u003e#3449\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/e52ead4cf5075f519578d0053c1ff878dff238f5\"\u003e\u003ccode\u003ee52ead4\u003c/code\u003e\u003c/a\u003e [SUREFIRE-523] Link all reported tests to source XRef (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3445\"\u003e#3445\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/45102fa9f2dfc5bc3d2909798e67358ae33e2d49\"\u003e\u003ccode\u003e45102fa\u003c/code\u003e\u003c/a\u003e [SUREFIRE-3446] Fix direct selection of JUnit Jupiter \u003ca href=\"https://github.com/Nested\"\u003e\u003ccode\u003e@​Nested\u003c/code\u003e\u003c/a\u003e classes (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3447\"\u003e#3447\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/b2e1f70b24df2d8a6cf1583ca955311184e68022\"\u003e\u003ccode\u003eb2e1f70\u003c/code\u003e\u003c/a\u003e Fix \u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3303\"\u003e#3303\u003c/a\u003e: distinguish JUnit 6 ParameterizedClass invocations (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3432\"\u003e#3432\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/c051938593a29d654b3c1c20d454b9062c3fa3f4\"\u003e\u003ccode\u003ec051938\u003c/code\u003e\u003c/a\u003e Discover tests in a fork when a toolchain JDK is used (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3444\"\u003e#3444\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/db75df85a76abf35346f559fe7f7f020cf6435b6\"\u003e\u003ccode\u003edb75df8\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0 (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3441\"\u003e#3441\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/77f2759d895a4460f917bdaaff7a025454afebe4\"\u003e\u003ccode\u003e77f2759\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-interpolation from 1.29 to 1.30.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/maven-surefire/compare/surefire-3.5.6...surefire-3.6.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.maven.plugins:maven-compiler-plugin` from 3.15.0 to 3.16.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/maven-compiler-plugin/releases\"\u003eorg.apache.maven.plugins:maven-compiler-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.16.0\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRecompile when dependencies change (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1102\"\u003e#1102\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix incremental detection of empty sources, 3.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1075\"\u003e#1075\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-578\"\u003e[MCOMPILER-578]\u003c/a\u003e - Track outputs across compiler executions (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1091\"\u003e#1091\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBuild fails when annotation processor list is empty (but present) (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1077\"\u003e#1077\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-374\"\u003e[MCOMPILER-374]\u003c/a\u003e - Unable to compile MR-JAR code against older directories when module-info.java is present (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1093\"\u003e#1093\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake mcompiler-120 IT locale independent (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1063\"\u003e#1063\u003c/a\u003e) \u003ca href=\"https://github.com/anilvdl\"\u003e\u003ccode\u003e@​anilvdl\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📝 Documentation updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-569\"\u003e[MCOMPILER-569]\u003c/a\u003e - Document implicitly compiled excluded sources (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1092\"\u003e#1092\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1074\"\u003e#1074\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAvoid using deprecated method CompilerConfiguration.setCompilerVersion (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1121\"\u003e#1121\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReplace adopt-openj9 by semeru JDK distribution on GH (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1122\"\u003e#1122\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePort the site documentation from APT to Markdown (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1110\"\u003e#1110\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eVerify against Maven 4.0.0-rc-6 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1105\"\u003e#1105\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix tests on Jenkins (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1100\"\u003e#1100\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1074\"\u003e#1074\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor compiler mojo to use dependency injection and improve string… (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1066\"\u003e#1066\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix ITs for Maven 3.10.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1061\"\u003e#1061\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate maven-surefire-plugin version to 3.x in the MCOMPILER-481 IT (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1035\"\u003e#1035\u003c/a\u003e) \u003ca href=\"https://github.com/cdouillard\"\u003e\u003ccode\u003e@​cdouillard\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump plexusCompilerVersion from 2.16.2 to 2.17.0 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1112\"\u003e#1112\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1113\"\u003e#1113\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003euse latest Maven 4 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1045\"\u003e#1045\u003c/a\u003e) \u003ca href=\"https://github.com/hboutemy\"\u003e\u003ccode\u003e@​hboutemy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1083\"\u003e#1083\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/pr-automation.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1082\"\u003e#1082\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1084\"\u003e#1084\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 48 to 49 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1068\"\u003e#1068\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-invoker-plugin from 3.9.1 to 3.10.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1047\"\u003e#1047\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 47 to 48 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1050\"\u003e#1050\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.14 to 3.9.16 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1054\"\u003e#1054\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.ow2.asm:asm from 9.10 to 9.10.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1059\"\u003e#1059\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.ow2.asm:asm from 9.9.1 to 9.10 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1053\"\u003e#1053\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.13 to 3.9.14 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1041\"\u003e#1041\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.12 to 3.9.13 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1038\"\u003e#1038\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugin-testing:maven-plugin-testing-harness from 3.5.0 to 3.5.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1032\"\u003e#1032\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/e7bba6ed5f9c17003d5c5d1413144bb214177408\"\u003e\u003ccode\u003ee7bba6e\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release maven-compiler-plugin-3.16.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/c906809e0c0b2c79e8a03165cb942f152a911416\"\u003e\u003ccode\u003ec906809\u003c/code\u003e\u003c/a\u003e Avoid using deprecated method CompilerConfiguration.setCompilerVersion\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/ad74fee36865d7a1752c9b96ff9a9e702565fdb3\"\u003e\u003ccode\u003ead74fee\u003c/code\u003e\u003c/a\u003e Replace adopt-openj9 by semeru JDK distribution on GH\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/beb0eda2100e77d3f01bf4cc89edd5b721411f63\"\u003e\u003ccode\u003ebeb0eda\u003c/code\u003e\u003c/a\u003e Recompile when dependencies change (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1102\"\u003e#1102\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/a0b689e0e7f13d3a7dded7847a807fe6453e0358\"\u003e\u003ccode\u003ea0b689e\u003c/code\u003e\u003c/a\u003e [MCOMPILER-578] Track outputs across compiler executions (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1091\"\u003e#1091\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/2e8122841d9b10d2d83a90cc07530d7a09eebc47\"\u003e\u003ccode\u003e2e81228\u003c/code\u003e\u003c/a\u003e Fix incremental detection of empty sources, 3.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1075\"\u003e#1075\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/2132f5bf0cbfcde26301084c4833f1a9420f1baf\"\u003e\u003ccode\u003e2132f5b\u003c/code\u003e\u003c/a\u003e configure ATR project\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/5992b772033a7488767c4b3aa806f080eba96593\"\u003e\u003ccode\u003e5992b77\u003c/code\u003e\u003c/a\u003e Build fails when annotation processor list is empty (but present) (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1077\"\u003e#1077\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/acccef703e5491c29c6dd9e8381677d3e7927589\"\u003e\u003ccode\u003eacccef7\u003c/code\u003e\u003c/a\u003e Bump plexusCompilerVersion from 2.16.2 to 2.17.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/72bc4454dfdcd1c3551137e5b27560f88b4480ae\"\u003e\u003ccode\u003e72bc445\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/maven-compiler-plugin/compare/maven-compiler-plugin-3.15.0...maven-compiler-plugin-3.16.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.codehaus.mojo:build-helper-maven-plugin` from 3.6.1 to 3.6.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/releases\"\u003eorg.codehaus.mojo:build-helper-maven-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.6.2\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReplace raw \u003ccode\u003eNPEx\u003c/code\u003e with customized exception message (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/239\"\u003e#239\u003c/a\u003e) \u003ca href=\"https://github.com/pzygielo\"\u003e\u003ccode\u003e@​pzygielo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove redundant maven-resolver-api dependency and ignore Resolver/SLF4J 2.x in Dependabot (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/248\"\u003e#248\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cul\u003e\n\u003cli\u003eRemove redundant maven-resolver-api dependency and ignore Resolver/SLF4J 2.x in Dependabot (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/248\"\u003e#248\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-utils from 4.0.3 to 4.1.0 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/247\"\u003e#247\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/244\"\u003e#244\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 96 to 97 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/246\"\u003e#246\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/245\"\u003e#245\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-utils from 4.0.2 to 4.0.3 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/241\"\u003e#241\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 95 to 96 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/240\"\u003e#240\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 94 to 95 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/235\"\u003e#235\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 93 to 94 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/233\"\u003e#233\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 92 to 93 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/232\"\u003e#232\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 91 to 92 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/231\"\u003e#231\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/813bc7d2f03f2c9975de1f079cf7a7334211e0b6\"\u003e\u003ccode\u003e813bc7d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release 3.6.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/07d91091b06db894178bcb6e71bc55f857546f46\"\u003e\u003ccode\u003e07d9109\u003c/code\u003e\u003c/a\u003e Remove redundant maven-resolver-api and ignore Resolver/SLF4J 2.x in Dependabot\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/9abd552f324e429beb586407139eb4d43127344a\"\u003e\u003ccode\u003e9abd552\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-utils from 4.0.3 to 4.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/3c15526bf151e28d6ce651197b36958164da4d4a\"\u003e\u003ccode\u003e3c15526\u003c/code\u003e\u003c/a\u003e Bump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/3b1f104096756ce33e8fc3e4c3062b1ccd8cf227\"\u003e\u003ccode\u003e3b1f104\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.mojo:mojo-parent from 96 to 97\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/1749855c90317f651eed427e45cb27c52cf8a542\"\u003e\u003ccode\u003e1749855\u003c/code\u003e\u003c/a\u003e Bump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/52300415d70e84a20924c06c26d9375b152e5409\"\u003e\u003ccode\u003e5230041\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-utils from 4.0.2 to 4.0.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/c0e937567a4604534e32cf3cc4c3abb43bfa243c\"\u003e\u003ccode\u003ec0e9375\u003c/code\u003e\u003c/a\u003e Delete .github/release-drafter.yml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/84a839e4cb9b84b3afbbeef7f6c950ba5b478b31\"\u003e\u003ccode\u003e84a839e\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.mojo:mojo-parent from 95 to 96\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/a85c668b83334b423844fc448709b1d6e53cb32c\"\u003e\u003ccode\u003ea85c668\u003c/code\u003e\u003c/a\u003e Replace raw \u003ccode\u003eNPEx\u003c/code\u003e with customized exception message\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/compare/3.6.1...3.6.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.projectreactor:reactor-core` from 3.8.6 to 3.8.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/reactor/reactor-core/releases\"\u003eio.projectreactor:reactor-core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.8.7\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cp\u003e\u003ccode\u003eReactor Core\u003c/code\u003e \u003ccode\u003e3.8.7\u003c/code\u003e is part of the \u003ccode\u003e2025.0.7\u003c/code\u003e and \u003ccode\u003e2026.0.0-M1\u003c/code\u003e \u003cstrong\u003eRelease Trains\u003c/strong\u003e.\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003e:lady_beetle: Bug fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFix elapsed time computation in \u003ccode\u003eOptimisticEmitFailureHandler\u003c/code\u003e by \u003ca href=\"https://github.com/bjmi\"\u003e\u003ccode\u003e@​bjmi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/reactor/reactor-core/issues/4112\"\u003e#4112\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003ewindowTimeout\u003c/code\u003e fair-backpressure index wraparound by \u003ca href=\"https://github.com/chemicL\"\u003e\u003ccode\u003e@​chemicL\u003c/code\u003e\u003c/a\u003e in 9fdb2cf7108d738fe80e65d010571982610b7eb8\u003c/li\u003e\n\u003cli\u003eGuard against flush-state update in \u003ccode\u003eFluxBufferTimeout\u003c/code\u003e by \u003ca href=\"https://github.com/Sage-Pierce\"\u003e\u003ccode\u003e@​Sage-Pierce\u003c/code\u003e\u003c/a\u003e in 1791421affc59e0a551ba8596e4122c069e782ba\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjmi\"\u003e\u003ccode\u003e@​bjmi\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/reactor/reactor-core/issues/4112\"\u003e#4112\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/reactor/reactor-core/compare/v3.8.6...v3.8.7\"\u003ehttps://github.com/reactor/reactor-core/compare/v3.8.6...v3.8.7\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/cda5359710de9a9b70ff432efe0062190a4014d3\"\u003e\u003ccode\u003ecda5359\u003c/code\u003e\u003c/a\u003e [release] Prepare and release 3.8.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/c2b3afd7fb1cdc11b84010b5425ef5827391a3d1\"\u003e\u003ccode\u003ec2b3afd\u003c/code\u003e\u003c/a\u003e Prepare release/3.8.7 branch\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/1791421affc59e0a551ba8596e4122c069e782ba\"\u003e\u003ccode\u003e1791421\u003c/code\u003e\u003c/a\u003e Guard against flush-state update in FluxBufferTimeout\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/9fdb2cf7108d738fe80e65d010571982610b7eb8\"\u003e\u003ccode\u003e9fdb2cf\u003c/code\u003e\u003c/a\u003e Fix windowTimeout fair-backpressure index wraparound\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/200db94c591322c27ef972b3ca9356af77176641\"\u003e\u003ccode\u003e200db94\u003c/code\u003e\u003c/a\u003e Prepare main-internal branch\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/a794eae1d1aacc684133e5124883e922467b8aab\"\u003e\u003ccode\u003ea794eae\u003c/code\u003e\u003c/a\u003e Bump github/codeql-action from 4.37.5 to 4.37.6 in /.github/workflows (\u003ca href=\"https://redirect.github.com/reactor/reactor-core/issues/4353\"\u003e#4353\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/87cdb28749a3dc76a808ca3f0bc065d97d80b841\"\u003e\u003ccode\u003e87cdb28\u003c/code\u003e\u003c/a\u003e Bump github/codeql-action from 4.37.4 to 4.37.5 in /.github/workflows (\u003ca href=\"https://redirect.github.com/reactor/reactor-core/issues/4351\"\u003e#4351\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/ed121c4f7201a1c247b2cd85e6ffef31aeb5de68\"\u003e\u003ccode\u003eed121c4\u003c/code\u003e\u003c/a\u003e Bump gradle/actions/wrapper-validation from 6.2.0 to 6.3.0 in /.github/workfl...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/869b950f6fe2844af08c43b97b00ec76ee021a97\"\u003e\u003ccode\u003e869b950\u003c/code\u003e\u003c/a\u003e Bump gradle/actions/setup-gradle from 6.2.0 to 6.3.0 in /.github/workflows (#...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/4f160faaf9ee50575ada93cf2f789b6e8747d7ed\"\u003e\u003ccode\u003e4f160fa\u003c/code\u003e\u003c/a\u003e Bump \u003ccode\u003e@​antora/pdf-extension\u003c/code\u003e from 1.0.0-rc.6 to 1.0.0-rc.7 in /docs (\u003ca href=\"https://redirect.github.com/reactor/reactor-core/issues/4348\"\u003e#4348\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/reactor/reactor-core/compare/v3.8.6...v3.8.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.core:jackson-databind` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/25b2a221f9aa4107e455065a74635e209418cf55\"\u003e\u003ccode\u003e25b2a22\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bab1c1a702a941f8805ee6698e8fa4fdbfbec54a\"\u003e\u003ccode\u003ebab1c1a\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bc03cf83d74cf0e5944dce33a63ee59ddc344b64\"\u003e\u003ccode\u003ebc03cf8\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/83379fb6409075336edf3d8d88744e95911a43f8\"\u003e\u003ccode\u003e83379fb\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/0d400c9dc586fdd460d0c6a40db21ebbe22106d8\"\u003e\u003ccode\u003e0d400c9\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/ce36a279f8b078bef2d9d44a1d01034c3634f91a\"\u003e\u003ccode\u003ece36a27\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7a209e1fa97033746db50fd7bcd1e3dbab077599\"\u003e\u003ccode\u003e7a209e1\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/a432707afe6b7569243d1c2d8052a1bf33d9279c\"\u003e\u003ccode\u003ea432707\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/176df1d48b256ced412c65293ad4e09393e24bd3\"\u003e\u003ccode\u003e176df1d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7785f5f9ed24127e004115472c47b26ea4cf2774\"\u003e\u003ccode\u003e7785f5f\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-databind/compare/jackson-databind-2.22.1...jackson-databind-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.swagger.core.v3:swagger-annotations` from 2.2.52 to 2.2.55\n\nUpdates `org.freemarker:freemarker` from 2.3.34 to 2.3.35\n\nUpdates `net.bytebuddy:byte-buddy-agent` from 1.18.11 to 1.18.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/releases\"\u003enet.bytebuddy:byte-buddy-agent's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eByte Buddy 1.18.13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eByte Buddy 1.18.12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eAdd support for native attach on Windows for ARM64.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/blob/master/release-notes.md\"\u003enet.bytebuddy:byte-buddy-agent's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003e2. September 2026: version 1.18.13\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e17. July 2026: version 1.18.12\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003cli\u003eSupport dynamic attach on Windows ARM64 by shipping a native \u003ccode\u003eattach_hotspot_windows\u003c/code\u003e library for \u003ccode\u003ewin32-aarch64\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/d4da51578490c841b56b38c9c8fc9d3e8815f046\"\u003e\u003ccode\u003ed4da515\u003c/code\u003e\u003c/a\u003e [publish] Releasing Byte Buddy 1.18.13\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/bb914e33837267c05704f167179ba31abe3bf787\"\u003e\u003ccode\u003ebb914e3\u003c/code\u003e\u003c/a\u003e [release] Release new version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/af2034b8c55c2596f6430e63152586e02d06fd0e\"\u003e\u003ccode\u003eaf2034b\u003c/code\u003e\u003c/a\u003e Create Gradle tasks via the task registration API if available to avoid the u...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/30aca5581534d52570a60ffd524109adb3671759\"\u003e\u003ccode\u003e30aca55\u003c/code\u003e\u003c/a\u003e Shortcut traversal of previously visited type hierarchies and harden 1-1 tran...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/debd527b31bb095c26ff6943545cfe01a9045f32\"\u003e\u003ccode\u003edebd527\u003c/code\u003e\u003c/a\u003e Bump actions/checkout from 6.0.2 to 7.0.1 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1910\"\u003e#1910\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/8315af6acb72b5e0d913ad65c4112e828f01d735\"\u003e\u003ccode\u003e8315af6\u003c/code\u003e\u003c/a\u003e Bump step-security/harden-runner from 2.16.1 to 2.19.4 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1909\"\u003e#1909\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/e30e24f4106f6be28b97a34c81bf6d5dccfa34bb\"\u003e\u003ccode\u003ee30e24f\u003c/code\u003e\u003c/a\u003e Bump actions/cache from 5.0.3 to 5.0.5 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1914\"\u003e#1914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/1885f2a1e77d70d3cc57ff935e2b5a4b675cde85\"\u003e\u003ccode\u003e1885f2a\u003c/code\u003e\u003c/a\u003e Bump github/codeql-action from 3.27.6 to 4.36.2 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1916\"\u003e#1916\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/de4ed85e1e4e1e83dcfd90fc791684e3607459fa\"\u003e\u003ccode\u003ede4ed85\u003c/code\u003e\u003c/a\u003e Correct Javadoc of Gradle plugin to avoid errors and warnings during generation.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/5d3a3129ceb66ec0c168c9648757cbffccf18aec\"\u003e\u003ccode\u003e5d3a312\u003c/code\u003e\u003c/a\u003e Bump actions/setup-java from 5.2.0 to 5.4.0 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1918\"\u003e#1918\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/raphw/byte-buddy/compare/byte-buddy-1.18.11...byte-buddy-1.18.13\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `net.bytebuddy:byte-buddy` from 1.18.11 to 1.18.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/releases\"\u003enet.bytebuddy:byte-buddy's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eByte Buddy 1.18.13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eByte Buddy 1.18.12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eAdd support for native attach on Windows for ARM64.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/blob/master/release-notes.md\"\u003enet.bytebuddy:byte-buddy's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003e2. September 2026: version 1.18.13\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e17. July 2026: version 1.18.12\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003cli\u003eSupport dynamic attach on Windows ARM64 by shipping a native \u003ccode\u003eattach_hotspot_windows\u003c/code\u003e library for \u003ccode\u003ewin32-aarch64\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/d4da51578490c841b56b38c9c8fc9d3e8815f046\"\u003e\u003ccode\u003ed4da515\u003c/code\u003e\u003c/a\u003e [publish] Releasing Byte Buddy 1.18.13\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/bb914e33837267c0...\n\n_Description has been truncated_","html_url":"https://github.com/miguelperezcolom/mateu/pull/494","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/miguelperezcolom%2Fmateu/issues/494","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/494/packages"},{"uuid":"5449914034","node_id":"PR_kwDOIatzEs8AAAABDdItIA","number":3382,"state":"open","title":"build(deps): Bump the gradle-version group across 1 directory with 34 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-14T13:24:38.000Z","updated_at":"2026-09-15T22:10:29.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps): Bump","group_name":"gradle-version","update_count":34,"packages":[{"name":"com.diffplug.spotless","old_version":"8.9.0","new_version":"8.10.2"},{"name":"software.amazon.awssdk:arns","old_version":"2.51.2","new_version":"2.54.16"},{"name":"software.amazon.awssdk:auth","old_version":"2.51.2","new_version":"2.54.16"},{"name":"software.amazon.awssdk:s3","old_version":"2.51.2","new_version":"2.54.16"},{"name":"software.amazon.awssdk:s3-transfer-manager","old_version":"2.51.2","new_version":"2.54.16"},{"name":"software.amazon.awssdk:sdk-core","old_version":"2.51.2","new_version":"2.54.16"},{"name":"software.amazon.awssdk:bom","old_version":"2.51.2","new_version":"2.54.16"},{"name":"software.amazon.awssdk.crt:aws-crt","old_version":"0.48.3","new_version":"0.48.4","repository_url":"https://github.com/awslabs/aws-crt-java"},{"name":"software.amazon.msk:aws-msk-iam-auth","old_version":"2.3.7","new_version":"2.3.8","repository_url":"https://github.com/aws/aws-msk-iam-auth"},{"name":"org.bouncycastle:bcpkix-jdk18on","old_version":"1.85","new_version":"1.86","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.bouncycastle:bcprov-jdk18on","old_version":"1.85","new_version":"1.86","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.apache.commons:commons-collections4","old_version":"4.5.0","new_version":"4.6.0"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"com.google.cloud:google-cloud-storage","old_version":"2.71.0","new_version":"2.73.0","repository_url":"https://github.com/googleapis/google-cloud-java"},{"name":"org.apache.httpcomponents.client5:httpclient5","old_version":"5.6.3","new_version":"5.6.4","repository_url":"https://github.com/apache/httpcomponents-client"},{"name":"com.fasterxml.jackson.core:jackson-core","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-core"},{"name":"com.fasterxml.jackson.core:jackson-databind","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-databind"},{"name":"com.fasterxml.jackson.dataformat:jackson-dataformat-smile","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-dataformats-binary"},{"name":"com.fasterxml.jackson.dataformat:jackson-dataformat-yaml","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-dataformats-text"},{"name":"com.fasterxml.jackson:jackson-bom","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-bom"},{"name":"org.json:json","old_version":"20260719","new_version":"20260814","repository_url":"https://github.com/douglascrockford/JSON-java"},{"name":"org.projectlombok:lombok","old_version":"1.18.46","new_version":"1.18.48","repository_url":"https://github.com/projectlombok/lombok"},{"name":"io.opentelemetry:opentelemetry-api","old_version":"1.64.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"io.opentelemetry:opentelemetry-exporter-otlp","old_version":"1.64.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"io.opentelemetry:opentelemetry-sdk","old_version":"1.64.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"io.opentelemetry:opentelemetry-sdk-testing","old_version":"1.64.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"io.opentelemetry:opentelemetry-bom","old_version":"1.64.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"com.google.protobuf:protobuf-java","old_version":"4.35.1","new_version":"4.36.1","repository_url":"https://github.com/protocolbuffers/protobuf"},{"name":"com.google.protobuf:protoc","old_version":"4.35.1","new_version":"4.36.1","repository_url":"https://github.com/protocolbuffers/protobuf"},{"name":"io.projectreactor:reactor-core","old_version":"3.8.6","new_version":"3.8.7","repository_url":"https://github.com/reactor/reactor-core"},{"name":"org.slf4j:slf4j-api","old_version":"2.0.18","new_version":"2.0.19"},{"name":"com.github.luben:zstd-jni","old_version":"1.5.7-12","new_version":"1.5.7-16","repository_url":"https://github.com/luben/zstd-jni"},{"name":"org.jsoup:jsoup","old_version":"1.23.1","new_version":"1.23.2","repository_url":"https://github.com/jhy/jsoup"},{"name":"org.apache.tika:tika-core","old_version":"3.3.2","new_version":"4.0.0","repository_url":"https://github.com/apache/tika"}],"path":null,"ecosystem":"maven"},"body":"Bumps the gradle-version group with 34 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| com.diffplug.spotless | `8.9.0` | `8.10.2` |\n| software.amazon.awssdk:arns | `2.51.2` | `2.54.16` |\n| software.amazon.awssdk:auth | `2.51.2` | `2.54.16` |\n| software.amazon.awssdk:s3 | `2.51.2` | `2.54.16` |\n| software.amazon.awssdk:s3-transfer-manager | `2.51.2` | `2.54.16` |\n| software.amazon.awssdk:sdk-core | `2.51.2` | `2.54.16` |\n| software.amazon.awssdk:bom | `2.51.2` | `2.54.16` |\n| [software.amazon.awssdk.crt:aws-crt](https://github.com/awslabs/aws-crt-java) | `0.48.3` | `0.48.4` |\n| [software.amazon.msk:aws-msk-iam-auth](https://github.com/aws/aws-msk-iam-auth) | `2.3.7` | `2.3.8` |\n| [org.bouncycastle:bcpkix-jdk18on](https://github.com/bcgit/bc-java) | `1.85` | `1.86` |\n| [org.bouncycastle:bcprov-jdk18on](https://github.com/bcgit/bc-java) | `1.85` | `1.86` |\n| org.apache.commons:commons-collections4 | `4.5.0` | `4.6.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [com.google.cloud:google-cloud-storage](https://github.com/googleapis/google-cloud-java) | `2.71.0` | `2.73.0` |\n| [org.apache.httpcomponents.client5:httpclient5](https://github.com/apache/httpcomponents-client) | `5.6.3` | `5.6.4` |\n| [com.fasterxml.jackson.core:jackson-core](https://github.com/FasterXML/jackson-core) | `2.22.1` | `2.22.2` |\n| [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson-databind) | `2.22.1` | `2.22.2` |\n| [com.fasterxml.jackson.dataformat:jackson-dataformat-smile](https://github.com/FasterXML/jackson-dataformats-binary) | `2.22.1` | `2.22.2` |\n| [com.fasterxml.jackson.dataformat:jackson-dataformat-yaml](https://github.com/FasterXML/jackson-dataformats-text) | `2.22.1` | `2.22.2` |\n| [com.fasterxml.jackson:jackson-bom](https://github.com/FasterXML/jackson-bom) | `2.22.1` | `2.22.2` |\n| [org.json:json](https://github.com/douglascrockford/JSON-java) | `20260719` | `20260814` |\n| [org.projectlombok:lombok](https://github.com/projectlombok/lombok) | `1.18.46` | `1.18.48` |\n| [io.opentelemetry:opentelemetry-api](https://github.com/open-telemetry/opentelemetry-java) | `1.64.0` | `1.65.0` |\n| [io.opentelemetry:opentelemetry-exporter-otlp](https://github.com/open-telemetry/opentelemetry-java) | `1.64.0` | `1.65.0` |\n| [io.opentelemetry:opentelemetry-sdk](https://github.com/open-telemetry/opentelemetry-java) | `1.64.0` | `1.65.0` |\n| [io.opentelemetry:opentelemetry-sdk-testing](https://github.com/open-telemetry/opentelemetry-java) | `1.64.0` | `1.65.0` |\n| [io.opentelemetry:opentelemetry-bom](https://github.com/open-telemetry/opentelemetry-java) | `1.64.0` | `1.65.0` |\n| [com.google.protobuf:protobuf-java](https://github.com/protocolbuffers/protobuf) | `4.35.1` | `4.36.1` |\n| [com.google.protobuf:protoc](https://github.com/protocolbuffers/protobuf) | `4.35.1` | `4.36.1` |\n| [io.projectreactor:reactor-core](https://github.com/reactor/reactor-core) | `3.8.6` | `3.8.7` |\n| org.slf4j:slf4j-api | `2.0.18` | `2.0.19` |\n| [com.github.luben:zstd-jni](https://github.com/luben/zstd-jni) | `1.5.7-12` | `1.5.7-16` |\n| [org.jsoup:jsoup](https://github.com/jhy/jsoup) | `1.23.1` | `1.23.2` |\n| [org.apache.tika:tika-core](https://github.com/apache/tika) | `3.3.2` | `4.0.0` |\n\n\nUpdates `com.diffplug.spotless` from 8.9.0 to 8.10.2\n\nUpdates `software.amazon.awssdk:arns` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:auth` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:s3` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:s3-transfer-manager` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:sdk-core` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:bom` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:auth` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk.crt:aws-crt` from 0.48.3 to 0.48.4\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/awslabs/aws-crt-java/releases\"\u003esoftware.amazon.awssdk.crt:aws-crt's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev0.48.4\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003elatest submodules by \u003ca href=\"https://github.com/TingDaoK\"\u003e\u003ccode\u003e@​TingDaoK\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/awslabs/aws-crt-java/pull/1010\"\u003eawslabs/aws-crt-java#1010\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/awslabs/aws-crt-java/compare/v0.48.3...v0.48.4\"\u003ehttps://github.com/awslabs/aws-crt-java/compare/v0.48.3...v0.48.4\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/awslabs/aws-crt-java/commit/c80c559c6c966e1209b4db44b6213ea5b1a08962\"\u003e\u003ccode\u003ec80c559\u003c/code\u003e\u003c/a\u003e latest submodules (\u003ca href=\"https://redirect.github.com/awslabs/aws-crt-java/issues/1010\"\u003e#1010\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/awslabs/aws-crt-java/compare/v0.48.3...v0.48.4\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `software.amazon.msk:aws-msk-iam-auth` from 2.3.7 to 2.3.8\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-msk-iam-auth/releases\"\u003esoftware.amazon.msk:aws-msk-iam-auth's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.3.8\u003c/h2\u003e\n\u003ch2\u003eWhat's changed in 2.3.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix signing-region resolution for cluster names containing an AWS region id: the region is now anchored to the endpoint DNS suffix instead of matched as an unanchored substring (\u003ca href=\"https://redirect.github.com/aws/aws-msk-iam-auth/issues/245\"\u003e#245\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUpgrade the AWS SDK BOM from 2.44.12 to 2.51.2\u003c/li\u003e\n\u003cli\u003eUpdate \u003ccode\u003ejackson-databind\u003c/code\u003e to 2.22.1, resolving CVE-2026-54512, CVE-2026-54513, CVE-2026-54514 and CVE-2026-54515\u003c/li\u003e\n\u003cli\u003eSwitch the synchronous HTTP client from \u003ccode\u003eapache-client\u003c/code\u003e to \u003ccode\u003eapache5-client\u003c/code\u003e, replacing Apache HttpClient 4.x with 5.x and removing \u003ccode\u003ecommons-logging\u003c/code\u003e from the dependency tree\u003c/li\u003e\n\u003cli\u003eConstrain \u003ccode\u003ehttpclient5\u003c/code\u003e to 5.6.4, resolving CVE-2026-64607 and CVE-2026-71290\u003c/li\u003e\n\u003cli\u003eExclude the unused \u003ccode\u003enetty-nio-client\u003c/code\u003e asynchronous HTTP client, which this library never instantiates, reducing the uber jar from roughly 14.4 MB to 10.2 MB and removing all 36 CVEs reported against Netty 4.1.133.Final across its ten modules\u003c/li\u003e\n\u003cli\u003eUpdate \u003ccode\u003eslf4j-api\u003c/code\u003e to 1.7.36\u003c/li\u003e\n\u003cli\u003eRaise the \u003ccode\u003ekafka-clients\u003c/code\u003e compile floor from 2.8.1 to 3.9.2\u003c/li\u003e\n\u003cli\u003eUpgrade the OWASP \u003ccode\u003edependency-check\u003c/code\u003e plugin from 7.1.0.1 to 13.0.0. Releases 9.0.0 and later use the NVD API in place of the retired NVD data feeds, which the previous version could no longer reach\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eMaven Central\u003c/h2\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n    \u0026lt;groupId\u0026gt;software.amazon.msk\u0026lt;/groupId\u0026gt;\r\n    \u0026lt;artifactId\u0026gt;aws-msk-iam-auth\u0026lt;/artifactId\u0026gt;\r\n    \u0026lt;version\u0026gt;2.3.8\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003cp\u003eThe attached \u003ccode\u003eaws-msk-iam-auth-2.3.8-all.jar\u003c/code\u003e is the self-contained uber jar for use on the Kafka client classpath.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/a9850eaa8a233a89a6cd69800ec6ab333787a21e\"\u003e\u003ccode\u003ea9850ea\u003c/code\u003e\u003c/a\u003e chore: Prepare release 2.3.8 (\u003ca href=\"https://redirect.github.com/aws/aws-msk-iam-auth/issues/250\"\u003e#250\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/e471175f7303c1a6af75a90092c5c908e3d2086e\"\u003e\u003ccode\u003ee471175\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/aws/aws-msk-iam-auth/issues/249\"\u003e#249\u003c/a\u003e from aws/fix/kafka-clients-compile-floor\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/10b73f49e1ca37a2c03635a0389ee16607b117be\"\u003e\u003ccode\u003e10b73f4\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/aws/aws-msk-iam-auth/issues/247\"\u003e#247\u003c/a\u003e from aws/fix/anchored-region-resolution\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/b1900152394cd30876c54d621f85a982aa8fd70a\"\u003e\u003ccode\u003eb190015\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/aws/aws-msk-iam-auth/issues/244\"\u003e#244\u003c/a\u003e from aws/fix/dependency-currency-2.3.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/db6eda1057319d5e536412f3f47a9b0ff49693a2\"\u003e\u003ccode\u003edb6eda1\u003c/code\u003e\u003c/a\u003e docs: Document only the NVD_API_KEY environment variable for the scan key\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/89dc1206ba761673c02f41dbb6f6366e23d42325\"\u003e\u003ccode\u003e89dc120\u003c/code\u003e\u003c/a\u003e fix: Publish the httpclient5 floor in the POM and exclude apache-client\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/462873bdfc90eeb1863c521646195b663c504819\"\u003e\u003ccode\u003e462873b\u003c/code\u003e\u003c/a\u003e fix: Anchor signing-region resolution to the endpoint DNS suffix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/6a8466058e557e11d4d7c99406338af62555035c\"\u003e\u003ccode\u003e6a84660\u003c/code\u003e\u003c/a\u003e fix: Raise the kafka-clients compile floor to 3.9.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/4a9cb314828a03ef8a6bbc56a00708ac1d7b89a7\"\u003e\u003ccode\u003e4a9cb31\u003c/code\u003e\u003c/a\u003e chore: Tighten build script comments\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/673cf0e7e5eecc8d941614adbd97db338e46e5c2\"\u003e\u003ccode\u003e673cf0e\u003c/code\u003e\u003c/a\u003e fix: Restore the OWASP dependency-check scanner\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-msk-iam-auth/compare/v2.3.7...v2.3.8\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `software.amazon.awssdk:s3` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:s3-transfer-manager` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:sdk-core` from 2.51.2 to 2.54.16\n\nUpdates `org.bouncycastle:bcpkix-jdk18on` from 1.85 to 1.86\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/bcgit/bc-java/blob/main/docs/releasenotes.md\"\u003eorg.bouncycastle:bcpkix-jdk18on's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eBouncy Castle Crypto Package - Release Notes\u003c/h1\u003e\n\u003ch2\u003e1.0 Introduction\u003c/h2\u003e\n\u003cp\u003eThe Bouncy Castle Crypto package is a Java implementation of cryptographic algorithms. The package is organised so that it contains a light-weight API suitable for use in any environment (including the J2ME) with the additional infrastructure to conform the algorithms to the JCE framework.\u003c/p\u003e\n\u003ch2\u003e2.0 Release History\u003c/h2\u003e\n\u003cp\u003e\u003c!-- raw HTML omitted --\u003e\u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003ch3\u003e2.1.1 Version\u003c/h3\u003e\n\u003cp\u003eRelease: 1.87\u003cbr /\u003e\nDate: 2026, TBD\u003c/p\u003e\n\u003ch3\u003e2.1.2 Defects Fixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eA KeyAgreement asked for its shared secret before doPhase returned data rather than refusing. javax.crypto.KeyAgreement specifies IllegalStateException for that state, but nothing in the provider tracked it, so each SPI handed back whatever its result field held: for Diffie-Hellman that was the private value itself - engineInit seeded result with x, so generateSecret() returned the private exponent padded to the prime's length and generateSecret(\u0026quot;AES\u0026quot;) an all-zero key taken from that padding - while ECDH returned null and its named-algorithm overload raised NullPointerException. BaseAgreementSpi now records whether a doPhase has completed the agreement since the last init and refuses the request with an IllegalStateException naming the algorithm, so every family in the provider - DH, ECDH and ECMQV, the SM2 exchange, both ECGOST families, XDH, SM9 and NewHope - answers the same way, and the DH SPI no longer holds the private value in that field at all.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMac.getInstance and KeyGenerator.getInstance by the HMAC SHA-512/224 and SHA-512/256 object identifiers (1.2.840.113549.2.12 and .13) failed, although the same algorithms resolved by name and the matching SecretKeyFactory aliases were registered: the SHA512 mappings called addHMACAlgorithm for the two truncated variants without the addHMACAlias that registers their OIDs against Mac and KeyGenerator. Both are now aliased, as every other HMAC in that class already was.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA KTSParameterSpec naming an HKDF key-derivation function with a parameters field - a form the provider does not service - was accepted at Cipher init and then failed out of wrap or unwrap with an unchecked IllegalStateException neither method declares. The KTS key-wrapping Ciphers (ML-KEM, Classic McEliece, FrodoKEM, the composite KEM and RSA-KEM) now validate the spec's KDF when they take it, reporting an unserviceable one as the InvalidAlgorithmParameterException engineInit declares, which is what the javax.crypto.KEM services already did through KdfUtil.resolveKemSpec.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA DTLS handshake deadlocked when a handshake message ahead of the peer's ChangeCipherSpec (a client's CertificateVerify, say) was lost while the ChangeCipherSpec and Finished behind it arrived: the record layer moved its read epoch on at the ChangeCipherSpec and then discarded every retransmission of the lost message as belonging to the old epoch, whose records are only accepted once the handshake has completed. Each side then waited on the other until a handshake timeout, if one was configured, ended it. Every client-authenticated handshake, and every handshake in which the server issues a NewSessionTicket, was exposed. Until the handshake completes, handshake records from the current epoch are now still accepted after the read epoch has moved on, and each message is checked against the epoch of the record that carried it. The DTLS loopback tests now run their handshakes at 10% datagram loss in each direction, with a client-authenticated handshake at 25%.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe lightweight SubjectPublicKeyInfoFactory and PrivateKeyInfoFactory encoded a GOST R 34.10-2012 key on one of the legacy CryptoPro curves under id-GostR3410-2001, although RFC 9215 sec. 4.2 permits those curves for 2012 keys. The digestParamSet now decides: a GOST R 34.11-94 parameter set means 2001 (RFC 4491 sec. 2.3.2), a GOST R 34.11-2012 digest or none means 2012 with 256/512 taken from the curve field size, and any other value is rejected. GOST3410PublicKeyAlgParameters treats digestParamSet as OPTIONAL on both read and write per RFC 9215, and PrivateKeyInfoFactory now passes attributes through for ECGOST3410 keys (bc-csharp github \u003ca href=\"https://redirect.github.com/bcgit/bc-java/issues/707\"\u003e#707\u003c/a\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe name-constraint host canonicalisation removed a single RFC 1034 root-label dot, the only empty label a name may legally carry, but nothing refused the ones that are not legal: a dNSName, rfc822Name host or uniformResourceIdentifier host such as \u0026quot;example.com..\u0026quot; kept a phantom empty label after the strip and so matched no constraint at all, escaping an excluded subtree naming the host it appears to carry. A tested name whose host carries an empty label - a second trailing dot, a doubled dot or a leading dot - is now refused outright wherever a constraint of that type is in force, rather than canonicalised into a name it is not: removing the extra dots would decide on the caller's behalf that \u0026quot;example.com..\u0026quot; names example.com, which is not how a consumer resolving or comparing the name reads it, and refusing fails closed in both directions where canonicalising would newly admit such a name under a permitted subtree. The single trailing dot is canonicalised as before, a bare \u0026quot;.\u0026quot; remains the root label rather than an empty one, and the guard is scoped to the host, so the doubled dot a quoted local part may legally carry is unaffected. Constraints are untouched - one may still begin with a dot, which is how this implementation spells \u0026quot;subdomains only\u0026quot; (github PR \u003ca href=\"https://redirect.github.com/bcgit/bc-java/issues/2436\"\u003e#2436\u003c/a\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e2.1.3 Additional Features and Functionality\u003c/h3\u003e\n\u003ch3\u003e2.1.4 Additional Notes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe sources and javadoc jars of the Ant-built distributions (jdk14, jdk15to18 and jdk13) no longer carry test material. Each module's javadoc target copies the package documentation it needs - org/bouncycastle/\u003c!-- raw HTML omitted --\u003e/\u003cstrong\u003e/*.html - back into the module source directory that has already been compiled from, and zip-src zips that directory afterwards, so every test package's package.html arrived in the sources jar by that route; javadoc-util additionally copied org/bouncycastle/asn1/isismtt/\u003c/strong\u003e/*.java, which put test classes into the bcutil javadoc as generated pages, and javadoc-pg deliberately copied the gpg and bcpg test sources in order to document them. Separately the source copies excluded test material only one directory deep and only for *.java, because Ant reads ** as an any-depth wildcard just where it is a whole path segment, so anything nested further or with another extension - the PEM certificate fixtures under org/bouncycastle/est/test/san corrected in 1.86, and an ICAO master list under org/bouncycastle/asn1/icao/test - went through. The source and javadoc copies of every module now exclude test directories at any depth, and javadoc-pg no longer documents the test packages. org.bouncycastle.util.test is unaffected and still ships in the bcprov binary, sources and javadoc jars, as it does from the Gradle build: it is the SimpleTest framework the light-weight API's own test classes are written against, not test material of the distribution. No binary changes - the classes and resources of every Ant-built jar are identical to those of the 1.86 release - and the Gradle-built jdk18on artifacts never carried any of this.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003c!-- raw HTML omitted --\u003e\u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003ch3\u003e2.2.1 Version\u003c/h3\u003e\n\u003cp\u003eRelease: 1.86\u003cbr /\u003e\nDate: 2026, 11th September.\u003c/p\u003e\n\u003ch3\u003e2.2.2 Defects Fixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe high-level OpenPGP API let a subkey inherit the primary key's Key Flags when its own Subkey Binding signature carried none, so a subkey bound with no flags counted as signing-capable for one check while the cross-certification check RFC 9580 sec. 5.2.1.8 requires of a signing subkey saw none and was skipped - letting a third party's public signing subkey be bound to an attacker's primary key and that party's genuine signatures verify under the attacker's identity. Flags are no longer inherited (CVE-2026-71887).\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API used a version 6 key carrying no valid Direct Key signature, falling back to the primary user ID binding as it correctly does for version 4. RFC 9580 sec. 5.2.3.10 requires the opposite, and since a v6 certificate carries its expiration and preferences there, stripping that one packet silently dropped them - the certificate went on offering subkeys of a key set to expire. isBoundBy now requires a valid Direct Key self-signature before any v6 component is treated as bound; version 4 is unaffected.\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API ignored the OpenPGPPolicy a caller had configured when verifying signatures on an inline message: OpenPGPMessageInputStream took the policy from the implementation's own default rather than from the processor doing the verification, so a hardened policy had no bearing on acceptance and getSignatures() reported isTestedCorrect() true for a signature that policy rejects. Both the one-pass and prefixed-signature paths now read the configured policy.\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API went on offering the subkeys of a certificate whose primary key had expired, the binding check evaluating only a subkey's own Subkey Binding signature - so the certificate contradicted itself, reporting the primary unbound while still handing out its subkeys. The primary key's expiration now applies to the whole certificate, as GnuPG and Sequoia treat it, and a subkey no longer inherits the primary's validity period, which RFC 9580 sec. 5.2.3.13 counts from the creation time of the key the carrying signature is made on.\u003c/li\u003e\n\u003cli\u003eOpenPGPDocumentSignature.isValidAt(Date) reported a data signature as valid past the signature's own Signature Expiration Time (RFC 9580 sec. 5.2.3.18): it checked that the signature was correct and the issuing key bound and signing-capable at that date, but never the signature's own expiration, so it disagreed with isEffectiveAt() on the same object and with its own javadoc. isValid() and isValid(policy), which evaluate at creation time, are unchanged.\u003c/li\u003e\n\u003cli\u003eThe lightweight LMSSigner and HSSSigner refused a key wrapped in ParametersWithRandom, which is how BcContentSignerBuilder passes one once setSecureRandom() has been called, so BcHssLmsContentSignerBuilder failed with \u0026quot;Incorrect Key Parameters\u0026quot; and the two signers raised ClassCastException. All three now unwrap it, as the ML-DSA and SLH-DSA signers already did; the random is accepted and ignored, LMS deriving its message randomiser deterministically from the seed and one-time index.\u003c/li\u003e\n\u003cli\u003eLMS signature verification did not apply two checks RFC 8554 sec. 5.4.2 requires before a signature is processed: step 2g, refusing a signature whose LMS typecode is not the public key's - without it a signature claiming a height-25 parameter set drove a 25-level computation against a height-5 key - and step 2i, refusing a leaf number outside the tree. Neither was a forgery, but both are attacker-chosen work the specification says to refuse up front. Both are now checked.\u003c/li\u003e\n\u003cli\u003eThe LMS and HSS key parameter classes now apply at construction the checks their decoders apply, so a key built directly cannot be one the decoder would refuse: LMSPrivateKeyParameters accepted an identifier of any length where the decoder reads exactly 16 bytes, and left q, maxQ and the seed length unchecked, while HSSPrivateKeyParameters checked neither its level count nor that it had a component key and chaining signature per level. The decoders now report a bad version or seed length as IOException rather than IllegalStateException.\u003c/li\u003e\n\u003cli\u003eIn the LMS JCE layer, LMSKeyGenParameterSpec.fromNames knew all twenty LMS parameter-set names but only four of the sixteen LM-OTS ones, so none of the SP 800-208 n24 or SHAKE sets could be named; all sixteen are now present. initialize(int, SecureRandom) now reports InvalidParameterException as the JCA specifies, and BCLMSPrivateKey.getIndex takes the exhaustion check and the index read under one monitor.\u003c/li\u003e\n\u003cli\u003eKeyPairGenerator.initialize(int, SecureRandom) is documented to raise InvalidParameterException when the key size is not one the generator supports, and thirty of them raised a bare IllegalArgumentException instead. Every generator in BCPQC, and the ML-DSA, ML-KEM, SLH-DSA, Classic McEliece, FrodoKEM, NTRU and composite ones in the BC provider, now raise the documented type - which extends IllegalArgumentException, so existing catches still match. The two RSA generators translate the lightweight refusal through a new SecurityExceptions.invalidParameterException factory.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/bcgit/bc-java/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.bouncycastle:bcprov-jdk18on` from 1.85 to 1.86\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/bcgit/bc-java/blob/main/docs/releasenotes.md\"\u003eorg.bouncycastle:bcprov-jdk18on's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eBouncy Castle Crypto Package - Release Notes\u003c/h1\u003e\n\u003ch2\u003e1.0 Introduction\u003c/h2\u003e\n\u003cp\u003eThe Bouncy Castle Crypto package is a Java implementation of cryptographic algorithms. The package is organised so that it contains a light-weight API suitable for use in any environment (including the J2ME) with the additional infrastructure to conform the algorithms to the JCE framework.\u003c/p\u003e\n\u003ch2\u003e2.0 Release History\u003c/h2\u003e\n\u003cp\u003e\u003c!-- raw HTML omitted --\u003e\u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003ch3\u003e2.1.1 Version\u003c/h3\u003e\n\u003cp\u003eRelease: 1.87\u003cbr /\u003e\nDate: 2026, TBD\u003c/p\u003e\n\u003ch3\u003e2.1.2 Defects Fixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eA KeyAgreement asked for its shared secret before doPhase returned data rather than refusing. javax.crypto.KeyAgreement specifies IllegalStateException for that state, but nothing in the provider tracked it, so each SPI handed back whatever its result field held: for Diffie-Hellman that was the private value itself - engineInit seeded result with x, so generateSecret() returned the private exponent padded to the prime's length and generateSecret(\u0026quot;AES\u0026quot;) an all-zero key taken from that padding - while ECDH returned null and its named-algorithm overload raised NullPointerException. BaseAgreementSpi now records whether a doPhase has completed the agreement since the last init and refuses the request with an IllegalStateException naming the algorithm, so every family in the provider - DH, ECDH and ECMQV, the SM2 exchange, both ECGOST families, XDH, SM9 and NewHope - answers the same way, and the DH SPI no longer holds the private value in that field at all.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMac.getInstance and KeyGenerator.getInstance by the HMAC SHA-512/224 and SHA-512/256 object identifiers (1.2.840.113549.2.12 and .13) failed, although the same algorithms resolved by name and the matching SecretKeyFactory aliases were registered: the SHA512 mappings called addHMACAlgorithm for the two truncated variants without the addHMACAlias that registers their OIDs against Mac and KeyGenerator. Both are now aliased, as every other HMAC in that class already was.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA KTSParameterSpec naming an HKDF key-derivation function with a parameters field - a form the provider does not service - was accepted at Cipher init and then failed out of wrap or unwrap with an unchecked IllegalStateException neither method declares. The KTS key-wrapping Ciphers (ML-KEM, Classic McEliece, FrodoKEM, the composite KEM and RSA-KEM) now validate the spec's KDF when they take it, reporting an unserviceable one as the InvalidAlgorithmParameterException engineInit declares, which is what the javax.crypto.KEM services already did through KdfUtil.resolveKemSpec.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA DTLS handshake deadlocked when a handshake message ahead of the peer's ChangeCipherSpec (a client's CertificateVerify, say) was lost while the ChangeCipherSpec and Finished behind it arrived: the record layer moved its read epoch on at the ChangeCipherSpec and then discarded every retransmission of the lost message as belonging to the old epoch, whose records are only accepted once the handshake has completed. Each side then waited on the other until a handshake timeout, if one was configured, ended it. Every client-authenticated handshake, and every handshake in which the server issues a NewSessionTicket, was exposed. Until the handshake completes, handshake records from the current epoch are now still accepted after the read epoch has moved on, and each message is checked against the epoch of the record that carried it. The DTLS loopback tests now run their handshakes at 10% datagram loss in each direction, with a client-authenticated handshake at 25%.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe lightweight SubjectPublicKeyInfoFactory and PrivateKeyInfoFactory encoded a GOST R 34.10-2012 key on one of the legacy CryptoPro curves under id-GostR3410-2001, although RFC 9215 sec. 4.2 permits those curves for 2012 keys. The digestParamSet now decides: a GOST R 34.11-94 parameter set means 2001 (RFC 4491 sec. 2.3.2), a GOST R 34.11-2012 digest or none means 2012 with 256/512 taken from the curve field size, and any other value is rejected. GOST3410PublicKeyAlgParameters treats digestParamSet as OPTIONAL on both read and write per RFC 9215, and PrivateKeyInfoFactory now passes attributes through for ECGOST3410 keys (bc-csharp github \u003ca href=\"https://redirect.github.com/bcgit/bc-java/issues/707\"\u003e#707\u003c/a\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe name-constraint host canonicalisation removed a single RFC 1034 root-label dot, the only empty label a name may legally carry, but nothing refused the ones that are not legal: a dNSName, rfc822Name host or uniformResourceIdentifier host such as \u0026quot;example.com..\u0026quot; kept a phantom empty label after the strip and so matched no constraint at all, escaping an excluded subtree naming the host it appears to carry. A tested name whose host carries an empty label - a second trailing dot, a doubled dot or a leading dot - is now refused outright wherever a constraint of that type is in force, rather than canonicalised into a name it is not: removing the extra dots would decide on the caller's behalf that \u0026quot;example.com..\u0026quot; names example.com, which is not how a consumer resolving or comparing the name reads it, and refusing fails closed in both directions where canonicalising would newly admit such a name under a permitted subtree. The single trailing dot is canonicalised as before, a bare \u0026quot;.\u0026quot; remains the root label rather than an empty one, and the guard is scoped to the host, so the doubled dot a quoted local part may legally carry is unaffected. Constraints are untouched - one may still begin with a dot, which is how this implementation spells \u0026quot;subdomains only\u0026quot; (github PR \u003ca href=\"https://redirect.github.com/bcgit/bc-java/issues/2436\"\u003e#2436\u003c/a\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e2.1.3 Additional Features and Functionality\u003c/h3\u003e\n\u003ch3\u003e2.1.4 Additional Notes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe sources and javadoc jars of the Ant-built distributions (jdk14, jdk15to18 and jdk13) no longer carry test material. Each module's javadoc target copies the package documentation it needs - org/bouncycastle/\u003c!-- raw HTML omitted --\u003e/\u003cstrong\u003e/*.html - back into the module source directory that has already been compiled from, and zip-src zips that directory afterwards, so every test package's package.html arrived in the sources jar by that route; javadoc-util additionally copied org/bouncycastle/asn1/isismtt/\u003c/strong\u003e/*.java, which put test classes into the bcutil javadoc as generated pages, and javadoc-pg deliberately copied the gpg and bcpg test sources in order to document them. Separately the source copies excluded test material only one directory deep and only for *.java, because Ant reads ** as an any-depth wildcard just where it is a whole path segment, so anything nested further or with another extension - the PEM certificate fixtures under org/bouncycastle/est/test/san corrected in 1.86, and an ICAO master list under org/bouncycastle/asn1/icao/test - went through. The source and javadoc copies of every module now exclude test directories at any depth, and javadoc-pg no longer documents the test packages. org.bouncycastle.util.test is unaffected and still ships in the bcprov binary, sources and javadoc jars, as it does from the Gradle build: it is the SimpleTest framework the light-weight API's own test classes are written against, not test material of the distribution. No binary changes - the classes and resources of every Ant-built jar are identical to those of the 1.86 release - and the Gradle-built jdk18on artifacts never carried any of this.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003c!-- raw HTML omitted --\u003e\u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003ch3\u003e2.2.1 Version\u003c/h3\u003e\n\u003cp\u003eRelease: 1.86\u003cbr /\u003e\nDate: 2026, 11th September.\u003c/p\u003e\n\u003ch3\u003e2.2.2 Defects Fixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe high-level OpenPGP API let a subkey inherit the primary key's Key Flags when its own Subkey Binding signature carried none, so a subkey bound with no flags counted as signing-capable for one check while the cross-certification check RFC 9580 sec. 5.2.1.8 requires of a signing subkey saw none and was skipped - letting a third party's public signing subkey be bound to an attacker's primary key and that party's genuine signatures verify under the attacker's identity. Flags are no longer inherited (CVE-2026-71887).\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API used a version 6 key carrying no valid Direct Key signature, falling back to the primary user ID binding as it correctly does for version 4. RFC 9580 sec. 5.2.3.10 requires the opposite, and since a v6 certificate carries its expiration and preferences there, stripping that one packet silently dropped them - the certificate went on offering subkeys of a key set to expire. isBoundBy now requires a valid Direct Key self-signature before any v6 component is treated as bound; version 4 is unaffected.\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API ignored the OpenPGPPolicy a caller had configured when verifying signatures on an inline message: OpenPGPMessageInputStream took the policy from the implementation's own default rather than from the processor doing the verification, so a hardened policy had no bearing on acceptance and getSignatures() reported isTestedCorrect() true for a signature that policy rejects. Both the one-pass and prefixed-signature paths now read the configured policy.\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API went on offering the subkeys of a certificate whose primary key had expired, the binding check evaluating only a subkey's own Subkey Binding signature - so the certificate contradicted itself, reporting the primary unbound while still handing out its subkeys. The primary key's expiration now applies to the whole certificate, as GnuPG and Sequoia treat it, and a subkey no longer inherits the primary's validity period, which RFC 9580 sec. 5.2.3.13 counts from the creation time of the key the carrying signature is made on.\u003c/li\u003e\n\u003cli\u003eOpenPGPDocumentSignature.isValidAt(Date) reported a data signature as valid past the signature's own Signature Expiration Time (RFC 9580 sec. 5.2.3.18): it checked that the signature was correct and the issuing key bound and signing-capable at that date, but never the signature's own expiration, so it disagreed with isEffectiveAt() on the same object and with its own javadoc. isValid() and isValid(policy), which evaluate at creation time, are unchanged.\u003c/li\u003e\n\u003cli\u003eThe lightweight LMSSigner and HSSSigner refused a key wrapped in ParametersWithRandom, which is how BcContentSignerBuilder passes one once setSecureRandom() has been called, so BcHssLmsContentSignerBuilder failed with \u0026quot;Incorrect Key Parameters\u0026quot; and the two signers raised ClassCastException. All three now unwrap it, as the ML-DSA and SLH-DSA signers already did; the random is accepted and ignored, LMS deriving its message randomiser deterministically from the seed and one-time index.\u003c/li\u003e\n\u003cli\u003eLMS signature verification did not apply two checks RFC 8554 sec. 5.4.2 requires before a signature is processed: step 2g, refusing a signature whose LMS typecode is not the public key's - without it a signature claiming a height-25 parameter set drove a 25-level computation against a height-5 key - and step 2i, refusing a leaf number outside the tree. Neither was a forgery, but both are attacker-chosen work the specification says to refuse up front. Both are now checked.\u003c/li\u003e\n\u003cli\u003eThe LMS and HSS key parameter classes now apply at construction the checks their decoders apply, so a key built directly cannot be one the decoder would refuse: LMSPrivateKeyParameters accepted an identifier of any length where the decoder reads exactly 16 bytes, and left q, maxQ and the seed length unchecked, while HSSPrivateKeyParameters checked neither its level count nor that it had a component key and chaining signature per level. The decoders now report a bad version or seed length as IOException rather than IllegalStateException.\u003c/li\u003e\n\u003cli\u003eIn the LMS JCE layer, LMSKeyGenParameterSpec.fromNames knew all twenty LMS parameter-set names but only four of the sixteen LM-OTS ones, so none of the SP 800-208 n24 or SHAKE sets could be named; all sixteen are now present. initialize(int, SecureRandom) now reports InvalidParameterException as the JCA specifies, and BCLMSPrivateKey.getIndex takes the exhaustion check and the index read under one monitor.\u003c/li\u003e\n\u003cli\u003eKeyPairGenerator.initialize(int, SecureRandom) is documented to raise InvalidParameterException when the key size is not one the generator supports, and thirty of them raised a bare IllegalArgumentException instead. Every generator in BCPQC, and the ML-DSA, ML-KEM, SLH-DSA, Classic McEliece, FrodoKEM, NTRU and composite ones in the BC provider, now raise the documented type - which extends IllegalArgumentException, so existing catches still match. The two RSA generators translate the lightweight refusal through a new SecurityExceptions.invalidParameterException factory.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/bcgit/bc-java/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.bouncycastle:bcprov-jdk18on` from 1.85 to 1.86\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/bcgit/bc-java/blob/main/docs/releasenotes.md\"\u003eorg.bouncycastle:bcprov-jdk18on's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eBouncy Castle Crypto Package - Release Notes\u003c/h1\u003e\n\u003ch2\u003e1.0 Introduction\u003c/h2\u003e\n\u003cp\u003eThe Bouncy Castle Crypto package is a Java implementation of cryptographic algorithms. The package is organised so that it contains a light-weight API suitable for use in any environment (including the J2ME) with the additional infrastructure to conform the algorithms to the JCE framework.\u003c/p\u003e\n\u003ch2\u003e2.0 Release History\u003c/h2\u003e\n\u003cp\u003e\u003c!-- raw HTML omitted --\u003e\u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003ch3\u003e2.1.1 Version\u003c/h3\u003e\n\u003cp\u003eRelease: 1.87\u003cbr /\u003e\nDate: 2026, TBD\u003c/p\u003e\n\u003ch3\u003e2.1.2 Defects Fixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eA KeyAgreement asked for its shared secret before doPhase returned data rather than refusing. javax.crypto.KeyAgreement specifies IllegalStateException for that state, but nothing in the provider tracked it, so each SPI handed back whatever its result field held: for Diffie-Hellman that was the private value itself - engineInit seeded result with x, so generateSecret() returned the private exponent padded to the prime's length and generateSecret(\u0026quot;AES\u0026quot;) an all-zero key taken from that padding - while ECDH returned null and its named-algorithm overload raised NullPointerException. BaseAgreementSpi now records whether a doPhase has completed the agreement since the last init and refuses the request with an IllegalStateException naming the algorithm, so every family in the provider - DH, ECDH and ECMQV, the SM2 exchange, both ECGOST families, XDH, SM9 and NewHope - answers the same way, and the DH SPI no longer holds the private value in that field at all.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMac.getInstance and KeyGenerator.getInstance by the HMAC SHA-512/224 and SHA-512/256 object identifiers (1.2.840.113549.2.12 and .13) failed, although the same algorithms resolved by name and the matching SecretKeyFactory aliases were registered: the SHA512 mappings called addHMACAlgorithm for the two truncated variants without the addHMACAlias that registers their OIDs against Mac and KeyGenerator. Both are now aliased, as every other HMAC in that class already was.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA KTSParameterSpec naming an HKDF key-derivation function with a parameters field - a form the provider does not service - was accepted at Cipher init and then failed out of wrap or unwrap with an unchecked IllegalStateException neither method declares. The KTS key-wrapping Ciphers (ML-KEM, Classic McEliece, FrodoKEM, the composite KEM and RSA-KEM) now validate the spec's KDF when they take it, reporting an unserviceable one as the InvalidAlgorithmParameterException engineInit declares, which is what the javax.crypto.KEM services already did through KdfUtil.resolveKemSpec.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA DTLS handshake deadlocked when a handshake message ahead of the peer's ChangeCipherSpec (a client's CertificateVerify, say) was lost while the ChangeCipherSpec and Finished behind it arrived: the record layer moved its read epoch on at the ChangeCipherSpec and then discarded every retransmission of the lost message as belonging to the old epoch, whose records are only accepted once the handshake has completed. Each side then waited on the other until a handshake timeout, if one was configured, ended it. Every client-authenticated handshake, and every handshake in which the server issues a NewSessionTicket, was exposed. Until the handshake completes, handshake records from the current epoch are now still accepted after the read epoch has moved on, and each message is checked against the epoch of the record that carried it. The DTLS loopback tests now run their handshakes at 10% datagram loss in each direction, with a client-authenticated handshake at 25%.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe lightweight SubjectPublicKeyInfoFactory and PrivateKeyInfoFactory encoded a GOST R 34.10-2012 key on one of the legacy CryptoPro curves under id-GostR3410-2001, although RFC 9215 sec. 4.2 permits those curves for 2012 keys. The digestParamSet now decides: a GOST R 34.11-94 parameter set means 2001 (RFC 4491 sec. 2.3.2), a GOST R 34.11-2012 digest or none means 2012 with 256/512 taken from the curve field size, and any other value is rejected. GOST3410PublicKeyAlgParameters treats digestParamSet as OPTIONAL on both read and write per RFC 9215, and PrivateKeyInfoFactory now passes attributes through for ECGOST3410 keys (bc-csharp github \u003ca href=\"https://redirect.github.com/bcgit/bc-java/issues/707\"\u003e#707\u003c/a\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe name-constraint host canonicalisation removed a single RFC 1034 root-label dot, the only empty label a name may legally carry, but nothing refused the ones that are not legal: a dNSName, rfc822Name host or uniformResourceIdentifier host such as \u0026quot;example.com..\u0026quot; kept a phantom empty label after the strip and so matched no constraint at all, escaping an excluded subtree naming the host it appears to carry. A tested name whose host carries an empty label - a second trailing dot, a doubled dot or a leading dot - is now refused outright wherever a constraint of that type is in force, rather than canonicalised into a name it is not: removing the extra dots would decide on the caller's behalf that \u0026quot;example.com..\u0026quot; names example.com, which is not how a consumer resolving or comparing the name reads it, and refusing fails closed in both directions where canonicalising would newly admit such a name under a permitted subtree. The single trailing dot is canonicalised as before, a bare \u0026quot;.\u0026quot; remains the root label rather than an empty one, and the guard is scoped to the host, so the doubled dot a quoted local part may legally carry is unaffected. Constraints are untouched - one may still begin with a dot, which is how this implementation spells \u0026quot;subdomains only\u0026quot; (github PR \u003ca href=\"https://redirect.github.com/bcgit/bc-java/issues/2436\"\u003e#2436\u003c/a\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e2.1.3 Additional Features and Functionality\u003c/h3\u003e\n\u003ch3\u003e2.1.4 Additional Notes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe sources and javadoc jars of the Ant-built distributions (jdk14, jdk15to18 and jdk13) no longer carry test material. Each module's javadoc target copies the package documentation it needs - org/bouncycastle/\u003c!-- raw HTML omitted --\u003e/\u003cstrong\u003e/*.html - back into the module source directory that has already been compiled from, and zip-src zips that directory afterwards, so every test package's package.html arrived in the sources jar by that route; javadoc-util additionally copied org/bouncycastle/asn1/isismtt/\u003c/strong\u003e/*.java, which put test classes into the bcutil javadoc as generated pages, and javadoc-pg deliberately copied the gpg and bcpg test sources in order to document them. Separately the source copies excluded test material only one directory deep and only for *.java, because Ant reads ** as an any-depth wildcard just where it is a whole path segment, so anything nested further or with another extension - the PEM certificate fixtures under org/bouncycastle/est/test/san corrected in 1.86, and an ICAO master list under org/bouncycastle/asn1/icao/test - went through. The source and javadoc copies of every module now exclude test directories at any depth, and javadoc-pg no longer documents the test packages. org.bouncycastle.util.test is unaffected and still ships in the bcprov binary, sources and javadoc jars, as it does from the Gradle build: it is the SimpleTest framework the light-weight API's own test classes are written against, not test material of the distribution. No binary changes - the classes and resources of every Ant-built jar are identical to those of the 1.86 release - and the Gradle-built jdk18on artifacts never carried any of this.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003c!-- raw HTML omitted --\u003e\u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003ch3\u003e2.2.1 Version\u003c/h3\u003e\n\u003cp\u003eRelease: 1.86\u003cbr /\u003e\nDate: 2026, 11th September.\u003c/p\u003e\n\u003ch3\u003e2.2.2 Defects Fixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe high-level OpenPGP API let a subkey inherit the primary key's Key Flags when its own Subkey Binding signature carried none, so a subkey bound with no flags counted as signing-capable for one check while the cross-certification check RFC 9580 sec. 5.2.1.8 requires of a signing subkey saw none and was skipped - letting a third party's public signing subkey be bound to an attacker's primary key and that party's genuine signatures verify under the attacker's identity. Flags are no longer inherited (CVE-2026-71887).\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API used a version 6 key carrying no valid Direct Key signature, falling back to the primary user ID binding as it correctly does for version 4. RFC 9580 sec. 5.2.3.10 requires the opposite, and since a v6 certificate carries its expiration and preferences there, stripping that one packet silently dropped them - the certificate went on offering subkeys of a key set to expire. isBoundBy now requires a valid Direct Key self-signature before any v6 component is treated as bound; version 4 is unaffected.\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API ignored the OpenPGPPolicy a caller had configured when verifying signatures on an inline message: OpenPGPMessageInputStream took the policy from the implementation's own default rather than from the processor doing the verification, so a hardened policy had no bearing on acceptance and getSignatures() reported isTestedCorrect() true for a signature that policy rejects. Both the one-pass and prefixed-signature paths now read the configured policy.\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API went on offering the subkeys of a certificate whose primary key had expired, the binding check evaluating only a subkey's own Subkey Binding signature - so the certificate contradicted itself, reporting the primary unbound while still handing out its subkeys. The primary key's expiration now applies to the whole certificate, as GnuPG and Sequoia treat it, and a subkey no longer inherits the primary's validity period, which RFC 9580 sec. 5.2.3.13 counts from the creation time of the key the carrying signature is made on.\u003c/li\u003e\n\u003cli\u003eOpenPGPDocumentSignature.isValidAt(Date) reported a data signature as valid past the signature's own Signature Expiration Time (RFC 9580 sec. 5.2.3.18): it checked that the signature was correct and the issuing key bound and signing-capable at that date, but never the signature's own expiration, so it disagreed with isEffectiveAt() on the same object and with its own javadoc. isValid() and isValid(policy), which evaluate at creation time, are unchanged.\u003c/li\u003e\n\u003cli\u003eThe lightweight LMSSigner and HSSSigner refused a key wrapped in ParametersWithRandom, which is how BcContentSignerBuilder passes one once setSecureRandom() has been called, so BcHssLmsContentSignerBuilder failed with \u0026quot;Incorrect Key Parameters\u0026quot; and the two signers raised ClassCastException. All three now unwrap it, as the ML-DSA and SLH-DSA signers already did; the random is accepted and ignored, LMS deriving its message randomiser deterministically from the seed and one-time index.\u003c/li\u003e\n\u003cli\u003eLMS signature verification did not apply two checks RFC 8554 sec. 5.4.2 requires before a signature is processed: step 2g, refusing a signature whose LMS typecode is not the public key's - without it a signature claiming a height-25 parameter set drove a 25-level computation against a height-5 key - and step 2i, refusing a leaf number outside the tree. Neither was a forgery, but both are attacker-chosen work the specification says to refuse up front. Both are now checked.\u003c/li\u003e\n\u003cli\u003eThe LMS and HSS key parameter classes now apply at construction the checks their decoders apply, so a key built directly cannot be one the decoder would refuse: LMSPrivateKeyParameters accepted an identifier of any length where the decoder reads exactly 16 bytes, and left q, maxQ and the seed length unchecked, while HSSPrivateKeyParameters checked neither its level count nor that it had a component key and chaining signature per level. The decoders now report a bad version or seed length as IOException rather than IllegalStateException.\u003c/li\u003e\n\u003cli\u003eIn the LMS JCE layer, LMSKeyGenParameterSpec.fromNames knew all twenty LMS parameter-set names but only four of the sixteen LM-OTS ones, so none of the SP 800-208 n24 or SHAKE sets could be named; all sixteen are now present. initialize(int, SecureRandom) now reports InvalidParameterException as the JCA specifies, and BCLMSPrivateKey.getIndex takes the exhaustion check and the index read under one monitor.\u003c/li\u003e\n\u003cli\u003eKeyPairGenerator.initialize(int, SecureRandom) is documented to raise InvalidParameterException when the key size is not one the generator supports, and thirty of them raised a bare IllegalArgumentException instead. Every generator in BCPQC, and the ML-DSA, ML-KEM, SLH-DSA, Classic McEliece, FrodoKEM, NTRU and composite ones in the BC provider, now raise the documented type - which extends IllegalArgumentException, so existing catches still match. The two RSA generators translate the lightweight refusal through a new SecurityExceptions.invalidParameterException factory.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/bcgit/bc-java/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.commons:commons-collections4` from 4.5.0 to 4.6.0\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.cloud:google-cloud-storage` from 2.71.0 to 2.73.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/googleapis/google-cloud-java/blob/main/java-document-ai/CHANGELOG.md\"\u003ecom.google.cloud:google-cloud-storage's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.73.0 (2025-07-28)\u003c/h2\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eupdate dependency com.google.cloud:sdk-platform-java-config to v3.50.2 (\u003ca href=\"https://redirect.github.com/googleapis/google-cloud-java/issues/11680\"\u003e#11680\u003c/a\u003e) (\u003ca href=\"https://github.com/googleapis/google-cloud-java/commit/d1b99a706daa10c487b56edbb5170b41530628ca\"\u003ed1b99a7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.72.0 (2025-07-11)\u003c/h2\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eupdate dependency com.google.cloud:sdk-platform-java-config to v3.50.1 (\u003ca href=\"https://redirect.github.com/googleapis/google-cloud-java/issues/11655\"\u003e#11655\u003c/a\u003e) (\u003ca href=\"https://github.com/googleapis/google-cloud-java/commit/9b34528f85043049e3349fffc30bb2dbfe01836c\"\u003e9b34528\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/googleapis/google-cloud-java/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.httpcomponents.client5:httpclient5` from 5.6.3 to 5.6.4\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/httpcomponents-client/blob/rel/v5.6.4/RELEASE_NOTES.txt\"\u003eorg.apache.httpcomponents.client5:httpclient5's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eRelease 5.6.4\u003c/h2\u003e\n\u003cp\u003eThis maintenance release fixes SSL parameter application in the async TLS upgrade\nstrategy.\u003c/p\u003e\n\u003ch2\u003eChange Log\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eBearerScheme to reject control characters in bearer token.\nContributed by Javid Khan \u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eCorrects application of SSL parameters in the async TLS upgrade method.\nContributed by Oleg Kalnichevski \u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/httpcomponents-client/commit/36508cead5c4388d04d20aa7efad5a68595631a0\"\u003e\u003ccode\u003e36508ce\u003c/code\u003e\u003c/a\u003e HttpClient 5.6.4 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/httpcomponents-client/commit/59b3d2ed71b206530e286fa86548e7833b4815eb\"\u003e\u003ccode\u003e59b3d2e\u003c/code\u003e\u003c/a\u003e Updated release notes for HttpClient 5.6.4 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/httpcomponents-client/commit/c0af75978b64d66542dd1e1a4bde723a96e4f77b\"\u003e\u003ccode\u003ec0af759\u003c/code\u003e\u003c/a\u003e reject control characters in bearer token in BearerScheme\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/httpcomponents-client/commit/2422b6c89aaacb8d25823b7535479a6fb5a09d0d\"\u003e\u003ccode\u003e2422b6c\u003c/code\u003e\u003c/a\u003e Corrects application of SSL parameters in the async TLS upgrade method\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/httpcomponents-client/commit/66452ea55d9477d721b3c2c1d8c42b3a934a9408\"\u003e\u003ccode\u003e66452ea\u003c/code\u003e\u003c/a\u003e Upgraded HttpClient version to 5.6.4-SNAPSHOT\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/apache/httpcomponents-client/compare/rel/v5.6.3...rel/v5.6.4\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.core:jackson-core` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/24bab144a85cfb0625fcc8201c44d0ccd9029213\"\u003e\u003ccode\u003e24bab14\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-core-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/dbbd2a0685db196fcd074733f89f5aa50b28a195\"\u003e\u003ccode\u003edbbd2a0\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/038fc7a56ff8cc49ef441982a413608bcb391322\"\u003e\u003ccode\u003e038fc7a\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/aaf33980b51dd6ef9514a9cafc7960b26ba70d08\"\u003e\u003ccode\u003eaaf3398\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/2911daeb8b08b146bf3e11c4de86b3bc579b4d39\"\u003e\u003ccode\u003e2911dae\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/ed8e9dc86ffdaea88ed4d1f414d0a37d32d8336b\"\u003e\u003ccode\u003eed8e9dc\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/f8dc7d77b4d743801b40dca4501ea2685ba69808\"\u003e\u003ccode\u003ef8dc7d7\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/7add1bf0be43a70384c87c92d28076c831edbd5c\"\u003e\u003ccode\u003e7add1bf\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/d11418c82b77a7684e91827c6bac4356c7d6bf07\"\u003e\u003ccode\u003ed11418c\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-core-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/66a7a170daaf69f0c5d5ed5d81c47ebd0452cc9d\"\u003e\u003ccode\u003e66a7a17\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-core/compare/jackson-core-2.22.1...jackson-core-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.core:jackson-databind` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/25b2a221f9aa4107e455065a74635e209418cf55\"\u003e\u003ccode\u003e25b2a22\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bab1c1a702a941f8805ee6698e8fa4fdbfbec54a\"\u003e\u003ccode\u003ebab1c1a\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bc03cf83d74cf0e5944dce33a63ee59ddc344b64\"\u003e\u003ccode\u003ebc03cf8\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/83379fb6409075336edf3d8d88744e95911a43f8\"\u003e\u003ccode\u003e83379fb\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/0d400c9dc586fdd460d0c6a40db21ebbe22106d8\"\u003e\u003ccode\u003e0d400c9\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/ce36a279f8b078bef2d9d44a1d01034c3634f91a\"\u003e\u003ccode\u003ece36a27\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7a209e1fa97033746db50fd7bcd1e3dbab077599\"\u003e\u003ccode\u003e7a209e1\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/a432707afe6b7569243d1c2d8052a1bf33d9279c\"\u003e\u003ccode\u003ea432707\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/176df1d48b256ced412c65293ad4e09393e24bd3\"\u003e\u003ccode\u003e176df1d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7785f5f9ed24127e004115472c47b26ea4cf2774\"\u003e\u003ccode\u003e7785f5f\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-databind/compare/jackson-databind-2.22.1...jackson-databind-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.dataformat:jackson-dataformat-smile` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/8ef06d38d36fcef8ee79a3b21e4572236dd43183\"\u003e\u003ccode\u003e8ef06d3\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-dataformats-binary-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/749b0d56ebb6d9e8ec5b2d2f4000f129e31801ab\"\u003e\u003ccode\u003e749b0d5\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/e3f564c59268ab6a041fc9dd1ea894bb9474ae95\"\u003e\u003ccode\u003ee3f564c\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/4ee316a0df03f27fb2d28f9f85460b6eac640f62\"\u003e\u003ccode\u003e4ee316a\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/41fc4b0891f21046544d2eb5b271a02d761b78e2\"\u003e\u003ccode\u003e41fc4b0\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/d96bae29fc934f001a5f4429ad8927650cdd26c1\"\u003e\u003ccode\u003ed96bae2\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/d8a7168141e5f4c74998612e62f03cc9ee5f6cf6\"\u003e\u003ccode\u003ed8a7168\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/cbba1ba11405a41098d20009f647a9dc62a0c296\"\u003e\u003ccode\u003ecbba1ba\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/4dd9e81e945f61ff9e5d9cc4ac136be6abb1e0d7\"\u003e\u003ccode\u003e4dd9e81\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-dataformats-binary-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/abb6b6d67eb98b8ee8a990f211d1458f55a40bf6\"\u003e\u003ccode\u003eabb6b6d\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/compare/jackson-dataformats-binary-2.22.1...jackson-dataformats-binary-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.dataformat:jackson-dataformat-yaml` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/3aab0261e5e03247fa0cd779de40c742c9ed847d\"\u003e\u003ccode\u003e3aab026\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-dataformats-text-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/0e4e5b9cdd2ef978411d0d67b991d02157403522\"\u003e\u003ccode\u003e0e4e5b9\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/3fd423826a06962319bbf5886be32723d2a35a75\"\u003e\u003ccode\u003e3fd4238\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/f0f96895fadd8a2063a73a12db8187b45305f29b\"\u003e\u003ccode\u003ef0f9689\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/50d9dfac796df6f2319394c7431f1c9319347005\"\u003e\u003ccode\u003e50d9dfa\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/0e9bdd490ae06b58f32de212618f71fcaadd36ab\"\u003e\u003ccode\u003e0e9bdd4\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/613de08b86c258aa7e96ee149c47676cf786b42f\"\u003e\u003ccode\u003e613de08\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/49dc929aa8d065073356f8b9bac314235a60e848\"\u003e\u003ccode\u003e49dc929\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/c09cd3f517982471e044a1f91f0865d07322ea14\"\u003e\u003ccode\u003ec09cd3f\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-dataformats-text-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/096a670a930a9f15886588784252e2c2bdab31ec\"\u003e\u003ccode\u003e096a670\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/compare/jackson-dataformats-text-2.22.1...jackson-dataformats-text-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson:jackson-bom` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/062d76d67a3619238e00d4d62f9bdb51cfe6cd52\"\u003e\u003ccode\u003e062d76d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-bom-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/dcf18f79fa8a9b935d880b3906291d8ed8cb1d0d\"\u003e\u003ccode\u003edcf18f7\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/9688c7b1dfc9072fdec7c9770653072d0a728fd1\"\u003e\u003ccode\u003e9688c7b\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/7796a7ddb240ce41c1b6c6a3a435b29948a6a727\"\u003e\u003ccode\u003e7796a7d\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/d3cd7fc1794f6d1a9f0a4dee41d8d46a310741d7\"\u003e\u003ccode\u003ed3cd7fc\u003c/code...\n\n_Description has been truncated_","html_url":"https://github.com/opensearch-project/opensearch-migrations/pull/3382","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/opensearch-project%2Fopensearch-migrations/issues/3382","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/3382/packages"},{"uuid":"5388414407","node_id":"PR_kwDOQ7hLKM8AAAABCsTiOQ","number":5,"state":"closed","title":"Bump com.google.guava:guava from 33.6.0-jre to 33.7.1-jre","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-08T23:48:35.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-08T15:05:19.000Z","updated_at":"2026-09-08T23:48:43.000Z","time_to_close":31396,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"}],"path":null,"ecosystem":"maven"},"body":"Bumps [com.google.guava:guava](https://github.com/google/guava) from 33.6.0-jre to 33.7.1-jre.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.google.guava:guava\u0026package-manager=gradle\u0026previous-version=33.6.0-jre\u0026new-version=33.7.1-jre)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/hidemikimura/jimble/pull/5","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/hidemikimura%2Fjimble/issues/5","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/5/packages"},{"uuid":"5372670566","node_id":"PR_kwDOF1l8-M8AAAABCfsnUw","number":32843,"state":"closed","title":"build(deps): bump the maven-minor-patch group with 166 updates","user":"dependabot[bot]","labels":["java","dependencies"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-09-09T08:56:02.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-07T09:22:24.000Z","updated_at":"2026-09-09T08:56:05.000Z","time_to_close":171218,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps): bump","group_name":"maven-minor-patch","update_count":166,"packages":[{"name":"org.eclipse.jetty:jetty-bom","old_version":"12.1.10","new_version":"12.1.13","repository_url":"https://github.com/jetty/jetty.project"},{"name":"org.eclipse.jetty.ee10:jetty-ee10-bom","old_version":"12.1.10","new_version":"12.1.13","repository_url":"https://github.com/jetty/jetty.project"},{"name":"org.eclipse.jetty:jetty-server","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.eclipse.jetty.ee10:jetty-ee10-servlet","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jetty-server","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jakarta-server","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.eclipse.jetty.ee10:jetty-ee10-servlets","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.eclipse.jetty:jetty-io","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.apache.commons:commons-lang3","old_version":"3.18.0","new_version":"3.20.0"},{"name":"io.opentelemetry:opentelemetry-bom","old_version":"1.62.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"org.eclipse.angus:angus-mail","old_version":"2.0.4","new_version":"2.0.5","repository_url":"https://github.com/eclipse-ee4j/angus-mail"},{"name":"com.fasterxml.jackson.core:jackson-annotations","old_version":"2.18.10","new_version":"2.22","repository_url":"https://github.com/FasterXML/jackson-annotations"},{"name":"com.fasterxml.jackson.core:jackson-core","old_version":"2.18.10","new_version":"2.22"},{"name":"com.fasterxml.jackson.core:jackson-databind","old_version":"2.18.10","new_version":"2.22"},{"name":"com.fasterxml.jackson.module:jackson-module-blackbird","old_version":"2.18.10","new_version":"2.22"},{"name":"com.fasterxml.jackson.datatype:jackson-datatype-jsr353","old_version":"2.18.10","new_version":"2.22"},{"name":"com.fasterxml.jackson.datatype:jackson-datatype-jakarta-jsonp","old_version":"2.18.10","new_version":"2.22"},{"name":"com.fasterxml.jackson.dataformat:jackson-dataformat-cbor","old_version":"2.18.10","new_version":"2.22"},{"name":"com.fasterxml.jackson.dataformat:jackson-dataformat-yaml","old_version":"2.18.10","new_version":"2.22"},{"name":"io.dropwizard:dropwizard-core","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-assets","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-http2","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-client","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-testing","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-json-logging","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-metrics","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-jersey","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-views","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-jetty","old_version":"5.0.0","new_version":"5.0.2"},{"name":"ch.qos.logback:logback-core","old_version":"1.5.36","new_version":"1.6.3","repository_url":"https://github.com/qos-ch/logback"},{"name":"ch.qos.logback:logback-classic","old_version":"1.5.36","new_version":"1.6.3","repository_url":"https://github.com/qos-ch/logback"},{"name":"ch.qos.logback.access:logback-access-jetty12","old_version":"2.0.7","new_version":"2.0.15"},{"name":"ch.qos.logback.access:logback-access-common","old_version":"2.0.7","new_version":"2.0.15"},{"name":"org.awaitility:awaitility","old_version":"4.2.0","new_version":"4.3.0","repository_url":"https://github.com/awaitility/awaitility"},{"name":"io.dropwizard:dropwizard-jdbi3","old_version":"5.0.0","new_version":"5.0.2"},{"name":"org.jdbi:jdbi3-core","old_version":"3.37.1","new_version":"3.54.0","repository_url":"https://github.com/jdbi/jdbi"},{"name":"org.jdbi:jdbi3-sqlobject","old_version":"3.37.1","new_version":"3.54.0","repository_url":"https://github.com/jdbi/jdbi"},{"name":"commons-cli:commons-cli","old_version":"1.9.0","new_version":"1.11.0","repository_url":"https://github.com/apache/commons-cli"},{"name":"commons-io:commons-io","old_version":"2.17.0","new_version":"2.22.0"},{"name":"org.postgresql:postgresql","old_version":"42.7.12","new_version":"42.7.13","repository_url":"https://github.com/pgjdbc/pgjdbc"},{"name":"com.google.code.gson:gson","old_version":"2.13.1","new_version":"2.14.0","repository_url":"https://github.com/google/gson"},{"name":"io.swagger.core.v3:swagger-core","old_version":"2.2.25","new_version":"2.2.55","repository_url":"https://github.com/swagger-api/swagger-core"},{"name":"io.swagger.core.v3:swagger-jaxrs2","old_version":"2.2.25","new_version":"2.2.55"},{"name":"io.swagger.core.v3:swagger-integration","old_version":"2.2.25","new_version":"2.2.55"},{"name":"io.swagger.core.v3:swagger-annotations","old_version":"2.2.25","new_version":"2.2.55"},{"name":"jakarta.xml.bind:jakarta.xml.bind-api","old_version":"4.0.2","new_version":"4.0.5","repository_url":"https://github.com/jakartaee/jaxb-api"},{"name":"io.prometheus:prometheus-metrics-instrumentation-dropwizard","old_version":"1.4.3","new_version":"1.8.0"},{"name":"org.mockito:mockito-core","old_version":"5.5.0","new_version":"5.23.0","repository_url":"https://github.com/mockito/mockito"},{"name":"org.mockito:mockito-junit-jupiter","old_version":"5.23.0","new_version":"5.23.0","repository_url":"https://github.com/mockito/mockito"},{"name":"com.amazon.redshift:redshift-jdbc42","old_version":"2.2.2","new_version":"2.2.8","repository_url":"https://github.com/aws/amazon-redshift-jdbc-driver"},{"name":"org.slf4j:slf4j-api","old_version":"2.0.4","new_version":"2.0.18"},{"name":"org.slf4j:slf4j-simple","old_version":"2.0.4","new_version":"2.0.18"},{"name":"org.projectlombok:lombok","old_version":"1.18.30","new_version":"1.18.48","repository_url":"https://github.com/projectlombok/lombok"},{"name":"org.apache.tomcat:tomcat-jdbc","old_version":"11.0.11","new_version":"11.0.25"},{"name":"com.zaxxer:HikariCP","old_version":"7.0.2","new_version":"7.1.0","repository_url":"https://github.com/brettwooldridge/HikariCP"},{"name":"io.github.classgraph:classgraph","old_version":"4.8.177","new_version":"4.8.194","repository_url":"https://github.com/classgraph/classgraph"},{"name":"org.reflections:reflections","old_version":"0.9.11","new_version":"0.10.2","repository_url":"https://github.com/ronmamo/reflections"},{"name":"org.apache.logging.log4j:log4j-core","old_version":"2.25.5","new_version":"2.26.1"},{"name":"org.apache.logging.log4j:log4j-api","old_version":"2.25.5","new_version":"2.26.1"},{"name":"io.github.resilience4j:resilience4j-retry","old_version":"2.3.0","new_version":"2.4.0","repository_url":"https://github.com/resilience4j/resilience4j"},{"name":"io.github.resilience4j:resilience4j-ratelimiter","old_version":"2.3.0","new_version":"2.4.0","repository_url":"https://github.com/resilience4j/resilience4j"},{"name":"info.picocli:picocli","old_version":"4.7.6","new_version":"4.7.7","repository_url":"https://github.com/remkop/picocli"},{"name":"com.github.erosb:everit-json-schema","old_version":"1.14.4","new_version":"1.14.6","repository_url":"https://github.com/erosb/everit-json-schema"},{"name":"com.github.jknack:handlebars","old_version":"4.5.2","new_version":"4.5.4","repository_url":"https://github.com/jknack/handlebars.java"},{"name":"com.microsoft.azure:msal4j","old_version":"1.17.2","new_version":"1.26.0","repository_url":"https://github.com/AzureAD/microsoft-authentication-library-for-java"},{"name":"com.azure:azure-identity","old_version":"1.15.2","new_version":"1.18.6","repository_url":"https://github.com/Azure/azure-sdk-for-java"},{"name":"org.yaml:snakeyaml","old_version":"2.3","new_version":"2.7"},{"name":"org.apache.commons:commons-compress","old_version":"1.26.0","new_version":"1.28.0","repository_url":"https://github.com/apache/commons-compress"},{"name":"org.bouncycastle:bcprov-jdk18on","old_version":"1.85","new_version":"1.85.2","repository_url":"https://github.com/bcgit/bc-java"},{"name":"tools.jackson:jackson-bom","old_version":"3.1.6","new_version":"3.2.2","repository_url":"https://github.com/FasterXML/jackson-bom"},{"name":"software.amazon.awssdk:bom","old_version":"2.41.30","new_version":"2.54.12"},{"name":"org.jacoco:jacoco-maven-plugin","old_version":"0.8.10","new_version":"0.8.15","repository_url":"https://github.com/jacoco/jacoco"},{"name":"org.apache.maven.plugins:maven-source-plugin","old_version":"3.3.1","new_version":"3.4.0","repository_url":"https://github.com/apache/maven-source-plugin"},{"name":"org.apache.maven.plugins:maven-javadoc-plugin","old_version":"3.6.0","new_version":"3.12.0","repository_url":"https://github.com/apache/maven-javadoc-plugin"},{"name":"org.apache.maven.plugins:maven-gpg-plugin","old_version":"3.0.1","new_version":"3.2.8","repository_url":"https://github.com/apache/maven-gpg-plugin"},{"name":"org.apache.maven.plugins:maven-jxr-plugin","old_version":"3.3.0","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-jxr"},{"name":"org.apache.maven.plugins:maven-enforcer-plugin","old_version":"3.1.0","new_version":"3.6.3","repository_url":"https://github.com/apache/maven-enforcer"},{"name":"org.apache.maven.plugins:maven-clean-plugin","old_version":"3.2.0","new_version":"3.5.0","repository_url":"https://github.com/apache/maven-clean-plugin"},{"name":"org.apache.maven.plugins:maven-deploy-plugin","old_version":"3.0.0","new_version":"3.1.4","repository_url":"https://github.com/apache/maven-deploy-plugin"},{"name":"org.apache.maven.plugins:maven-install-plugin","old_version":"3.0.1","new_version":"3.1.4","repository_url":"https://github.com/apache/maven-install-plugin"},{"name":"org.apache.maven.plugins:maven-resources-plugin","old_version":"3.3.0","new_version":"3.5.0","repository_url":"https://github.com/apache/maven-resources-plugin"},{"name":"org.apache.maven.plugins:maven-assembly-plugin","old_version":"3.4.2","new_version":"3.8.0","repository_url":"https://github.com/apache/maven-assembly-plugin"},{"name":"org.apache.maven.plugins:maven-site-plugin","old_version":"3.12.1","new_version":"3.22.0","repository_url":"https://github.com/apache/maven-site-plugin"},{"name":"org.apache.maven.plugins:maven-dependency-plugin","old_version":"3.6.0","new_version":"3.11.0","repository_url":"https://github.com/apache/maven-dependency-plugin"},{"name":"org.apache.maven.plugins:maven-checkstyle-plugin","old_version":"3.2.0","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-checkstyle-plugin"},{"name":"org.apache.maven.plugins:maven-release-plugin","old_version":"3.0.1","new_version":"3.3.1","repository_url":"https://github.com/apache/maven-release"},{"name":"org.apache.maven.plugins:maven-compiler-plugin","old_version":"3.13.0","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-compiler-plugin"},{"name":"org.apache.maven.plugins:maven-jar-plugin","old_version":"3.3.0","new_version":"3.5.1","repository_url":"https://github.com/apache/maven-jar-plugin"},{"name":"org.apache.maven.plugins:maven-surefire-plugin","old_version":"3.1.2","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-surefire"},{"name":"org.apache.maven.plugins:maven-surefire-report-plugin","old_version":"3.1.2","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-surefire"},{"name":"org.codehaus.mojo:versions-maven-plugin","old_version":"2.13.0","new_version":"2.21.0","repository_url":"https://github.com/mojohaus/versions"},{"name":"org.sonatype.central:central-publishing-maven-plugin","old_version":"0.9.0","new_version":"0.11.0","repository_url":"https://github.com/sonatype/central-publishing-maven-plugin"},{"name":"org.jsonschema2pojo:jsonschema2pojo-maven-plugin","old_version":"1.3.1","new_version":"1.3.3","repository_url":"https://github.com/joelittlejohn/jsonschema2pojo"},{"name":"org.jsonschema2pojo:jsonschema2pojo-core","old_version":"1.3.1","new_version":"1.3.3","repository_url":"https://github.com/joelittlejohn/jsonschema2pojo"},{"name":"com.flipkart.zjsonpatch:zjsonpatch","old_version":"0.4.14","new_version":"0.4.16","repository_url":"https://github.com/flipkart-incubator/zjsonpatch"},{"name":"io.socket:socket.io-client","old_version":"2.1.1","new_version":"2.1.2","repository_url":"https://github.com/socketio/socket.io-client-java"},{"name":"com.auth0:java-jwt","old_version":"4.4.0","new_version":"4.6.0","repository_url":"https://github.com/auth0/java-jwt"},{"name":"org.eclipse.parsson:parsson","old_version":"1.1.8","new_version":"1.1.9","repository_url":"https://github.com/eclipse-ee4j/parsson"},{"name":"org.apache.maven.plugins:maven-failsafe-plugin","old_version":"3.1.2","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-surefire"},{"name":"commons-codec:commons-codec","old_version":"1.17.1","new_version":"1.22.1","repository_url":"https://github.com/apache/commons-codec"},{"name":"co.elastic.clients:elasticsearch-java","old_version":"9.2.4","new_version":"9.5.3","repository_url":"https://github.com/elastic/elasticsearch-java"},{"name":"org.apache.maven.plugins:maven-shade-plugin","old_version":"3.6.0","new_version":"3.6.2","repository_url":"https://github.com/apache/maven-shade-plugin"},{"name":"org.codehaus.mojo:build-helper-maven-plugin","old_version":"3.4.0","new_version":"3.6.1","repository_url":"https://github.com/mojohaus/build-helper-maven-plugin"},{"name":"org.opensearch.client:opensearch-java","old_version":"3.4.0","new_version":"3.10.0","repository_url":"https://github.com/opensearch-project/opensearch-java"},{"name":"com.google.cloud:libraries-bom","old_version":"26.73.0","new_version":"26.87.0","repository_url":"https://github.com/googleapis/google-cloud-java"},{"name":"org.pac4j:pac4j-core","old_version":"6.5.6","new_version":"6.5.7","repository_url":"https://github.com/pac4j/pac4j"},{"name":"org.pac4j:pac4j-oidc","old_version":"6.5.6","new_version":"6.5.7","repository_url":"https://github.com/pac4j/pac4j"},{"name":"jakarta.validation:jakarta.validation-api","old_version":"3.0.2","new_version":"3.1.1","repository_url":"https://github.com/jakartaee/validation"},{"name":"com.nimbusds:nimbus-jose-jwt","old_version":"10.0.2","new_version":"10.9.1"},{"name":"net.minidev:json-smart","old_version":"2.5.2","new_version":"2.6.0","repository_url":"https://github.com/netplex/json-smart-v2"},{"name":"com.google.api-client:google-api-client","old_version":"2.2.0","new_version":"2.9.1","repository_url":"https://github.com/googleapis/google-api-java-client"},{"name":"com.google.oauth-client:google-oauth-client","old_version":"1.34.1","new_version":"1.39.0","repository_url":"https://github.com/googleapis/google-oauth-java-client"},{"name":"io.swagger.core.v3:swagger-core-jakarta","old_version":"2.2.30","new_version":"2.2.55"},{"name":"io.swagger.core.v3:swagger-jaxrs2-jakarta","old_version":"2.2.30","new_version":"2.2.55"},{"name":"com.azure:azure-security-keyvault-secrets","old_version":"4.10.7","new_version":"4.11.2","repository_url":"https://github.com/Azure/azure-sdk-for-java"},{"name":"com.azure:azure-identity-extensions","old_version":"1.0.0","new_version":"1.2.9","repository_url":"https://github.com/azure/azure-sdk-for-java"},{"name":"jakarta.servlet:jakarta.servlet-api","old_version":"6.0.0","new_version":"6.1.0","repository_url":"https://github.com/eclipse-ee4j/servlet-api"},{"name":"io.micrometer:micrometer-observation","old_version":"1.16.7","new_version":"1.17.1","repository_url":"https://github.com/micrometer-metrics/micrometer-commercial"},{"name":"io.micrometer:micrometer-registry-prometheus","old_version":"1.16.7","new_version":"1.17.1","repository_url":"https://github.com/micrometer-metrics/micrometer-commercial"},{"name":"io.micrometer:micrometer-core","old_version":"1.16.7","new_version":"1.17.1","repository_url":"https://github.com/micrometer-metrics/micrometer-commercial"},{"name":"io.dropwizard.metrics:metrics-core","old_version":"4.2.19","new_version":"4.2.40","repository_url":"https://github.com/dropwizard/metrics"},{"name":"ai.djl:api","old_version":"0.34.0","new_version":"0.36.0","repository_url":"https://github.com/deepjavalibrary/djl"},{"name":"ai.djl.pytorch:pytorch-engine","old_version":"0.34.0","new_version":"0.36.0","repository_url":"https://github.com/deepjavalibrary/djl"},{"name":"ai.djl.huggingface:tokenizers","old_version":"0.34.0","new_version":"0.36.0","repository_url":"https://github.com/deepjavalibrary/djl"},{"name":"org.skyscreamer:jsonassert","old_version":"1.5.1","new_version":"1.5.3","repository_url":"https://github.com/skyscreamer/JSONassert"},{"name":"io.jsonwebtoken:jjwt","old_version":"0.9.1","new_version":"0.13.0","repository_url":"https://github.com/jwtk/jjwt"},{"name":"com.auth0:jwks-rsa","old_version":"0.22.1","new_version":"0.24.1","repository_url":"https://github.com/auth0/jwks-rsa-java"},{"name":"io.socket:socket.io-server","old_version":"4.0.1","new_version":"4.1.2","repository_url":"https://github.com/trinopoty/socket.io-server-java"},{"name":"io.socket:engine.io-server","old_version":"6.2.1","new_version":"6.3.2","repository_url":"https://github.com/socketio/engine.io-server-java"},{"name":"org.eclipse.jetty.websocket:jetty-websocket-jetty-api","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.eclipse.jetty:jetty-http","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.freemarker:freemarker","old_version":"2.3.33","new_version":"2.3.35"},{"name":"org.apache.commons:commons-csv","old_version":"1.12.0","new_version":"1.14.1","repository_url":"https://github.com/apache/commons-csv"},{"name":"com.opencsv:opencsv","old_version":"5.9","new_version":"5.12.0"},{"name":"org.quartz-scheduler:quartz","old_version":"2.5.0-rc2","new_version":"2.5.2","repository_url":"https://github.com/quartz-scheduler/quartz"},{"name":"com.mchange:c3p0","old_version":"0.14.1","new_version":"0.14.2","repository_url":"https://github.com/swaldman/c3p0"},{"name":"com.google.guava:guava","old_version":"33.4.8-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"org.testcontainers:junit-jupiter","old_version":"1.20.3","new_version":"1.21.4","repository_url":"https://github.com/testcontainers/testcontainers-java"},{"name":"com.slack.api:bolt-servlet","old_version":"1.44.1","new_version":"1.51.0","repository_url":"https://github.com/slackapi/java-slack-sdk"},{"name":"com.slack.api:slack-api-client","old_version":"1.44.1","new_version":"1.51.0","repository_url":"https://github.com/slackapi/java-slack-sdk"},{"name":"io.github.jamsesso:json-logic-java","old_version":"1.0.7","new_version":"1.1.0","repository_url":"https://github.com/jamsesso/json-logic-java"},{"name":"org.commonmark:commonmark","old_version":"0.26.0","new_version":"0.30.0","repository_url":"https://github.com/commonmark/commonmark-java"},{"name":"org.commonmark:commonmark-ext-gfm-strikethrough","old_version":"0.26.0","new_version":"0.30.0","repository_url":"https://github.com/commonmark/commonmark-java"},{"name":"org.commonmark:commonmark-ext-autolink","old_version":"0.26.0","new_version":"0.30.0","repository_url":"https://github.com/commonmark/commonmark-java"},{"name":"org.commonmark:commonmark-ext-gfm-tables","old_version":"0.26.0","new_version":"0.30.0","repository_url":"https://github.com/commonmark/commonmark-java"},{"name":"com.azure:azure-storage-blob","old_version":"12.31.1","new_version":"12.35.1","repository_url":"https://github.com/Azure/azure-sdk-for-java"},{"name":"org.apache.poi:poi","old_version":"5.4.1","new_version":"5.5.1"},{"name":"org.apache.poi:poi-ooxml","old_version":"5.4.1","new_version":"5.5.1"},{"name":"org.apache.poi:poi-scratchpad","old_version":"5.4.1","new_version":"5.5.1"},{"name":"org.codehaus.mojo:buildnumber-maven-plugin","old_version":"3.0.0","new_version":"3.3.0","repository_url":"https://github.com/mojohaus/buildnumber-maven-plugin"},{"name":"io.swagger.core.v3:swagger-maven-plugin-jakarta","old_version":"2.2.30","new_version":"2.2.55"},{"name":"org.testcontainers:k3s","old_version":"1.20.3","new_version":"1.21.4","repository_url":"https://github.com/testcontainers/testcontainers-java"},{"name":"com.github.docker-java:docker-java-bom","old_version":"3.4.2","new_version":"3.7.1","repository_url":"https://github.com/docker-java/docker-java"},{"name":"com.microsoft.playwright:playwright","old_version":"1.49.0","new_version":"1.62.0","repository_url":"https://github.com/microsoft/playwright-java"},{"name":"org.eclipse.jetty:jetty-util","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.codehaus.mojo:rpm-maven-plugin","old_version":"2.2.0","new_version":"2.3.0","repository_url":"https://github.com/mojohaus/rpm-maven-plugin"},{"name":"io.github.openfeign:feign-core","old_version":"13.5","new_version":"13.14","repository_url":"https://github.com/openfeign/feign"},{"name":"io.github.openfeign:feign-jackson","old_version":"13.5","new_version":"13.14","repository_url":"https://github.com/openfeign/feign"},{"name":"io.github.openfeign:feign-slf4j","old_version":"13.5","new_version":"13.14","repository_url":"https://github.com/openfeign/feign"},{"name":"io.github.openfeign:feign-okhttp","old_version":"13.5","new_version":"13.14","repository_url":"https://github.com/openfeign/feign"},{"name":"org.openapitools:jackson-databind-nullable","old_version":"0.2.6","new_version":"0.2.11","repository_url":"https://github.com/OpenAPITools/jackson-databind-nullable"},{"name":"io.swagger.parser.v3:swagger-parser","old_version":"2.1.23","new_version":"2.1.48","repository_url":"https://github.com/swagger-api/swagger-parser"},{"name":"com.google.auth:google-auth-library-oauth2-http","old_version":"1.29.0","new_version":"1.51.0"},{"name":"com.nimbusds:oauth2-oidc-sdk","old_version":"11.38.1","new_version":"11.38.2"},{"name":"org.mozilla:rhino","old_version":"1.7.15.1","new_version":"1.9.1","repository_url":"https://github.com/mozilla/rhino"},{"name":"org.openapitools:openapi-generator-maven-plugin","old_version":"7.13.0","new_version":"7.25.0"}],"path":null,"ecosystem":"maven"},"body":"Bumps the maven-minor-patch group with 166 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [org.eclipse.jetty:jetty-bom](https://github.com/jetty/jetty.project) | `12.1.10` | `12.1.13` |\n| [org.eclipse.jetty.ee10:jetty-ee10-bom](https://github.com/jetty/jetty.project) | `12.1.10` | `12.1.13` |\n| org.eclipse.jetty:jetty-server | `12.1.10` | `12.1.13` |\n| org.eclipse.jetty.ee10:jetty-ee10-servlet | `12.1.10` | `12.1.13` |\n| org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jetty-server | `12.1.10` | `12.1.13` |\n| org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jakarta-server | `12.1.10` | `12.1.13` |\n| org.eclipse.jetty.ee10:jetty-ee10-servlets | `12.1.10` | `12.1.13` |\n| org.eclipse.jetty:jetty-io | `12.1.10` | `12.1.13` |\n| org.apache.commons:commons-lang3 | `3.18.0` | `3.20.0` |\n| [io.opentelemetry:opentelemetry-bom](https://github.com/open-telemetry/opentelemetry-java) | `1.62.0` | `1.65.0` |\n| [org.eclipse.angus:angus-mail](https://github.com/eclipse-ee4j/angus-mail) | `2.0.4` | `2.0.5` |\n| [com.fasterxml.jackson.core:jackson-annotations](https://github.com/FasterXML/jackson-annotations) | `2.18.10` | `2.22` |\n| com.fasterxml.jackson.core:jackson-core | `2.18.10` | `2.22` |\n| com.fasterxml.jackson.core:jackson-databind | `2.18.10` | `2.22` |\n| com.fasterxml.jackson.module:jackson-module-blackbird | `2.18.10` | `2.22` |\n| com.fasterxml.jackson.datatype:jackson-datatype-jsr353 | `2.18.10` | `2.22` |\n| com.fasterxml.jackson.datatype:jackson-datatype-jakarta-jsonp | `2.18.10` | `2.22` |\n| com.fasterxml.jackson.dataformat:jackson-dataformat-cbor | `2.18.10` | `2.22` |\n| com.fasterxml.jackson.dataformat:jackson-dataformat-yaml | `2.18.10` | `2.22` |\n| io.dropwizard:dropwizard-core | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-assets | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-http2 | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-client | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-testing | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-json-logging | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-metrics | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-jersey | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-views | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-jetty | `5.0.0` | `5.0.2` |\n| [ch.qos.logback:logback-core](https://github.com/qos-ch/logback) | `1.5.36` | `1.6.3` |\n| [ch.qos.logback:logback-classic](https://github.com/qos-ch/logback) | `1.5.36` | `1.6.3` |\n| ch.qos.logback.access:logback-access-jetty12 | `2.0.7` | `2.0.15` |\n| ch.qos.logback.access:logback-access-common | `2.0.7` | `2.0.15` |\n| [org.awaitility:awaitility](https://github.com/awaitility/awaitility) | `4.2.0` | `4.3.0` |\n| io.dropwizard:dropwizard-jdbi3 | `5.0.0` | `5.0.2` |\n| [org.jdbi:jdbi3-core](https://github.com/jdbi/jdbi) | `3.37.1` | `3.54.0` |\n| [org.jdbi:jdbi3-sqlobject](https://github.com/jdbi/jdbi) | `3.37.1` | `3.54.0` |\n| [commons-cli:commons-cli](https://github.com/apache/commons-cli) | `1.9.0` | `1.11.0` |\n| commons-io:commons-io | `2.17.0` | `2.22.0` |\n| [org.postgresql:postgresql](https://github.com/pgjdbc/pgjdbc) | `42.7.12` | `42.7.13` |\n| [com.google.code.gson:gson](https://github.com/google/gson) | `2.13.1` | `2.14.0` |\n| [io.swagger.core.v3:swagger-core](https://github.com/swagger-api/swagger-core) | `2.2.25` | `2.2.55` |\n| io.swagger.core.v3:swagger-jaxrs2 | `2.2.25` | `2.2.55` |\n| io.swagger.core.v3:swagger-integration | `2.2.25` | `2.2.55` |\n| io.swagger.core.v3:swagger-annotations | `2.2.25` | `2.2.55` |\n| [jakarta.xml.bind:jakarta.xml.bind-api](https://github.com/jakartaee/jaxb-api) | `4.0.2` | `4.0.5` |\n| io.prometheus:prometheus-metrics-instrumentation-dropwizard | `1.4.3` | `1.8.0` |\n| [org.mockito:mockito-core](https://github.com/mockito/mockito) | `5.5.0` | `5.23.0` |\n| [org.mockito:mockito-junit-jupiter](https://github.com/mockito/mockito) | `5.23.0` | `5.23.0` |\n| [com.amazon.redshift:redshift-jdbc42](https://github.com/aws/amazon-redshift-jdbc-driver) | `2.2.2` | `2.2.8` |\n| org.slf4j:slf4j-api | `2.0.4` | `2.0.18` |\n| org.slf4j:slf4j-simple | `2.0.4` | `2.0.18` |\n| [org.projectlombok:lombok](https://github.com/projectlombok/lombok) | `1.18.30` | `1.18.48` |\n| org.apache.tomcat:tomcat-jdbc | `11.0.11` | `11.0.25` |\n| [com.zaxxer:HikariCP](https://github.com/brettwooldridge/HikariCP) | `7.0.2` | `7.1.0` |\n| [io.github.classgraph:classgraph](https://github.com/classgraph/classgraph) | `4.8.177` | `4.8.194` |\n| [org.reflections:reflections](https://github.com/ronmamo/reflections) | `0.9.11` | `0.10.2` |\n| org.apache.logging.log4j:log4j-core | `2.25.5` | `2.26.1` |\n| org.apache.logging.log4j:log4j-api | `2.25.5` | `2.26.1` |\n| [io.github.resilience4j:resilience4j-retry](https://github.com/resilience4j/resilience4j) | `2.3.0` | `2.4.0` |\n| [io.github.resilience4j:resilience4j-ratelimiter](https://github.com/resilience4j/resilience4j) | `2.3.0` | `2.4.0` |\n| [info.picocli:picocli](https://github.com/remkop/picocli) | `4.7.6` | `4.7.7` |\n| [com.github.erosb:everit-json-schema](https://github.com/erosb/everit-json-schema) | `1.14.4` | `1.14.6` |\n| [com.github.jknack:handlebars](https://github.com/jknack/handlebars.java) | `4.5.2` | `4.5.4` |\n| [com.microsoft.azure:msal4j](https://github.com/AzureAD/microsoft-authentication-library-for-java) | `1.17.2` | `1.26.0` |\n| [com.azure:azure-identity](https://github.com/Azure/azure-sdk-for-java) | `1.15.2` | `1.18.6` |\n| org.yaml:snakeyaml | `2.3` | `2.7` |\n| [org.apache.commons:commons-compress](https://github.com/apache/commons-compress) | `1.26.0` | `1.28.0` |\n| [org.bouncycastle:bcprov-jdk18on](https://github.com/bcgit/bc-java) | `1.85` | `1.85.2` |\n| [tools.jackson:jackson-bom](https://github.com/FasterXML/jackson-bom) | `3.1.6` | `3.2.2` |\n| software.amazon.awssdk:bom | `2.41.30` | `2.54.12` |\n| [org.jacoco:jacoco-maven-plugin](https://github.com/jacoco/jacoco) | `0.8.10` | `0.8.15` |\n| [org.apache.maven.plugins:maven-source-plugin](https://github.com/apache/maven-source-plugin) | `3.3.1` | `3.4.0` |\n| [org.apache.maven.plugins:maven-javadoc-plugin](https://github.com/apache/maven-javadoc-plugin) | `3.6.0` | `3.12.0` |\n| [org.apache.maven.plugins:maven-gpg-plugin](https://github.com/apache/maven-gpg-plugin) | `3.0.1` | `3.2.8` |\n| [org.apache.maven.plugins:maven-jxr-plugin](https://github.com/apache/maven-jxr) | `3.3.0` | `3.6.0` |\n| [org.apache.maven.plugins:maven-enforcer-plugin](https://github.com/apache/maven-enforcer) | `3.1.0` | `3.6.3` |\n| [org.apache.maven.plugins:maven-clean-plugin](https://github.com/apache/maven-clean-plugin) | `3.2.0` | `3.5.0` |\n| [org.apache.maven.plugins:maven-deploy-plugin](https://github.com/apache/maven-deploy-plugin) | `3.0.0` | `3.1.4` |\n| [org.apache.maven.plugins:maven-install-plugin](https://github.com/apache/maven-install-plugin) | `3.0.1` | `3.1.4` |\n| [org.apache.maven.plugins:maven-resources-plugin](https://github.com/apache/maven-resources-plugin) | `3.3.0` | `3.5.0` |\n| [org.apache.maven.plugins:maven-assembly-plugin](https://github.com/apache/maven-assembly-plugin) | `3.4.2` | `3.8.0` |\n| [org.apache.maven.plugins:maven-site-plugin](https://github.com/apache/maven-site-plugin) | `3.12.1` | `3.22.0` |\n| [org.apache.maven.plugins:maven-dependency-plugin](https://github.com/apache/maven-dependency-plugin) | `3.6.0` | `3.11.0` |\n| [org.apache.maven.plugins:maven-checkstyle-plugin](https://github.com/apache/maven-checkstyle-plugin) | `3.2.0` | `3.6.0` |\n| [org.apache.maven.plugins:maven-release-plugin](https://github.com/apache/maven-release) | `3.0.1` | `3.3.1` |\n| [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin) | `3.13.0` | `3.16.0` |\n| [org.apache.maven.plugins:maven-jar-plugin](https://github.com/apache/maven-jar-plugin) | `3.3.0` | `3.5.1` |\n| [org.apache.maven.plugins:maven-surefire-plugin](https://github.com/apache/maven-surefire) | `3.1.2` | `3.6.0` |\n| [org.apache.maven.plugins:maven-surefire-report-plugin](https://github.com/apache/maven-surefire) | `3.1.2` | `3.6.0` |\n| [org.codehaus.mojo:versions-maven-plugin](https://github.com/mojohaus/versions) | `2.13.0` | `2.21.0` |\n| [org.sonatype.central:central-publishing-maven-plugin](https://github.com/sonatype/central-publishing-maven-plugin) | `0.9.0` | `0.11.0` |\n| [org.jsonschema2pojo:jsonschema2pojo-maven-plugin](https://github.com/joelittlejohn/jsonschema2pojo) | `1.3.1` | `1.3.3` |\n| [org.jsonschema2pojo:jsonschema2pojo-core](https://github.com/joelittlejohn/jsonschema2pojo) | `1.3.1` | `1.3.3` |\n| [com.flipkart.zjsonpatch:zjsonpatch](https://github.com/flipkart-incubator/zjsonpatch) | `0.4.14` | `0.4.16` |\n| [io.socket:socket.io-client](https://github.com/socketio/socket.io-client-java) | `2.1.1` | `2.1.2` |\n| [com.auth0:java-jwt](https://github.com/auth0/java-jwt) | `4.4.0` | `4.6.0` |\n| [org.eclipse.parsson:parsson](https://github.com/eclipse-ee4j/parsson) | `1.1.8` | `1.1.9` |\n| [org.apache.maven.plugins:maven-failsafe-plugin](https://github.com/apache/maven-surefire) | `3.1.2` | `3.6.0` |\n| [commons-codec:commons-codec](https://github.com/apache/commons-codec) | `1.17.1` | `1.22.1` |\n| [co.elastic.clients:elasticsearch-java](https://github.com/elastic/elasticsearch-java) | `9.2.4` | `9.5.3` |\n| [org.apache.maven.plugins:maven-shade-plugin](https://github.com/apache/maven-shade-plugin) | `3.6.0` | `3.6.2` |\n| [org.codehaus.mojo:build-helper-maven-plugin](https://github.com/mojohaus/build-helper-maven-plugin) | `3.4.0` | `3.6.1` |\n| [org.opensearch.client:opensearch-java](https://github.com/opensearch-project/opensearch-java) | `3.4.0` | `3.10.0` |\n| [com.google.cloud:libraries-bom](https://github.com/googleapis/google-cloud-java) | `26.73.0` | `26.87.0` |\n| [org.pac4j:pac4j-core](https://github.com/pac4j/pac4j) | `6.5.6` | `6.5.7` |\n| [org.pac4j:pac4j-oidc](https://github.com/pac4j/pac4j) | `6.5.6` | `6.5.7` |\n| [jakarta.validation:jakarta.validation-api](https://github.com/jakartaee/validation) | `3.0.2` | `3.1.1` |\n| [com.nimbusds:nimbus-jose-jwt](https://bitbucket.org/connect2id/nimbus-jose-jwt) | `10.0.2` | `10.9.1` |\n| [net.minidev:json-smart](https://github.com/netplex/json-smart-v2) | `2.5.2` | `2.6.0` |\n| [com.google.api-client:google-api-client](https://github.com/googleapis/google-api-java-client) | `2.2.0` | `2.9.1` |\n| [com.google.oauth-client:google-oauth-client](https://github.com/googleapis/google-oauth-java-client) | `1.34.1` | `1.39.0` |\n| io.swagger.core.v3:swagger-core-jakarta | `2.2.30` | `2.2.55` |\n| io.swagger.core.v3:swagger-jaxrs2-jakarta | `2.2.30` | `2.2.55` |\n| [com.azure:azure-security-keyvault-secrets](https://github.com/Azure/azure-sdk-for-java) | `4.10.7` | `4.11.2` |\n| [com.azure:azure-identity-extensions](https://github.com/azure/azure-sdk-for-java) | `1.0.0` | `1.2.9` |\n| [jakarta.servlet:jakarta.servlet-api](https://github.com/eclipse-ee4j/servlet-api) | `6.0.0` | `6.1.0` |\n| [io.micrometer:micrometer-observation](https://github.com/micrometer-metrics/micrometer-commercial) | `1.16.7` | `1.17.1` |\n| [io.micrometer:micrometer-registry-prometheus](https://github.com/micrometer-metrics/micrometer-commercial) | `1.16.7` | `1.17.1` |\n| [io.micrometer:micrometer-core](https://github.com/micrometer-metrics/micrometer-commercial) | `1.16.7` | `1.17.1` |\n| [io.dropwizard.metrics:metrics-core](https://github.com/dropwizard/metrics) | `4.2.19` | `4.2.40` |\n| [ai.djl:api](https://github.com/deepjavalibrary/djl) | `0.34.0` | `0.36.0` |\n| [ai.djl.pytorch:pytorch-engine](https://github.com/deepjavalibrary/djl) | `0.34.0` | `0.36.0` |\n| [ai.djl.huggingface:tokenizers](https://github.com/deepjavalibrary/djl) | `0.34.0` | `0.36.0` |\n| [org.skyscreamer:jsonassert](https://github.com/skyscreamer/JSONassert) | `1.5.1` | `1.5.3` |\n| [io.jsonwebtoken:jjwt](https://github.com/jwtk/jjwt) | `0.9.1` | `0.13.0` |\n| [com.auth0:jwks-rsa](https://github.com/auth0/jwks-rsa-java) | `0.22.1` | `0.24.1` |\n| [io.socket:socket.io-server](https://github.com/trinopoty/socket.io-server-java) | `4.0.1` | `4.1.2` |\n| [io.socket:engine.io-server](https://github.com/socketio/engine.io-server-java) | `6.2.1` | `6.3.2` |\n| org.eclipse.jetty.websocket:jetty-websocket-jetty-api | `12.1.10` | `12.1.13` |\n| org.eclipse.jetty:jetty-http | `12.1.10` | `12.1.13` |\n| org.freemarker:freemarker | `2.3.33` | `2.3.35` |\n| [org.apache.commons:commons-csv](https://github.com/apache/commons-csv) | `1.12.0` | `1.14.1` |\n| com.opencsv:opencsv | `5.9` | `5.12.0` |\n| [org.quartz-scheduler:quartz](https://github.com/quartz-scheduler/quartz) | `2.5.0-rc2` | `2.5.2` |\n| [com.mchange:c3p0](https://github.com/swaldman/c3p0) | `0.14.1` | `0.14.2` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.4.8-jre` | `33.7.1-jre` |\n| [org.testcontainers:junit-jupiter](https://github.com/testcontainers/testcontainers-java) | `1.20.3` | `1.21.4` |\n| [com.slack.api:bolt-servlet](https://github.com/slackapi/java-slack-sdk) | `1.44.1` | `1.51.0` |\n| [com.slack.api:slack-api-client](https://github.com/slackapi/java-slack-sdk) | `1.44.1` | `1.51.0` |\n| [io.github.jamsesso:json-logic-java](https://github.com/jamsesso/json-logic-java) | `1.0.7` | `1.1.0` |\n| [org.commonmark:commonmark](https://github.com/commonmark/commonmark-java) | `0.26.0` | `0.30.0` |\n| [org.commonmark:commonmark-ext-gfm-strikethrough](https://github.com/commonmark/commonmark-java) | `0.26.0` | `0.30.0` |\n| [org.commonmark:commonmark-ext-autolink](https://github.com/commonmark/commonmark-java) | `0.26.0` | `0.30.0` |\n| [org.commonmark:commonmark-ext-gfm-tables](https://github.com/commonmark/commonmark-java) | `0.26.0` | `0.30.0` |\n| [com.azure:azure-storage-blob](https://github.com/Azure/azure-sdk-for-java) | `12.31.1` | `12.35.1` |\n| org.apache.poi:poi | `5.4.1` | `5.5.1` |\n| org.apache.poi:poi-ooxml | `5.4.1` | `5.5.1` |\n| org.apache.poi:poi-scratchpad | `5.4.1` | `5.5.1` |\n| [org.codehaus.mojo:buildnumber-maven-plugin](https://github.com/mojohaus/buildnumber-maven-plugin) | `3.0.0` | `3.3.0` |\n| io.swagger.core.v3:swagger-maven-plugin-jakarta | `2.2.30` | `2.2.55` |\n| [org.testcontainers:k3s](https://github.com/testcontainers/testcontainers-java) | `1.20.3` | `1.21.4` |\n| [com.github.docker-java:docker-java-bom](https://github.com/docker-java/docker-java) | `3.4.2` | `3.7.1` |\n| [com.microsoft.playwright:playwright](https://github.com/microsoft/playwright-java) | `1.49.0` | `1.62.0` |\n| org.eclipse.jetty:jetty-util | `12.1.10` | `12.1.13` |\n| [org.codehaus.mojo:rpm-maven-plugin](https://github.com/mojohaus/rpm-maven-plugin) | `2.2.0` | `2.3.0` |\n| [io.github.openfeign:feign-core](https://github.com/openfeign/feign) | `13.5` | `13.14` |\n| [io.github.openfeign:feign-jackson](https://github.com/openfeign/feign) | `13.5` | `13.14` |\n| [io.github.openfeign:feign-slf4j](https://github.com/openfeign/feign) | `13.5` | `13.14` |\n| [io.github.openfeign:feign-okhttp](https://github.com/openfeign/feign) | `13.5` | `13.14` |\n| [org.openapitools:jackson-databind-nullable](https://github.com/OpenAPITools/jackson-databind-nullable) | `0.2.6` | `0.2.11` |\n| [io.swagger.parser.v3:swagger-parser](https://github.com/swagger-api/swagger-parser) | `2.1.23` | `2.1.48` |\n| com.google.auth:google-auth-library-oauth2-http | `1.29.0` | `1.51.0` |\n| [com.nimbusds:oauth2-oidc-sdk](https://bitbucket.org/connect2id/oauth-2.0-sdk-with-openid-connect-extensions) | `11.38.1` | `11.38.2` |\n| [org.mozilla:rhino](https://github.com/mozilla/rhino) | `1.7.15.1` | `1.9.1` |\n| org.openapitools:openapi-generator-maven-plugin | `7.13.0` | `7.25.0` |\n\nUpdates `org.eclipse.jetty:jetty-bom` from 12.1.10 to 12.1.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jetty/jetty.project/releases\"\u003eorg.eclipse.jetty:jetty-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e12.1.13\u003c/h2\u003e\n\u003ch1\u003eSpecial Thanks to the following Eclipse Jetty community members\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e (DragonFSKY)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/kamilkrzywanski\"\u003e\u003ccode\u003e@​kamilkrzywanski\u003c/code\u003e\u003c/a\u003e (Kamil Krzywanski)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15548\"\u003e#15548\u003c/a\u003e - AbstractProxyServlet.filterServerResponseHeader returns existing value\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15504\"\u003e#15504\u003c/a\u003e - BouncyCastleClientALPNProcessor does not have a fallback for empty protocol string. (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15385\"\u003e#15385\u003c/a\u003e - Streamline dependencies for HTTP/3 Server with Quiche\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14930\"\u003e#14930\u003c/a\u003e - \u003ccode\u003eSymlinkAllowedResourceAliasChecker.check()\u003c/code\u003e fails with NPE (\u003ca href=\"https://github.com/kamilkrzywanski\"\u003e\u003ccode\u003e@​kamilkrzywanski\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14906\"\u003e#14906\u003c/a\u003e - Flaky test: RedispatchTests.testEe8FilterWithAwkwardRequestURI() — fails in 45% of CI builds (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14403\"\u003e#14403\u003c/a\u003e - \u003ccode\u003eRoundRobinConnectionPoolTest.testMultiplexWithMaxUsage()\u003c/code\u003e on FCGI is flaky (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.12\u003c/h2\u003e\n\u003ch1\u003eSpecial Thanks to the following Eclipse Jetty community members\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/zenios\"\u003e\u003ccode\u003e@​zenios\u003c/code\u003e\u003c/a\u003e (Dimitris Zenios)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15496\"\u003e#15496\u003c/a\u003e - mime-type filtering by IncludeExclude should always be case-insensitive\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15456\"\u003e#15456\u003c/a\u003e - Fragments in redirects not supported by default in standalone Jetty installation\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15453\"\u003e#15453\u003c/a\u003e - HttpServletResponse: setHeader(\u0026quot;Content-Length\u0026quot;, N) should be treated like setContentLengthLong(N)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/13970\"\u003e#13970\u003c/a\u003e - ForwardedRequestCustomizer uses connection port instead of proto default when host lacks port (\u003ca href=\"https://github.com/zenios\"\u003e\u003ccode\u003e@​zenios\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/577\"\u003e#577\u003c/a\u003e     - AbstractProxyServlet onServerResponseHeaders addHeader rather than setHeader\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.11\u003c/h2\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15345\"\u003e#15345\u003c/a\u003e - Move RateControl to jetty-io\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15308\"\u003e#15308\u003c/a\u003e - CachingWebAppClassLoader is not registering as parallel capable\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15267\"\u003e#15267\u003c/a\u003e - Introduce module for MinimumDataRateHandler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15234\"\u003e#15234\u003c/a\u003e - Review error response codes from EagerContentHandler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15232\"\u003e#15232\u003c/a\u003e - Jetty 12.1.x EE11 doesn't handle Session attributes properly\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15228\"\u003e#15228\u003c/a\u003e - Fix increased in memory usage between 12.1.8 and 12.1.10 caused by ZipFileSystems\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15226\"\u003e#15226\u003c/a\u003e - Server becomes inaccessible with thousands of qtp threads blocked in HttpChannelState.onIdleTimeout ReentrantLock\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15217\"\u003e#15217\u003c/a\u003e - jetty-quic-quiche-foreign fails on Windows due to eager resolution of Unix-only quiche_conn_set_keylog_fd\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15156\"\u003e#15156\u003c/a\u003e - Injecting authentication headers using request filters\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/e99386749a0a4888cd9b555ffc96a476fd48d94e\"\u003e\u003ccode\u003ee993867\u003c/code\u003e\u003c/a\u003e Updating to version 12.1.13\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/1fa2a1c33591cf35756c366f7cc87fd6a2d86216\"\u003e\u003ccode\u003e1fa2a1c\u003c/code\u003e\u003c/a\u003e [12.1.x EE9] Bump org.apache.maven.plugins:maven-compiler-plugin (\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15715\"\u003e#15715\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/c67d57d2e93bef68b9585493f0bf76f0e6e5af62\"\u003e\u003ccode\u003ec67d57d\u003c/code\u003e\u003c/a\u003e [12.1.x EE10] Bump jakarta.json.bind:jakarta.json.bind-api from 3.0.2 to 3.0....\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/3caa491da4662240caf318ddc14435692d2b7b28\"\u003e\u003ccode\u003e3caa491\u003c/code\u003e\u003c/a\u003e [12.1.x Root pom] Bump com.github.luben:zstd-jni from 1.5.7-15 to 1.5.7-16 in...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/1f8fafbb60640b72d9c3044ffa33df833f5b01c3\"\u003e\u003ccode\u003e1f8fafb\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14403\"\u003e#14403\u003c/a\u003e - Defer FCGI application dispatch until the parser returns (\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15648\"\u003e#15648\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/bc6e23aac5f886c0d5b614f09bc25933356da7c1\"\u003e\u003ccode\u003ebc6e23a\u003c/code\u003e\u003c/a\u003e [12.1.x EE9] Bump the dev-dependencies group across 1 directory with 3 update...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/42fd27319557e50b75261622c6d30edc5daa20b2\"\u003e\u003ccode\u003e42fd273\u003c/code\u003e\u003c/a\u003e Adding method Constraint test to improve test coverage\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/365b721cc3f08bba6a4ba3780fde8d2d4fcd50c4\"\u003e\u003ccode\u003e365b721\u003c/code\u003e\u003c/a\u003e Making CIDR pattern matching case insensitive\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/17c051c8cd4af3e2019cc1794db81e87464c1d64\"\u003e\u003ccode\u003e17c051c\u003c/code\u003e\u003c/a\u003e Fixes \u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14930\"\u003e#14930\u003c/a\u003e - Resolve base resource for SymlinkAllowedResourceAliasChecker (...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/8c18972ff79720d087d826c527732c465c7c3d1c\"\u003e\u003ccode\u003e8c18972\u003c/code\u003e\u003c/a\u003e [12.1.x Root pom] Bump the dev-dependencies group across 1 directory with 8 u...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/jetty/jetty.project/compare/jetty-12.1.10...jetty-12.1.13\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.eclipse.jetty.ee10:jetty-ee10-bom` from 12.1.10 to 12.1.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jetty/jetty.project/releases\"\u003eorg.eclipse.jetty.ee10:jetty-ee10-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e12.1.13\u003c/h2\u003e\n\u003ch1\u003eSpecial Thanks to the following Eclipse Jetty community members\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e (DragonFSKY)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/kamilkrzywanski\"\u003e\u003ccode\u003e@​kamilkrzywanski\u003c/code\u003e\u003c/a\u003e (Kamil Krzywanski)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15548\"\u003e#15548\u003c/a\u003e - AbstractProxyServlet.filterServerResponseHeader returns existing value\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15504\"\u003e#15504\u003c/a\u003e - BouncyCastleClientALPNProcessor does not have a fallback for empty protocol string. (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15385\"\u003e#15385\u003c/a\u003e - Streamline dependencies for HTTP/3 Server with Quiche\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14930\"\u003e#14930\u003c/a\u003e - \u003ccode\u003eSymlinkAllowedResourceAliasChecker.check()\u003c/code\u003e fails with NPE (\u003ca href=\"https://github.com/kamilkrzywanski\"\u003e\u003ccode\u003e@​kamilkrzywanski\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14906\"\u003e#14906\u003c/a\u003e - Flaky test: RedispatchTests.testEe8FilterWithAwkwardRequestURI() — fails in 45% of CI builds (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14403\"\u003e#14403\u003c/a\u003e - \u003ccode\u003eRoundRobinConnectionPoolTest.testMultiplexWithMaxUsage()\u003c/code\u003e on FCGI is flaky (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.12\u003c/h2\u003e\n\u003ch1\u003eSpecial Thanks to the following Eclipse Jetty community members\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/zenios\"\u003e\u003ccode\u003e@​zenios\u003c/code\u003e\u003c/a\u003e (Dimitris Zenios)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15496\"\u003e#15496\u003c/a\u003e - mime-type filtering by IncludeExclude should always be case-insensitive\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15456\"\u003e#15456\u003c/a\u003e - Fragments in redirects not supported by default in standalone Jetty installation\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15453\"\u003e#15453\u003c/a\u003e - HttpServletResponse: setHeader(\u0026quot;Content-Length\u0026quot;, N) should be treated like setContentLengthLong(N)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/13970\"\u003e#13970\u003c/a\u003e - ForwardedRequestCustomizer uses connection port instead of proto default when host lacks port (\u003ca href=\"https://github.com/zenios\"\u003e\u003ccode\u003e@​zenios\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/577\"\u003e#577\u003c/a\u003e     - AbstractProxyServlet onServerResponseHeaders addHeader rather than setHeader\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.11\u003c/h2\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15345\"\u003e#15345\u003c/a\u003e - Move RateControl to jetty-io\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15308\"\u003e#15308\u003c/a\u003e - CachingWebAppClassLoader is not registering as parallel capable\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15267\"\u003e#15267\u003c/a\u003e - Introduce module for MinimumDataRateHandler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15234\"\u003e#15234\u003c/a\u003e - Review error response codes from EagerContentHandler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15232\"\u003e#15232\u003c/a\u003e - Jetty 12.1.x EE11 doesn't handle Session attributes properly\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15228\"\u003e#15228\u003c/a\u003e - Fix increased in memory usage between 12.1.8 and 12.1.10 caused by ZipFileSystems\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15226\"\u003e#15226\u003c/a\u003e - Server becomes inaccessible with thousands of qtp threads blocked in HttpChannelState.onIdleTimeout ReentrantLock\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15217\"\u003e#15217\u003c/a\u003e - jetty-quic-quiche-foreign fails on Windows due to eager resolution of Unix-only quiche_conn_set_keylog_fd\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15156\"\u003e#15156\u003c/a\u003e - Injecting authentication headers using request filters\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/e99386749a0a4888cd9b555ffc96a476fd48d94e\"\u003e\u003ccode\u003ee993867\u003c/code\u003e\u003c/a\u003e Updating to version 12.1.13\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/1fa2a1c33591cf35756c366f7cc87fd6a2d86216\"\u003e\u003ccode\u003e1fa2a1c\u003c/code\u003e\u003c/a\u003e [12.1.x EE9] Bump org.apache.maven.plugins:maven-compiler-plugin (\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15715\"\u003e#15715\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/c67d57d2e93bef68b9585493f0bf76f0e6e5af62\"\u003e\u003ccode\u003ec67d57d\u003c/code\u003e\u003c/a\u003e [12.1.x EE10] Bump jakarta.json.bind:jakarta.json.bind-api from 3.0.2 to 3.0....\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/3caa491da4662240caf318ddc14435692d2b7b28\"\u003e\u003ccode\u003e3caa491\u003c/code\u003e\u003c/a\u003e [12.1.x Root pom] Bump com.github.luben:zstd-jni from 1.5.7-15 to 1.5.7-16 in...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/1f8fafbb60640b72d9c3044ffa33df833f5b01c3\"\u003e\u003ccode\u003e1f8fafb\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14403\"\u003e#14403\u003c/a\u003e - Defer FCGI application dispatch until the parser returns (\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15648\"\u003e#15648\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/bc6e23aac5f886c0d5b614f09bc25933356da7c1\"\u003e\u003ccode\u003ebc6e23a\u003c/code\u003e\u003c/a\u003e [12.1.x EE9] Bump the dev-dependencies group across 1 directory with 3 update...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/42fd27319557e50b75261622c6d30edc5daa20b2\"\u003e\u003ccode\u003e42fd273\u003c/code\u003e\u003c/a\u003e Adding method Constraint test to improve test coverage\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/365b721cc3f08bba6a4ba3780fde8d2d4fcd50c4\"\u003e\u003ccode\u003e365b721\u003c/code\u003e\u003c/a\u003e Making CIDR pattern matching case insensitive\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/17c051c8cd4af3e2019cc1794db81e87464c1d64\"\u003e\u003ccode\u003e17c051c\u003c/code\u003e\u003c/a\u003e Fixes \u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14930\"\u003e#14930\u003c/a\u003e - Resolve base resource for SymlinkAllowedResourceAliasChecker (...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/8c18972ff79720d087d826c527732c465c7c3d1c\"\u003e\u003ccode\u003e8c18972\u003c/code\u003e\u003c/a\u003e [12.1.x Root pom] Bump the dev-dependencies group across 1 directory with 8 u...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/jetty/jetty.project/compare/jetty-12.1.10...jetty-12.1.13\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.eclipse.jetty:jetty-server` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10:jetty-ee10-servlet` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jetty-server` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jakarta-server` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10:jetty-ee10-servlets` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty:jetty-io` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10:jetty-ee10-bom` from 12.1.10 to 12.1.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jetty/jetty.project/releases\"\u003eorg.eclipse.jetty.ee10:jetty-ee10-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e12.1.13\u003c/h2\u003e\n\u003ch1\u003eSpecial Thanks to the following Eclipse Jetty community members\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e (DragonFSKY)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/kamilkrzywanski\"\u003e\u003ccode\u003e@​kamilkrzywanski\u003c/code\u003e\u003c/a\u003e (Kamil Krzywanski)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15548\"\u003e#15548\u003c/a\u003e - AbstractProxyServlet.filterServerResponseHeader returns existing value\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15504\"\u003e#15504\u003c/a\u003e - BouncyCastleClientALPNProcessor does not have a fallback for empty protocol string. (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15385\"\u003e#15385\u003c/a\u003e - Streamline dependencies for HTTP/3 Server with Quiche\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14930\"\u003e#14930\u003c/a\u003e - \u003ccode\u003eSymlinkAllowedResourceAliasChecker.check()\u003c/code\u003e fails with NPE (\u003ca href=\"https://github.com/kamilkrzywanski\"\u003e\u003ccode\u003e@​kamilkrzywanski\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14906\"\u003e#14906\u003c/a\u003e - Flaky test: RedispatchTests.testEe8FilterWithAwkwardRequestURI() — fails in 45% of CI builds (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14403\"\u003e#14403\u003c/a\u003e - \u003ccode\u003eRoundRobinConnectionPoolTest.testMultiplexWithMaxUsage()\u003c/code\u003e on FCGI is flaky (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.12\u003c/h2\u003e\n\u003ch1\u003eSpecial Thanks to the following Eclipse Jetty community members\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/zenios\"\u003e\u003ccode\u003e@​zenios\u003c/code\u003e\u003c/a\u003e (Dimitris Zenios)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15496\"\u003e#15496\u003c/a\u003e - mime-type filtering by IncludeExclude should always be case-insensitive\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15456\"\u003e#15456\u003c/a\u003e - Fragments in redirects not supported by default in standalone Jetty installation\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15453\"\u003e#15453\u003c/a\u003e - HttpServletResponse: setHeader(\u0026quot;Content-Length\u0026quot;, N) should be treated like setContentLengthLong(N)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/13970\"\u003e#13970\u003c/a\u003e - ForwardedRequestCustomizer uses connection port instead of proto default when host lacks port (\u003ca href=\"https://github.com/zenios\"\u003e\u003ccode\u003e@​zenios\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/577\"\u003e#577\u003c/a\u003e     - AbstractProxyServlet onServerResponseHeaders addHeader rather than setHeader\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.11\u003c/h2\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15345\"\u003e#15345\u003c/a\u003e - Move RateControl to jetty-io\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15308\"\u003e#15308\u003c/a\u003e - CachingWebAppClassLoader is not registering as parallel capable\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15267\"\u003e#15267\u003c/a\u003e - Introduce module for MinimumDataRateHandler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15234\"\u003e#15234\u003c/a\u003e - Review error response codes from EagerContentHandler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15232\"\u003e#15232\u003c/a\u003e - Jetty 12.1.x EE11 doesn't handle Session attributes properly\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15228\"\u003e#15228\u003c/a\u003e - Fix increased in memory usage between 12.1.8 and 12.1.10 caused by ZipFileSystems\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15226\"\u003e#15226\u003c/a\u003e - Server becomes inaccessible with thousands of qtp threads blocked in HttpChannelState.onIdleTimeout ReentrantLock\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15217\"\u003e#15217\u003c/a\u003e - jetty-quic-quiche-foreign fails on Windows due to eager resolution of Unix-only quiche_conn_set_keylog_fd\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15156\"\u003e#15156\u003c/a\u003e - Injecting authentication headers using request filters\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/e99386749a0a4888cd9b555ffc96a476fd48d94e\"\u003e\u003ccode\u003ee993867\u003c/code\u003e\u003c/a\u003e Updating to version 12.1.13\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/1fa2a1c33591cf35756c366f7cc87fd6a2d86216\"\u003e\u003ccode\u003e1fa2a1c\u003c/code\u003e\u003c/a\u003e [12.1.x EE9] Bump org.apache.maven.plugins:maven-compiler-plugin (\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15715\"\u003e#15715\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/c67d57d2e93bef68b9585493f0bf76f0e6e5af62\"\u003e\u003ccode\u003ec67d57d\u003c/code\u003e\u003c/a\u003e [12.1.x EE10] Bump jakarta.json.bind:jakarta.json.bind-api from 3.0.2 to 3.0....\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/3caa491da4662240caf318ddc14435692d2b7b28\"\u003e\u003ccode\u003e3caa491\u003c/code\u003e\u003c/a\u003e [12.1.x Root pom] Bump com.github.luben:zstd-jni from 1.5.7-15 to 1.5.7-16 in...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/1f8fafbb60640b72d9c3044ffa33df833f5b01c3\"\u003e\u003ccode\u003e1f8fafb\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14403\"\u003e#14403\u003c/a\u003e - Defer FCGI application dispatch until the parser returns (\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15648\"\u003e#15648\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/bc6e23aac5f886c0d5b614f09bc25933356da7c1\"\u003e\u003ccode\u003ebc6e23a\u003c/code\u003e\u003c/a\u003e [12.1.x EE9] Bump the dev-dependencies group across 1 directory with 3 update...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/42fd27319557e50b75261622c6d30edc5daa20b2\"\u003e\u003ccode\u003e42fd273\u003c/code\u003e\u003c/a\u003e Adding method Constraint test to improve test coverage\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/365b721cc3f08bba6a4ba3780fde8d2d4fcd50c4\"\u003e\u003ccode\u003e365b721\u003c/code\u003e\u003c/a\u003e Making CIDR pattern matching case insensitive\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/17c051c8cd4af3e2019cc1794db81e87464c1d64\"\u003e\u003ccode\u003e17c051c\u003c/code\u003e\u003c/a\u003e Fixes \u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14930\"\u003e#14930\u003c/a\u003e - Resolve base resource for SymlinkAllowedResourceAliasChecker (...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/8c18972ff79720d087d826c527732c465c7c3d1c\"\u003e\u003ccode\u003e8c18972\u003c/code\u003e\u003c/a\u003e [12.1.x Root pom] Bump the dev-dependencies group across 1 directory with 8 u...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/jetty/jetty.project/compare/jetty-12.1.10...jetty-12.1.13\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.commons:commons-lang3` from 3.18.0 to 3.20.0\n\nUpdates `io.opentelemetry:opentelemetry-bom` from 1.62.0 to 1.65.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/releases\"\u003eio.opentelemetry:opentelemetry-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was deprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector exporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e, \u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e, \u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed tokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based on string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default \u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements it to stop its polling executor (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRecord \u003ccode\u003eerror.type\u003c/code\u003e on failed collections in \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8650\"\u003e#8650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTesting: Fix \u003ccode\u003eLongExemplarAssert.hasFilteredAttributesSatisfyingExactly\u003c/code\u003e to enforce exact attribute matching (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8518\"\u003e#8518\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eLogs\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eReadWriteLogRecord\u003c/code\u003e default \u003ccode\u003egetObservedTimestampEpochNanos\u003c/code\u003e returning the record timestamp (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8504\"\u003e#8504\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eProfiles\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix profiles data model attribute count parameter name and timestamp doc unit (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8514\"\u003e#8514\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExporters\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eWARNING\u003c/strong\u003e Zipkin: Delete \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e; the artifact is no longer published (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8677\"\u003e#8677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Use HTTP error response bodies in \u003ccode\u003eHttpExporter\u003c/code\u003e warning logs (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8428\"\u003e#8428\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e mTLS when using the platform default trust store (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8565\"\u003e#8565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix sign extension on \u003ccode\u003eLogRecord\u003c/code\u003e flags in the low-allocation log marshaler (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8493\"\u003e#8493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Standardize \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e, \u003ccode\u003eJdkHttpSender\u003c/code\u003e, and \u003ccode\u003eUpstreamGrpcSender\u003c/code\u003e shutdown to await executor/channel termination (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8495\"\u003e#8495\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8627\"\u003e#8627\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8624\"\u003e#8624\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Log the underlying except/ion when a gRPC response frame is invalid (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8626\"\u003e#8626\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/blob/main/CHANGELOG.md\"\u003eio.opentelemetry:opentelemetry-bom's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0 (2026-08-07)\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was\ndeprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector\nexporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed\ntokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based\non string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default\n\u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements\nit to stop its polling executor\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/7bc11edca518d4de168230c84a71484a66cbac40\"\u003e\u003ccode\u003e7bc11ed\u003c/code\u003e\u003c/a\u003e [release/v1.65.x] Prepare release 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8705\"\u003e#8705\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/60d7ecfe270354f8a329a0ecad42fca2650cc36e\"\u003e\u003ccode\u003e60d7ecf\u003c/code\u003e\u003c/a\u003e Prepare 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8700\"\u003e#8700\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/6d41aa40ed39eed5fb000e7595e1b1dd279fed91\"\u003e\u003ccode\u003e6d41aa4\u003c/code\u003e\u003c/a\u003e Bound jaeger-baggage parsing work by tokens rather than accepted entries (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/db1d6bee36537b4f356a6b7d616e587217938177\"\u003e\u003ccode\u003edb1d6be\u003c/code\u003e\u003c/a\u003e Enforce last-value-wins semantics in AttributesMap without performance regres...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/995cb3c4328f76a21f12e79b2667c684845899ca\"\u003e\u003ccode\u003e995cb3c\u003c/code\u003e\u003c/a\u003e Avoid unsafe string encoder on Android (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8637\"\u003e#8637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/48b0185d06a8d34d713d4fc24d6c70502b6f1531\"\u003e\u003ccode\u003e48b0185\u003c/code\u003e\u003c/a\u003e Do not overwrite existing baggage with empty baggage in JaegerPropagator (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/2009d5840f24251e65aac98c0f2da2f304e0bf7b\"\u003e\u003ccode\u003e2009d58\u003c/code\u003e\u003c/a\u003e Avoid exposing configuration values in errors (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8669\"\u003e#8669\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3cafbbb6206afc6cebb984d9b81e2339a506f148\"\u003e\u003ccode\u003e3cafbbb\u003c/code\u003e\u003c/a\u003e Deprecate OpenCensus shim public API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8674\"\u003e#8674\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/0e033e2ca8128ca470abd33f3ef1f2f684bcf610\"\u003e\u003ccode\u003e0e033e2\u003c/code\u003e\u003c/a\u003e Remove stray token from addLogRecordProcessorCustomizer Javadoc (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8641\"\u003e#8641\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3d1cce87bd4a78432cca4214a96586046a6e4590\"\u003e\u003ccode\u003e3d1cce8\u003c/code\u003e\u003c/a\u003e Fix ObfuscatedLoggerProvider Javadoc copy-paste example (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8639\"\u003e#8639\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/compare/v1.62.0...v1.65.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.eclipse.angus:angus-mail` from 2.0.4 to 2.0.5\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/releases\"\u003eorg.eclipse.angus:angus-mail's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eAngus Mail 2.0.5 Final Release\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eEe10 11 sync by \u003ca href=\"https://github.com/jbescos\"\u003e\u003ccode\u003e@​jbescos\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/pull/181\"\u003eeclipse-ee4j/angus-mail#181\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e2.0.4 release by \u003ca href=\"https://github.com/lukasj\"\u003e\u003ccode\u003e@​lukasj\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/pull/182\"\u003eeclipse-ee4j/angus-mail#182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eactivation api 2.1.4, mail api 2.1.5, angus activation 2.0.3 by \u003ca href=\"https://github.com/lukasj\"\u003e\u003ccode\u003e@​lukasj\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/pull/183\"\u003eeclipse-ee4j/angus-mail#183\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/compare/2.0.4...2.0.5\"\u003ehttps://github.com/eclipse-ee4j/angus-mail/compare/2.0.4...2.0.5\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/a7a4a37844717d3967418b1640456e49153a7e7c\"\u003e\u003ccode\u003ea7a4a37\u003c/code\u003e\u003c/a\u003e Prepare release org.eclipse.angus:all:2.0.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/a7d6745aaaa831c9c2140eac2ee5b8a7d275895e\"\u003e\u003ccode\u003ea7d6745\u003c/code\u003e\u003c/a\u003e activation api 2.1.4, mail api 2.1.5, angus activation 2.0.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/c93dde0d24ff8ad2d4cac38e9bd3da46a7f06e30\"\u003e\u003ccode\u003ec93dde0\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/issues/182\"\u003e#182\u003c/a\u003e from eclipse-ee4j/2.0.4-RELEASE\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/ddcc8e35198bc1f51511f84956b1d7610aad9175\"\u003e\u003ccode\u003eddcc8e3\u003c/code\u003e\u003c/a\u003e From-Address not parsed correctly \u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/issues/161\"\u003e#161\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/issues/174\"\u003e#174\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/c4e72d2a91c14f2b4d8bbaf5e6b747f1cc0de913\"\u003e\u003ccode\u003ec4e72d2\u003c/code\u003e\u003c/a\u003e Update github action versions\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/f1606338a49bb2588c0f6ecef4a2e6e18a1208bf\"\u003e\u003ccode\u003ef160633\u003c/code\u003e\u003c/a\u003e OAuth2.md: POP3 works with O365 with towlines\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/acbb015dfbadb1ae6fd3e682490ab442786a6dd2\"\u003e\u003ccode\u003eacbb015\u003c/code\u003e\u003c/a\u003e Update changes files, it was wrong (\u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/issues/177\"\u003e#177\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/b96c2c32a44e73933f877d4cd085b66027d44c2d\"\u003e\u003ccode\u003eb96c2c3\u003c/code\u003e\u003c/a\u003e Rename resource files so JakartaMail and JavaMail can co-exist (\u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/issues/171\"\u003e#171\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/8d4a8ce3d5cf0f7ac21fb042e8495b76b6b4462a\"\u003e\u003ccode\u003e8d4a8ce\u003c/code\u003e\u003c/a\u003e Update CHANGES.txt\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/dbd22ec2c2bb7272e9b56ca367bee82a9015ea31\"\u003e\u003ccode\u003edbd22ec\u003c/code\u003e\u003c/a\u003e Remove this-escape compiler warnings \u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/issues/141\"\u003e#141\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/issues/142\"\u003e#142\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/compare/2.0.4...2.0.5\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.core:jackson-annotations` from 2.18.10 to 2.22\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/c638c81e78c0857d8d70edf7636066c2abe5a863\"\u003e\u003ccode\u003ec638c81\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-annotations-2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/625a693bbe178f79f18f2f58b3fb97423d3fe461\"\u003e\u003ccode\u003e625a693\u003c/code\u003e\u003c/a\u003e Prep for 2.22.0 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/5038777e7dd68ece572c85b14a389dd62426ba3a\"\u003e\u003ccode\u003e5038777\u003c/code\u003e\u003c/a\u003e docs:update README, SECURITY, and docs links to canonical URLs (\u003ca href=\"https://redirect.github.com/FasterXML/jackson-annotations/issues/348\"\u003e#348\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/dd18c40f01a8597ac4a643e1461196b5a3d73cf5\"\u003e\u003ccode\u003edd18c40\u003c/code\u003e\u003c/a\u003e Remove default value for \u003ca href=\"https://github.com/JsonApplyView\"\u003e\u003ccode\u003e@​JsonApplyView\u003c/code\u003e\u003c/a\u003e.value (\u003ca href=\"https://redirect.github.com/FasterXML/jackson-annotations/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/85366adedaa535cfdc5cb40234fb3431be10874e\"\u003e\u003ccode\u003e85366ad\u003c/code\u003e\u003c/a\u003e PR for JsonApplyView (\u003ca href=\"https://redirect.github.com/FasterXML/jackson-annotations/issues/78\"\u003e#78\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/FasterXML/jackson-annotations/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/bdf79ad667eef570978a75a7ca405fc203147a83\"\u003e\u003ccode\u003ebdf79ad\u003c/code\u003e\u003c/a\u003e Implement \u003ca href=\"https://redirect.github.com/FasterXML/jackson-annotations/issues/334\"\u003e#334\u003c/a\u003e: better \u003ccode\u003eLocale\u003c/code\u003e handling for \u003ca href=\"https://github.com/JsonFormat\"\u003e\u003ccode\u003e@​JsonFormat\u003c/code\u003e\u003c/a\u003e (via JsonFormat.Valu...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/d020e4a4efdd744ec543f7a89b0e05b79b8b4d16\"\u003e\u003ccode\u003ed020e4a\u003c/code\u003e\u003c/a\u003e Fix couple of minor bugs (\u003ca href=\"https://redirect.github.com/FasterXML/jackson-annotations/issues/343\"\u003e#343\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/5731cfe0f447beddb22fb47fb3f9d2434e00711d\"\u003e\u003ccode\u003e5731cfe\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003e@JsonTypeInfo.writeTypeIdForDefaultImpl\u003c/code\u003e to allow skipping writing of ty...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/fc9c6ab64ef30aa518be96bbbb0ed826433d33e7\"\u003e\u003ccode\u003efc9c6ab\u003c/code\u003e\u003c/a\u003e Javadoc improvement for \u003ccode\u003eJsonFormat.Feature.ACCEPT_CASE_INSENSITIVE_VALUES\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/a5262541fc887f0fd5047744bcfdc7eaa0f03335\"\u003e\u003ccode\u003ea526254\u003c/code\u003e\u003c/a\u003e Fix \u003ca href=\"https://redirect.github.com/FasterXML/jackson-annotations/issues/339\"\u003e#339\u003c/a\u003e: Add \u003ccode\u003eOptBoolean\u003c/code\u003e valued property \u0026quot;order\u0026quot; in `@JsonIncludeProperties...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-annotations/compare/jackson-annotations-2.18.10...jackson-annotations-2.22\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.core:jackson-core` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.core:jackson-databind` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.module:jackson-module-blackbird` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.datatype:jackson-datatype-jsr353` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.datatype:jackson-datatype-jakarta-jsonp` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.dataformat:jackson-dataformat-cbor` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.dataformat:jackson-dataformat-yaml` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.core:jackson-core` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.core:jackson-databind` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.module:jackson-module-blackbird` from 2.18.10 to 2.22\n\nUpdates `io.dropwizard:dropwizard-core` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-assets` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-http2` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-client` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-testing` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-json-logging` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-metrics` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-jersey` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-views` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-jetty` from 5.0.0 to 5.0.2\n\nUpdates `org.eclipse.jetty:jetty-server` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10:jetty-ee10-servlet` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jetty-server` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jakarta-server` from 12.1.10 to 12.1.13\n\nUpdates `io.dropwizard:dropwizard-assets` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-http2` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-client` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-testing` from 5.0.0 to 5.0.2\n\nUpdates `ch.qos.logback:logback-core` from 1.5.36 to 1.6.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/qos-ch/logback/releases\"\u003ech.qos.logback:logback-core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eLogback 1.6.3\u003c/h2\u003e\n\u003ch1\u003e2026-08-14 Release of logback version 1.6.3\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eIn response \u003ca href=\"https://www.cve.org/cverecord?id=CVE-2026-19880\"\u003eCVE-2026-19880\u003c/a\u003e,  \u003ccode\u003eMDCBasedDiscriminator\u003c/code\u003e (used by \u003ccode\u003eSiftingAppender\u003c/code\u003e) now strips forward and  backward slashes (\u003ccode\u003e/\u003c/code\u003e, \u003ccode\u003e\\\u003c/code\u003e) from MDC values before they are used as  discriminating keys. This prevents path segments from escaping into  destinations controlled by an attacker. When sanitisation actually changes a  value, a warning is emitted; the warning is rate-limited (a small batch, then  a lull of about ten minutes).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eColour console support is split out into a dedicated  \u003ca href=\"https://logback.qos.ch/manual/appenders.html#JansiConsoleAppender\"\u003e\u003ccode\u003eJansiConsoleAppender\u003c/code\u003e\u003c/a\u003e. It wraps stdout or stderr with  Jansi so ANSI escape sequences (for example coloured patterns) render  correctly on terminals that need it, notably Windows. Prefer this class over  the older path described next. See the  \u003ca href=\"https://logback.qos.ch/manual/appenders.html#JansiConsoleAppender\"\u003eappenders documentation\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe \u003ccode\u003ewithJansi\u003c/code\u003e property on \u003ccode\u003eConsoleAppender\u003c/code\u003e is \u003cstrong\u003edeprecated\u003c/strong\u003e. Existing  configurations that still set \u003ccode\u003e\u0026lt;withJansi\u0026gt;true\u0026lt;/withJansi\u0026gt;\u003c/code\u003e continue to work  for compatibility, but new setups should use \u003ccode\u003eJansiConsoleAppender\u003c/code\u003e instead.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ccode\u003eConsoleAppender\u003c/code\u003e no longer treats the process console as an exclusive  resource: stopping it does not close \u003ccode\u003eSystem.out\u003c/code\u003e / \u003ccode\u003eSystem.err\u003c/code\u003e.  \u003ccode\u003eJansiConsoleAppender\u003c/code\u003e pairs each \u003ccode\u003eAnsiConsole.systemInstall()\u003c/code\u003e with  \u003ccode\u003esystemUninstall()\u003c/code\u003e on stop, so repeated start/stop cycles do not leave Jansi  installed or tear down streams shared with the rest of the JVM. Related  behavior is covered by tests for  \u003ca href=\"https://redirect.github.com/qos-ch/logback/issues/1063\"\u003eissues/1063\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eInvocation throttling helpers were reworked: \u003ccode\u003eSimpleInvocationGate\u003c/code\u003e is renamed  \u003ccode\u003eFixedIntervalInvocationGate\u003c/code\u003e, and \u003ccode\u003eBatchedFixedIntervalInvocationGate\u003c/code\u003e allows  a short burst of invocations before applying a fixed lull. The sanitisation\nwarning above uses the batched gate.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe JPMS \u003ccode\u003emodule-info\u003c/code\u003e for logback-core now exports the  \u003ccode\u003ech.qos.logback.core.property\u003c/code\u003e package, which had been missing from the module   descriptor.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA bit-wise identical binary of this version can be reproduced by building from  \u003ca href=\"https://github.com/qos-ch/logback\"\u003esource code\u003c/a\u003e at commit  \u003ccode\u003ee8e824dede022a6d7208b36cfa875b0d1b7772f3\u003c/code\u003e associated with the tag \u003ccode\u003ev_1.6.3\u003c/code\u003e.  The release was built using Java \u0026quot;21\u0026quot; 2023-10-17 LTS build 21.0.1.+12-LTS-29   under Linux Debian 11.6.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e--\nSponsoring SLF4J/logback/reload4j at \u003ca href=\"https://github.com/sponsors/qos-ch\"\u003ehttps://github.com/sponsors/qos-ch\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eLogback 1.6.2\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/user-attachments/assets/9ceaf157-b758-4188-815d-edfe4e1b4edd\"\u003ehttps://github.com/user-attachments/assets/9ceaf157-b758-4188-815d-edfe4e1b4edd\u003c/a\u003e\u003c/p\u003e\n\u003ch1\u003e2026-08-10 Release of logback version 1.6.2\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eConfiguration analysis now detects \u003cem\u003econtradictory caller-data inclusion instructions\u003c/em\u003e. For example, an \u003ccode\u003eAsyncAppender\u003c/code\u003e, \u003ccode\u003eSocketAppender\u003c/code\u003e or \u003ccode\u003eSMTPAppender\u003c/code\u003e with \u003ccode\u003eincludeCallerData\u003c/code\u003e left at the default \u003ccode\u003efalse\u003c/code\u003e is incompatible with a layout or encoder pattern that uses a caller-data converter such as \u003ccode\u003e%C\u003c/code\u003e, \u003ccode\u003e%M\u003c/code\u003e, \u003ccode\u003e%L\u003c/code\u003e, \u003ccode\u003e%F\u003c/code\u003e, \u003ccode\u003e%l\u003c/code\u003e or \u003ccode\u003e%caller\u003c/code\u003e. At runtime those converters would print question marks and still incur extraction cost on a worker thread. Logback now emits a configuration-time warning when such instructions disagree. See \u003ca href=\"https://logback.qos.ch/codes.html#callerContradiction\"\u003ecodes.html#callerContradiction\u003c/a\u003e for details. This issue was reported in \u003ca href=\"https://redirect.github.com/qos-ch/logback/issues/1059\"\u003eissues/1059\u003c/a\u003e by \u003ca href=\"https://github.com/leeychee\"\u003eleeychee\u003c/a\u003e. The initial analysis was contributed by \u003ca href=\"https://github.com/seonwooj0810\"\u003eseonwoo_jung\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eCaller-contradiction analysis can be turned off by setting the \u003ccode\u003elogback.skipCallerContradictionAnalysis\u003c/code\u003e variable to \u003ccode\u003etrue\u003c/code\u003e, either as a system property (\u003ccode\u003e-Dlogback.skipCallerContradictionAnalysis=true\u003c/code\u003e) or as a property in the configuration file:\u003c/p\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;property name=\u0026quot;logback.skipCallerContradictionAnalysis\u0026quot; value=\u0026quot;true\u0026quot;/\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ccode\u003eSimpleSocketServer\u003c/code\u003e and \u003ccode\u003eSimpleSSLSocketServer\u003c/code\u003e now require an explicit client IP whitelist. On the command line, pass one or more allowed addresses (single IPs or CIDR ranges) after the configuration file. An empty whitelist means no clients are accepted. When embedding the server programmatically, register allowed addresses with \u003ccode\u003eaddAllowedClientAddress(String)\u003c/code\u003e or \u003ccode\u003esetAllowedClientAddresses(Collection)\u003c/code\u003e before clients connect. See the documentation on \u003ca href=\"https://logback.qos.ch/manual/appenders.html#simpleSocketServerClientAccess\"\u003erestricting client access\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdded \u003ccode\u003eThrowableProxyVOBuilder\u003c/code\u003e for assembling a \u003ccode\u003eThrowableProxyVO\u003c/code\u003e field by field, with a corresponding \u003ccode\u003eThrowableProxyVO.builder()\u003c/code\u003e entry point.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDependency analysis handlers now run their \u003ccode\u003epostHandle\u003c/code\u003e method after child models have been processed, so checks that depend on nested appenders (such as caller-contradiction analysis) see a complete picture.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated several dependencies, including Angus Mail to 2.0.4 and Jetty (test) to 12.1.12.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA bit-wise identical binary of this version can be reproduced by building from \u003ca href=\"https://github.com/qos-ch/logback\"\u003esource code\u003c/a\u003e at commit e3d78330ad1ba024fd987fd00c3ffb9cfcdb07dc associated with the tag \u003ccode\u003ev_1.6.2\u003c/code\u003e. The release was built using Java \u0026quot;21\u0026quot; 2023-10-17 LTS build 21.0.1.+12-LTS-29 under Linux Debian 11.6.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eLogback 1.6.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003e2026-07-28 Release of logback version 1.6.1\u003c/strong\u003e\u003c/p\u003e\n\u003cp\u003e• In TimeBasedRollingPolicy, when the file option is set, the intermediate file renamed before asynchronous compression now receives the target archive name without the compression suffix (e.g. \u003ccode\u003e.gz\u003c/code\u003e, \u003ccode\u003e.zip\u003c/code\u003e, \u003ccode\u003e.xz\u003c/code\u003e). Previously it used a nanotime-based \u003ccode\u003e.tmp\u003c/code\u003e suffix. This makes the file easier to identify if compression fails during rollover. (See also the following paragraph.)\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/bloc...\n\n_Description has been truncated_","html_url":"https://github.com/open-metadata/OpenMetadata/pull/32843","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/open-metadata%2FOpenMetadata/issues/32843","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/32843/packages"},{"uuid":"5366824603","node_id":"PR_kwDOTN5Mws8AAAABCbGmOQ","number":64,"state":"open","title":"Bump the deps group across 1 directory with 11 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-06T18:24:26.000Z","updated_at":"2026-09-06T18:33:19.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"deps","update_count":11,"packages":[{"name":"com.diffplug.spotless","old_version":"8.9.0","new_version":"8.10.1"},{"name":"gradle-wrapper","old_version":"9.7.0","new_version":"9.7.1","repository_url":"https://github.com/gradle/gradle"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"com.squareup.okhttp3:okhttp","old_version":"5.4.0","new_version":"5.5.0","repository_url":"https://github.com/lysine-dev/okhttp"},{"name":"com.squareup.okhttp3:okhttp-jvm","old_version":"5.4.0","new_version":"5.5.0","repository_url":"https://github.com/lysine-dev/okhttp"},{"name":"net.bytebuddy:byte-buddy-agent","old_version":"1.18.11","new_version":"1.18.13","repository_url":"https://github.com/raphw/byte-buddy"},{"name":"org.checkerframework:checker-qual","old_version":"4.2.2","new_version":"4.2.3","repository_url":"https://github.com/typetools/checker-framework"},{"name":"org.javassist:javassist","old_version":"3.32.0-GA","new_version":"3.33.0-GA","repository_url":"https://github.com/jboss-javassist/javassist"},{"name":"org.projectlombok:lombok","old_version":"1.18.46","new_version":"1.18.48","repository_url":"https://github.com/projectlombok/lombok"},{"name":"org.yaml:snakeyaml","old_version":"2.6","new_version":"2.7"},{"name":"org.graalvm.buildtools.native","old_version":"1.1.9","new_version":"1.1.11","repository_url":"https://github.com/graalvm/native-build-tools"}],"path":null,"ecosystem":"maven"},"body":"Bumps the deps group with 11 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| com.diffplug.spotless | `8.9.0` | `8.10.1` |\n| [gradle-wrapper](https://github.com/gradle/gradle) | `9.7.0` | `9.7.1` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [com.squareup.okhttp3:okhttp](https://github.com/lysine-dev/okhttp) | `5.4.0` | `5.5.0` |\n| [com.squareup.okhttp3:okhttp-jvm](https://github.com/lysine-dev/okhttp) | `5.4.0` | `5.5.0` |\n| [net.bytebuddy:byte-buddy-agent](https://github.com/raphw/byte-buddy) | `1.18.11` | `1.18.13` |\n| [org.checkerframework:checker-qual](https://github.com/typetools/checker-framework) | `4.2.2` | `4.2.3` |\n| [org.javassist:javassist](https://github.com/jboss-javassist/javassist) | `3.32.0-GA` | `3.33.0-GA` |\n| [org.projectlombok:lombok](https://github.com/projectlombok/lombok) | `1.18.46` | `1.18.48` |\n| org.yaml:snakeyaml | `2.6` | `2.7` |\n| [org.graalvm.buildtools.native](https://github.com/graalvm/native-build-tools) | `1.1.9` | `1.1.11` |\n\n\nUpdates `com.diffplug.spotless` from 8.9.0 to 8.10.1\n\nUpdates `gradle-wrapper` from 9.7.0 to 9.7.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/gradle/gradle/releases\"\u003egradle-wrapper's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e9.7.1\u003c/h2\u003e\n\u003cp\u003eThe Gradle team is excited to announce Gradle 9.7.1.\u003c/p\u003e\n\u003cp\u003eThis is a patch release for 9.7.0. We recommend using 9.7.1 instead of 9.7.0.\u003c/p\u003e\n\u003cp\u003eHere are the highlights of 9.7.0 release:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIsolated Projects graduates to incubating\u003c/li\u003e\n\u003cli\u003eBroader Configuration Cache compatibility\u003c/li\u003e\n\u003cli\u003eResilient Sync helps you fix broken builds\u003c/li\u003e\n\u003cli\u003eMore source locations in problem reports\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://docs.gradle.org/9.7.1/release-notes.html\"\u003eRead the Release Notes\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eWe would like to thank the following community members for their contributions to this release of Gradle:\n\u003ca href=\"https://github.com/aSemy\"\u003eAdam\u003c/a\u003e,\n\u003ca href=\"https://github.com/Gautam-aman\"\u003eAman Gautam\u003c/a\u003e,\n\u003ca href=\"https://github.com/YukiCodepth\"\u003eAman Kumar\u003c/a\u003e,\n\u003ca href=\"https://github.com/adubrouski\"\u003eAnton Dubrouski\u003c/a\u003e,\n\u003ca href=\"https://github.com/liutikas\"\u003eAurimas\u003c/a\u003e,\n\u003ca href=\"https://github.com/gbhavya07\"\u003egbhavya07\u003c/a\u003e,\n\u003ca href=\"https://github.com/joshfriend\"\u003eJosh Friend\u003c/a\u003e,\n\u003ca href=\"https://github.com/nicklauslittle-gov\"\u003enicklauslittle-gov\u003c/a\u003e,\n\u003ca href=\"https://github.com/psoni674\"\u003ePragati\u003c/a\u003e,\n\u003ca href=\"https://github.com/Project516\"\u003eproject516\u003c/a\u003e,\n\u003ca href=\"https://github.com/Uomocapra\"\u003eQin Mi\u003c/a\u003e,\n\u003ca href=\"https://github.com/rkdfx\"\u003eRavi\u003c/a\u003e,\n\u003ca href=\"https://github.com/sk-reddy17\"\u003esk-reddy17\u003c/a\u003e,\n\u003ca href=\"https://github.com/Suvrat1629\"\u003eSuvrat Acharya\u003c/a\u003e,\n\u003ca href=\"https://github.com/ShreckYe\"\u003eYongshun Ye\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eUpgrade instructions\u003c/h2\u003e\n\u003cp\u003eSwitch your build to use Gradle 9.7.1 by updating your wrapper:\u003c/p\u003e\n\u003cpre\u003e\u003ccode\u003e./gradlew :wrapper --gradle-version=9.7.1 \u0026amp;\u0026amp; ./gradlew :wrapper\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003cp\u003eSee the Gradle \u003ca href=\"https://docs.gradle.org/9.7.1/userguide/upgrading_version_9.html\"\u003e9.x upgrade guide\u003c/a\u003e to learn about deprecations, breaking changes and other considerations when upgrading.\u003c/p\u003e\n\u003cp\u003eFor Java, Groovy, Kotlin and Android compatibility, see the \u003ca href=\"https://docs.gradle.org/9.7.1/userguide/compatibility.html\"\u003efull compatibility notes\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eReporting problems\u003c/h2\u003e\n\u003cp\u003eIf you find a problem with this release, please file a bug on \u003ca href=\"https://github.com/gradle/gradle/issues\"\u003eGitHub Issues\u003c/a\u003e adhering to our issue guidelines.\nIf you're not sure you're encountering a bug, please use the \u003ca href=\"https://discuss.gradle.org/c/help-discuss\"\u003eforum\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003eWe hope you will build happiness with Gradle, and we look forward to your feedback via \u003ca href=\"https://twitter.com/gradle\"\u003eTwitter\u003c/a\u003e or on \u003ca href=\"https://github.com/gradle\"\u003eGitHub\u003c/a\u003e.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/92f0512e7f06d84621afba191f75e265363890cf\"\u003e\u003ccode\u003e92f0512\u003c/code\u003e\u003c/a\u003e update fixed issues for 9.7.1 (\u003ca href=\"https://redirect.github.com/gradle/gradle/issues/38892\"\u003e#38892\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/820ee75a99a179bbffa41bcedc6477b685fabb9f\"\u003e\u003ccode\u003e820ee75\u003c/code\u003e\u003c/a\u003e update fixed issues for 9.7.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/82c23f9bd2a89b4cc644e1f90a28a8668feb3dee\"\u003e\u003ccode\u003e82c23f9\u003c/code\u003e\u003c/a\u003e Fix annotation parameter ordering problem in KTS (\u003ca href=\"https://redirect.github.com/gradle/gradle/issues/38878\"\u003e#38878\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/ef11a7268fe8cc8d6ab849ec911aa11220180553\"\u003e\u003ccode\u003eef11a72\u003c/code\u003e\u003c/a\u003e Fix annotation parameter ordering issue\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/bb0d8a974a71b1003efea41e4046e98855cd5ff8\"\u003e\u003ccode\u003ebb0d8a9\u003c/code\u003e\u003c/a\u003e Make relevant tests polyglot (run for multiple DSLs)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/336e129d7f95c03486acafc97abf59734acfed48\"\u003e\u003ccode\u003e336e129\u003c/code\u003e\u003c/a\u003e Update signing configuration (\u003ca href=\"https://redirect.github.com/gradle/gradle/issues/38874\"\u003e#38874\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/4bdf0da2dad9884d089a6062a45ea7183e7d735d\"\u003e\u003ccode\u003e4bdf0da\u003c/code\u003e\u003c/a\u003e Update signing configuration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/cd9b92c1b82856248cf1dc58b50378238bec7b52\"\u003e\u003ccode\u003ecd9b92c\u003c/code\u003e\u003c/a\u003e List issues resolved in 9.7.1 (\u003ca href=\"https://redirect.github.com/gradle/gradle/issues/38839\"\u003e#38839\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/5f4e381964897ad8d6b99e5a7c77f26dba3259fb\"\u003e\u003ccode\u003e5f4e381\u003c/code\u003e\u003c/a\u003e List issues resolved in 9.7.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/1e08ab551367aeb5fb48b26e72807e1d2b27c939\"\u003e\u003ccode\u003e1e08ab5\u003c/code\u003e\u003c/a\u003e Keep type-use annotations in extracted ABI classes (\u003ca href=\"https://redirect.github.com/gradle/gradle/issues/38810\"\u003e#38810\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/gradle/gradle/compare/v9.7.0...v9.7.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.squareup.okhttp3:okhttp` from 5.4.0 to 5.5.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/lysine-dev/okhttp/blob/main/CHANGELOG.md\"\u003ecom.squareup.okhttp3:okhttp's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 5.5.0\u003c/h2\u003e\n\u003cp\u003e\u003cem\u003e2026-08-16\u003c/em\u003e\u003c/p\u003e\n\u003cp\u003eThis release introduces \u003cstrong\u003eopt-in\u003c/strong\u003e support for [Encrypted Client Hello (ECH)]. This new feature\nimproves user privacy by encrypting domain names in transit. With regular TLS, your coffee shop’s\nWi-Fi router can see that you’re visiting \u003cem\u003ewikipedia.com\u003c/em\u003e, but it cannot see which page you’re\nlooking at. With ECH, the router observes only the IP address. This additional privacy is most\neffective on sites hosted by big CDNs because the IP address doesn’t imply a particular website.\u003c/p\u003e\n\u003cp\u003eThis requires ECH support in the platform’s TLS stack. Today this is only Android 17 (API 37,\nreleased June 2026). When other TLS stacks add ECH support, we'll integrate them.\u003c/p\u003e\n\u003cp\u003eECH took a lot of work to implement because the encryption keys are published over DNS in the\n[HTTPS resource record], and we needed to write new code to fetch these records. This release\nincludes a major update to OkHttp’s DNS API: it now supports multiple resource record types (not\njust IP addresses!), asynchronous streaming results, and in-memory caching.\u003c/p\u003e\n\u003cp\u003eTo opt in, you can use \u003ccode\u003eDnsOverHttps\u003c/code\u003e:\u003c/p\u003e\n\u003cpre lang=\"kotlin\"\u003e\u003ccode\u003e// DnsOverHttps itself uses OkHttpClient. Build both clients upon the\n// same bootstrap client so they share a connection pool and dispatcher.\nval bootstrapClient = OkHttpClient()\n\u003cp\u003e// This sample uses Cloudflare's 1.1.1.1 DnsOverHttps service.\nval client = bootstrapClient.newBuilder()\n.dns(DnsOverHttps.Builder()\n.client(bootstrapClient)\n.url(\u0026quot;\u003ca href=\"https://1.1.1.1/dns-query\u0026amp;quot;.toHttpUrl()\"\u003ehttps://1.1.1.1/dns-query\u0026amp;quot;.toHttpUrl()\u003c/a\u003e)\n.build())\n.build()\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003cp\u003eYou could also opt in with our new \u003ccode\u003eAndroidDns\u003c/code\u003e API. Unfortunately, the privacy benefits of ECH are\nthwarted because its DNS queries are not encrypted by default.\u003c/p\u003e\n\u003cpre lang=\"kotlin\"\u003e\u003ccode\u003e// AndroidDns fetches the HTTPS DNS resource records necessary for ECH.\nval client = OkHttpClient.Builder()\n  .dns(AndroidDns())\n  .build()\n\u003c/code\u003e\u003c/pre\u003e\n\u003cul\u003e\n\u003cli\u003eNew: OkHttp artifacts are now signed with our [new signing key]. This project and three sibling\nprojects ([Retrofit], [Okio], and [SQLDelight]) recently joined [the Commonhaus Foundation].\u003c/li\u003e\n\u003cli\u003eFix: MockWebServer’s \u003ccode\u003e@StartStop\u003c/code\u003e annotation now supports \u003ccode\u003e@Nested\u003c/code\u003e JUnit 5 tests.\u003c/li\u003e\n\u003cli\u003eFix: Our default TLS hostname verifier now reject hosts that fail IP canonicalization.\u003c/li\u003e\n\u003cli\u003eFix: Closing a multipart part's sink no longer closes the entire request body.\u003c/li\u003e\n\u003cli\u003eFix: Flush HTTP/1 request bodies before detaching the timeout. We had a bug where timeouts\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/a94bdf152084d11acecd44dcd09ffef203f4f0aa\"\u003e\u003ccode\u003ea94bdf1\u003c/code\u003e\u003c/a\u003e Prepare for release 5.5.0.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/ecc3b05adfe6b2607b8ec251562c2cccf7c1923a\"\u003e\u003ccode\u003eecc3b05\u003c/code\u003e\u003c/a\u003e Use a fixed size for DoH request body (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9687\"\u003e#9687\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/9926082660dfa6f1cc848c6f465cf5ccb998e415\"\u003e\u003ccode\u003e9926082\u003c/code\u003e\u003c/a\u003e Revert \u0026quot;Use a fixed size for DoH request body\u0026quot; (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9686\"\u003e#9686\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/0070c2e7b4c162ee03abf1c88fd94083e94697f4\"\u003e\u003ccode\u003e0070c2e\u003c/code\u003e\u003c/a\u003e Use a fixed size for DoH request body\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/15764539c69842dad607462f102a2507223dbfe7\"\u003e\u003ccode\u003e1576453\u003c/code\u003e\u003c/a\u003e Order ServiceMetadata records per the spec (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9683\"\u003e#9683\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/fb582e976a9a82d691342a4d57b3c72208ce416c\"\u003e\u003ccode\u003efb582e9\u003c/code\u003e\u003c/a\u003e Flip wiring of Dns.SYSTEM (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9682\"\u003e#9682\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/4e884abb1a207c321acffb070c476acb4b89fa3f\"\u003e\u003ccode\u003e4e884ab\u003c/code\u003e\u003c/a\u003e retryOnConnectionFailure doesn't impact ECH retries (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9681\"\u003e#9681\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/0433cee8131b63fa2c0634fa2f9b3a01f9a8b1f3\"\u003e\u003ccode\u003e0433cee\u003c/code\u003e\u003c/a\u003e Only one contributing.md doc (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9678\"\u003e#9678\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/a2cf5aa9f8711dabe514871e9dc4a9336a0e403f\"\u003e\u003ccode\u003ea2cf5aa\u003c/code\u003e\u003c/a\u003e Don't recover after an ECH public_name fails to verify (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9680\"\u003e#9680\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/5410de9760bce8719129c3d08eb19e5bace75f6e\"\u003e\u003ccode\u003e5410de9\u003c/code\u003e\u003c/a\u003e Test ECH + HTTP proxy (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9671\"\u003e#9671\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/lysine-dev/okhttp/compare/parent-5.4.0...parent-5.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.squareup.okhttp3:okhttp-jvm` from 5.4.0 to 5.5.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/lysine-dev/okhttp/blob/main/CHANGELOG.md\"\u003ecom.squareup.okhttp3:okhttp-jvm's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 5.5.0\u003c/h2\u003e\n\u003cp\u003e\u003cem\u003e2026-08-16\u003c/em\u003e\u003c/p\u003e\n\u003cp\u003eThis release introduces \u003cstrong\u003eopt-in\u003c/strong\u003e support for [Encrypted Client Hello (ECH)]. This new feature\nimproves user privacy by encrypting domain names in transit. With regular TLS, your coffee shop’s\nWi-Fi router can see that you’re visiting \u003cem\u003ewikipedia.com\u003c/em\u003e, but it cannot see which page you’re\nlooking at. With ECH, the router observes only the IP address. This additional privacy is most\neffective on sites hosted by big CDNs because the IP address doesn’t imply a particular website.\u003c/p\u003e\n\u003cp\u003eThis requires ECH support in the platform’s TLS stack. Today this is only Android 17 (API 37,\nreleased June 2026). When other TLS stacks add ECH support, we'll integrate them.\u003c/p\u003e\n\u003cp\u003eECH took a lot of work to implement because the encryption keys are published over DNS in the\n[HTTPS resource record], and we needed to write new code to fetch these records. This release\nincludes a major update to OkHttp’s DNS API: it now supports multiple resource record types (not\njust IP addresses!), asynchronous streaming results, and in-memory caching.\u003c/p\u003e\n\u003cp\u003eTo opt in, you can use \u003ccode\u003eDnsOverHttps\u003c/code\u003e:\u003c/p\u003e\n\u003cpre lang=\"kotlin\"\u003e\u003ccode\u003e// DnsOverHttps itself uses OkHttpClient. Build both clients upon the\n// same bootstrap client so they share a connection pool and dispatcher.\nval bootstrapClient = OkHttpClient()\n\u003cp\u003e// This sample uses Cloudflare's 1.1.1.1 DnsOverHttps service.\nval client = bootstrapClient.newBuilder()\n.dns(DnsOverHttps.Builder()\n.client(bootstrapClient)\n.url(\u0026quot;\u003ca href=\"https://1.1.1.1/dns-query\u0026amp;quot;.toHttpUrl()\"\u003ehttps://1.1.1.1/dns-query\u0026amp;quot;.toHttpUrl()\u003c/a\u003e)\n.build())\n.build()\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003cp\u003eYou could also opt in with our new \u003ccode\u003eAndroidDns\u003c/code\u003e API. Unfortunately, the privacy benefits of ECH are\nthwarted because its DNS queries are not encrypted by default.\u003c/p\u003e\n\u003cpre lang=\"kotlin\"\u003e\u003ccode\u003e// AndroidDns fetches the HTTPS DNS resource records necessary for ECH.\nval client = OkHttpClient.Builder()\n  .dns(AndroidDns())\n  .build()\n\u003c/code\u003e\u003c/pre\u003e\n\u003cul\u003e\n\u003cli\u003eNew: OkHttp artifacts are now signed with our [new signing key]. This project and three sibling\nprojects ([Retrofit], [Okio], and [SQLDelight]) recently joined [the Commonhaus Foundation].\u003c/li\u003e\n\u003cli\u003eFix: MockWebServer’s \u003ccode\u003e@StartStop\u003c/code\u003e annotation now supports \u003ccode\u003e@Nested\u003c/code\u003e JUnit 5 tests.\u003c/li\u003e\n\u003cli\u003eFix: Our default TLS hostname verifier now reject hosts that fail IP canonicalization.\u003c/li\u003e\n\u003cli\u003eFix: Closing a multipart part's sink no longer closes the entire request body.\u003c/li\u003e\n\u003cli\u003eFix: Flush HTTP/1 request bodies before detaching the timeout. We had a bug where timeouts\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/a94bdf152084d11acecd44dcd09ffef203f4f0aa\"\u003e\u003ccode\u003ea94bdf1\u003c/code\u003e\u003c/a\u003e Prepare for release 5.5.0.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/ecc3b05adfe6b2607b8ec251562c2cccf7c1923a\"\u003e\u003ccode\u003eecc3b05\u003c/code\u003e\u003c/a\u003e Use a fixed size for DoH request body (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9687\"\u003e#9687\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/9926082660dfa6f1cc848c6f465cf5ccb998e415\"\u003e\u003ccode\u003e9926082\u003c/code\u003e\u003c/a\u003e Revert \u0026quot;Use a fixed size for DoH request body\u0026quot; (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9686\"\u003e#9686\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/0070c2e7b4c162ee03abf1c88fd94083e94697f4\"\u003e\u003ccode\u003e0070c2e\u003c/code\u003e\u003c/a\u003e Use a fixed size for DoH request body\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/15764539c69842dad607462f102a2507223dbfe7\"\u003e\u003ccode\u003e1576453\u003c/code\u003e\u003c/a\u003e Order ServiceMetadata records per the spec (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9683\"\u003e#9683\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/fb582e976a9a82d691342a4d57b3c72208ce416c\"\u003e\u003ccode\u003efb582e9\u003c/code\u003e\u003c/a\u003e Flip wiring of Dns.SYSTEM (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9682\"\u003e#9682\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/4e884abb1a207c321acffb070c476acb4b89fa3f\"\u003e\u003ccode\u003e4e884ab\u003c/code\u003e\u003c/a\u003e retryOnConnectionFailure doesn't impact ECH retries (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9681\"\u003e#9681\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/0433cee8131b63fa2c0634fa2f9b3a01f9a8b1f3\"\u003e\u003ccode\u003e0433cee\u003c/code\u003e\u003c/a\u003e Only one contributing.md doc (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9678\"\u003e#9678\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/a2cf5aa9f8711dabe514871e9dc4a9336a0e403f\"\u003e\u003ccode\u003ea2cf5aa\u003c/code\u003e\u003c/a\u003e Don't recover after an ECH public_name fails to verify (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9680\"\u003e#9680\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/5410de9760bce8719129c3d08eb19e5bace75f6e\"\u003e\u003ccode\u003e5410de9\u003c/code\u003e\u003c/a\u003e Test ECH + HTTP proxy (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9671\"\u003e#9671\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/lysine-dev/okhttp/compare/parent-5.4.0...parent-5.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `net.bytebuddy:byte-buddy-agent` from 1.18.11 to 1.18.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/releases\"\u003enet.bytebuddy:byte-buddy-agent's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eByte Buddy 1.18.13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eByte Buddy 1.18.12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eAdd support for native attach on Windows for ARM64.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/blob/master/release-notes.md\"\u003enet.bytebuddy:byte-buddy-agent's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003e2. September 2026: version 1.18.13\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e17. July 2026: version 1.18.12\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003cli\u003eSupport dynamic attach on Windows ARM64 by shipping a native \u003ccode\u003eattach_hotspot_windows\u003c/code\u003e library for \u003ccode\u003ewin32-aarch64\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/d4da51578490c841b56b38c9c8fc9d3e8815f046\"\u003e\u003ccode\u003ed4da515\u003c/code\u003e\u003c/a\u003e [publish] Releasing Byte Buddy 1.18.13\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/bb914e33837267c05704f167179ba31abe3bf787\"\u003e\u003ccode\u003ebb914e3\u003c/code\u003e\u003c/a\u003e [release] Release new version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/af2034b8c55c2596f6430e63152586e02d06fd0e\"\u003e\u003ccode\u003eaf2034b\u003c/code\u003e\u003c/a\u003e Create Gradle tasks via the task registration API if available to avoid the u...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/30aca5581534d52570a60ffd524109adb3671759\"\u003e\u003ccode\u003e30aca55\u003c/code\u003e\u003c/a\u003e Shortcut traversal of previously visited type hierarchies and harden 1-1 tran...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/debd527b31bb095c26ff6943545cfe01a9045f32\"\u003e\u003ccode\u003edebd527\u003c/code\u003e\u003c/a\u003e Bump actions/checkout from 6.0.2 to 7.0.1 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1910\"\u003e#1910\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/8315af6acb72b5e0d913ad65c4112e828f01d735\"\u003e\u003ccode\u003e8315af6\u003c/code\u003e\u003c/a\u003e Bump step-security/harden-runner from 2.16.1 to 2.19.4 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1909\"\u003e#1909\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/e30e24f4106f6be28b97a34c81bf6d5dccfa34bb\"\u003e\u003ccode\u003ee30e24f\u003c/code\u003e\u003c/a\u003e Bump actions/cache from 5.0.3 to 5.0.5 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1914\"\u003e#1914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/1885f2a1e77d70d3cc57ff935e2b5a4b675cde85\"\u003e\u003ccode\u003e1885f2a\u003c/code\u003e\u003c/a\u003e Bump github/codeql-action from 3.27.6 to 4.36.2 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1916\"\u003e#1916\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/de4ed85e1e4e1e83dcfd90fc791684e3607459fa\"\u003e\u003ccode\u003ede4ed85\u003c/code\u003e\u003c/a\u003e Correct Javadoc of Gradle plugin to avoid errors and warnings during generation.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/5d3a3129ceb66ec0c168c9648757cbffccf18aec\"\u003e\u003ccode\u003e5d3a312\u003c/code\u003e\u003c/a\u003e Bump actions/setup-java from 5.2.0 to 5.4.0 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1918\"\u003e#1918\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/raphw/byte-buddy/compare/byte-buddy-1.18.11...byte-buddy-1.18.13\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.checkerframework:checker-qual` from 4.2.2 to 4.2.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typetools/checker-framework/releases\"\u003eorg.checkerframework:checker-qual's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eChecker Framework 4.2.3\u003c/h2\u003e\n\u003ch2\u003eVersion 4.2.3 (2026-09-01)\u003c/h2\u003e\n\u003ch3\u003eUser-visible changes\u003c/h3\u003e\n\u003cp\u003eThe \u003ccode\u003e-AsuggestPureMethods\u003c/code\u003e command-line option and the \u003ccode\u003epurity.effectively.pure\u003c/code\u003e warning no longer require \u003ccode\u003e-AcheckPurityAnnotations\u003c/code\u003e to also be supplied.\u003c/p\u003e\n\u003ch3\u003eImplementation details\u003c/h3\u003e\n\u003cp\u003eMade the field \u003ccode\u003eJava8InferenceContext.pathToExpression\u003c/code\u003e private; use \u003ccode\u003egetPathToExpression()\u003c/code\u003e and \u003ccode\u003esetPathToExpression()\u003c/code\u003e instead.\u003c/p\u003e\n\u003cp\u003eRenamed \u003ccode\u003eTreeUtils.isLikeDiamondMemberReference()\u003c/code\u003e to \u003ccode\u003eisRawTypedMemberReference()\u003c/code\u003e.\u003c/p\u003e\n\u003ch3\u003eClosed issues\u003c/h3\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/2816\"\u003e#2816\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7677\"\u003e#7677\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7678\"\u003e#7678\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7681\"\u003e#7681\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7682\"\u003e#7682\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7684\"\u003e#7684\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7693\"\u003e#7693\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7694\"\u003e#7694\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7696\"\u003e#7696\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7698\"\u003e#7698\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7701\"\u003e#7701\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7702\"\u003e#7702\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7875\"\u003e#7875\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8046\"\u003e#8046\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8047\"\u003e#8047\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8048\"\u003e#8048\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8050\"\u003e#8050\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8052\"\u003e#8052\u003c/a\u003e.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typetools/checker-framework/blob/master/docs/CHANGELOG.md\"\u003eorg.checkerframework:checker-qual's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 4.2.3 (2026-09-01)\u003c/h2\u003e\n\u003ch3\u003eUser-visible changes\u003c/h3\u003e\n\u003cp\u003eThe \u003ccode\u003e-AsuggestPureMethods\u003c/code\u003e command-line option and the \u003ccode\u003epurity.effectively.pure\u003c/code\u003e\nwarning no longer require \u003ccode\u003e-AcheckPurityAnnotations\u003c/code\u003e to also be supplied.\u003c/p\u003e\n\u003ch3\u003eChanges for type system implementers\u003c/h3\u003e\n\u003cp\u003eMade the field \u003ccode\u003eJava8InferenceContext.pathToExpression\u003c/code\u003e private; use\n\u003ccode\u003egetPathToExpression()\u003c/code\u003e and \u003ccode\u003esetPathToExpression()\u003c/code\u003e instead.\u003c/p\u003e\n\u003cp\u003eRenamed \u003ccode\u003eTreeUtils.isLikeDiamondMemberReference()\u003c/code\u003e to \u003ccode\u003eisRawTypedMemberReference()\u003c/code\u003e.\u003c/p\u003e\n\u003ch3\u003eClosed issues\u003c/h3\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/2816\"\u003e#2816\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7677\"\u003e#7677\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7678\"\u003e#7678\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7681\"\u003e#7681\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7682\"\u003e#7682\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7684\"\u003e#7684\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7693\"\u003e#7693\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7694\"\u003e#7694\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7696\"\u003e#7696\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7698\"\u003e#7698\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7701\"\u003e#7701\u003c/a\u003e,\n\u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7702\"\u003e#7702\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7875\"\u003e#7875\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8046\"\u003e#8046\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8047\"\u003e#8047\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8048\"\u003e#8048\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8050\"\u003e#8050\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8052\"\u003e#8052\u003c/a\u003e.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/ddd330dfec46e29c075f923ac89556379566ccd2\"\u003e\u003ccode\u003eddd330d\u003c/code\u003e\u003c/a\u003e new release 4.2.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/d44c55a525c9aa3ce427741379021712c12f296b\"\u003e\u003ccode\u003ed44c55a\u003c/code\u003e\u003c/a\u003e Increase the timeout.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/d07e6cedd79c813b4d56931665e88b7d91395d52\"\u003e\u003ccode\u003ed07e6ce\u003c/code\u003e\u003c/a\u003e Fix links.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/0af4fa25558a87b1bdd74792341c1b1714ff7b71\"\u003e\u003ccode\u003e0af4fa2\u003c/code\u003e\u003c/a\u003e Prep for release.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/455d690ae45a70d433954346a14f4bd22386cf58\"\u003e\u003ccode\u003e455d690\u003c/code\u003e\u003c/a\u003e Infer the type arguments of \u003ccode\u003eReferenceType::Identifier\u003c/code\u003e where \u003ccode\u003eReferenceType\u003c/code\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/81173f8df325810f7fa1b420ae8eeb130f3ea784\"\u003e\u003ccode\u003e81173f8\u003c/code\u003e\u003c/a\u003e Add javac equivalent class for AnnotationEqualityVisitor (\u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7692\"\u003e#7692\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/81b9930f6c164d761535d520997f8993bd1b1050\"\u003e\u003ccode\u003e81b9930\u003c/code\u003e\u003c/a\u003e AFU Javadoc\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/ac24b72c34b0d590e738393e01e988205f0fe111\"\u003e\u003ccode\u003eac24b72\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003eci_info\u003c/code\u003e jobs, simplify misc jobs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/d27d6b4322db4512b9dc67b1e25aa09b51561daa\"\u003e\u003ccode\u003ed27d6b4\u003c/code\u003e\u003c/a\u003e Clear SubtypeVisitHistory after each outermost isSubtype call  (\u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8064\"\u003e#8064\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/3180cc2fd296b62031e16baabd61abc4ce1ab80c\"\u003e\u003ccode\u003e3180cc2\u003c/code\u003e\u003c/a\u003e Update actions/setup-java action to v6\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/typetools/checker-framework/compare/checker-framework-4.2.2...checker-framework-4.2.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.javassist:javassist` from 3.32.0-GA to 3.33.0-GA\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jboss-javassist/javassist/releases\"\u003eorg.javassist:javassist's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eJavassist-3.33.0-GA\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix SerialVersionUID for static nested classes by \u003ca href=\"https://github.com/arimu1\"\u003e\u003ccode\u003e@​arimu1\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/pull/523\"\u003ejboss-javassist/javassist#523\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/jboss-javassist/javassist/compare/rel_3_32_0_ga...rel_3_33_0_ga\"\u003ehttps://github.com/jboss-javassist/javassist/compare/rel_3_32_0_ga...rel_3_33_0_ga\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jboss-javassist/javassist/blob/master/Changes.md\"\u003eorg.javassist:javassist's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003eChanges\u003c/h3\u003e\n\u003ch3\u003eversion 3.34\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eGitHub PR \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/524\"\u003e#524\u003c/a\u003e (Issue \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/443\"\u003e#443\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eversion 3.33 on August 23, 2026\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eAPI changes suggested by \u003ccode\u003e@waydeshi\u003c/code\u003e and \u003ccode\u003e@lucianjohnhouse\u003c/code\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eGitHub PR \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/523\"\u003e#523\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eversion 3.32 on June 21, 2026\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eAPI change suggested by Wayde Shi (GitHub: \u003ccode\u003e@waydeshi\u003c/code\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eExcludes javassist.tools.{reflect,rmi,web}.  They are now included in ./examples/src/main.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDisables javassist.runtime.Desc.useContextClassLoader\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eversion 3.31.0 on April 20, 2026\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eGitHub PR \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/480\"\u003e#480\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/484\"\u003e#484\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/486\"\u003e#486\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/491\"\u003e#491\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/492\"\u003e#492\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/495\"\u003e#495\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/506\"\u003e#506\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eversion 3.30.2 on December 25, 2023\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eGitHub PR \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/473\"\u003e#473\u003c/a\u003e, 475, 476\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eversion 3.30.1 on December 17, 2023\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGitHub Issue \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/471\"\u003e#471\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eversion 3.30 on December 17, 2023\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGitHub PR \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/434\"\u003e#434\u003c/a\u003e, 448, 463 (Issue \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/462\"\u003e#462\u003c/a\u003e), 466, 467, 468, 469, 470,\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eversion 3.29.2 on September 14, 2022\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGitHub Issue \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/427\"\u003e#427\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eversion 3.29.1 on August 11, 2022\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eGitHub Issue \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/423\"\u003e#423\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ccode\u003eReadme.html\u003c/code\u003e was deleted (GitHub Issue \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/414\"\u003e#414\u003c/a\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eversion 3.29 on May 13, 2022\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGitHub Issue \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/378\"\u003e#378\u003c/a\u003e, PR \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/278\"\u003e#278\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/299\"\u003e#299\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/382\"\u003e#382\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/383\"\u003e#383\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/390\"\u003e#390\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/391\"\u003e#391\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/395\"\u003e#395\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/399\"\u003e#399\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/409\"\u003e#409\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/jboss-javassist/javassist/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.projectlombok:lombok` from 1.18.46 to 1.18.48\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/projectlombok/lombok/blob/master/doc/changelog.markdown\"\u003eorg.projectlombok:lombok's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003ev1.18.48 (September 1st, 2026)\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBREAKING CHANGE/BUGFIX: \u003ccode\u003e@Builder(builderClassName = \u0026quot;Builder\u0026quot;)\u003c/code\u003e now generates an error, because the type names collide. \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/3857\"\u003e#3857\u003c/a\u003e  (found after release)\u003c/li\u003e\n\u003cli\u003ePLATFORM: JDK27 support added \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/4072\"\u003e#4072\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eBUGFIX: \u003ccode\u003e@SneakyThrows\u003c/code\u003e usage on JDK26 no longer results in class files that require \u003ccode\u003elombok.jar\u003c/code\u003e to be on the runtime classpath (which should not be neccessary). \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/4040\"\u003e#4040\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eFEATURE: New \u003ca href=\"https://projectlombok.org/features/configuration\"\u003econfig key\u003c/a\u003e \u003ccode\u003elombok.checkReturnValueAnnotation\u003c/code\u003e (values: \u003ccode\u003enone\u003c/code\u003e, \u003ccode\u003elombok\u003c/code\u003e; default: \u003ccode\u003enone\u003c/code\u003e) lets lombok generate \u003ccode\u003e@lombok.CheckReturnValue\u003c/code\u003e on generated methods where the return value should not be ignored, such as \u003ccode\u003e@With\u003c/code\u003e methods and \u003ccode\u003e@Builder.build()\u003c/code\u003e. A future lombok release may flip the default to \u003ccode\u003elombok\u003c/code\u003e. \u003ca href=\"https://redirect.github.com/projectlombok/lombok/pull/4013\"\u003e#4013\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003ePROMOTION: \u003ccode\u003e@SuperBuilder\u003c/code\u003e has been promoted to the main package. Otherwise, no changes have been made to the annotation. The old experimental annotation will remain for a few versions, at which point it will be marked as a deprecated annotation. Eventually it'll be removed. If you had \u003ccode\u003elombok.config\u003c/code\u003e configuration for this annotation, the configuration keys for this feature have been renamed. \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/2209\"\u003e#2209\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eOLD-CRUFT: \u003ccode\u003elombok.experimental.Wither\u003c/code\u003e and \u003ccode\u003elombok.Delegate\u003c/code\u003e are deprecated remnants; these features were moved (to respectively \u003ccode\u003elombok.With\u003c/code\u003e and \u003ccode\u003elombok.experimental.Delegate\u003c/code\u003e over 5 years ago. They are now removed entirely. If your project is dependent on an older version of lombok which still has those; fret not, lombok still processes these annotations. It just no longer includes them in the jar.\u003c/li\u003e\n\u003cli\u003eFEATURE: CheckerFramework: Lombok now adds \u003ccode\u003e@SideEffectFree\u003c/code\u003e to constructors it makes if you have enabled checker framework via \u003ccode\u003elombok.config\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eBUGFIX: CheckerFramework: Lombok would add \u003ccode\u003e@SideEffectFree\u003c/code\u003e to the \u003ccode\u003ebuild()\u003c/code\u003e method of any generated builder, even if it is a builder for invoking a method; in that case, the side-effect-free nature of \u003ccode\u003ebuild()\u003c/code\u003e mirrors the side-effect-free nature of the method invocation you've built. Lombok now checks if the method it generated a builder for is side effect free / 'check return type'.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/b48657c83ce44d027984f539bd36048293ce5e8e\"\u003e\u003ccode\u003eb48657c\u003c/code\u003e\u003c/a\u003e [version] pre-release version bump v1.18.48\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/d1d003945f864d32bb3115cf81fa363e1c7bc6bb\"\u003e\u003ccode\u003ed1d0039\u003c/code\u003e\u003c/a\u003e Merge branch 'jdk27'\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/1a23dad52c01e7b18892573549841e36d6e4abde\"\u003e\u003ccode\u003e1a23dad\u003c/code\u003e\u003c/a\u003e [review][refactor] No meaningful changes: Improved comments, javadoc, and cle...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/40cdde815038a4bddc2bc31afce80c4c62e75e67\"\u003e\u003ccode\u003e40cdde8\u003c/code\u003e\u003c/a\u003e [changelog] JDK27 support\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/25eae29093410cba53e3f91e2da4ba1fbf1953f4\"\u003e\u003ccode\u003e25eae29\u003c/code\u003e\u003c/a\u003e Add Danish Nawab to AUTHORS\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/10ab92b5d9eb852ccac7295d8017203e7efd7449\"\u003e\u003ccode\u003e10ab92b\u003c/code\u003e\u003c/a\u003e Support JDK27: end positions moved from EndPosTable to JCTree.endpos\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/af01b7a27b469b723e88de508480186113569185\"\u003e\u003ccode\u003eaf01b7a\u003c/code\u003e\u003c/a\u003e Document the new configuration syntax for listy things\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/1be3857dfef96cde703012a43ec649a4c3f7eea9\"\u003e\u003ccode\u003e1be3857\u003c/code\u003e\u003c/a\u003e There is no more HtAccess\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/405985dd2512786439448e43f390c359e7595269\"\u003e\u003ccode\u003e405985d\u003c/code\u003e\u003c/a\u003e Semantic sections for website\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/04b73406d04a279401b43a74314aa1dcbadbc143\"\u003e\u003ccode\u003e04b7340\u003c/code\u003e\u003c/a\u003e [trivial] fixing some outdated tests (tests were broken, not lombok).\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/projectlombok/lombok/compare/v1.18.46...v1.18.48\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.yaml:snakeyaml` from 2.6 to 2.7\n\nUpdates `org.graalvm.buildtools.native` from 1.1.9 to 1.1.11\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/graalvm/native-build-tools/releases\"\u003eorg.graalvm.buildtools.native's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.1.11\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRelease 1.1.9 by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1022\"\u003egraalvm/native-build-tools#1022\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump version to 1.1.10-SNAPSHOT by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1023\"\u003egraalvm/native-build-tools#1023\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate reachability metadata to 1.0.11 by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1028\"\u003egraalvm/native-build-tools#1028\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake NativeImageLayerRuntimeTest platform-independent by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1024\"\u003egraalvm/native-build-tools#1024\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRelease 1.1.10 by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1030\"\u003egraalvm/native-build-tools#1030\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMove grund.toml to the project roots by \u003ca href=\"https://github.com/vjovanov\"\u003e\u003ccode\u003e@​vjovanov\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1026\"\u003egraalvm/native-build-tools#1026\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump version to 1.1.11-SNAPSHOT by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1035\"\u003egraalvm/native-build-tools#1035\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate reachability metadata to 1.0.12 by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1036\"\u003egraalvm/native-build-tools#1036\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eLayers DSL follow-up: configuration-cache and test cleanup by \u003ca href=\"https://github.com/jormundur00\"\u003e\u003ccode\u003e@​jormundur00\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1034\"\u003egraalvm/native-build-tools#1034\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix Maven metadata copy across reactor modules by \u003ca href=\"https://github.com/jormundur00\"\u003e\u003ccode\u003e@​jormundur00\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1020\"\u003egraalvm/native-build-tools#1020\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake embedded Maven output concise and reproducible by \u003ca href=\"https://github.com/jormundur00\"\u003e\u003ccode\u003e@​jormundur00\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1019\"\u003egraalvm/native-build-tools#1019\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix additive reachability metadata requires selection by \u003ca href=\"https://github.com/jormundur00\"\u003e\u003ccode\u003e@​jormundur00\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1018\"\u003egraalvm/native-build-tools#1018\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1024\"\u003egraalvm/native-build-tools#1024\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/graalvm/native-build-tools/compare/1.1.9...1.1.11\"\u003ehttps://github.com/graalvm/native-build-tools/compare/1.1.9...1.1.11\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e1.1.10\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRelease 1.1.9 by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1022\"\u003egraalvm/native-build-tools#1022\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump version to 1.1.10-SNAPSHOT by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1023\"\u003egraalvm/native-build-tools#1023\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/graalvm/native-build-tools/compare/1.1.9...1.1.10\"\u003ehttps://github.com/graalvm/native-build-tools/compare/1.1.9...1.1.10\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/6cf521ced462995abf332b61b87b12a219d619cb\"\u003e\u003ccode\u003e6cf521c\u003c/code\u003e\u003c/a\u003e Release 1.1.11\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/37fab88f408e2d19f6ff50427bd87d29522b5824\"\u003e\u003ccode\u003e37fab88\u003c/code\u003e\u003c/a\u003e Fix additive reachability metadata requires selection (\u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1018\"\u003e#1018\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/c300d9fa5b2e062d89d719730652938b08d6ebab\"\u003e\u003ccode\u003ec300d9f\u003c/code\u003e\u003c/a\u003e Make embedded Maven output concise and reproducible (\u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1019\"\u003e#1019\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/1987e3cfb35b6009af95aec5a66e04bc1df922e4\"\u003e\u003ccode\u003e1987e3c\u003c/code\u003e\u003c/a\u003e Fix Maven metadata copy across reactor modules (\u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1020\"\u003e#1020\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/f328d3ac8a4957a0bfbbb9a3df35f5db535a38cb\"\u003e\u003ccode\u003ef328d3a\u003c/code\u003e\u003c/a\u003e Layers DSL follow-up: configuration-cache and test cleanup (\u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1034\"\u003e#1034\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/8ae8060611273e7e8375f2392372f5489f6648e5\"\u003e\u003ccode\u003e8ae8060\u003c/code\u003e\u003c/a\u003e Update reachability metadata to 1.0.12 (\u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1036\"\u003e#1036\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/6a60e3be96dc82fe4a08827a24e28f02ce3d9534\"\u003e\u003ccode\u003e6a60e3b\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1035\"\u003e#1035\u003c/a\u003e from graalvm/bump-version-to-1.1.11-SNAPSHOT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/0eac49e1a5531112a319f9c8104b57b6d455d953\"\u003e\u003ccode\u003e0eac49e\u003c/code\u003e\u003c/a\u003e Bump version to 1.1.11-SNAPSHOT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/f2d657c1c643d462e03e7253f2533477cd569454\"\u003e\u003ccode\u003ef2d657c\u003c/code\u003e\u003c/a\u003e Move grund.toml to the project roots (\u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1026\"\u003e#1026\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/395d3864208f7902eebeec106f27ef84bbe5a5d6\"\u003e\u003ccode\u003e395d386\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1030\"\u003e#1030\u003c/a\u003e from graalvm/release/1.1.10\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/graalvm/native-build-tools/compare/1.1.9...1.1.11\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n\u003c/details\u003e","html_url":"https://github.com/jmltoolkit/jmltk/pull/64","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/jmltoolkit%2Fjmltk/issues/64","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/64/packages"},{"uuid":"5354449347","node_id":"PR_kwDOTN-QB88AAAABCRw37Q","number":34,"state":"closed","title":"[12.1.x EE9] Bump the dev-dependencies group across 1 directory with 43 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-12T00:27:22.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-05T00:32:22.000Z","updated_at":"2026-09-12T00:27:24.000Z","time_to_close":604500,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"[12.1.x EE9] Bump","group_name":"dev-dependencies","update_count":43,"packages":[{"name":"org.glassfish.jersey.containers:jersey-container-servlet","old_version":"3.0.17","new_version":"3.1.0"},{"name":"org.glassfish.jersey.inject:jersey-hk2","old_version":"3.0.17","new_version":"3.1.0"},{"name":"org.glassfish.jersey.media:jersey-media-json-binding","old_version":"3.0.17","new_version":"3.1.0"},{"name":"org.ow2.asm:asm","old_version":"9.10","new_version":"9.10.1"},{"name":"org.ow2.asm:asm-commons","old_version":"9.10","new_version":"9.10.1"},{"name":"org.ow2.asm:asm-bom","old_version":"9.10","new_version":"9.10.1"},{"name":"org.codehaus.plexus:plexus-utils","old_version":"4.0.3","new_version":"4.1.0","repository_url":"https://github.com/codehaus-plexus/plexus-utils"},{"name":"org.codehaus.plexus:plexus-xml","old_version":"4.1.1","new_version":"4.2.0","repository_url":"https://github.com/codehaus-plexus/plexus-xml"},{"name":"commons-codec:commons-codec","old_version":"1.22.0","new_version":"1.22.1","repository_url":"https://github.com/apache/commons-codec"},{"name":"net.java.dev.jna:jna","old_version":"5.18.1","new_version":"5.19.1","repository_url":"https://github.com/java-native-access/jna"},{"name":"net.java.dev.jna:jna-jpms","old_version":"5.18.1","new_version":"5.19.1","repository_url":"https://github.com/java-native-access/jna"},{"name":"org.mariadb.jdbc:mariadb-java-client","old_version":"3.5.8","new_version":"3.5.10","repository_url":"https://github.com/mariadb-corporation/mariadb-connector-j"},{"name":"org.apache.openwebbeans:openwebbeans-jetty9","old_version":"2.0.27","new_version":"2.0.28","repository_url":"https://github.com/apache/openwebbeans"},{"name":"org.apache.openwebbeans:openwebbeans-web","old_version":"2.0.27","new_version":"2.0.28","repository_url":"https://github.com/apache/openwebbeans"},{"name":"com.fasterxml.jackson:jackson-bom","old_version":"2.21.3","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-bom"},{"name":"io.netty:netty-bom","old_version":"4.2.13.Final","new_version":"4.2.17.Final","repository_url":"https://github.com/netty/netty"},{"name":"org.hibernate.search:hibernate-search-bom","old_version":"8.3.1.Final","new_version":"8.4.0.Final","repository_url":"https://github.com/hibernate/hibernate-search"},{"name":"org.junit:junit-bom","old_version":"6.0.3","new_version":"6.1.3","repository_url":"https://github.com/junit-team/junit-framework"},{"name":"ch.qos.logback:logback-core","old_version":"1.5.32","new_version":"1.6.3","repository_url":"https://github.com/qos-ch/logback"},{"name":"com.github.jnr:jffi","old_version":"1.3.15","new_version":"1.4.0","repository_url":"https://github.com/jnr/jffi"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"io.grpc:grpc-core","old_version":"1.81.0","new_version":"1.84.0","repository_url":"https://github.com/grpc/grpc-java"},{"name":"io.grpc:grpc-netty-shaded","old_version":"1.81.0","new_version":"1.84.0","repository_url":"https://github.com/grpc/grpc-java"},{"name":"io.smallrye.common:smallrye-common-annotation","old_version":"2.18.1","new_version":"2.20.0","repository_url":"https://github.com/smallrye/smallrye-common"},{"name":"io.smallrye.common:smallrye-common-cpu","old_version":"2.18.1","new_version":"2.20.0","repository_url":"https://github.com/smallrye/smallrye-common"},{"name":"org.apache.kerby:kerb-simplekdc","old_version":"2.1.1","new_version":"2.1.2"},{"name":"org.apache.logging.log4j:log4j-api","old_version":"2.26.0","new_version":"2.26.1"},{"name":"org.bouncycastle:bcpkix-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.bouncycastle:bcprov-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.bouncycastle:bctls-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.bouncycastle:bcutil-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.codehaus.plexus:plexus-classworlds","old_version":"2.11.0","new_version":"2.12.1","repository_url":"https://github.com/codehaus-plexus/plexus-classworlds"},{"name":"org.conscrypt:conscrypt-openjdk-uber","old_version":"2.5.2","new_version":"2.7.0","repository_url":"https://github.com/google/conscrypt"},{"name":"org.eclipse.jdt:ecj","old_version":"3.45.0","new_version":"3.46.0","repository_url":"https://github.com/eclipse-jdt/eclipse.jdt.core"},{"name":"org.hibernate.models:hibernate-models","old_version":"1.1.1","new_version":"1.3.0","repository_url":"https://github.com/hibernate/hibernate-models"},{"name":"org.jboss.threads:jboss-threads","old_version":"3.9.2","new_version":"3.10.1","repository_url":"https://github.com/jbossas/jboss-threads"},{"name":"org.mortbay.jetty.quiche:jetty-quiche-native","old_version":"0.29.2","new_version":"0.29.3","repository_url":"https://github.com/jetty-project/jetty-quiche-native"},{"name":"org.eclipse.jetty.toolchain:jetty-build-support","old_version":"1.5","new_version":"1.6"},{"name":"eu.maveniverse.maven.njord:extension3","old_version":"0.9.6","new_version":"0.9.10","repository_url":"https://github.com/maveniverse/njord"},{"name":"eu.maveniverse.maven.plugins:njord","old_version":"0.9.6","new_version":"0.9.10","repository_url":"https://github.com/maveniverse/njord"},{"name":"org.apache.maven.extensions:maven-build-cache-extension","old_version":"1.2.2","new_version":"1.3.0","repository_url":"https://github.com/apache/maven-build-cache-extension"},{"name":"org.cyclonedx:cyclonedx-maven-plugin","old_version":"2.9.1","new_version":"2.9.3","repository_url":"https://github.com/CycloneDX/cyclonedx-maven-plugin"}],"path":null,"ecosystem":"maven"},"body":"Bumps the dev-dependencies group with 42 updates in the /jetty-ee9 directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| org.glassfish.jersey.containers:jersey-container-servlet | `3.0.17` | `3.1.0` |\n| org.glassfish.jersey.inject:jersey-hk2 | `3.0.17` | `3.1.0` |\n| org.glassfish.jersey.media:jersey-media-json-binding | `3.0.17` | `3.1.0` |\n| org.ow2.asm:asm | `9.10` | `9.10.1` |\n| org.ow2.asm:asm-commons | `9.10` | `9.10.1` |\n| org.ow2.asm:asm-bom | `9.10` | `9.10.1` |\n| [org.codehaus.plexus:plexus-utils](https://github.com/codehaus-plexus/plexus-utils) | `4.0.3` | `4.1.0` |\n| [org.codehaus.plexus:plexus-xml](https://github.com/codehaus-plexus/plexus-xml) | `4.1.1` | `4.2.0` |\n| [commons-codec:commons-codec](https://github.com/apache/commons-codec) | `1.22.0` | `1.22.1` |\n| [net.java.dev.jna:jna](https://github.com/java-native-access/jna) | `5.18.1` | `5.19.1` |\n| [net.java.dev.jna:jna-jpms](https://github.com/java-native-access/jna) | `5.18.1` | `5.19.1` |\n| [org.mariadb.jdbc:mariadb-java-client](https://github.com/mariadb-corporation/mariadb-connector-j) | `3.5.8` | `3.5.10` |\n| [org.apache.openwebbeans:openwebbeans-jetty9](https://github.com/apache/openwebbeans) | `2.0.27` | `2.0.28` |\n| [org.apache.openwebbeans:openwebbeans-web](https://github.com/apache/openwebbeans) | `2.0.27` | `2.0.28` |\n| [com.fasterxml.jackson:jackson-bom](https://github.com/FasterXML/jackson-bom) | `2.21.3` | `2.22.2` |\n| [io.netty:netty-bom](https://github.com/netty/netty) | `4.2.13.Final` | `4.2.17.Final` |\n| [org.hibernate.search:hibernate-search-bom](https://github.com/hibernate/hibernate-search) | `8.3.1.Final` | `8.4.0.Final` |\n| [org.junit:junit-bom](https://github.com/junit-team/junit-framework) | `6.0.3` | `6.1.3` |\n| [ch.qos.logback:logback-core](https://github.com/qos-ch/logback) | `1.5.32` | `1.6.3` |\n| [com.github.jnr:jffi](https://github.com/jnr/jffi) | `1.3.15` | `1.4.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [io.grpc:grpc-core](https://github.com/grpc/grpc-java) | `1.81.0` | `1.84.0` |\n| [io.grpc:grpc-netty-shaded](https://github.com/grpc/grpc-java) | `1.81.0` | `1.84.0` |\n| [io.smallrye.common:smallrye-common-annotation](https://github.com/smallrye/smallrye-common) | `2.18.1` | `2.20.0` |\n| [io.smallrye.common:smallrye-common-cpu](https://github.com/smallrye/smallrye-common) | `2.18.1` | `2.20.0` |\n| org.apache.kerby:kerb-simplekdc | `2.1.1` | `2.1.2` |\n| org.apache.logging.log4j:log4j-api | `2.26.0` | `2.26.1` |\n| [org.bouncycastle:bcpkix-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.bouncycastle:bcprov-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.bouncycastle:bctls-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.bouncycastle:bcutil-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.codehaus.plexus:plexus-classworlds](https://github.com/codehaus-plexus/plexus-classworlds) | `2.11.0` | `2.12.1` |\n| [org.conscrypt:conscrypt-openjdk-uber](https://github.com/google/conscrypt) | `2.5.2` | `2.7.0` |\n| [org.eclipse.jdt:ecj](https://github.com/eclipse-jdt/eclipse.jdt.core) | `3.45.0` | `3.46.0` |\n| [org.hibernate.models:hibernate-models](https://github.com/hibernate/hibernate-models) | `1.1.1` | `1.3.0` |\n| [org.jboss.threads:jboss-threads](https://github.com/jbossas/jboss-threads) | `3.9.2` | `3.10.1` |\n| [org.mortbay.jetty.quiche:jetty-quiche-native](https://github.com/jetty-project/jetty-quiche-native) | `0.29.2` | `0.29.3` |\n| org.eclipse.jetty.toolchain:jetty-build-support | `1.5` | `1.6` |\n| [eu.maveniverse.maven.njord:extension3](https://github.com/maveniverse/njord) | `0.9.6` | `0.9.10` |\n| [eu.maveniverse.maven.plugins:njord](https://github.com/maveniverse/njord) | `0.9.6` | `0.9.10` |\n| [org.apache.maven.extensions:maven-build-cache-extension](https://github.com/apache/maven-build-cache-extension) | `1.2.2` | `1.3.0` |\n| [org.cyclonedx:cyclonedx-maven-plugin](https://github.com/CycloneDX/cyclonedx-maven-plugin) | `2.9.1` | `2.9.3` |\n\n\nUpdates `org.glassfish.jersey.containers:jersey-container-servlet` from 3.0.17 to 3.1.0\n\nUpdates `org.glassfish.jersey.inject:jersey-hk2` from 3.0.17 to 3.1.0\n\nUpdates `org.glassfish.jersey.media:jersey-media-json-binding` from 3.0.17 to 3.1.0\n\nUpdates `org.glassfish.jersey.inject:jersey-hk2` from 3.0.17 to 3.1.0\n\nUpdates `org.glassfish.jersey.media:jersey-media-json-binding` from 3.0.17 to 3.1.0\n\nUpdates `org.ow2.asm:asm` from 9.10 to 9.10.1\n\nUpdates `org.ow2.asm:asm-commons` from 9.10 to 9.10.1\n\nUpdates `org.ow2.asm:asm-bom` from 9.10 to 9.10.1\n\nUpdates `org.ow2.asm:asm-commons` from 9.10 to 9.10.1\n\nUpdates `org.codehaus.plexus:plexus-utils` from 4.0.3 to 4.1.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/releases\"\u003eorg.codehaus.plexus:plexus-utils's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.1.0\u003c/h2\u003e\n\u003cp\u003e\u003ccode\u003eDirectoryScanner\u003c/code\u003e no longer excludes \u003ccode\u003e.gitignore\u003c/code\u003e and \u003ccode\u003e.cvsignore\u003c/code\u003e by default. Code that relied on\nthe old defaults has to add the two patterns explicitly. That change is what makes this a minor\nrelease rather than 4.0.4.\u003c/p\u003e\n\u003ch2\u003e:boom: Breaking changes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDo not exclude \u0026quot;.gitignore\u0026quot; and \u0026quot;.cvsignore\u0026quot; by default (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/326\"\u003e#326\u003c/a\u003e) \u003ca href=\"https://github.com/kwin\"\u003e\u003ccode\u003e@​kwin\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRewrite README with usage, status and version guidance (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/332\"\u003e#332\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Build\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate parent to plexus 27 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/338\"\u003e#338\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDrop the Publish Site workflow (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/337\"\u003e#337\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd the Publish Site workflow (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/334\"\u003e#334\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse the shared release-drafter config instead of a local copy (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/333\"\u003e#333\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump the plexus dependencies released today (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/340\"\u003e#340\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus from 25 to 26 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/335\"\u003e#335\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7.6.0 to 7.7.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/331\"\u003e#331\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7 to 7.6.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/330\"\u003e#330\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/572ce90d98d71bfe29078b680fc14d3088f43a14\"\u003e\u003ccode\u003e572ce90\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release plexus-utils-4.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/077e8010c109576715077f4a70094623295d5ce9\"\u003e\u003ccode\u003e077e801\u003c/code\u003e\u003c/a\u003e Bump the plexus dependencies released today\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/840a1b49b3b7bdc3f883ef0c698566988c7e21ec\"\u003e\u003ccode\u003e840a1b4\u003c/code\u003e\u003c/a\u003e Update parent to plexus 27\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/9c560fa3ea573e48d7d528c86eca4690ff1a6bc0\"\u003e\u003ccode\u003e9c560fa\u003c/code\u003e\u003c/a\u003e Drop the Publish Site workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/5f96b03fefa9e3f9d7c47b88bebc400a44c88795\"\u003e\u003ccode\u003e5f96b03\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus from 25 to 26\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/4846c05a48b35bb12dc3fb5254b3b77b93784730\"\u003e\u003ccode\u003e4846c05\u003c/code\u003e\u003c/a\u003e Add the Publish Site workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/4df3a8663601eaeb0fd5c71fd6bcc2b2ecc2234d\"\u003e\u003ccode\u003e4df3a86\u003c/code\u003e\u003c/a\u003e Use the shared release-drafter config instead of a local copy\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/9eb5fc61fe732c5e16737490f11b1898634252fe\"\u003e\u003ccode\u003e9eb5fc6\u003c/code\u003e\u003c/a\u003e Apply spotless formatting to README\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/f2856f90460216275047fa6c5b4c333726ee3f80\"\u003e\u003ccode\u003ef2856f9\u003c/code\u003e\u003c/a\u003e Rewrite README with usage, status and version guidance\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/62fe2fa47a81245ca0588a110c35a918a8f4402e\"\u003e\u003ccode\u003e62fe2fa\u003c/code\u003e\u003c/a\u003e Bump release-drafter/release-drafter from 7.6.0 to 7.7.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/compare/plexus-utils-4.0.3...plexus-utils-4.1.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.codehaus.plexus:plexus-xml` from 4.1.1 to 4.2.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/releases\"\u003eorg.codehaus.plexus:plexus-xml's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.2.0\u003c/h2\u003e\n\u003cp\u003eThe 4.x line no longer builds its DOM through Maven's deprecated \u003ccode\u003eXmlNodeBuilder\u003c/code\u003e: \u003ccode\u003eXpp3DomBuilder\u003c/code\u003e uses a pull builder of its own, so a future Maven can delete that class without breaking this one. The artifact also carries \u003ccode\u003eAutomatic-Module-Name: org.codehaus.plexus.util.xml\u003c/code\u003e, which anyone on the module path sees.\u003c/p\u003e\n\u003cp\u003eThe Maven dependency is split: \u003ccode\u003emaven-api-xml\u003c/code\u003e at compile, \u003ccode\u003emaven-xml\u003c/code\u003e at runtime, since \u003ccode\u003eXmlService\u003c/code\u003e resolves its implementation through \u003ccode\u003eServiceLoader\u003c/code\u003e. Consumers keep the API transitively and lose \u003ccode\u003eorg.apache.maven.internal.*\u003c/code\u003e along with woodstox-core and stax2-api.\u003c/p\u003e\n\u003cp\u003eRequires Java 17 and Maven 4. On Maven 3, use the 3.x line.\u003c/p\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eEstablish an automatic module name (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/92\"\u003e#92\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBuild the DOM with a local pull builder instead of Maven's deprecated XmlNodeBuilder (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/94\"\u003e#94\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📝 Documentation updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRewrite README with usage, status and version guidance (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/88\"\u003e#88\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSet the next development version to 4.2.0-SNAPSHOT (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/97\"\u003e#97\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBuild against maven-xml 4.0.0-rc-6 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/87\"\u003e#87\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove deprecated XmlNode references (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/81\"\u003e#81\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Build\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate parent to plexus 27 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/99\"\u003e#99\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDepend on maven-api-xml at compile and maven-xml at runtime (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/96\"\u003e#96\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus from 25 to 26 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/90\"\u003e#90\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7.6.0 to 7.7.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/86\"\u003e#86\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7 to 7.6.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/84\"\u003e#84\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 6 to 7 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/79\"\u003e#79\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/215f435589f545e3c6bb840513f45a952709fb5a\"\u003e\u003ccode\u003e215f435\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release plexus-xml-4.2.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/ce5d0624363998ebfc398f55672921552d7578ae\"\u003e\u003ccode\u003ece5d062\u003c/code\u003e\u003c/a\u003e Update parent to plexus 27\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/38c200b943a3109066ea3a18001ab8f1e11d4ee3\"\u003e\u003ccode\u003e38c200b\u003c/code\u003e\u003c/a\u003e Depend on maven-api-xml at compile and maven-xml at runtime\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/ae27358905fc4eb0fb28a6b10ea2a0cbb566c966\"\u003e\u003ccode\u003eae27358\u003c/code\u003e\u003c/a\u003e Set the next development version to 4.2.0-SNAPSHOT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/d1c51ce927244d359ed7aeb86ef809c0e77205cb\"\u003e\u003ccode\u003ed1c51ce\u003c/code\u003e\u003c/a\u003e Establish an automatic module name\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/d0f198be29880b2124560a72f4a7684ceb5d24f8\"\u003e\u003ccode\u003ed0f198b\u003c/code\u003e\u003c/a\u003e Build the DOM with a local pull builder, not Maven's XmlNodeBuilder\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/470396adc7ca98a41b00b45ea908d6941ebe6ae3\"\u003e\u003ccode\u003e470396a\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus from 25 to 26\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/51d60d59faff0fde7d6fe75986909819fb45f0e3\"\u003e\u003ccode\u003e51d60d5\u003c/code\u003e\u003c/a\u003e Rewrite README with usage, status and version guidance\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/e91d180a097e8777450d6cfba5cc0c4c3fd3226c\"\u003e\u003ccode\u003ee91d180\u003c/code\u003e\u003c/a\u003e Bump release-drafter/release-drafter from 7.6.0 to 7.7.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/b628bf3a4e89d939808f90eb1fd431f039ef5d18\"\u003e\u003ccode\u003eb628bf3\u003c/code\u003e\u003c/a\u003e Build against maven-xml 4.0.0-rc-6\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/compare/plexus-xml-4.1.1...plexus-xml-4.2.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `commons-codec:commons-codec` from 1.22.0 to 1.22.1\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/commons-codec/blob/master/RELEASE-NOTES.txt\"\u003ecommons-codec:commons-codec's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eApache Commons Codec 1.22.1 Release Notes\u003c/h2\u003e\n\u003cp\u003eThe Apache Commons Codec team is pleased to announce the release of Apache Commons Codec 1.22.1.\u003c/p\u003e\n\u003cp\u003eThe Apache Commons Codec component contains encoders and decoders for\nformats such as Base16, Base32, Base64, digest, and Hexadecimal. In addition to these\nwidely used encoders and decoders, the codec package also maintains a\ncollection of phonetic encoding utilities.\u003c/p\u003e\n\u003cp\u003eThis is a feature and maintenance release. Java 8 or later is required.\u003c/p\u003e\n\u003ch2\u003eFixed Bugs\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eCODEC-344:  Base64.Builder.setEncodeTable(byte...) accepts invalid custom alphabets. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-340:  Base58.Builder.setEncodeTable(byte...) is ignored when encoding and decoding. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-342:  Base32.Builder.setEncodeTable(byte...) can create a codec that cannot decode its own output. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-343:  Base32.Builder.setHexDecodeTable(boolean) sets the encode table to a decode lookup table. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-341:  Base16.Builder.setEncodeTable(byte...) can create a codec that cannot decode its own output. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-339:  URLCodec.encodeUrl(BitSet, byte[]) allows custom safe sets to emit URL encoding control characters. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-338:  PercentCodec loses literal '+' when plusForSpace is enabled. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-337:  Digest ALL reuses System.in, so only the first algorithm sees the real input (\u003ca href=\"https://redirect.github.com/apache/commons-codec/issues/431\"\u003e#431\u003c/a\u003e). Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Fix Base64.toIntegerBytes(BigInteger) for zero edge case ([#441](https://github.com/apache/commons-codec/issues/441)). Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Add messages when throwing NullPointerException. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Add messages when throwing NullPointerException. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        StringEncoderComparator.StringEncoderComparator(StringEncoder) now fails fast on null input. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eChanges\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Bump org.apache.commons:commons-parent from 98 to 103. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Bump commons-io:commons-io from 2.21.0 to 2.22.0. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eFor complete information on Apache Commons Codec, including instructions on how to submit bug reports,\npatches, or suggestions for improvement, see the Apache Commons Codec website:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://commons.apache.org/proper/commons-codec/\"\u003ehttps://commons.apache.org/proper/commons-codec/\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eDownload page: \u003ca href=\"https://commons.apache.org/proper/commons-codec/download_codec.cgi\"\u003ehttps://commons.apache.org/proper/commons-codec/download_codec.cgi\u003c/a\u003e\u003c/p\u003e\n\u003chr /\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/dc8f6c832a30f524bf12a5ae7ab013e4ad7c088f\"\u003e\u003ccode\u003edc8f6c8\u003c/code\u003e\u003c/a\u003e Prepare for the release candidate 1.22.1 RC1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/8203c1c5bb4342e2fbf258556cac4826eae7ca11\"\u003e\u003ccode\u003e8203c1c\u003c/code\u003e\u003c/a\u003e Prepare for the next release candidate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/5647fe2a66b3e74f044f414ad10d92407ede9396\"\u003e\u003ccode\u003e5647fe2\u003c/code\u003e\u003c/a\u003e StringEncoderComparator.StringEncoderComparator(StringEncoder) now fails\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/00c27a9c0636f15a0ba1d0bdc1f00fb8d9cee0fd\"\u003e\u003ccode\u003e00c27a9\u003c/code\u003e\u003c/a\u003e Reduce vertical whitespace\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/568f2d7d7cf24ff0074eec29e21868ce9fe24236\"\u003e\u003ccode\u003e568f2d7\u003c/code\u003e\u003c/a\u003e Remove unused method\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/316fb15f3aa1e810a27fcc858d7c0e7ba0a4d724\"\u003e\u003ccode\u003e316fb15\u003c/code\u003e\u003c/a\u003e Remove unused method\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/bf6b543c1d49bf36d9ee10de1a1472dc5d677b10\"\u003e\u003ccode\u003ebf6b543\u003c/code\u003e\u003c/a\u003e Bump actions/checkout from 7.0.0 to 7.0.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/e14cdfe55f4837b63daca367374ce996ad87fc5a\"\u003e\u003ccode\u003ee14cdfe\u003c/code\u003e\u003c/a\u003e Extract redundant code.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/3351e63155fa41fbfcb0744efa960adce1529798\"\u003e\u003ccode\u003e3351e63\u003c/code\u003e\u003c/a\u003e Add messages when throwing NullPointerException.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/f22dab7ea52e8bd07dfa84a6f37ce915d1536b1c\"\u003e\u003ccode\u003ef22dab7\u003c/code\u003e\u003c/a\u003e Update SCM tag\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/commons-codec/compare/rel/commons-codec-1.22.0...rel/commons-codec-1.22.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `net.java.dev.jna:jna` from 5.18.1 to 5.19.1\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/java-native-access/jna/blob/master/CHANGES.md\"\u003enet.java.dev.jna:jna's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eRelease 5.19.1\u003c/h1\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1730\"\u003e#1730\u003c/a\u003e: Replace usage of \u003ccode\u003eMethodHandle\u003c/code\u003e with reflection to restore support for older Android releases - \u003ca href=\"https://github.com/matthiasblaesing\"\u003e\u003ccode\u003e@​matthiasblaesing\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eRelease 5.19.0\u003c/h1\u003e\n\u003ch2\u003eFeatures\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1696\"\u003e#1696\u003c/a\u003e: Add \u003ccode\u003eLARGE_INTEGER.ByValue\u003c/code\u003e to \u003ccode\u003eLARGE_INTEGER\u003c/code\u003e in \u003ccode\u003eWinNT.java\u003c/code\u003e - \u003ca href=\"https://github.com/baier233\"\u003e\u003ccode\u003e@​baier233\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1697\"\u003e#1697\u003c/a\u003e: Add WlanApi module - \u003ca href=\"https://github.com/eranl\"\u003e\u003ccode\u003e@​eranl\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1718\"\u003e#1718\u003c/a\u003e: Add \u003ccode\u003eCups\u003c/code\u003e to \u003ccode\u003ec.s.j.p.unix\u003c/code\u003e providing CUPS printing system bindings for destinations, jobs, options, and server configuration - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1720\"\u003e#1720\u003c/a\u003e: Add \u003ccode\u003egroupCount\u003c/code\u003e and \u003ccode\u003egroupMasks\u003c/code\u003e fields to \u003ccode\u003eCACHE_RELATIONSHIP\u003c/code\u003e in \u003ccode\u003ec.s.j.p.win32.WinNT\u003c/code\u003e, matching the updated Windows struct layout - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1719\"\u003e#1719\u003c/a\u003e: Add \u003ccode\u003eCoreGraphics\u003c/code\u003e to \u003ccode\u003ec.s.j.p.mac\u003c/code\u003e with Quartz Window Services and Display Services bindings; implement \u003ccode\u003egetAllWindows()\u003c/code\u003e in \u003ccode\u003eMacWindowUtils\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1723\"\u003e#1723\u003c/a\u003e: Add \u003ccode\u003eProcFdInfo\u003c/code\u003e, \u003ccode\u003eInSockInfo\u003c/code\u003e, \u003ccode\u003eTcpSockInfo\u003c/code\u003e, \u003ccode\u003eproc_pidfdinfo\u003c/code\u003e, \u003ccode\u003estatfs64\u003c/code\u003e, and \u003ccode\u003evm_deallocate\u003c/code\u003e to \u003ccode\u003ec.s.j.p.mac.SystemB\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1725\"\u003e#1725\u003c/a\u003e: Add \u003ccode\u003eBluetoothApis\u003c/code\u003e to \u003ccode\u003ec.s.j.p.win32\u003c/code\u003e providing Bluetooth device and radio enumeration via \u003ccode\u003eBluetoothFindFirstRadio\u003c/code\u003e, \u003ccode\u003eBluetoothFindFirstDevice\u003c/code\u003e, and related functions - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1644\"\u003e#1644\u003c/a\u003e: Fix bug in VARDESC and TYPEDESC causing an illegal memory access - \u003ca href=\"https://github.com/lwahonen\"\u003e\u003ccode\u003e@​lwahonen\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1715\"\u003e#1715\u003c/a\u003e: Fix \u003ccode\u003eUdevDevice.getSysname()\u003c/code\u003e calling \u003ccode\u003eudev_device_get_syspath\u003c/code\u003e instead of \u003ccode\u003eudev_device_get_sysname\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1721\"\u003e#1721\u003c/a\u003e: Fix switched \u003ccode\u003eserverName\u003c/code\u003e/\u003ccode\u003edomainName\u003c/code\u003e arguments in \u003ccode\u003eNetapi32Util#getDCName\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1722\"\u003e#1722\u003c/a\u003e: Fix \u003ccode\u003eAdvapi32#RegisterServiceCtrlHandler\u003c/code\u003e using wrong \u003ccode\u003eHandler\u003c/code\u003e type - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1636\"\u003e#1636\u003c/a\u003e: Drop hard dependency on java.lang.SecurityManager/java.security.AccessController - \u003ca href=\"https://github.com/matthiasblaesing\"\u003e\u003ccode\u003e@​matthiasblaesing\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1724\"\u003e#1724\u003c/a\u003e: Fix \u003ccode\u003ehost_page_size\u003c/code\u003e in \u003ccode\u003ec.s.j.p.mac.SystemB\u003c/code\u003e and \u003ccode\u003egetxattr\u003c/code\u003e/\u003ccode\u003esetxattr\u003c/code\u003e/\u003ccode\u003elistxattr\u003c/code\u003e in \u003ccode\u003ec.s.j.p.mac.XAttr\u003c/code\u003e using \u003ccode\u003elong\u003c/code\u003e instead of pointer-sized types for \u003ccode\u003esize_t\u003c/code\u003e/\u003ccode\u003essize_t\u003c/code\u003e parameters - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1727\"\u003e#1727\u003c/a\u003e: Include DragonFlyBSD in \u003ccode\u003eNativeLibrary\u003c/code\u003e versioned library resolution, libc special-case loading, and 64-bit search paths - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1709\"\u003e#1709\u003c/a\u003e: Rebuild native library for OpenBSD 7.9 x86-64, drop OpenBSD x86 - \u003ca href=\"https://github.com/matthiasblaesing\"\u003e\u003ccode\u003e@​matthiasblaesing\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/1a91122853f6ab6f1fb2a4a284a6cf2ed8af0a4d\"\u003e\u003ccode\u003e1a91122\u003c/code\u003e\u003c/a\u003e Release 5.19.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/cbfcb4add73065d8006869acd3da72b579cfb52c\"\u003e\u003ccode\u003ecbfcb4a\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1731\"\u003e#1731\u003c/a\u003e from matthiasblaesing/ancient_android\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/4ba086b3eca0b937b6e73640b0b8a9f20ffd9fe2\"\u003e\u003ccode\u003e4ba086b\u003c/code\u003e\u003c/a\u003e Restore support for Android versions not supporting MethodHandles\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/699935fc29d624abe73b4ae258897bd5a1380abc\"\u003e\u003ccode\u003e699935f\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1729\"\u003e#1729\u003c/a\u003e from thesamesam/parallel-fix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/3fe4cb5fdc035e14d19d85b19a27711d1eebc356\"\u003e\u003ccode\u003e3fe4cb5\u003c/code\u003e\u003c/a\u003e native: fix parallel build issue\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/01c7807fe7b66ff9cfcd04d283ebfeb0ad7d7c16\"\u003e\u003ccode\u003e01c7807\u003c/code\u003e\u003c/a\u003e Prepare next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/9ff138107f4b258423229166a49f92c83d980b2f\"\u003e\u003ccode\u003e9ff1381\u003c/code\u003e\u003c/a\u003e Release 5.19.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/2d038ef24c547abc82ddf39e17a5ce26b2781519\"\u003e\u003ccode\u003e2d038ef\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1726\"\u003e#1726\u003c/a\u003e from matthiasblaesing/openbsd\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/eecab35757229a73db4bdd2dbbbcfad034782ad1\"\u003e\u003ccode\u003eeecab35\u003c/code\u003e\u003c/a\u003e Update native built for OpenBSD 7.9 (x86-64 only)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/f6708688b61d1ed10194086c5bd65bbc9bee6985\"\u003e\u003ccode\u003ef670868\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1727\"\u003e#1727\u003c/a\u003e from dbwiddis/fix/dragonflybsd-library-loading\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/java-native-access/jna/compare/5.18.1...5.19.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `net.java.dev.jna:jna-jpms` from 5.18.1 to 5.19.1\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/java-native-access/jna/blob/master/CHANGES.md\"\u003enet.java.dev.jna:jna-jpms's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eRelease 5.19.1\u003c/h1\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1730\"\u003e#1730\u003c/a\u003e: Replace usage of \u003ccode\u003eMethodHandle\u003c/code\u003e with reflection to restore support for older Android releases - \u003ca href=\"https://github.com/matthiasblaesing\"\u003e\u003ccode\u003e@​matthiasblaesing\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eRelease 5.19.0\u003c/h1\u003e\n\u003ch2\u003eFeatures\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1696\"\u003e#1696\u003c/a\u003e: Add \u003ccode\u003eLARGE_INTEGER.ByValue\u003c/code\u003e to \u003ccode\u003eLARGE_INTEGER\u003c/code\u003e in \u003ccode\u003eWinNT.java\u003c/code\u003e - \u003ca href=\"https://github.com/baier233\"\u003e\u003ccode\u003e@​baier233\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1697\"\u003e#1697\u003c/a\u003e: Add WlanApi module - \u003ca href=\"https://github.com/eranl\"\u003e\u003ccode\u003e@​eranl\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1718\"\u003e#1718\u003c/a\u003e: Add \u003ccode\u003eCups\u003c/code\u003e to \u003ccode\u003ec.s.j.p.unix\u003c/code\u003e providing CUPS printing system bindings for destinations, jobs, options, and server configuration - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1720\"\u003e#1720\u003c/a\u003e: Add \u003ccode\u003egroupCount\u003c/code\u003e and \u003ccode\u003egroupMasks\u003c/code\u003e fields to \u003ccode\u003eCACHE_RELATIONSHIP\u003c/code\u003e in \u003ccode\u003ec.s.j.p.win32.WinNT\u003c/code\u003e, matching the updated Windows struct layout - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1719\"\u003e#1719\u003c/a\u003e: Add \u003ccode\u003eCoreGraphics\u003c/code\u003e to \u003ccode\u003ec.s.j.p.mac\u003c/code\u003e with Quartz Window Services and Display Services bindings; implement \u003ccode\u003egetAllWindows()\u003c/code\u003e in \u003ccode\u003eMacWindowUtils\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1723\"\u003e#1723\u003c/a\u003e: Add \u003ccode\u003eProcFdInfo\u003c/code\u003e, \u003ccode\u003eInSockInfo\u003c/code\u003e, \u003ccode\u003eTcpSockInfo\u003c/code\u003e, \u003ccode\u003eproc_pidfdinfo\u003c/code\u003e, \u003ccode\u003estatfs64\u003c/code\u003e, and \u003ccode\u003evm_deallocate\u003c/code\u003e to \u003ccode\u003ec.s.j.p.mac.SystemB\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1725\"\u003e#1725\u003c/a\u003e: Add \u003ccode\u003eBluetoothApis\u003c/code\u003e to \u003ccode\u003ec.s.j.p.win32\u003c/code\u003e providing Bluetooth device and radio enumeration via \u003ccode\u003eBluetoothFindFirstRadio\u003c/code\u003e, \u003ccode\u003eBluetoothFindFirstDevice\u003c/code\u003e, and related functions - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1644\"\u003e#1644\u003c/a\u003e: Fix bug in VARDESC and TYPEDESC causing an illegal memory access - \u003ca href=\"https://github.com/lwahonen\"\u003e\u003ccode\u003e@​lwahonen\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1715\"\u003e#1715\u003c/a\u003e: Fix \u003ccode\u003eUdevDevice.getSysname()\u003c/code\u003e calling \u003ccode\u003eudev_device_get_syspath\u003c/code\u003e instead of \u003ccode\u003eudev_device_get_sysname\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1721\"\u003e#1721\u003c/a\u003e: Fix switched \u003ccode\u003eserverName\u003c/code\u003e/\u003ccode\u003edomainName\u003c/code\u003e arguments in \u003ccode\u003eNetapi32Util#getDCName\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1722\"\u003e#1722\u003c/a\u003e: Fix \u003ccode\u003eAdvapi32#RegisterServiceCtrlHandler\u003c/code\u003e using wrong \u003ccode\u003eHandler\u003c/code\u003e type - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1636\"\u003e#1636\u003c/a\u003e: Drop hard dependency on java.lang.SecurityManager/java.security.AccessController - \u003ca href=\"https://github.com/matthiasblaesing\"\u003e\u003ccode\u003e@​matthiasblaesing\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1724\"\u003e#1724\u003c/a\u003e: Fix \u003ccode\u003ehost_page_size\u003c/code\u003e in \u003ccode\u003ec.s.j.p.mac.SystemB\u003c/code\u003e and \u003ccode\u003egetxattr\u003c/code\u003e/\u003ccode\u003esetxattr\u003c/code\u003e/\u003ccode\u003elistxattr\u003c/code\u003e in \u003ccode\u003ec.s.j.p.mac.XAttr\u003c/code\u003e using \u003ccode\u003elong\u003c/code\u003e instead of pointer-sized types for \u003ccode\u003esize_t\u003c/code\u003e/\u003ccode\u003essize_t\u003c/code\u003e parameters - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1727\"\u003e#1727\u003c/a\u003e: Include DragonFlyBSD in \u003ccode\u003eNativeLibrary\u003c/code\u003e versioned library resolution, libc special-case loading, and 64-bit search paths - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1709\"\u003e#1709\u003c/a\u003e: Rebuild native library for OpenBSD 7.9 x86-64, drop OpenBSD x86 - \u003ca href=\"https://github.com/matthiasblaesing\"\u003e\u003ccode\u003e@​matthiasblaesing\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/1a91122853f6ab6f1fb2a4a284a6cf2ed8af0a4d\"\u003e\u003ccode\u003e1a91122\u003c/code\u003e\u003c/a\u003e Release 5.19.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/cbfcb4add73065d8006869acd3da72b579cfb52c\"\u003e\u003ccode\u003ecbfcb4a\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1731\"\u003e#1731\u003c/a\u003e from matthiasblaesing/ancient_android\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/4ba086b3eca0b937b6e73640b0b8a9f20ffd9fe2\"\u003e\u003ccode\u003e4ba086b\u003c/code\u003e\u003c/a\u003e Restore support for Android versions not supporting MethodHandles\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/699935fc29d624abe73b4ae258897bd5a1380abc\"\u003e\u003ccode\u003e699935f\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1729\"\u003e#1729\u003c/a\u003e from thesamesam/parallel-fix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/3fe4cb5fdc035e14d19d85b19a27711d1eebc356\"\u003e\u003ccode\u003e3fe4cb5\u003c/code\u003e\u003c/a\u003e native: fix parallel build issue\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/01c7807fe7b66ff9cfcd04d283ebfeb0ad7d7c16\"\u003e\u003ccode\u003e01c7807\u003c/code\u003e\u003c/a\u003e Prepare next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/9ff138107f4b258423229166a49f92c83d980b2f\"\u003e\u003ccode\u003e9ff1381\u003c/code\u003e\u003c/a\u003e Release 5.19.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/2d038ef24c547abc82ddf39e17a5ce26b2781519\"\u003e\u003ccode\u003e2d038ef\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1726\"\u003e#1726\u003c/a\u003e from matthiasblaesing/openbsd\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/eecab35757229a73db4bdd2dbbbcfad034782ad1\"\u003e\u003ccode\u003eeecab35\u003c/code\u003e\u003c/a\u003e Update native built for OpenBSD 7.9 (x86-64 only)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/f6708688b61d1ed10194086c5bd65bbc9bee6985\"\u003e\u003ccode\u003ef670868\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1727\"\u003e#1727\u003c/a\u003e from dbwiddis/fix/dragonflybsd-library-loading\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/java-native-access/jna/compare/5.18.1...5.19.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.mariadb.jdbc:mariadb-java-client` from 3.5.8 to 3.5.10\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/releases\"\u003eorg.mariadb.jdbc:mariadb-java-client's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eMariaDB Connector/Java 3.5.10\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/tree/3.5.10\"\u003e3.5.10\u003c/a\u003e (Jul 2026)\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/compare/3.5.9...3.5.10\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eKey Enhancements\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1333 - Add maxAllowedPacket connection option (send/receive limit)\u003c/li\u003e\n\u003cli\u003eCONJ-1339 - Add maxAllowedColumns option to bound server-announced column count (report by fg0x0)\u003c/li\u003e\n\u003cli\u003eCONJ-1330 - add infer test to CI\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIssues Resolved\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1332 - Reject multipart (\u0026gt;16 MB) packets before authentication to prevent pre-auth OOM from a rogue server\u003c/li\u003e\n\u003cli\u003eCONJ-1342 - socketFactory option allows loading arbitrary bytecode via jar: URL, enabling RCE when JDBC URL is\nattacker-controlled (report by Qing Xu)\u003c/li\u003e\n\u003cli\u003eCONJ-1307 - Connection.setReadOnly(true) still allows DML statements to execute\u003c/li\u003e\n\u003cli\u003eCONJ-1326 - Unsafe escaping in enquoteLiteral()/enquoteNCharLiteral() (thanks to jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1327 - Align SSL hostname verification with TLS libraries (thanks to jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1329 - LOAD DATA LOCAL INFILE validation fails open when a bound parameter can't be rendered (thanks to\njmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1331 - trustStore-configured TLS connections defer certificate-chain/identity validation instead of validating\nup front (thanks to jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1340 - SQL injection via unescaped identifiers in updatable ResultSet generated statements (thanks to\njmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1341 - MariaDbPoolDataSource.getConnection(user, password) ignores the user argument when the pool's own\npassword is supplied (report by fg0x0)\u003c/li\u003e\n\u003cli\u003eCONJ-1328 - restrictedAuth allowlist is matched with substring contains() instead of equality (thanks to\njmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1338 - Validate length-encoded integers fit a non-negative int before use as a length (report by fg0x0)\u003c/li\u003e\n\u003cli\u003eCONJ-1336 - CONJ-1282 regression: TLS connection fails when JDBC hostname is an absolute FQDN ending with a trailing\ndot (report by Shaswata, thanks to Pepo48 for PR)\u003c/li\u003e\n\u003cli\u003eCONJ-1335 - getGeneratedKeys() throws \u0026quot;integer overflow\u0026quot; after a batch insert when the auto-increment value exceeds\nInteger.MAX_VALUE, and returns bulk generated keys out of batch order\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eMariaDB Connector/Java 3.5.9\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/tree/3.5.9\"\u003e3.5.9\u003c/a\u003e (Jun 2026)\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/compare/3.5.8...3.5.9\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eKey Enhancements\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1223 - cache TLS trust/key managers across connections to reduce SSL connection cost\u003c/li\u003e\n\u003cli\u003eCONJ-1314 - add SPI for interactive dialog (PAM) authentication callback\u003c/li\u003e\n\u003cli\u003eCONJ-1311 - add dedicated option \u003ccode\u003euseIpForKillQuery\u003c/code\u003e for query cancellation\u003c/li\u003e\n\u003cli\u003eCONJ-1310 - Add full native image support and CI coverage\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIssues Resolved\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1320 - PAM (dialog) authentication must require a secure connection (report by fg0x0)\u003c/li\u003e\n\u003cli\u003eCONJ-1319 - Use constant-time comparison when validating the server certificate fingerprint (report by jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1318 - enforce \u003ccode\u003eallowLocalInfile=false\u003c/code\u003e on the server's local-infile request, so a malicious server cannot read a client file despite the option being disabled\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/blob/main/CHANGELOG.md\"\u003eorg.mariadb.jdbc:mariadb-java-client's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/tree/3.5.10\"\u003e3.5.10\u003c/a\u003e (Jul 2026)\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/compare/3.5.9...3.5.10\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eKey Enhancements\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1333 - Add maxAllowedPacket connection option (send/receive limit)\u003c/li\u003e\n\u003cli\u003eCONJ-1339 - Add maxAllowedColumns option to bound server-announced column count (report by fg0x0)\u003c/li\u003e\n\u003cli\u003eCONJ-1330 - add infer test to CI\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIssues Resolved\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1332 - Reject multipart (\u0026gt;16 MB) packets before authentication to prevent pre-auth OOM from a rogue server\u003c/li\u003e\n\u003cli\u003eCONJ-1342 - socketFactory option allows loading arbitrary bytecode via jar: URL, enabling RCE when JDBC URL is\nattacker-controlled (report by Qing Xu)\u003c/li\u003e\n\u003cli\u003eCONJ-1307 - Connection.setReadOnly(true) still allows DML statements to execute\u003c/li\u003e\n\u003cli\u003eCONJ-1326 - Unsafe escaping in enquoteLiteral()/enquoteNCharLiteral() (thanks to jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1327 - Align SSL hostname verification with TLS libraries (thanks to jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1329 - LOAD DATA LOCAL INFILE validation fails open when a bound parameter can't be rendered (thanks to\njmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1331 - trustStore-configured TLS connections defer certificate-chain/identity validation instead of validating\nup front (thanks to jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1340 - SQL injection via unescaped identifiers in updatable ResultSet generated statements (thanks to\njmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1341 - MariaDbPoolDataSource.getConnection(user, password) ignores the user argument when the pool's own\npassword is supplied (report by fg0x0)\u003c/li\u003e\n\u003cli\u003eCONJ-1328 - restrictedAuth allowlist is matched with substring contains() instead of equality (thanks to\njmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1338 - Validate length-encoded integers fit a non-negative int before use as a length (report by fg0x0)\u003c/li\u003e\n\u003cli\u003eCONJ-1336 - CONJ-1282 regression: TLS connection fails when JDBC hostname is an absolute FQDN ending with a trailing\ndot (report by Shaswata, thanks to Pepo48 for PR)\u003c/li\u003e\n\u003cli\u003eCONJ-1335 - getGeneratedKeys() throws \u0026quot;integer overflow\u0026quot; after a batch insert when the auto-increment value exceeds\nInteger.MAX_VALUE, and returns bulk generated keys out of batch order\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/tree/3.4.4\"\u003e3.4.4\u003c/a\u003e (Jul 2026)\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/compare/3.4.3...3.4.4\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch5\u003eNotable Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1339 - Add maxAllowedColumns option to bound server-announced column count (report by fg0x0)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eBugs Fixed\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1332 - Reject multipart (\u0026gt;16 MB) packets before authentication to prevent pre-auth OOM from a rogue server\u003c/li\u003e\n\u003cli\u003eCONJ-1342 - socketFactory option allows loading arbitrary bytecode via jar: URL, enabling RCE when JDBC URL is\nattacker-controlled (report by Qing Xu)\u003c/li\u003e\n\u003cli\u003eCONJ-1326 - Unsafe escaping in enquoteLiteral()/enquoteNCharLiteral() (thanks to jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1329 - LOAD DATA LOCAL INFILE validation fails open when a bound parameter can't be rendered (thanks to\njmestwa-coder)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/6164678e83aa9d203939d5bec73bd4571cbec8a2\"\u003e\u003ccode\u003e6164678\u003c/code\u003e\u003c/a\u003e [misc] update changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/6f58858707c3d59881b171c40ec5ddd2773b0642\"\u003e\u003ccode\u003e6f58858\u003c/code\u003e\u003c/a\u003e [CONJ-1335] getGeneratedKeys() throws SQLDataException \u0026quot;integer overflow\u0026quot; aft...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/9f06db76c8502fa952dcd4de6ebe46cfe3f6ead9\"\u003e\u003ccode\u003e9f06db7\u003c/code\u003e\u003c/a\u003e [misc] CI stability improvement\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/99aa9e2e7b84ecf4edec20beeac37752066599c8\"\u003e\u003ccode\u003e99aa9e2\u003c/code\u003e\u003c/a\u003e [CONJ-1336] correction follow up\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/28a1550357fd3773a1cda68d545e79573c26bc8a\"\u003e\u003ccode\u003e28a1550\u003c/code\u003e\u003c/a\u003e [CONJ-1336] strip trailing dot from hostname before SNI and hostname verifica...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/b2b3f1beb8a5cb83f48e68ed7b912c637da0634e\"\u003e\u003ccode\u003eb2b3f1b\u003c/code\u003e\u003c/a\u003e [misc] limit authentication switch requests to 10 per connection\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/26ca60ab4a6d58905d8beef98428bf04d6cd4a5f\"\u003e\u003ccode\u003e26ca60a\u003c/code\u003e\u003c/a\u003e [misc] bound the whole connection phase by connectTimeout\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/15e08ff54fd0247a5491fe2695562d36b8e7f7c2\"\u003e\u003ccode\u003e15e08ff\u003c/code\u003e\u003c/a\u003e [CONJ-1337] Limit parsec authentication PBKDF2 iteration factor to the connec...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/d3c4a726d7cfcc0fa10ee4cdcca423a7d88c67ab\"\u003e\u003ccode\u003ed3c4a72\u003c/code\u003e\u003c/a\u003e bump 3.5.10 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/d85e05f4dc010ce40df548cf908da6bbc2640903\"\u003e\u003ccode\u003ed85e05f\u003c/code\u003e\u003c/a\u003e [CONJ-1342] socketFactory option allows loading arbitrary bytecode via jar: U...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/compare/3.5.8...3.5.10\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.openwebbeans:openwebbeans-jetty9` from 2.0.27 to 2.0.28\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/09181d5e2f6c3d357db079d9038c78435be3119c\"\u003e\u003ccode\u003e09181d5\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release openwebbeans-2.0.28\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/ab45ce695d8e87191132db0a6f2f4d60e5abb7e1\"\u003e\u003ccode\u003eab45ce6\u003c/code\u003e\u003c/a\u003e fix(#OWB-1450): Interceptor proxy memory leak. Add caching at an higher level\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/f93bfea822251c851f0220169ebf65279729ac51\"\u003e\u003ccode\u003ef93bfea\u003c/code\u003e\u003c/a\u003e fix(#OWB-1450): remove non working cache on proxies per AT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/cdc9a57938125e47cf586c5978b0d0aff0f171c5\"\u003e\u003ccode\u003ecdc9a57\u003c/code\u003e\u003c/a\u003e fix: maven dependency to Gradle not found and NPE in previous plugin version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/3feacc6625d3e7d36dc2ef15051b8a8c080ef9da\"\u003e\u003ccode\u003e3feacc6\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/apache/openwebbeans/issues/127\"\u003e#127\u003c/a\u003e from jgallimore/owb_2.0.x-owb-cdi-junit\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/129a53845e7281e4e26b6a85c15b2d65f7f8f5e5\"\u003e\u003ccode\u003e129a538\u003c/code\u003e\u003c/a\u003e OWB-1448 remove wildcard import\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/9bbd3f72abe5107d76ee3b01018211a11605922a\"\u003e\u003ccode\u003e9bbd3f7\u003c/code\u003e\u003c/a\u003e OWB-1448 rework following feedback\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/eb4b4c60739954aa5a8132db63d299ec856ce135\"\u003e\u003ccode\u003eeb4b4c6\u003c/code\u003e\u003c/a\u003e OWB-1448 removing left over e.printStackTrace()\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/41a55968edb831142395fb5a817dfe169c229e62\"\u003e\u003ccode\u003e41a5596\u003c/code\u003e\u003c/a\u003e OWB-1448 Fix Issue with Cdi annotation and alternatives\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/0376bd705f7373336667a47ed05f9614ebb31f91\"\u003e\u003ccode\u003e0376bd7\u003c/code\u003e\u003c/a\u003e upgrade to apache-parent 29\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/openwebbeans/compare/openwebbeans-2.0.27...openwebbeans-2.0.28\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.openwebbeans:openwebbeans-web` from 2.0.27 to 2.0.28\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/09181d5e2f6c3d357db079d9038c78435be3119c\"\u003e\u003ccode\u003e09181d5\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release openwebbeans-2.0.28\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/ab45ce695d8e87191132db0a6f2f4d60e5abb7e1\"\u003e\u003ccode\u003eab45ce6\u003c/code\u003e\u003c/a\u003e fix(#OWB-1450): Interceptor proxy memory leak. Add caching at an higher level\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/f93bfea822251c851f0220169ebf65279729ac51\"\u003e\u003ccode\u003ef93bfea\u003c/code\u003e\u003c/a\u003e fix(#OWB-1450): remove non working cache on proxies per AT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/cdc9a57938125e47cf586c5978b0d0aff0f171c5\"\u003e\u003ccode\u003ecdc9a57\u003c/code\u003e\u003c/a\u003e fix: maven dependency to Gradle not found and NPE in previous plugin version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/3feacc6625d3e7d36dc2ef15051b8a8c080ef9da\"\u003e\u003ccode\u003e3feacc6\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/apache/openwebbeans/issues/127\"\u003e#127\u003c/a\u003e from jgallimore/owb_2.0.x-owb-cdi-junit\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/129a53845e7281e4e26b6a85c15b2d65f7f8f5e5\"\u003e\u003ccode\u003e129a538\u003c/code\u003e\u003c/a\u003e OWB-1448 remove wildcard import\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/9bbd3f72abe5107d76ee3b01018211a11605922a\"\u003e\u003ccode\u003e9bbd3f7\u003c/code\u003e\u003c/a\u003e OWB-1448 rework following feedback\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/eb4b4c60739954aa5a8132db63d299ec856ce135\"\u003e\u003ccode\u003eeb4b4c6\u003c/code\u003e\u003c/a\u003e OWB-1448 removing left over e.printStackTrace()\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/41a55968edb831142395fb5a817dfe169c229e62\"\u003e\u003ccode\u003e41a5596\u003c/code\u003e\u003c/a\u003e OWB-1448 Fix Issue with Cdi annotation and alternatives\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/0376bd705f7373336667a47ed05f9614ebb31f91\"\u003e\u003ccode\u003e0376bd7\u003c/code\u003e\u003c/a\u003e upgrade to apache-parent 29\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/openwebbeans/compare/openwebbeans-2.0.27...openwebbeans-2.0.28\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.openwebbeans:openwebbeans-web` from 2.0.27 to 2.0.28\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/09181d5e2f6c3d357db079d9038c78435be3119c\"\u003e\u003ccode\u003e09181d5\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release openwebbeans-2.0.28\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/ab45ce695d8e87191132db0a6f2f4d60e5abb7e1\"\u003e\u003ccode\u003eab45ce6\u003c/code\u003e\u003c/a\u003e fix(#OWB-1450): Interceptor proxy memory leak. Add caching at an higher level\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/f93bfea822251c851f0220169ebf65279729ac51\"\u003e\u003ccode\u003ef93bfea\u003c/code\u003e\u003c/a\u003e fix(#OWB-1450): remove non working cache on proxies per AT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/cdc9a57938125e47cf586c5978b0d0aff0f171c5\"\u003e\u003ccode\u003ecdc9a57\u003c/code\u003e\u003c/a\u003e fix: maven dependency to Gradle not found and NPE in previous plugin version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/3feacc6625d3e7d36dc2ef15051b8a8c080ef9da\"\u003e\u003ccode\u003e3feacc6\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/apache/openwebbeans/issues/127\"\u003e#127\u003c/a\u003e from jgallimore/owb_2.0.x-owb-cdi-junit\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/129a53845e7281e4e26b6a85c15b2d65f7f8f5e5\"\u003e\u003ccode\u003e129a538\u003c/code\u003e\u003c/a\u003e OWB-1448 remove wildcard import\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/9bbd3f72abe5107d76ee3b01018211a11605922a\"\u003e\u003ccode\u003e9bbd3f7\u003c/code\u003e\u003c/a\u003e OWB-1448 rework following feedback\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/eb4b4c60739954aa5a8132db63d299ec856ce135\"\u003e\u003ccode\u003eeb4b4c6\u003c/code\u003e\u003c/a\u003e OWB-1448 removing left over e.printStackTrace()\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/41a55968edb831142395fb5a817dfe169c229e62\"\u003e\u003ccode\u003e41a5596\u003c/code\u003e\u003c/a\u003e OWB-1448 Fix Issue with Cdi annotation and alternatives\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/0376bd705f7373336667a47ed05f9614ebb31f91\"\u003e\u003ccode\u003e0376bd7\u003c/code\u003e\u003c/a\u003e upgrade to apache-parent 29\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/openwebbeans/compare/openwebbeans-2.0.27...openwebbeans-2.0.28\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson:jackson-bom` from 2.21.3 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/062d76d67a3619238e00d4d62f9bdb51cfe6cd52\"\u003e\u003ccode\u003e062d76d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-bom-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/dcf18f79fa8a9b935d880b3906291d8ed8cb1d0d\"\u003e\u003ccode\u003edcf18f7\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/9688c7b1dfc9072fdec7c9770653072d0a728fd1\"\u003e\u003ccode\u003e9688c7b\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/7796a7ddb240ce41c1b6c6a3a435b29948a6a727\"\u003e\u003ccode\u003e7796a7d\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/d3cd7fc1794f6d1a9f0a4dee41d8d46a310741d7\"\u003e\u003ccode\u003ed3cd7fc\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/7a28068902087b3c407d2dcabd875d7593127d97\"\u003e\u003ccode\u003e7a28068\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/51eb4657b141f598bb285763ac42492bd23a1da3\"\u003e\u003ccode\u003e51eb465\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/34ff5e8c68b0712086794b8287d0ad643a0a1993\"\u003e\u003ccode\u003e34ff5e8\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/0b44a458b999c5ac5568e2a4b1190a7d1080038e\"\u003e\u003ccode\u003e0b44a45\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-bom-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/691ec93ce7c1fcc582a2a44348e82e91ca424098\"\u003e\u003ccode\u003e691ec93\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-bom/compare/jackson-bom-2.21.3...jackson-bom-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.netty:netty-bom` from 4.2.13.Final to 4.2.17.Final\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/netty/netty/releases\"\u003eio.netty:netty-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003enetty-4.2.17.Final\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAsciiString.cached(String) should sanitize the provided String (\u003ca href=\"https://redirect.github.com/netty/netty/issues/13749\"\u003e#13749\u003c/a\u003e) by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix deploy workflow by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17071\"\u003enetty/netty#17071\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AsciiString.cached(String) performance regression by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17074\"\u003enetty/netty#17074\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSslHandler: Fix possible buffer leak when an OOME is thrown during allocation by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17059\"\u003enetty/netty#17059\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid leak presence detector in leak profile by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17073\"\u003enetty/netty#17073\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd HttpContentCompressor constructor with ability to specify desired maxPipelineDepth by \u003ca href=\"https://github.com/reta\"\u003e\u003ccode\u003e@​reta\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17068\"\u003enetty/netty#17068\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: preserve readPending when rescheduling cancelled reads by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17087\"\u003enetty/netty#17087\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReject negative maxOrder in PooledByteBufAllocator by \u003ca href=\"https://github.com/coderbruis\"\u003e\u003ccode\u003e@​coderbruis\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17093\"\u003enetty/netty#17093\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AdaptiveByteBuf._setLongLE calling checked setLongLE by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17098\"\u003enetty/netty#17098\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSnappy: Guard decoder against invalid chunk lengths by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17099\"\u003enetty/netty#17099\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix OCSP Tests by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17114\"\u003enetty/netty#17114\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate to latest netty-tcnative release by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17056\"\u003enetty/netty#17056\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse safe decompressor in Lz4FrameDecoder by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17118\"\u003enetty/netty#17118\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eConfigure TestLens for the PR builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17129\"\u003enetty/netty#17129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: add SO_INQ support for Unix domain sockets by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17127\"\u003enetty/netty#17127\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(mqtt): drop UNSUBACK reason codes for MQTT 3.x encoding by \u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropagate the CI envionment variables through to the docker builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17138\"\u003enetty/netty#17138\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add decompressor API by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/16745\"\u003enetty/netty#16745\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix silent failures and optimize error short-circuit in multi-threaded tests by \u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Bzip2Decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17145\"\u003enetty/netty#17145\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix buddy cache evicting chunks with live buffers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17154\"\u003enetty/netty#17154\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Snappy frame decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17153\"\u003enetty/netty#17153\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add zlib decompressors by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17155\"\u003enetty/netty#17155\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Zstd decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17152\"\u003enetty/netty#17152\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add LZF decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17147\"\u003enetty/netty#17147\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add BrotliDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17146\"\u003enetty/netty#17146\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Lz4FrameDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17148\"\u003enetty/netty#17148\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpObjectEncoder\u003c/code\u003e / \u003ccode\u003eDefaultHttp2FrameWriter\u003c/code\u003e: fix buffer leak when a \u003ccode\u003eThrowable\u003c/code\u003e is thrown during header encoding by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17089\"\u003enetty/netty#17089\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix direct memory OOM on low-core containers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17166\"\u003enetty/netty#17166\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: Fix the recvmmsg emulation by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17187\"\u003enetty/netty#17187\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid classloader leak via GlobalEventExecutor terminationFuture failure by \u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBrotliEncoder: Prevent duplicate close scheduling by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17175\"\u003enetty/netty#17175\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix JdkZlibDecompressor losing the tail of highly compressible streams by \u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate compress-lzf to 1.2.1 by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17194\"\u003enetty/netty#17194\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDo not write WebSocket handshake response to the tail of the pipeline by \u003ca href=\"https://github.com/el-psy-kongroo-d\"\u003e\u003ccode\u003e@​el-psy-kongroo-d\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17192\"\u003enetty/netty#17192\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpServerCodec\u003c/code\u003e: do not consume the method queue for 1xx interim responses by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17182\"\u003enetty/netty#17182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWeakly reference engines from the OpenSSL engine map by \u003ca href=\"https://github.com/bryce-anderson\"\u003e\u003ccode\u003e@​bryce-anderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17199\"\u003enetty/netty#17199\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eOpenSSL: Allow to obtain used named group via OpenSslSession by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17058\"\u003enetty/netty#17058\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17052\"\u003enetty/netty#17052\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate surefire plugin to latest version by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17210\"\u003enetty/netty#17210\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMerge changes from forks by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17213\"\u003enetty/netty#17213\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/e0789d32c72f46fd2e7c99b6fdbbf7e2f4409e44\"\u003e\u003ccode\u003ee0789d3\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release netty-4.2.17.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/1b5abc6443b63726c72cdd285af2feb7ddbb8ff7\"\u003e\u003ccode\u003e1b5abc6\u003c/code\u003e\u003c/a\u003e Merge changes from forks (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17213\"\u003e#17213\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/36fbf5788c73e7040e6f18fed841a2cdfcae1452\"\u003e\u003ccode\u003e36fbf57\u003c/code\u003e\u003c/a\u003e Update surefire plugin to latest version (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17210\"\u003e#17210\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/a96226cb54e87e963e1e341cd7121f2217fc7c2e\"\u003e\u003ccode\u003ea96226c\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17052\"\u003e#17052\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/14a4e6ad865a187c3f1bf0da18d9146472e18192\"\u003e\u003ccode\u003e14a4e6a\u003c/code\u003e\u003c/a\u003e OpenSSL: Allow to obtain used ...\n\n_Description has been truncated_","html_url":"https://github.com/finos-osera/patch-jetty/pull/34","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/finos-osera%2Fpatch-jetty/issues/34","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/34/packages"},{"uuid":"5346183280","node_id":"PR_kwDOTPX2l88AAAABCLHctA","number":125,"state":"open","title":"build(deps): bump the maven-dependencies group across 1 directory with 12 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":["lewandowski-anthony"],"locked":false,"comments_count":5,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-04T08:54:53.000Z","updated_at":"2026-09-07T10:02:39.187Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps): bump","group_name":"maven-dependencies","update_count":12,"packages":[{"name":"io.netty:netty-bom","old_version":"4.2.16.Final","new_version":"4.2.17.Final","repository_url":"https://github.com/netty/netty"},{"name":"org.springframework.boot:spring-boot-dependencies","old_version":"4.1.0","new_version":"4.1.1","repository_url":"https://github.com/spring-projects/spring-boot"},{"name":"org.springframework.boot:spring-boot-maven-plugin","old_version":"4.1.0","new_version":"4.1.1","repository_url":"https://github.com/spring-projects/spring-boot"},{"name":"org.springframework.ai:spring-ai-bom","old_version":"2.0.0","new_version":"2.0.1","repository_url":"https://github.com/spring-projects/spring-ai"},{"name":"org.apache.commons:commons-collections4","old_version":"4.5.0","new_version":"4.6.0"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"org.springdoc:springdoc-openapi-starter-webmvc-ui","old_version":"3.0.3","new_version":"3.1.0","repository_url":"https://github.com/springdoc/springdoc-openapi"},{"name":"io.cucumber:cucumber-java","old_version":"7.34.6","new_version":"7.34.7","repository_url":"https://github.com/cucumber/cucumber-jvm"},{"name":"io.cucumber:cucumber-spring","old_version":"7.34.6","new_version":"7.34.7","repository_url":"https://github.com/cucumber/cucumber-jvm"},{"name":"io.cucumber:cucumber-junit-platform-engine","old_version":"7.34.6","new_version":"7.34.7","repository_url":"https://github.com/cucumber/cucumber-jvm"},{"name":"org.apache.maven.plugins:maven-compiler-plugin","old_version":"3.15.0","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-compiler-plugin"},{"name":"org.apache.maven.plugins:maven-surefire-plugin","old_version":"3.5.6","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-surefire"}],"path":null,"ecosystem":"maven"},"body":"Bumps the maven-dependencies group with 12 updates in the /back-end directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [io.netty:netty-bom](https://github.com/netty/netty) | `4.2.16.Final` | `4.2.17.Final` |\n| [org.springframework.boot:spring-boot-dependencies](https://github.com/spring-projects/spring-boot) | `4.1.0` | `4.1.1` |\n| [org.springframework.boot:spring-boot-maven-plugin](https://github.com/spring-projects/spring-boot) | `4.1.0` | `4.1.1` |\n| [org.springframework.ai:spring-ai-bom](https://github.com/spring-projects/spring-ai) | `2.0.0` | `2.0.1` |\n| org.apache.commons:commons-collections4 | `4.5.0` | `4.6.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [org.springdoc:springdoc-openapi-starter-webmvc-ui](https://github.com/springdoc/springdoc-openapi) | `3.0.3` | `3.1.0` |\n| [io.cucumber:cucumber-java](https://github.com/cucumber/cucumber-jvm) | `7.34.6` | `7.34.7` |\n| [io.cucumber:cucumber-spring](https://github.com/cucumber/cucumber-jvm) | `7.34.6` | `7.34.7` |\n| [io.cucumber:cucumber-junit-platform-engine](https://github.com/cucumber/cucumber-jvm) | `7.34.6` | `7.34.7` |\n| [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin) | `3.15.0` | `3.16.0` |\n| [org.apache.maven.plugins:maven-surefire-plugin](https://github.com/apache/maven-surefire) | `3.5.6` | `3.6.0` |\n\n\nUpdates `io.netty:netty-bom` from 4.2.16.Final to 4.2.17.Final\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/netty/netty/releases\"\u003eio.netty:netty-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003enetty-4.2.17.Final\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAsciiString.cached(String) should sanitize the provided String (\u003ca href=\"https://redirect.github.com/netty/netty/issues/13749\"\u003e#13749\u003c/a\u003e) by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix deploy workflow by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17071\"\u003enetty/netty#17071\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AsciiString.cached(String) performance regression by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17074\"\u003enetty/netty#17074\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSslHandler: Fix possible buffer leak when an OOME is thrown during allocation by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17059\"\u003enetty/netty#17059\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid leak presence detector in leak profile by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17073\"\u003enetty/netty#17073\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd HttpContentCompressor constructor with ability to specify desired maxPipelineDepth by \u003ca href=\"https://github.com/reta\"\u003e\u003ccode\u003e@​reta\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17068\"\u003enetty/netty#17068\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: preserve readPending when rescheduling cancelled reads by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17087\"\u003enetty/netty#17087\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReject negative maxOrder in PooledByteBufAllocator by \u003ca href=\"https://github.com/coderbruis\"\u003e\u003ccode\u003e@​coderbruis\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17093\"\u003enetty/netty#17093\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AdaptiveByteBuf._setLongLE calling checked setLongLE by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17098\"\u003enetty/netty#17098\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSnappy: Guard decoder against invalid chunk lengths by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17099\"\u003enetty/netty#17099\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix OCSP Tests by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17114\"\u003enetty/netty#17114\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate to latest netty-tcnative release by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17056\"\u003enetty/netty#17056\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse safe decompressor in Lz4FrameDecoder by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17118\"\u003enetty/netty#17118\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eConfigure TestLens for the PR builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17129\"\u003enetty/netty#17129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: add SO_INQ support for Unix domain sockets by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17127\"\u003enetty/netty#17127\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(mqtt): drop UNSUBACK reason codes for MQTT 3.x encoding by \u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropagate the CI envionment variables through to the docker builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17138\"\u003enetty/netty#17138\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add decompressor API by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/16745\"\u003enetty/netty#16745\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix silent failures and optimize error short-circuit in multi-threaded tests by \u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Bzip2Decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17145\"\u003enetty/netty#17145\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix buddy cache evicting chunks with live buffers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17154\"\u003enetty/netty#17154\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Snappy frame decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17153\"\u003enetty/netty#17153\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add zlib decompressors by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17155\"\u003enetty/netty#17155\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Zstd decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17152\"\u003enetty/netty#17152\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add LZF decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17147\"\u003enetty/netty#17147\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add BrotliDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17146\"\u003enetty/netty#17146\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Lz4FrameDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17148\"\u003enetty/netty#17148\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpObjectEncoder\u003c/code\u003e / \u003ccode\u003eDefaultHttp2FrameWriter\u003c/code\u003e: fix buffer leak when a \u003ccode\u003eThrowable\u003c/code\u003e is thrown during header encoding by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17089\"\u003enetty/netty#17089\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix direct memory OOM on low-core containers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17166\"\u003enetty/netty#17166\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: Fix the recvmmsg emulation by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17187\"\u003enetty/netty#17187\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid classloader leak via GlobalEventExecutor terminationFuture failure by \u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBrotliEncoder: Prevent duplicate close scheduling by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17175\"\u003enetty/netty#17175\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix JdkZlibDecompressor losing the tail of highly compressible streams by \u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate compress-lzf to 1.2.1 by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17194\"\u003enetty/netty#17194\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDo not write WebSocket handshake response to the tail of the pipeline by \u003ca href=\"https://github.com/el-psy-kongroo-d\"\u003e\u003ccode\u003e@​el-psy-kongroo-d\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17192\"\u003enetty/netty#17192\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpServerCodec\u003c/code\u003e: do not consume the method queue for 1xx interim responses by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17182\"\u003enetty/netty#17182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWeakly reference engines from the OpenSSL engine map by \u003ca href=\"https://github.com/bryce-anderson\"\u003e\u003ccode\u003e@​bryce-anderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17199\"\u003enetty/netty#17199\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eOpenSSL: Allow to obtain used named group via OpenSslSession by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17058\"\u003enetty/netty#17058\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17052\"\u003enetty/netty#17052\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate surefire plugin to latest version by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17210\"\u003enetty/netty#17210\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMerge changes from forks by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17213\"\u003enetty/netty#17213\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/e0789d32c72f46fd2e7c99b6fdbbf7e2f4409e44\"\u003e\u003ccode\u003ee0789d3\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release netty-4.2.17.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/1b5abc6443b63726c72cdd285af2feb7ddbb8ff7\"\u003e\u003ccode\u003e1b5abc6\u003c/code\u003e\u003c/a\u003e Merge changes from forks (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17213\"\u003e#17213\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/36fbf5788c73e7040e6f18fed841a2cdfcae1452\"\u003e\u003ccode\u003e36fbf57\u003c/code\u003e\u003c/a\u003e Update surefire plugin to latest version (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17210\"\u003e#17210\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/a96226cb54e87e963e1e341cd7121f2217fc7c2e\"\u003e\u003ccode\u003ea96226c\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17052\"\u003e#17052\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/14a4e6ad865a187c3f1bf0da18d9146472e18192\"\u003e\u003ccode\u003e14a4e6a\u003c/code\u003e\u003c/a\u003e OpenSSL: Allow to obtain used named group via OpenSslSession (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17058\"\u003e#17058\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/26255b123f7c699cd88cbdb42f6ecc6ed5cb7843\"\u003e\u003ccode\u003e26255b1\u003c/code\u003e\u003c/a\u003e Weakly reference engines from the OpenSSL engine map (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17199\"\u003e#17199\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/ae414179e3a030e0747fb68648ff2433fa4539e1\"\u003e\u003ccode\u003eae41417\u003c/code\u003e\u003c/a\u003e \u003ccode\u003eHttpServerCodec\u003c/code\u003e: do not consume the method queue for 1xx interim responses ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/41f1db523d3657954e9ad12250004cbdfde2a97d\"\u003e\u003ccode\u003e41f1db5\u003c/code\u003e\u003c/a\u003e Do not write WebSocket handshake response to the tail of the pipeline (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17192\"\u003e#17192\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/035d76e3f43fa462e101c1e03b59a69984c5ebf3\"\u003e\u003ccode\u003e035d76e\u003c/code\u003e\u003c/a\u003e Update compress-lzf to 1.2.1 (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17194\"\u003e#17194\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/7681affcf120fca1de8554095216ddea20b408c5\"\u003e\u003ccode\u003e7681aff\u003c/code\u003e\u003c/a\u003e Fix JdkZlibDecompressor losing the tail of highly compressible streams (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17191\"\u003e#17191\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/netty/netty/compare/netty-4.2.16.Final...netty-4.2.17.Final\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.springframework.boot:spring-boot-dependencies` from 4.1.0 to 4.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/spring-projects/spring-boot/releases\"\u003eorg.springframework.boot:spring-boot-dependencies's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.1.1\u003c/h2\u003e\n\u003ch2\u003e:warning: Attention Required\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSpring Boot's Gradle plugin no longer automatically configures gRPC when the Protobuf plugin is applied. This behavior caused problems for those using Protobuf without gRPC. To opt in to the configuration of gRPC, configure the \u003ccode\u003eprotobuf\u003c/code\u003e extension with the \u003ccode\u003egrpc\u003c/code\u003e plugin using an empty block. The Spring Boot Gradle plugin will then automatically configure the use of \u003ccode\u003eprotoc-gen-grpc-java\u003c/code\u003e as before. \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50822\"\u003e#50822\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:lady_beetle: Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eKafka consumer-specific security protocol is not taken into account \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51369\"\u003e#51369\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eStructured logging: a failed JSON encode corrupts the next log event written on the same thread \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51156\"\u003e#51156\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMicrometer registries pin the application context \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51135\"\u003e#51135\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eTemporary file is not deleted when ExportedImageTar construction fails \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51132\"\u003e#51132\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadata annotation processor ignores getter-level \u003ccode\u003e@NestedConfigurationProperty\u003c/code\u003e for records \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51098\"\u003e#51098\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring-boot-h2-console pulls servlet-api as transitive dependency \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51095\"\u003e#51095\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropertiesLauncher does not log nested archive paths \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51089\"\u003e#51089\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMethods that return the result of Map#remove are not declared with a \u003ccode\u003e@Nullable\u003c/code\u003e return type \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51087\"\u003e#51087\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eNativeImageResourceProvider flattens Flyway migration paths in subdirectories \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50964\"\u003e#50964\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix ordering of Kotlinx Serialization CodecCustomizer \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50961\"\u003e#50961\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJarFile is not closed when finding main class from archive \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50959\"\u003e#50959\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eApplication-managed JUL bridge handler should only be removed if installed \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50950\"\u003e#50950\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCloudFoundry reactive auto-configuration should not require a WebClient.Builder bean to be defined \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50944\"\u003e#50944\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails on reactive Cloud Foundry when using Actuator without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50942\"\u003e#50942\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eResources are not cleaned up when resolving an image that is not yet present in the builder \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50941\"\u003e#50941\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eGraphQlWebMvcAutoConfiguration should apply customizers in order \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50914\"\u003e#50914\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAuto-configured RedisMessageListenerContainer does not use virtual threads when spring.threads.virtual.enabled is true \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50884\"\u003e#50884\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails when using Actuator on Jersey without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50872\"\u003e#50872\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails on Cloud Foundry when using Actuator without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50871\"\u003e#50871\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIllegalStateException when binding properties to a \u003ccode\u003e@Validated\u003c/code\u003e class that contains a map whose value type is a wildcard \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50856\"\u003e#50856\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHigh number of connections due to Mongo health indicator \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50852\"\u003e#50852\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eInconsistent handling of empty string values of spring.security.oauth2.resourceserver.jwt issuer-uri and jwk-set-uri \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50849\"\u003e#50849\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReturn type nullability of ApplicationContextAssert's getBean methods does not indicate that bean may be null \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50845\"\u003e#50845\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropertiesWebClientHttpServiceGroupConfigurer has highest precedence, preventing other configurers from being ordered ahead of it \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50843\"\u003e#50843\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eExposing gRPC test server port should backoff if gRPC is not present \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50825\"\u003e#50825\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJpaBaseConfiguration#entityManagerConfiguration can cause a dependency loop on beans declaring AsyncTaskExecutor \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50801\"\u003e#50801\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring.grpc.server.health.include-overall-health is not taken into account \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50799\"\u003e#50799\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSetting 'server.servlet.session.cookie.partitioned' to false still emits the 'Partitioned' cookie attribute \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50790\"\u003e#50790\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eManaged version of Prometheus Client is not aligned with Micrometer's micrometer-registry-prometheus \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50780\"\u003e#50780\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMap properties bound from empty strings fail with ConverterNotFoundException \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50773\"\u003e#50773\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eProtobuf Common Protos should not be a managed dependency \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50772\"\u003e#50772\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAn application that depends on spring-boot-security-oauth2-resource-server may fail to start with a ClassNotFoundException when Reactor is on the classpath but WebFlux is not \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50764\"\u003e#50764\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eW3CHeaderParser's decoding is not compliant with RFC 3986 \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50650\"\u003e#50650\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:notebook_with_decorative_cover: Documentation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDescription of spring.graphql.websocket.connection-init-timeout does not render correctly in the reference guide \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51348\"\u003e#51348\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring.profiles.group should have a 'spring-profile-name' hint provider \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51284\"\u003e#51284\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove reference to removed InfluxDB auto-configuration \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51176\"\u003e#51176\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse JacksonJsonSerde in Kafka Streams documentation \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51161\"\u003e#51161\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDocument alternatives to HttpMessageConverters \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51129\"\u003e#51129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix stale type reference for OTLP logging transport metadata \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51119\"\u003e#51119\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadata for spring.test.mockmvc.htmlunit.url declares the wrong type \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51115\"\u003e#51115\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/6fdf67ea1552691e932604d4bf67a5e08ff0b0ea\"\u003e\u003ccode\u003e6fdf67e\u003c/code\u003e\u003c/a\u003e Release 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/fde599b28b40932e4ea6194399d89245923a01e7\"\u003e\u003ccode\u003efde599b\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Pulsar 2.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/9daa58f7d98b82bf16febcb91943ce267c220a50\"\u003e\u003ccode\u003e9daa58f\u003c/code\u003e\u003c/a\u003e Upgrade to Spring HATEOAS 3.1.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/353993ebc1d7b1ceccbb981b0439a42ba122a816\"\u003e\u003ccode\u003e353993e\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Data Bom 2026.0.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/24ba596bc4fa000614834016452435c834fdeda2\"\u003e\u003ccode\u003e24ba596\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Session 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/5cb5c294d1f4780e78d010a964049e47c074e4d6\"\u003e\u003ccode\u003e5cb5c29\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Security 7.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/4adc8eb130c4e0c688ed85316f385f4e04d47679\"\u003e\u003ccode\u003e4adc8eb\u003c/code\u003e\u003c/a\u003e Upgrade to Spring LDAP 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/4d9c19cbc0589f57a7265052b507bf4b961082ac\"\u003e\u003ccode\u003e4d9c19c\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Kafka 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/f30f6120c4f6f8f873ac56cba478ae1f011c276c\"\u003e\u003ccode\u003ef30f612\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Integration 7.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/b930283d97e92eb24da1de3721cdd41625266dea\"\u003e\u003ccode\u003eb930283\u003c/code\u003e\u003c/a\u003e Upgrade to Spring gRPC 1.1.1\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/spring-projects/spring-boot/compare/v4.1.0...v4.1.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.springframework.boot:spring-boot-maven-plugin` from 4.1.0 to 4.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/spring-projects/spring-boot/releases\"\u003eorg.springframework.boot:spring-boot-maven-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.1.1\u003c/h2\u003e\n\u003ch2\u003e:warning: Attention Required\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSpring Boot's Gradle plugin no longer automatically configures gRPC when the Protobuf plugin is applied. This behavior caused problems for those using Protobuf without gRPC. To opt in to the configuration of gRPC, configure the \u003ccode\u003eprotobuf\u003c/code\u003e extension with the \u003ccode\u003egrpc\u003c/code\u003e plugin using an empty block. The Spring Boot Gradle plugin will then automatically configure the use of \u003ccode\u003eprotoc-gen-grpc-java\u003c/code\u003e as before. \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50822\"\u003e#50822\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:lady_beetle: Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eKafka consumer-specific security protocol is not taken into account \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51369\"\u003e#51369\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eStructured logging: a failed JSON encode corrupts the next log event written on the same thread \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51156\"\u003e#51156\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMicrometer registries pin the application context \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51135\"\u003e#51135\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eTemporary file is not deleted when ExportedImageTar construction fails \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51132\"\u003e#51132\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadata annotation processor ignores getter-level \u003ccode\u003e@NestedConfigurationProperty\u003c/code\u003e for records \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51098\"\u003e#51098\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring-boot-h2-console pulls servlet-api as transitive dependency \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51095\"\u003e#51095\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropertiesLauncher does not log nested archive paths \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51089\"\u003e#51089\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMethods that return the result of Map#remove are not declared with a \u003ccode\u003e@Nullable\u003c/code\u003e return type \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51087\"\u003e#51087\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eNativeImageResourceProvider flattens Flyway migration paths in subdirectories \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50964\"\u003e#50964\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix ordering of Kotlinx Serialization CodecCustomizer \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50961\"\u003e#50961\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJarFile is not closed when finding main class from archive \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50959\"\u003e#50959\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eApplication-managed JUL bridge handler should only be removed if installed \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50950\"\u003e#50950\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCloudFoundry reactive auto-configuration should not require a WebClient.Builder bean to be defined \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50944\"\u003e#50944\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails on reactive Cloud Foundry when using Actuator without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50942\"\u003e#50942\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eResources are not cleaned up when resolving an image that is not yet present in the builder \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50941\"\u003e#50941\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eGraphQlWebMvcAutoConfiguration should apply customizers in order \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50914\"\u003e#50914\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAuto-configured RedisMessageListenerContainer does not use virtual threads when spring.threads.virtual.enabled is true \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50884\"\u003e#50884\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails when using Actuator on Jersey without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50872\"\u003e#50872\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails on Cloud Foundry when using Actuator without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50871\"\u003e#50871\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIllegalStateException when binding properties to a \u003ccode\u003e@Validated\u003c/code\u003e class that contains a map whose value type is a wildcard \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50856\"\u003e#50856\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHigh number of connections due to Mongo health indicator \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50852\"\u003e#50852\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eInconsistent handling of empty string values of spring.security.oauth2.resourceserver.jwt issuer-uri and jwk-set-uri \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50849\"\u003e#50849\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReturn type nullability of ApplicationContextAssert's getBean methods does not indicate that bean may be null \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50845\"\u003e#50845\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropertiesWebClientHttpServiceGroupConfigurer has highest precedence, preventing other configurers from being ordered ahead of it \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50843\"\u003e#50843\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eExposing gRPC test server port should backoff if gRPC is not present \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50825\"\u003e#50825\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJpaBaseConfiguration#entityManagerConfiguration can cause a dependency loop on beans declaring AsyncTaskExecutor \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50801\"\u003e#50801\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring.grpc.server.health.include-overall-health is not taken into account \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50799\"\u003e#50799\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSetting 'server.servlet.session.cookie.partitioned' to false still emits the 'Partitioned' cookie attribute \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50790\"\u003e#50790\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eManaged version of Prometheus Client is not aligned with Micrometer's micrometer-registry-prometheus \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50780\"\u003e#50780\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMap properties bound from empty strings fail with ConverterNotFoundException \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50773\"\u003e#50773\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eProtobuf Common Protos should not be a managed dependency \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50772\"\u003e#50772\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAn application that depends on spring-boot-security-oauth2-resource-server may fail to start with a ClassNotFoundException when Reactor is on the classpath but WebFlux is not \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50764\"\u003e#50764\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eW3CHeaderParser's decoding is not compliant with RFC 3986 \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50650\"\u003e#50650\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:notebook_with_decorative_cover: Documentation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDescription of spring.graphql.websocket.connection-init-timeout does not render correctly in the reference guide \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51348\"\u003e#51348\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring.profiles.group should have a 'spring-profile-name' hint provider \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51284\"\u003e#51284\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove reference to removed InfluxDB auto-configuration \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51176\"\u003e#51176\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse JacksonJsonSerde in Kafka Streams documentation \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51161\"\u003e#51161\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDocument alternatives to HttpMessageConverters \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51129\"\u003e#51129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix stale type reference for OTLP logging transport metadata \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51119\"\u003e#51119\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadata for spring.test.mockmvc.htmlunit.url declares the wrong type \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51115\"\u003e#51115\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/6fdf67ea1552691e932604d4bf67a5e08ff0b0ea\"\u003e\u003ccode\u003e6fdf67e\u003c/code\u003e\u003c/a\u003e Release 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/fde599b28b40932e4ea6194399d89245923a01e7\"\u003e\u003ccode\u003efde599b\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Pulsar 2.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/9daa58f7d98b82bf16febcb91943ce267c220a50\"\u003e\u003ccode\u003e9daa58f\u003c/code\u003e\u003c/a\u003e Upgrade to Spring HATEOAS 3.1.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/353993ebc1d7b1ceccbb981b0439a42ba122a816\"\u003e\u003ccode\u003e353993e\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Data Bom 2026.0.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/24ba596bc4fa000614834016452435c834fdeda2\"\u003e\u003ccode\u003e24ba596\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Session 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/5cb5c294d1f4780e78d010a964049e47c074e4d6\"\u003e\u003ccode\u003e5cb5c29\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Security 7.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/4adc8eb130c4e0c688ed85316f385f4e04d47679\"\u003e\u003ccode\u003e4adc8eb\u003c/code\u003e\u003c/a\u003e Upgrade to Spring LDAP 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/4d9c19cbc0589f57a7265052b507bf4b961082ac\"\u003e\u003ccode\u003e4d9c19c\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Kafka 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/f30f6120c4f6f8f873ac56cba478ae1f011c276c\"\u003e\u003ccode\u003ef30f612\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Integration 7.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/b930283d97e92eb24da1de3721cdd41625266dea\"\u003e\u003ccode\u003eb930283\u003c/code\u003e\u003c/a\u003e Upgrade to Spring gRPC 1.1.1\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/spring-projects/spring-boot/compare/v4.1.0...v4.1.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.springframework.ai:spring-ai-bom` from 2.0.0 to 2.0.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/spring-projects/spring-ai/releases\"\u003eorg.springframework.ai:spring-ai-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eSpring AI 2.0.1\u003c/h2\u003e\n\u003cp\u003eFor upgrading from 2.0.0 to 2.0.1, please refer to the upgrade notes \u003ca href=\"https://docs.spring.io/spring-ai/reference/upgrade-notes.html#upgrading-to-2-0-1\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003eFor the detailed reference documentation on 2.0.1, please refer \u003ca href=\"https://docs.spring.io/spring-ai/reference/index.html\"\u003ehere\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e:star: New Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eHarden Ollama integration tests against flakiness \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6776\"\u003e#6776\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRetire deprecated Mistral AI chat models \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6772\"\u003e#6772\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDocument additional 2.0.1 breaking changes \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6771\"\u003e#6771\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSupport audio streaming in OpenAiAudioSpeechModel \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6733\"\u003e#6733\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd configurable tool call limits \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6726\"\u003e#6726\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEnrich OpenAI transcription options and responses \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6697\"\u003e#6697\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate Couchbase vector store to use Spring Boot-managed client \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6583\"\u003e#6583\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove explicit \u003ccode\u003eprotobuf-java\u003c/code\u003e version properties \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6552\"\u003e#6552\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd ToolChoice support for Google GenAI chat model \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6531\"\u003e#6531\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove fastjson2 dependency from \u003ccode\u003espring-ai-azure-store\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6508\"\u003e#6508\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor \u003ccode\u003eMedia\u003c/code\u003e builder to use typed \u003ccode\u003edata\u003c/code\u003e overloads \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6481\"\u003e#6481\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eValidate \u003ccode\u003eTokenTextSplitter\u003c/code\u003e builder arguments \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6452\"\u003e#6452\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSupport page ranges in \u003ccode\u003ePagePdfDocumentReader\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6445\"\u003e#6445\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRevise DeepSeekApi \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6428\"\u003e#6428\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eGraalVM for mcp annotations doesn't work in Spring AI 2.0.0 \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6427\"\u003e#6427\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRename \u003ccode\u003espring-ai-autoconfigure-model-chat-memory-redis\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6416\"\u003e#6416\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRestore PDF media mapping in \u003ccode\u003eOpenAiChatModel\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6410\"\u003e#6410\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eGoogle Image generation support \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6408\"\u003e#6408\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove unused field \u003ccode\u003emaxResults\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6344\"\u003e#6344\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eConfusing WARN log while AWS region resolving \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/5108\"\u003e#5108\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSpringAI does not follow the AWS SDK's default region resolution rules \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/823\"\u003e#823\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:lady_beetle: Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReserve Redis chat memory timestamps atomically \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6784\"\u003e#6784\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix RedisChatMemoryRepository clear() \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6783\"\u003e#6783\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEscape metadata values in Redis chat memory queries \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6765\"\u003e#6765\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eValidate resolved resource path \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6764\"\u003e#6764\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIntroduce maxSessions and sessionIdleTimeout \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6760\"\u003e#6760\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eOpenAiAudioTranscriptionModel\u003c/code\u003e leaking the stream on cancellation \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6759\"\u003e#6759\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMerge java-compile compilerArgs instead of overriding \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6756\"\u003e#6756\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDefault OpenAI tool-calling strict mode to false \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6755\"\u003e#6755\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse temporary directory for cache \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6754\"\u003e#6754\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHandle malformed pdf in PdfDocumentReader \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6753\"\u003e#6753\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake tool resolution fallback configurable \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6751\"\u003e#6751\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse full length hash \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6746\"\u003e#6746\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCorrect \u003ccode\u003eToolContext\u003c/code\u003e parameter detection \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6744\"\u003e#6744\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReturn a single Generation on ToolCallLimitExceededException \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6742\"\u003e#6742\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix ToolCallingAdvisor streaming loop dropping doBeforeStream mutations \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6737\"\u003e#6737\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd instructions option to OpenAiAudioSpeechModel \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6731\"\u003e#6731\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eApply MCP HTTP client request customizer beans \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6716\"\u003e#6716\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eClose OpenAI stream response on cancellation \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6656\"\u003e#6656\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eValidate text length to prevent \u003ccode\u003eStringIndexOutOfBoundsException\u003c/code\u003e for \u003ccode\u003eMarkdownCodeBlockCleaner\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6645\"\u003e#6645\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/c9107fdac0a6c88489c08bb88abcee74c146981d\"\u003e\u003ccode\u003ec9107fd\u003c/code\u003e\u003c/a\u003e Release 2.0.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/92a211954343cc46355abb723cd9f40cf581c1de\"\u003e\u003ccode\u003e92a2119\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Boot 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/0e7b5f62c3882202e76e7653990e57f56080bad7\"\u003e\u003ccode\u003e0e7b5f6\u003c/code\u003e\u003c/a\u003e Escape metadata values in Redis chat memory queries\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/2d2b45503618c17df52aac339d4511fb717e7af7\"\u003e\u003ccode\u003e2d2b455\u003c/code\u003e\u003c/a\u003e Validate resolved resource path stays within the cache directory\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/023867c80be379f53296fbb0002ac522d0d44449\"\u003e\u003ccode\u003e023867c\u003c/code\u003e\u003c/a\u003e Introduce maxSessions and sessionIdleTimeout\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/8a1fd8ed79011f63c1d9c02fec52778416a3d2d2\"\u003e\u003ccode\u003e8a1fd8e\u003c/code\u003e\u003c/a\u003e Handle malformed pdf in PdfDocumentReader\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/369a92670e7de1074a6f35b7a68071a789697932\"\u003e\u003ccode\u003e369a926\u003c/code\u003e\u003c/a\u003e Use a new temporary directory for cache\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/096f140bfee26e3fe7867f14f96d95a86fcb2b34\"\u003e\u003ccode\u003e096f140\u003c/code\u003e\u003c/a\u003e Make tool resolution fallback configurable\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/d89e4a4b4afc22ea8183ad1912fe0e98833f4a4b\"\u003e\u003ccode\u003ed89e4a4\u003c/code\u003e\u003c/a\u003e Use full length SHA256 hash for contextHash\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/3fc390f38a26f725e215c6ea3535b4082fbd6d65\"\u003e\u003ccode\u003e3fc390f\u003c/code\u003e\u003c/a\u003e Prepare 2.0.x-internal branch\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/spring-projects/spring-ai/compare/v2.0.0...v2.0.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.commons:commons-collections4` from 4.5.0 to 4.6.0\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.springdoc:springdoc-openapi-starter-webmvc-ui` from 3.0.3 to 3.1.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/springdoc/springdoc-openapi/releases\"\u003eorg.springdoc:springdoc-openapi-starter-webmvc-ui's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003espringdoc-openapi v3,1,0 released!\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix request-specific Swagger UI index transformations by \u003ca href=\"https://github.com/limehee\"\u003e\u003ccode\u003e@​limehee\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/pull/3279\"\u003espringdoc/springdoc-openapi#3279\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix \u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3282\"\u003e#3282\u003c/a\u003e: preserve nest() version predicate across all routes in nest by \u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/pull/3296\"\u003espringdoc/springdoc-openapi#3296\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade Spring Boot to version \u003cstrong\u003e4.1.0\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade Spring AI to version \u003cstrong\u003e2.0.0\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade swagger-core to version \u003cstrong\u003e2.2.52\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade swagger-ui to version \u003cstrong\u003e5.32.11\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3307\"\u003e#3307\u003c/a\u003e – Act upon SonarQube warnings\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3306\"\u003e#3306\u003c/a\u003e – Act upon SonarQube warnings\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eAdded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3269\"\u003e#3269\u003c/a\u003e – Add mechanism to disable \u003ccode\u003enullable\u003c/code\u003e for Kotlin properties\u003c/li\u003e\n\u003cli\u003eAllow request-specific Swagger UI index transformation\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3304\"\u003e#3304\u003c/a\u003e – Kotlin parent class's field is not properly marked as nullable\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3294\"\u003e#3294\u003c/a\u003e – Duplicated path getting \u003ccode\u003eswagger-config\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3293\"\u003e#3293\u003c/a\u003e – Inconsistent OpenAPI schema naming with \u003ccode\u003eSNAKE_CASE\u003c/code\u003e: some Java record fields remain camelCase\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3292\"\u003e#3292\u003c/a\u003e – Make \u003ccode\u003eWebProperties\u003c/code\u003e and \u003ccode\u003eWebMvcProperties\u003c/code\u003e optional in \u003ccode\u003eSwaggerConfig\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3284\"\u003e#3284\u003c/a\u003e – Upgrade swagger-core from version 2.2.48 to 2.2.49\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3282\"\u003e#3282\u003c/a\u003e – Preserve version from \u003ccode\u003enest()\u003c/code\u003e predicate across all routes in \u003ccode\u003enest\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3281\"\u003e#3281\u003c/a\u003e – Stabilize Spring Data \u003ccode\u003ePage\u003c/code\u003e schema property order\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3274\"\u003e#3274\u003c/a\u003e – Description disappears from the generated json after upgrade to 3.0.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3270\"\u003e#3270\u003c/a\u003e – Validation annotation of \u003ccode\u003eParameterObject\u003c/code\u003e property applied to \u003ccode\u003ePathVariable\u003c/code\u003e with the same name, even in unrelated endpoints\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3266\"\u003e#3266\u003c/a\u003e – Upgrade swagger-core from version 2.2.47 to 2.2.48\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3263\"\u003e#3263\u003c/a\u003e – Null key for a \u003ccode\u003eMap\u003c/code\u003e not allowed in JSON\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/springdoc/springdoc-openapi/compare/v3.0.3...v3.1.0\"\u003ehttps://github.com/springdoc/springdoc-openapi/compare/v3.0.3...v3.1.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/springdoc/springdoc-openapi/blob/main/CHANGELOG.md\"\u003eorg.springdoc:springdoc-openapi-starter-webmvc-ui's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[3.1.0] - 2026-07-31\u003c/h2\u003e\n\u003ch3\u003eAdded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3269\"\u003e#3269\u003c/a\u003e – Add mechanism to disable \u003ccode\u003enullable\u003c/code\u003e for Kotlin properties\u003c/li\u003e\n\u003cli\u003eAllow request-specific Swagger UI index transformation\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade Spring Boot to version \u003cstrong\u003e4.1.0\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade Spring AI to version \u003cstrong\u003e2.0.0\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade swagger-core to version \u003cstrong\u003e2.2.52\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade swagger-ui to version \u003cstrong\u003e5.32.11\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3307\"\u003e#3307\u003c/a\u003e – Act upon SonarQube warnings\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3306\"\u003e#3306\u003c/a\u003e – Act upon SonarQube warnings\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3304\"\u003e#3304\u003c/a\u003e – Kotlin parent class's field is not properly marked as nullable\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3294\"\u003e#3294\u003c/a\u003e – Duplicated path getting \u003ccode\u003eswagger-config\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3293\"\u003e#3293\u003c/a\u003e – Inconsistent OpenAPI schema naming with \u003ccode\u003eSNAKE_CASE\u003c/code\u003e: some Java record fields remain camelCase\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3292\"\u003e#3292\u003c/a\u003e – Make \u003ccode\u003eWebProperties\u003c/code\u003e and \u003ccode\u003eWebMvcProperties\u003c/code\u003e optional in \u003ccode\u003eSwaggerConfig\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3284\"\u003e#3284\u003c/a\u003e – Upgrade swagger-core from version 2.2.48 to 2.2.49\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3282\"\u003e#3282\u003c/a\u003e – Preserve version from \u003ccode\u003enest()\u003c/code\u003e predicate across all routes in \u003ccode\u003enest\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3281\"\u003e#3281\u003c/a\u003e – Stabilize Spring Data \u003ccode\u003ePage\u003c/code\u003e schema property order\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3274\"\u003e#3274\u003c/a\u003e – Description disappears from the generated json after upgrade to 3.0.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3270\"\u003e#3270\u003c/a\u003e – Validation annotation of \u003ccode\u003eParameterObject\u003c/code\u003e property applied to \u003ccode\u003ePathVariable\u003c/code\u003e with the same name, even in unrelated endpoints\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3266\"\u003e#3266\u003c/a\u003e – Upgrade swagger-core from version 2.2.47 to 2.2.48\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3263\"\u003e#3263\u003c/a\u003e – Null key for a \u003ccode\u003eMap\u003c/code\u003e not allowed in JSON\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/e04f91f10267bc7f31e9031886dd3a46bb77c938\"\u003e\u003ccode\u003ee04f91f\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release v3.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/83551ce77894346de853f5755879ff8acb698e49\"\u003e\u003ccode\u003e83551ce\u003c/code\u003e\u003c/a\u003e CHANGELOG.md update\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/4a2b5bd5c53afd98cc29f0e72bfdbf048e02ff17\"\u003e\u003ccode\u003e4a2b5bd\u003c/code\u003e\u003c/a\u003e CHANGELOG.md update\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/ad0a5a51caa709ec5bbaf549c404863eda619d90\"\u003e\u003ccode\u003ead0a5a5\u003c/code\u003e\u003c/a\u003e swagger-ui upgrade to version 5.32.11\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/6e14cb4a0ead3306ded7dfd9a64d51132bb6761f\"\u003e\u003ccode\u003e6e14cb4\u003c/code\u003e\u003c/a\u003e Fix sonarqube errors\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/eae20564510fc1640e5098774dc96d6b976b3e46\"\u003e\u003ccode\u003eeae2056\u003c/code\u003e\u003c/a\u003e Fix sonarqube errors\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/b09a77bb6e4357498eec1743021a22c865374f1c\"\u003e\u003ccode\u003eb09a77b\u003c/code\u003e\u003c/a\u003e chore: act upon SonarQube warnings\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/cc3d86d6f83f64e1fd76b14ec6de5c84d32227cc\"\u003e\u003ccode\u003ecc3d86d\u003c/code\u003e\u003c/a\u003e upgrade spring-ai to version 2.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/df1c2ba12f9ef979c0afd1fd05f35d0901937bc5\"\u003e\u003ccode\u003edf1c2ba\u003c/code\u003e\u003c/a\u003e spring-boot upgrade to 4.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/b6e5212d8b7afea30f6fa9b95561633411d2148d\"\u003e\u003ccode\u003eb6e5212\u003c/code\u003e\u003c/a\u003e Kotlin parent class's field is not properly marked as nullable. Fixes \u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3304\"\u003e#3304\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/springdoc/springdoc-openapi/compare/v3.0.3...v3.1.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.cucumber:cucumber-java` from 7.34.6 to 7.34.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/releases\"\u003eio.cucumber:cucumber-java's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.34.7\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/blob/main/CHANGELOG.md\"\u003eio.cucumber:cucumber-java's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[7.34.7] - 2026-08-17\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/e95c9192d144916ab9d6454f79c6b6c757cb9d28\"\u003e\u003ccode\u003ee95c919\u003c/code\u003e\u003c/a\u003e Prepare release v7.34.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/ea9a4c59b45ffb0f8734405d90321268ae689f4e\"\u003e\u003ccode\u003eea9a4c5\u003c/code\u003e\u003c/a\u003e Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/97534f24a87fbbd85e988131a3d8637790258dde\"\u003e\u003ccode\u003e97534f2\u003c/code\u003e\u003c/a\u003e Prepare for the next development iteration\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/cucumber/cucumber-jvm/compare/v7.34.6...v7.34.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.cucumber:cucumber-spring` from 7.34.6 to 7.34.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/releases\"\u003eio.cucumber:cucumber-spring's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.34.7\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/blob/main/CHANGELOG.md\"\u003eio.cucumber:cucumber-spring's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[7.34.7] - 2026-08-17\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/e95c9192d144916ab9d6454f79c6b6c757cb9d28\"\u003e\u003ccode\u003ee95c919\u003c/code\u003e\u003c/a\u003e Prepare release v7.34.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/ea9a4c59b45ffb0f8734405d90321268ae689f4e\"\u003e\u003ccode\u003eea9a4c5\u003c/code\u003e\u003c/a\u003e Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/97534f24a87fbbd85e988131a3d8637790258dde\"\u003e\u003ccode\u003e97534f2\u003c/code\u003e\u003c/a\u003e Prepare for the next development iteration\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/cucumber/cucumber-jvm/compare/v7.34.6...v7.34.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.cucumber:cucumber-junit-platform-engine` from 7.34.6 to 7.34.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/releases\"\u003eio.cucumber:cucumber-junit-platform-engine's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.34.7\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/blob/main/CHANGELOG.md\"\u003eio.cucumber:cucumber-junit-platform-engine's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[7.34.7] - 2026-08-17\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/e95c9192d144916ab9d6454f79c6b6c757cb9d28\"\u003e\u003ccode\u003ee95c919\u003c/code\u003e\u003c/a\u003e Prepare release v7.34.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/ea9a4c59b45ffb0f8734405d90321268ae689f4e\"\u003e\u003ccode\u003eea9a4c5\u003c/code\u003e\u003c/a\u003e Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/97534f24a87fbbd85e988131a3d8637790258dde\"\u003e\u003ccode\u003e97534f2\u003c/code\u003e\u003c/a\u003e Prepare for the next development iteration\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/cucumber/cucumber-jvm/compare/v7.34.6...v7.34.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.cucumber:cucumber-spring` from 7.34.6 to 7.34.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/releases\"\u003eio.cucumber:cucumber-spring's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.34.7\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/blob/main/CHANGELOG.md\"\u003eio.cucumber:cucumber-spring's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[7.34.7] - 2026-08-17\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/e95c9192d144916ab9d6454f79c6b6c757cb9d28\"\u003e\u003ccode\u003ee95c919\u003c/code\u003e\u003c/a\u003e Prepare release v7.34.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/ea9a4c59b45ffb0f8734405d90321268ae689f4e\"\u003e\u003ccode\u003eea9a4c5\u003c/code\u003e\u003c/a\u003e Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/97534f24a87fbbd85e988131a3d8637790258dde\"\u003e\u003ccode\u003e97534f2\u003c/code\u003e\u003c/a\u003e Prepare for the next development iteration\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/cucumber/cucumber-jvm/compare/v7.34.6...v7.34.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.cucumber:cucumber-junit-platform-engine` from 7.34.6 to 7.34.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/releases\"\u003eio.cucumber:cucumber-junit-platform-engine's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.34.7\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/blob/main/CHANGELOG.md\"\u003eio.cucumber:cucumber-junit-platform-engine's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[7.34.7] - 2026-08-17\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/e95c9192d144916ab9d6454f79c6b6c757cb9d28\"\u003e\u003ccode\u003ee95c919\u003c/code\u003e\u003c/a\u003e Prepare release v7.34.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/ea9a4c59b45ffb0f8734405d90321268ae689f4e\"\u003e\u003ccode\u003eea9a4c5\u003c/code\u003e\u003c/a\u003e Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/97534f24a87fbbd85e988131a3d8637790258dde\"\u003e\u003ccode\u003e97534f2\u003c/code\u003e\u003c/a\u003e Prepare for the next development iteration\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/cucumber/cucumber-jvm/compare/v7.34.6...v7.34.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.springframework.boot:spring-boot-maven-plugin` from 4.1.0 to 4.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/spring-projects/spring-boot/releases\"\u003eorg.springframework.boot:spring-boot-maven-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.1.1\u003c/h2\u003e\n\u003ch2\u003e:warning: Attention Required\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSpring Boot's Gradle plugin no longer automatically configures gRPC when the Protobuf plugin is applied. This behavior caused problems for those using Protobuf without gRPC. To opt in to the configuration of gRPC, configure the \u003ccode\u003eprotobuf\u003c/code\u003e extension with the \u003ccode\u003egrpc\u003c/code\u003e plugin using an empty block. The Spring Boot Gradle plugin will then automatically configure the use of \u003ccode\u003eprotoc-gen-grpc-java\u003c/code\u003e as before. \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50822\"\u003e#50822\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:lady_beetle: Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eKafka consumer-specific security protocol is not taken into account \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51369\"\u003e#51369\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eStructured logging: a failed JSON encode corrupts the next log event written on the same thread \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51156\"\u003e#51156\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMicrometer registries pin the application context \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51135\"\u003e#51135\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eTemporary file is not deleted when ExportedImageTar construction fails \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51132\"\u003e#51132\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadata annotation processor...\n\n_Description has been truncated_","html_url":"https://github.com/lewandowski-anthony/JiRadar/pull/125","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/lewandowski-anthony%2FJiRadar/issues/125","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/125/packages"},{"uuid":"5339403577","node_id":"PR_kwDOSW6pMc8AAAABCFw1gA","number":61,"state":"closed","title":"chore(deps): bump com.google.guava:guava from 32.0.1-jre to 33.7.1-jre in /app/server","user":"dependabot[bot]","labels":["Stale"],"assignees":[],"locked":false,"comments_count":4,"pull_request":true,"closed_at":"2026-09-17T19:47:40.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-03T17:14:17.000Z","updated_at":"2026-09-17T19:47:50.000Z","time_to_close":1218803,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"com.google.guava:guava","old_version":"32.0.1-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"}],"path":"/app/server","ecosystem":"maven"},"body":"Bumps [com.google.guava:guava](https://github.com/google/guava) from 32.0.1-jre to 33.7.1-jre.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.google.guava:guava\u0026package-manager=maven\u0026previous-version=32.0.1-jre\u0026new-version=33.7.1-jre)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/MarcusViniciusBispoDosSantos/AppSmith/pull/61","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/MarcusViniciusBispoDosSantos%2FAppSmith/issues/61","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/61/packages"},{"uuid":"5335043307","node_id":"PR_kwDOAKJSSM8AAAABCCOP_g","number":4285,"state":"closed","title":"Bump com.google.guava:guava from 25.1-jre to 32.0.0-jre in /log4j-cassandra","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":3,"pull_request":true,"closed_at":"2026-09-07T04:59:01.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-03T09:51:52.000Z","updated_at":"2026-09-07T04:59:03.000Z","time_to_close":328029,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"com.google.guava:guava","old_version":"25.1-jre","new_version":"32.0.0-jre","repository_url":"https://github.com/google/guava"}],"path":"/log4j-cassandra","ecosystem":"maven"},"body":"Bumps [com.google.guava:guava](https://github.com/google/guava) from 25.1-jre to 32.0.0-jre.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e32.0.0\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;32.0.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;32.0.0-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/32.0.0-jre/guava-32.0.0-jre.jar\"\u003e32.0.0-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/32.0.0-android/guava-32.0.0-android.jar\"\u003e32.0.0-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.1/failureaccess-1.0.1.jar\"\u003efailureaccess-1.0.1.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"http://guava.dev/releases/32.0.0-jre/api/docs/\"\u003e32.0.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"http://guava.dev/releases/32.0.0-android/api/docs/\"\u003e32.0.0-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"http://guava.dev/releases/32.0.0-jre/api/diffs/\"\u003e32.0.0-jre vs. 31.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"http://guava.dev/releases/32.0.0-android/api/diffs/\"\u003e32.0.0-android vs. 31.1-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"http://guava.dev/releases/32.0.0-android/api/androiddiffs/\"\u003e32.0.0-android vs. 32.0.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003ch4\u003eSecurity fixes\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eReimplemented \u003ccode\u003eFiles.createTempDir\u003c/code\u003e and \u003ccode\u003eFileBackedOutputStream\u003c/code\u003e to further address CVE-2020-8908 (\u003ca href=\"https://redirect.github.com/google/guava/issues/4011\"\u003e#4011\u003c/a\u003e) and CVE-2023-2976 (\u003ca href=\"https://redirect.github.com/google/guava/issues/2575\"\u003e#2575\u003c/a\u003e). (feb83a1c8f)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eWhile CVE-2020-8908 was officially closed when we deprecated \u003ccode\u003eFiles.createTempDir\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v30.0\"\u003eGuava 30.0\u003c/a\u003e, we've heard from users that even recent versions of Guava have been listed as vulnerable in \u003cem\u003eother\u003c/em\u003e databases of security vulnerabilities. In response, we've reimplemented the method (and the very rarely used \u003ccode\u003eFileBackedOutputStream\u003c/code\u003e class, which had a similar issue) to eliminate the insecure behavior entirely. This change could technically affect users in a number of different ways (discussed under \u0026quot;Incompatible changes\u0026quot; below), but in practice, the only problem users are likely to encounter is with Windows. If you are using those APIs under Windows, you should skip 32.0.0 and go straight to \u003ca href=\"https://github.com/google/guava/releases/tag/v32.0.1\"\u003e32.0.1\u003c/a\u003e which fixes the problem. (Unfortunately, we didn't think of the Windows problem until after the release. And while we \u003ca href=\"https://github.com/google/guava#important-warnings\"\u003ewarn that \u003ccode\u003ecommon.io\u003c/code\u003e in particular may not work under Windows\u003c/a\u003e, we didn't intend to regress support.) Sorry for the trouble.\u003c/p\u003e\n\u003ch4\u003eIncompatible changes\u003c/h4\u003e\n\u003cp\u003eAlthough this release bumps Guava's major version number, it makes \u003cstrong\u003eno binary-incompatible changes to the \u003ccode\u003eguava\u003c/code\u003e artifact\u003c/strong\u003e.\u003c/p\u003e\n\u003cp\u003eOne change could cause issues for Widows users, and a few other changes could cause issues for users in more usual situations:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eThe new implementations of \u003ccode\u003eFiles.createTempDir\u003c/code\u003e and \u003ccode\u003eFileBackedOutputStream\u003c/code\u003e \u003ca href=\"https://redirect.github.com/google/guava/issues/6535\"\u003ethrow an exception under Windows\u003c/a\u003e.\u003c/strong\u003e This is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v32.0.1\"\u003e32.0.1\u003c/a\u003e. Sorry for the trouble.\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eguava-gwt\u003c/code\u003e now \u003ca href=\"https://redirect.github.com/google/guava/issues/6627\"\u003erequires\u003c/a\u003e GWT \u003ca href=\"https://github.com/gwtproject/gwt/releases/tag/2.10.0\"\u003e2.10.0\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eThis release makes a binary-incompatible change to a \u003ccode\u003e@Beta\u003c/code\u003e API in the \u003cstrong\u003eseparate artifact\u003c/strong\u003e \u003ccode\u003eguava-testlib\u003c/code\u003e. Specifically, we changed the return type of \u003ccode\u003eTestingExecutors.sameThreadScheduledExecutor\u003c/code\u003e to \u003ccode\u003eListeningScheduledExecutorService\u003c/code\u003e. The old return type was a package-private class, which caused the Kotlin compiler to produce warnings. (dafaa3e435)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.google.guava:guava\u0026package-manager=maven\u0026previous-version=25.1-jre\u0026new-version=32.0.0-jre)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/apache/logging-log4j2/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/apache/logging-log4j2/pull/4285","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/apache%2Flogging-log4j2/issues/4285","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/4285/packages"},{"uuid":"5332633668","node_id":"PR_kwDOPmMU8s8AAAABCASdSA","number":368,"state":"closed","title":"chore(deps): bump the maven-dependencies group across 1 directory with 14 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-04T05:23:25.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-03T05:23:51.000Z","updated_at":"2026-09-04T05:23:27.000Z","time_to_close":86374,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"maven-dependencies","update_count":14,"packages":[{"name":"com.google.cloud:google-cloud-storage-bom","old_version":"2.69.0","new_version":"2.72.0","repository_url":"https://github.com/googleapis/google-cloud-java"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"io.opentelemetry:opentelemetry-api","old_version":"1.63.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"io.opentelemetry:opentelemetry-sdk","old_version":"1.63.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"io.opentelemetry:opentelemetry-exporter-logging","old_version":"1.63.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"io.opentelemetry:opentelemetry-sdk-extension-autoconfigure-spi","old_version":"1.63.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"com.google.cloud.opentelemetry:exporter-metrics","old_version":"0.36.0","new_version":"0.37.0","repository_url":"https://github.com/GoogleCloudPlatform/opentelemetry-operations-java"},{"name":"io.opentelemetry.contrib:opentelemetry-gcp-resources","old_version":"1.54.0-alpha","new_version":"1.60.0-alpha","repository_url":"https://github.com/open-telemetry/opentelemetry-java-contrib"},{"name":"com.google.cloud:libraries-bom","old_version":"26.84.0","new_version":"26.87.0","repository_url":"https://github.com/googleapis/google-cloud-java"},{"name":"org.apache.parquet:parquet-avro","old_version":"1.17.1","new_version":"1.18.0","repository_url":"https://github.com/apache/parquet-java"},{"name":"org.apache.parquet:parquet-column","old_version":"1.17.1","new_version":"1.18.0","repository_url":"https://github.com/apache/parquet-java"},{"name":"org.apache.parquet:parquet-hadoop","old_version":"1.17.1","new_version":"1.18.0","repository_url":"https://github.com/apache/parquet-java"},{"name":"org.apache.avro:avro","old_version":"1.12.1","new_version":"1.12.2"},{"name":"org.apache.maven.plugins:maven-compiler-plugin","old_version":"3.15.0","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-compiler-plugin"}],"path":null,"ecosystem":"maven"},"body":"Bumps the maven-dependencies group with 14 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [com.google.cloud:google-cloud-storage-bom](https://github.com/googleapis/google-cloud-java) | `2.69.0` | `2.72.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [io.opentelemetry:opentelemetry-api](https://github.com/open-telemetry/opentelemetry-java) | `1.63.0` | `1.65.0` |\n| [io.opentelemetry:opentelemetry-sdk](https://github.com/open-telemetry/opentelemetry-java) | `1.63.0` | `1.65.0` |\n| [io.opentelemetry:opentelemetry-exporter-logging](https://github.com/open-telemetry/opentelemetry-java) | `1.63.0` | `1.65.0` |\n| [io.opentelemetry:opentelemetry-sdk-extension-autoconfigure-spi](https://github.com/open-telemetry/opentelemetry-java) | `1.63.0` | `1.65.0` |\n| [com.google.cloud.opentelemetry:exporter-metrics](https://github.com/GoogleCloudPlatform/opentelemetry-operations-java) | `0.36.0` | `0.37.0` |\n| [io.opentelemetry.contrib:opentelemetry-gcp-resources](https://github.com/open-telemetry/opentelemetry-java-contrib) | `1.54.0-alpha` | `1.60.0-alpha` |\n| [com.google.cloud:libraries-bom](https://github.com/googleapis/google-cloud-java) | `26.84.0` | `26.87.0` |\n| [org.apache.parquet:parquet-avro](https://github.com/apache/parquet-java) | `1.17.1` | `1.18.0` |\n| [org.apache.parquet:parquet-column](https://github.com/apache/parquet-java) | `1.17.1` | `1.18.0` |\n| [org.apache.parquet:parquet-hadoop](https://github.com/apache/parquet-java) | `1.17.1` | `1.18.0` |\n| org.apache.avro:avro | `1.12.1` | `1.12.2` |\n| [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin) | `3.15.0` | `3.16.0` |\n\n\nUpdates `com.google.cloud:google-cloud-storage-bom` from 2.69.0 to 2.72.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/googleapis/google-cloud-java/blob/main/java-document-ai/CHANGELOG.md\"\u003ecom.google.cloud:google-cloud-storage-bom's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.72.0 (2025-07-11)\u003c/h2\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eupdate dependency com.google.cloud:sdk-platform-java-config to v3.50.1 (\u003ca href=\"https://redirect.github.com/googleapis/google-cloud-java/issues/11655\"\u003e#11655\u003c/a\u003e) (\u003ca href=\"https://github.com/googleapis/google-cloud-java/commit/9b34528f85043049e3349fffc30bb2dbfe01836c\"\u003e9b34528\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.71.0 (2025-06-25)\u003c/h2\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eupdate dependency com.google.cloud:sdk-platform-java-config to v3.50.0 (\u003ca href=\"https://redirect.github.com/googleapis/google-cloud-java/issues/11624\"\u003e#11624\u003c/a\u003e) (\u003ca href=\"https://github.com/googleapis/google-cloud-java/commit/a19f457d10f15437ac26ce379048ff8b3cc6be5d\"\u003ea19f457\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/googleapis/google-cloud-java/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.opentelemetry:opentelemetry-api` from 1.63.0 to 1.65.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/releases\"\u003eio.opentelemetry:opentelemetry-api's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was deprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector exporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e, \u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e, \u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed tokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based on string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default \u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements it to stop its polling executor (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRecord \u003ccode\u003eerror.type\u003c/code\u003e on failed collections in \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8650\"\u003e#8650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTesting: Fix \u003ccode\u003eLongExemplarAssert.hasFilteredAttributesSatisfyingExactly\u003c/code\u003e to enforce exact attribute matching (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8518\"\u003e#8518\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eLogs\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eReadWriteLogRecord\u003c/code\u003e default \u003ccode\u003egetObservedTimestampEpochNanos\u003c/code\u003e returning the record timestamp (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8504\"\u003e#8504\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eProfiles\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix profiles data model attribute count parameter name and timestamp doc unit (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8514\"\u003e#8514\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExporters\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eWARNING\u003c/strong\u003e Zipkin: Delete \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e; the artifact is no longer published (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8677\"\u003e#8677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Use HTTP error response bodies in \u003ccode\u003eHttpExporter\u003c/code\u003e warning logs (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8428\"\u003e#8428\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e mTLS when using the platform default trust store (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8565\"\u003e#8565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix sign extension on \u003ccode\u003eLogRecord\u003c/code\u003e flags in the low-allocation log marshaler (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8493\"\u003e#8493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Standardize \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e, \u003ccode\u003eJdkHttpSender\u003c/code\u003e, and \u003ccode\u003eUpstreamGrpcSender\u003c/code\u003e shutdown to await executor/channel termination (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8495\"\u003e#8495\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8627\"\u003e#8627\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8624\"\u003e#8624\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Log the underlying except/ion when a gRPC response frame is invalid (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8626\"\u003e#8626\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/blob/main/CHANGELOG.md\"\u003eio.opentelemetry:opentelemetry-api's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0 (2026-08-07)\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was\ndeprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector\nexporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed\ntokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based\non string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default\n\u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements\nit to stop its polling executor\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/7bc11edca518d4de168230c84a71484a66cbac40\"\u003e\u003ccode\u003e7bc11ed\u003c/code\u003e\u003c/a\u003e [release/v1.65.x] Prepare release 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8705\"\u003e#8705\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/60d7ecfe270354f8a329a0ecad42fca2650cc36e\"\u003e\u003ccode\u003e60d7ecf\u003c/code\u003e\u003c/a\u003e Prepare 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8700\"\u003e#8700\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/6d41aa40ed39eed5fb000e7595e1b1dd279fed91\"\u003e\u003ccode\u003e6d41aa4\u003c/code\u003e\u003c/a\u003e Bound jaeger-baggage parsing work by tokens rather than accepted entries (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/db1d6bee36537b4f356a6b7d616e587217938177\"\u003e\u003ccode\u003edb1d6be\u003c/code\u003e\u003c/a\u003e Enforce last-value-wins semantics in AttributesMap without performance regres...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/995cb3c4328f76a21f12e79b2667c684845899ca\"\u003e\u003ccode\u003e995cb3c\u003c/code\u003e\u003c/a\u003e Avoid unsafe string encoder on Android (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8637\"\u003e#8637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/48b0185d06a8d34d713d4fc24d6c70502b6f1531\"\u003e\u003ccode\u003e48b0185\u003c/code\u003e\u003c/a\u003e Do not overwrite existing baggage with empty baggage in JaegerPropagator (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/2009d5840f24251e65aac98c0f2da2f304e0bf7b\"\u003e\u003ccode\u003e2009d58\u003c/code\u003e\u003c/a\u003e Avoid exposing configuration values in errors (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8669\"\u003e#8669\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3cafbbb6206afc6cebb984d9b81e2339a506f148\"\u003e\u003ccode\u003e3cafbbb\u003c/code\u003e\u003c/a\u003e Deprecate OpenCensus shim public API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8674\"\u003e#8674\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/0e033e2ca8128ca470abd33f3ef1f2f684bcf610\"\u003e\u003ccode\u003e0e033e2\u003c/code\u003e\u003c/a\u003e Remove stray token from addLogRecordProcessorCustomizer Javadoc (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8641\"\u003e#8641\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3d1cce87bd4a78432cca4214a96586046a6e4590\"\u003e\u003ccode\u003e3d1cce8\u003c/code\u003e\u003c/a\u003e Fix ObfuscatedLoggerProvider Javadoc copy-paste example (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8639\"\u003e#8639\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/compare/v1.63.0...v1.65.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.opentelemetry:opentelemetry-sdk` from 1.63.0 to 1.65.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/releases\"\u003eio.opentelemetry:opentelemetry-sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was deprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector exporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e, \u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e, \u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed tokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based on string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default \u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements it to stop its polling executor (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRecord \u003ccode\u003eerror.type\u003c/code\u003e on failed collections in \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8650\"\u003e#8650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTesting: Fix \u003ccode\u003eLongExemplarAssert.hasFilteredAttributesSatisfyingExactly\u003c/code\u003e to enforce exact attribute matching (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8518\"\u003e#8518\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eLogs\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eReadWriteLogRecord\u003c/code\u003e default \u003ccode\u003egetObservedTimestampEpochNanos\u003c/code\u003e returning the record timestamp (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8504\"\u003e#8504\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eProfiles\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix profiles data model attribute count parameter name and timestamp doc unit (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8514\"\u003e#8514\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExporters\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eWARNING\u003c/strong\u003e Zipkin: Delete \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e; the artifact is no longer published (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8677\"\u003e#8677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Use HTTP error response bodies in \u003ccode\u003eHttpExporter\u003c/code\u003e warning logs (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8428\"\u003e#8428\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e mTLS when using the platform default trust store (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8565\"\u003e#8565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix sign extension on \u003ccode\u003eLogRecord\u003c/code\u003e flags in the low-allocation log marshaler (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8493\"\u003e#8493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Standardize \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e, \u003ccode\u003eJdkHttpSender\u003c/code\u003e, and \u003ccode\u003eUpstreamGrpcSender\u003c/code\u003e shutdown to await executor/channel termination (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8495\"\u003e#8495\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8627\"\u003e#8627\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8624\"\u003e#8624\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Log the underlying except/ion when a gRPC response frame is invalid (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8626\"\u003e#8626\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/blob/main/CHANGELOG.md\"\u003eio.opentelemetry:opentelemetry-sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0 (2026-08-07)\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was\ndeprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector\nexporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed\ntokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based\non string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default\n\u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements\nit to stop its polling executor\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/7bc11edca518d4de168230c84a71484a66cbac40\"\u003e\u003ccode\u003e7bc11ed\u003c/code\u003e\u003c/a\u003e [release/v1.65.x] Prepare release 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8705\"\u003e#8705\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/60d7ecfe270354f8a329a0ecad42fca2650cc36e\"\u003e\u003ccode\u003e60d7ecf\u003c/code\u003e\u003c/a\u003e Prepare 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8700\"\u003e#8700\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/6d41aa40ed39eed5fb000e7595e1b1dd279fed91\"\u003e\u003ccode\u003e6d41aa4\u003c/code\u003e\u003c/a\u003e Bound jaeger-baggage parsing work by tokens rather than accepted entries (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/db1d6bee36537b4f356a6b7d616e587217938177\"\u003e\u003ccode\u003edb1d6be\u003c/code\u003e\u003c/a\u003e Enforce last-value-wins semantics in AttributesMap without performance regres...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/995cb3c4328f76a21f12e79b2667c684845899ca\"\u003e\u003ccode\u003e995cb3c\u003c/code\u003e\u003c/a\u003e Avoid unsafe string encoder on Android (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8637\"\u003e#8637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/48b0185d06a8d34d713d4fc24d6c70502b6f1531\"\u003e\u003ccode\u003e48b0185\u003c/code\u003e\u003c/a\u003e Do not overwrite existing baggage with empty baggage in JaegerPropagator (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/2009d5840f24251e65aac98c0f2da2f304e0bf7b\"\u003e\u003ccode\u003e2009d58\u003c/code\u003e\u003c/a\u003e Avoid exposing configuration values in errors (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8669\"\u003e#8669\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3cafbbb6206afc6cebb984d9b81e2339a506f148\"\u003e\u003ccode\u003e3cafbbb\u003c/code\u003e\u003c/a\u003e Deprecate OpenCensus shim public API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8674\"\u003e#8674\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/0e033e2ca8128ca470abd33f3ef1f2f684bcf610\"\u003e\u003ccode\u003e0e033e2\u003c/code\u003e\u003c/a\u003e Remove stray token from addLogRecordProcessorCustomizer Javadoc (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8641\"\u003e#8641\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3d1cce87bd4a78432cca4214a96586046a6e4590\"\u003e\u003ccode\u003e3d1cce8\u003c/code\u003e\u003c/a\u003e Fix ObfuscatedLoggerProvider Javadoc copy-paste example (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8639\"\u003e#8639\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/compare/v1.63.0...v1.65.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.opentelemetry:opentelemetry-exporter-logging` from 1.63.0 to 1.65.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/releases\"\u003eio.opentelemetry:opentelemetry-exporter-logging's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was deprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector exporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e, \u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e, \u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed tokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based on string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default \u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements it to stop its polling executor (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRecord \u003ccode\u003eerror.type\u003c/code\u003e on failed collections in \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8650\"\u003e#8650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTesting: Fix \u003ccode\u003eLongExemplarAssert.hasFilteredAttributesSatisfyingExactly\u003c/code\u003e to enforce exact attribute matching (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8518\"\u003e#8518\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eLogs\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eReadWriteLogRecord\u003c/code\u003e default \u003ccode\u003egetObservedTimestampEpochNanos\u003c/code\u003e returning the record timestamp (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8504\"\u003e#8504\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eProfiles\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix profiles data model attribute count parameter name and timestamp doc unit (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8514\"\u003e#8514\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExporters\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eWARNING\u003c/strong\u003e Zipkin: Delete \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e; the artifact is no longer published (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8677\"\u003e#8677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Use HTTP error response bodies in \u003ccode\u003eHttpExporter\u003c/code\u003e warning logs (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8428\"\u003e#8428\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e mTLS when using the platform default trust store (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8565\"\u003e#8565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix sign extension on \u003ccode\u003eLogRecord\u003c/code\u003e flags in the low-allocation log marshaler (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8493\"\u003e#8493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Standardize \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e, \u003ccode\u003eJdkHttpSender\u003c/code\u003e, and \u003ccode\u003eUpstreamGrpcSender\u003c/code\u003e shutdown to await executor/channel termination (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8495\"\u003e#8495\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8627\"\u003e#8627\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8624\"\u003e#8624\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Log the underlying except/ion when a gRPC response frame is invalid (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8626\"\u003e#8626\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/blob/main/CHANGELOG.md\"\u003eio.opentelemetry:opentelemetry-exporter-logging's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0 (2026-08-07)\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was\ndeprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector\nexporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed\ntokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based\non string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default\n\u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements\nit to stop its polling executor\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/7bc11edca518d4de168230c84a71484a66cbac40\"\u003e\u003ccode\u003e7bc11ed\u003c/code\u003e\u003c/a\u003e [release/v1.65.x] Prepare release 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8705\"\u003e#8705\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/60d7ecfe270354f8a329a0ecad42fca2650cc36e\"\u003e\u003ccode\u003e60d7ecf\u003c/code\u003e\u003c/a\u003e Prepare 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8700\"\u003e#8700\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/6d41aa40ed39eed5fb000e7595e1b1dd279fed91\"\u003e\u003ccode\u003e6d41aa4\u003c/code\u003e\u003c/a\u003e Bound jaeger-baggage parsing work by tokens rather than accepted entries (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/db1d6bee36537b4f356a6b7d616e587217938177\"\u003e\u003ccode\u003edb1d6be\u003c/code\u003e\u003c/a\u003e Enforce last-value-wins semantics in AttributesMap without performance regres...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/995cb3c4328f76a21f12e79b2667c684845899ca\"\u003e\u003ccode\u003e995cb3c\u003c/code\u003e\u003c/a\u003e Avoid unsafe string encoder on Android (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8637\"\u003e#8637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/48b0185d06a8d34d713d4fc24d6c70502b6f1531\"\u003e\u003ccode\u003e48b0185\u003c/code\u003e\u003c/a\u003e Do not overwrite existing baggage with empty baggage in JaegerPropagator (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/2009d5840f24251e65aac98c0f2da2f304e0bf7b\"\u003e\u003ccode\u003e2009d58\u003c/code\u003e\u003c/a\u003e Avoid exposing configuration values in errors (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8669\"\u003e#8669\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3cafbbb6206afc6cebb984d9b81e2339a506f148\"\u003e\u003ccode\u003e3cafbbb\u003c/code\u003e\u003c/a\u003e Deprecate OpenCensus shim public API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8674\"\u003e#8674\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/0e033e2ca8128ca470abd33f3ef1f2f684bcf610\"\u003e\u003ccode\u003e0e033e2\u003c/code\u003e\u003c/a\u003e Remove stray token from addLogRecordProcessorCustomizer Javadoc (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8641\"\u003e#8641\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3d1cce87bd4a78432cca4214a96586046a6e4590\"\u003e\u003ccode\u003e3d1cce8\u003c/code\u003e\u003c/a\u003e Fix ObfuscatedLoggerProvider Javadoc copy-paste example (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8639\"\u003e#8639\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/compare/v1.63.0...v1.65.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.opentelemetry:opentelemetry-sdk-extension-autoconfigure-spi` from 1.63.0 to 1.65.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/releases\"\u003eio.opentelemetry:opentelemetry-sdk-extension-autoconfigure-spi's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was deprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector exporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e, \u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e, \u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed tokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based on string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default \u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements it to stop its polling executor (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRecord \u003ccode\u003eerror.type\u003c/code\u003e on failed collections in \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8650\"\u003e#8650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTesting: Fix \u003ccode\u003eLongExemplarAssert.hasFilteredAttributesSatisfyingExactly\u003c/code\u003e to enforce exact attribute matching (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8518\"\u003e#8518\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eLogs\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eReadWriteLogRecord\u003c/code\u003e default \u003ccode\u003egetObservedTimestampEpochNanos\u003c/code\u003e returning the record timestamp (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8504\"\u003e#8504\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eProfiles\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix profiles data model attribute count parameter name and timestamp doc unit (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8514\"\u003e#8514\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExporters\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eWARNING\u003c/strong\u003e Zipkin: Delete \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e; the artifact is no longer published (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8677\"\u003e#8677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Use HTTP error response bodies in \u003ccode\u003eHttpExporter\u003c/code\u003e warning logs (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8428\"\u003e#8428\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e mTLS when using the platform default trust store (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8565\"\u003e#8565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix sign extension on \u003ccode\u003eLogRecord\u003c/code\u003e flags in the low-allocation log marshaler (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8493\"\u003e#8493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Standardize \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e, \u003ccode\u003eJdkHttpSender\u003c/code\u003e, and \u003ccode\u003eUpstreamGrpcSender\u003c/code\u003e shutdown to await executor/channel termination (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8495\"\u003e#8495\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8627\"\u003e#8627\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8624\"\u003e#8624\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Log the underlying except/ion when a gRPC response frame is invalid (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8626\"\u003e#8626\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/blob/main/CHANGELOG.md\"\u003eio.opentelemetry:opentelemetry-sdk-extension-autoconfigure-spi's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0 (2026-08-07)\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was\ndeprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector\nexporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed\ntokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based\non string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default\n\u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements\nit to stop its polling executor\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/7bc11edca518d4de168230c84a71484a66cbac40\"\u003e\u003ccode\u003e7bc11ed\u003c/code\u003e\u003c/a\u003e [release/v1.65.x] Prepare release 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8705\"\u003e#8705\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/60d7ecfe270354f8a329a0ecad42fca2650cc36e\"\u003e\u003ccode\u003e60d7ecf\u003c/code\u003e\u003c/a\u003e Prepare 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8700\"\u003e#8700\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/6d41aa40ed39eed5fb000e7595e1b1dd279fed91\"\u003e\u003ccode\u003e6d41aa4\u003c/code\u003e\u003c/a\u003e Bound jaeger-baggage parsing work by tokens rather than accepted entries (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/db1d6bee36537b4f356a6b7d616e587217938177\"\u003e\u003ccode\u003edb1d6be\u003c/code\u003e\u003c/a\u003e Enforce last-value-wins semantics in AttributesMap without performance regres...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/995cb3c4328f76a21f12e79b2667c684845899ca\"\u003e\u003ccode\u003e995cb3c\u003c/code\u003e\u003c/a\u003e Avoid unsafe string encoder on Android (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8637\"\u003e#8637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/48b0185d06a8d34d713d4fc24d6c70502b6f1531\"\u003e\u003ccode\u003e48b0185\u003c/code\u003e\u003c/a\u003e Do not overwrite existing baggage with empty baggage in JaegerPropagator (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/2009d5840f24251e65aac98c0f2da2f304e0bf7b\"\u003e\u003ccode\u003e2009d58\u003c/code\u003e\u003c/a\u003e Avoid exposing configuration values in errors (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8669\"\u003e#8669\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3cafbbb6206afc6cebb984d9b81e2339a506f148\"\u003e\u003ccode\u003e3cafbbb\u003c/code\u003e\u003c/a\u003e Deprecate OpenCensus shim public API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8674\"\u003e#8674\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/0e033e2ca8128ca470abd33f3ef1f2f684bcf610\"\u003e\u003ccode\u003e0e033e2\u003c/code\u003e\u003c/a\u003e Remove stray token from addLogRecordProcessorCustomizer Javadoc (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8641\"\u003e#8641\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3d1cce87bd4a78432cca4214a96586046a6e4590\"\u003e\u003ccode\u003e3d1cce8\u003c/code\u003e\u003c/a\u003e Fix ObfuscatedLoggerProvider Javadoc copy-paste example (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8639\"\u003e#8639\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/compare/v1.63.0...v1.65.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.opentelemetry:opentelemetry-sdk` from 1.63.0 to 1.65.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/releases\"\u003eio.opentelemetry:opentelemetry-sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was deprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector exporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e, \u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e, \u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed tokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based on string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default \u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements it to stop its polling executor (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRecord \u003ccode\u003eerror.type\u003c/code\u003e on failed collections in \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8650\"\u003e#8650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTesting: Fix \u003ccode\u003eLongExemplarAssert.hasFilteredAttributesSatisfyingExactly\u003c/code\u003e to enforce exact attribute matching (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8518\"\u003e#8518\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eLogs\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eReadWriteLogRecord\u003c/code\u003e default \u003ccode\u003egetObservedTimestampEpochNanos\u003c/code\u003e returning the record timestamp (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8504\"\u003e#8504\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eProfiles\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix profiles data model attribute count parameter name and timestamp doc unit (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8514\"\u003e#8514\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExporters\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eWARNING\u003c/strong\u003e Zipkin: Delete \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e; the artifact is no longer published (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8677\"\u003e#8677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Use HTTP error response bodies in \u003ccode\u003eHttpExporter\u003c/code\u003e warning logs (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8428\"\u003e#8428\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e mTLS when using the platform default trust store (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8565\"\u003e#8565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix sign extension on \u003ccode\u003eLogRecord\u003c/code\u003e flags in the low-allocation log marshaler (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8493\"\u003e#8493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Standardize \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e, \u003ccode\u003eJdkHttpSender\u003c/code\u003e, and \u003ccode\u003eUpstreamGrpcSender\u003c/code\u003e shutdown to await executor/channel termination (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8495\"\u003e#8495\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8627\"\u003e#8627\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8624\"\u003e#8624\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Log the underlying except/ion when a gRPC response frame is invalid (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8626\"\u003e#8626\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/blob/main/CHANGELOG.md\"\u003eio.opentelemetry:opentelemetry-sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0 (2026-08-07)\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was\ndeprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector\nexporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed\ntokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based\non string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default\n\u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements\nit to stop its polling executor\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/7bc11edca518d4de168230c84a71484a66cbac40\"\u003e\u003ccode\u003e7bc11ed\u003c/code\u003e\u003c/a\u003e [release/v1.65.x] Prepare release 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8705\"\u003e#8705\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/60d7ecfe270354f8a329a0ecad42fca2650cc36e\"\u003e\u003ccode\u003e60d7ecf\u003c/code\u003e\u003c/a\u003e Prepare 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8700\"\u003e#8700\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/6d41aa40ed39eed5fb000e7595e1b1dd279fed91\"\u003e\u003ccode\u003e6d41aa4\u003c/code\u003e\u003c/a\u003e Bound jaeger-baggage parsing work by tokens rather than accepted entries (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/db1d6bee36537b4f356a6b7d616e587217938177\"\u003e\u003ccode\u003edb1d6be\u003c/code\u003e\u003c/a\u003e Enforce last-value-wins semantics in AttributesMap without performance regres...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/995cb3c4328f76a21f12e79b2667c684845899ca\"\u003e\u003ccode\u003e995cb3c\u003c/code\u003e\u003c/a\u003e Avoid unsafe string encoder on Android (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8637\"\u003e#8637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/48b0185d06a8d34d713d4fc24d6c70502b6f1531\"\u003e\u003ccode\u003e48b0185\u003c/code\u003e\u003c/a\u003e Do not overwrite existing baggage with empty baggage in JaegerPropagator (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/2009d5840f24251e65aac98c0f2da2f304e0bf7b\"\u003e\u003ccode\u003e2009d58\u003c/code\u003e\u003c/a\u003e Avoid exposing configuration values in errors (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8669\"\u003e#8669\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open...\n\n_Description has been truncated_","html_url":"https://github.com/GoogleCloudPlatform/gcs-analytics-core/pull/368","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/GoogleCloudPlatform%2Fgcs-analytics-core/issues/368","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/368/packages"},{"uuid":"5329539621","node_id":"PR_kwDOA_eGRM8AAAABB92oTA","number":728,"state":"closed","title":"Bump the klass-shared group across 1 directory with 3 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-09-11T16:45:24.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-02T21:42:51.000Z","updated_at":"2026-09-11T16:45:26.000Z","time_to_close":759753,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"klass-shared","update_count":3,"packages":[{"name":"org.opensearch.client:spring-data-opensearch-starter","old_version":"2.0.7","new_version":"2.0.8","repository_url":"https://github.com/opensearch-project/spring-data-opensearch"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"org.apache.maven.plugins:maven-compiler-plugin","old_version":"3.15.0","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-compiler-plugin"}],"path":null,"ecosystem":"maven"},"body":"Bumps the klass-shared group with 3 updates in the /klass-shared directory: [org.opensearch.client:spring-data-opensearch-starter](https://github.com/opensearch-project/spring-data-opensearch), [com.google.guava:guava](https://github.com/google/guava) and [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin).\n\nUpdates `org.opensearch.client:spring-data-opensearch-starter` from 2.0.7 to 2.0.8\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/opensearch-project/spring-data-opensearch/releases\"\u003eorg.opensearch.client:spring-data-opensearch-starter's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.0.8\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump next version to 2.0.8 by \u003ca href=\"https://github.com/reta\"\u003e\u003ccode\u003e@​reta\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/opensearch-project/spring-data-opensearch/pull/771\"\u003eopensearch-project/spring-data-opensearch#771\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRoutine dependency updates by \u003ca href=\"https://github.com/reta\"\u003e\u003ccode\u003e@​reta\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/opensearch-project/spring-data-opensearch/pull/798\"\u003eopensearch-project/spring-data-opensearch#798\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/opensearch-project/spring-data-opensearch/compare/v2.0.7...v2.0.8\"\u003ehttps://github.com/opensearch-project/spring-data-opensearch/compare/v2.0.7...v2.0.8\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/opensearch-project/spring-data-opensearch/commit/7012435d9a9b497ef4da5cbd445be8517350c083\"\u003e\u003ccode\u003e7012435\u003c/code\u003e\u003c/a\u003e Routine dependency updates (\u003ca href=\"https://redirect.github.com/opensearch-project/spring-data-opensearch/issues/798\"\u003e#798\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/opensearch-project/spring-data-opensearch/commit/1e1e330422e21216f4066ef40323329b47bc83cc\"\u003e\u003ccode\u003e1e1e330\u003c/code\u003e\u003c/a\u003e Bump next version to 2.0.8 (\u003ca href=\"https://redirect.github.com/opensearch-project/spring-data-opensearch/issues/771\"\u003e#771\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/opensearch-project/spring-data-opensearch/compare/v2.0.7...v2.0.8\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.maven.plugins:maven-compiler-plugin` from 3.15.0 to 3.16.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/maven-compiler-plugin/releases\"\u003eorg.apache.maven.plugins:maven-compiler-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.16.0\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRecompile when dependencies change (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1102\"\u003e#1102\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix incremental detection of empty sources, 3.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1075\"\u003e#1075\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-578\"\u003e[MCOMPILER-578]\u003c/a\u003e - Track outputs across compiler executions (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1091\"\u003e#1091\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBuild fails when annotation processor list is empty (but present) (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1077\"\u003e#1077\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-374\"\u003e[MCOMPILER-374]\u003c/a\u003e - Unable to compile MR-JAR code against older directories when module-info.java is present (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1093\"\u003e#1093\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake mcompiler-120 IT locale independent (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1063\"\u003e#1063\u003c/a\u003e) \u003ca href=\"https://github.com/anilvdl\"\u003e\u003ccode\u003e@​anilvdl\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📝 Documentation updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-569\"\u003e[MCOMPILER-569]\u003c/a\u003e - Document implicitly compiled excluded sources (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1092\"\u003e#1092\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1074\"\u003e#1074\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAvoid using deprecated method CompilerConfiguration.setCompilerVersion (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1121\"\u003e#1121\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReplace adopt-openj9 by semeru JDK distribution on GH (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1122\"\u003e#1122\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePort the site documentation from APT to Markdown (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1110\"\u003e#1110\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eVerify against Maven 4.0.0-rc-6 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1105\"\u003e#1105\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix tests on Jenkins (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1100\"\u003e#1100\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1074\"\u003e#1074\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor compiler mojo to use dependency injection and improve string… (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1066\"\u003e#1066\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix ITs for Maven 3.10.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1061\"\u003e#1061\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate maven-surefire-plugin version to 3.x in the MCOMPILER-481 IT (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1035\"\u003e#1035\u003c/a\u003e) \u003ca href=\"https://github.com/cdouillard\"\u003e\u003ccode\u003e@​cdouillard\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump plexusCompilerVersion from 2.16.2 to 2.17.0 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1112\"\u003e#1112\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1113\"\u003e#1113\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003euse latest Maven 4 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1045\"\u003e#1045\u003c/a\u003e) \u003ca href=\"https://github.com/hboutemy\"\u003e\u003ccode\u003e@​hboutemy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1083\"\u003e#1083\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/pr-automation.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1082\"\u003e#1082\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1084\"\u003e#1084\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 48 to 49 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1068\"\u003e#1068\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-invoker-plugin from 3.9.1 to 3.10.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1047\"\u003e#1047\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 47 to 48 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1050\"\u003e#1050\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.14 to 3.9.16 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1054\"\u003e#1054\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.ow2.asm:asm from 9.10 to 9.10.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1059\"\u003e#1059\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.ow2.asm:asm from 9.9.1 to 9.10 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1053\"\u003e#1053\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.13 to 3.9.14 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1041\"\u003e#1041\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.12 to 3.9.13 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1038\"\u003e#1038\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugin-testing:maven-plugin-testing-harness from 3.5.0 to 3.5.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1032\"\u003e#1032\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/e7bba6ed5f9c17003d5c5d1413144bb214177408\"\u003e\u003ccode\u003ee7bba6e\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release maven-compiler-plugin-3.16.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/c906809e0c0b2c79e8a03165cb942f152a911416\"\u003e\u003ccode\u003ec906809\u003c/code\u003e\u003c/a\u003e Avoid using deprecated method CompilerConfiguration.setCompilerVersion\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/ad74fee36865d7a1752c9b96ff9a9e702565fdb3\"\u003e\u003ccode\u003ead74fee\u003c/code\u003e\u003c/a\u003e Replace adopt-openj9 by semeru JDK distribution on GH\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/beb0eda2100e77d3f01bf4cc89edd5b721411f63\"\u003e\u003ccode\u003ebeb0eda\u003c/code\u003e\u003c/a\u003e Recompile when dependencies change (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1102\"\u003e#1102\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/a0b689e0e7f13d3a7dded7847a807fe6453e0358\"\u003e\u003ccode\u003ea0b689e\u003c/code\u003e\u003c/a\u003e [MCOMPILER-578] Track outputs across compiler executions (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1091\"\u003e#1091\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/2e8122841d9b10d2d83a90cc07530d7a09eebc47\"\u003e\u003ccode\u003e2e81228\u003c/code\u003e\u003c/a\u003e Fix incremental detection of empty sources, 3.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1075\"\u003e#1075\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/2132f5bf0cbfcde26301084c4833f1a9420f1baf\"\u003e\u003ccode\u003e2132f5b\u003c/code\u003e\u003c/a\u003e configure ATR project\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/5992b772033a7488767c4b3aa806f080eba96593\"\u003e\u003ccode\u003e5992b77\u003c/code\u003e\u003c/a\u003e Build fails when annotation processor list is empty (but present) (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1077\"\u003e#1077\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/acccef703e5491c29c6dd9e8381677d3e7927589\"\u003e\u003ccode\u003eacccef7\u003c/code\u003e\u003c/a\u003e Bump plexusCompilerVersion from 2.16.2 to 2.17.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/72bc4454dfdcd1c3551137e5b27560f88b4480ae\"\u003e\u003ccode\u003e72bc445\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/maven-compiler-plugin/compare/maven-compiler-plugin-3.15.0...maven-compiler-plugin-3.16.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e","html_url":"https://github.com/statisticsnorway/klass/pull/728","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/statisticsnorway%2Fklass/issues/728","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/728/packages"},{"uuid":"5322590287","node_id":"PR_kwDOULsDGM8AAAABB4Q_Fg","number":8,"state":"closed","title":"Bump the maven-dependencies group with 8 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-05T21:59:39.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-02T10:12:02.000Z","updated_at":"2026-09-05T21:59:41.000Z","time_to_close":301657,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"maven-dependencies","update_count":8,"packages":[{"name":"org.junit.jupiter:junit-jupiter","old_version":"5.10.2","new_version":"6.1.3","repository_url":"https://github.com/junit-team/junit-framework"},{"name":"org.apache.maven.plugins:maven-dependency-plugin","old_version":"3.6.1","new_version":"3.11.0","repository_url":"https://github.com/apache/maven-dependency-plugin"},{"name":"com.google.guava:guava","old_version":"31.1-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"org.apache.commons:commons-lang3","old_version":"3.12.0","new_version":"3.20.0"},{"name":"org.slf4j:slf4j-api","old_version":"1.7.36","new_version":"2.0.18"},{"name":"org.apache.logging.log4j:log4j-core","old_version":"2.14.1","new_version":"2.26.1"},{"name":"com.fasterxml.jackson.core:jackson-databind","old_version":"2.9.10.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-databind"},{"name":"org.yaml:snakeyaml","old_version":"1.26","new_version":"2.6"}],"path":null,"ecosystem":"maven"},"body":"Bumps the maven-dependencies group with 8 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [org.junit.jupiter:junit-jupiter](https://github.com/junit-team/junit-framework) | `5.10.2` | `6.1.3` |\n| [org.apache.maven.plugins:maven-dependency-plugin](https://github.com/apache/maven-dependency-plugin) | `3.6.1` | `3.11.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `31.1-jre` | `33.7.1-jre` |\n| org.apache.commons:commons-lang3 | `3.12.0` | `3.20.0` |\n| org.slf4j:slf4j-api | `1.7.36` | `2.0.18` |\n| org.apache.logging.log4j:log4j-core | `2.14.1` | `2.26.1` |\n| [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson-databind) | `2.9.10.1` | `2.22.2` |\n| [org.yaml:snakeyaml](https://bitbucket.org/snakeyaml/snakeyaml) | `1.26` | `2.6` |\n\nUpdates `org.junit.jupiter:junit-jupiter` from 5.10.2 to 6.1.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/junit-team/junit-framework/releases\"\u003eorg.junit.jupiter:junit-jupiter's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003cp\u003eJUnit 6.1.3 = Platform 6.1.3 + Jupiter 6.1.3 + Vintage 6.1.3\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.3/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.2...r6.1.3\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.2...r6.1.3\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.2 = Platform 6.1.2 + Jupiter 6.1.2 + Vintage 6.1.2\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.2/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.2\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.2\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.1 = Platform 6.1.1 + Jupiter 6.1.1 + Vintage 6.1.1\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.1/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.0...r6.1.1\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.0...r6.1.1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.0 = Platform 6.1.0 + Jupiter 6.1.0 + Vintage 6.1.0\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.0/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/JarvisCraft\"\u003e\u003ccode\u003e@​JarvisCraft\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5633\"\u003ejunit-team/junit-framework#5633\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Maran23\"\u003e\u003ccode\u003e@​Maran23\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5644\"\u003ejunit-team/junit-framework#5644\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.0.3...r6.1.0\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.0.3...r6.1.0\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.0-RC1 = Platform 6.1.0-RC1 + Jupiter 6.1.0-RC1 + Vintage 6.1.0-RC1\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.0-RC1/release-notes/\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariokhoury4\"\u003e\u003ccode\u003e@​mariokhoury4\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/4574\"\u003ejunit-team/junit-framework#4574\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Ogu1208\"\u003e\u003ccode\u003e@​Ogu1208\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5145\"\u003ejunit-team/junit-framework#5145\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/HyungGeun94\"\u003e\u003ccode\u003e@​HyungGeun94\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5271\"\u003ejunit-team/junit-framework#5271\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yalishevant\"\u003e\u003ccode\u003e@​yalishevant\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5316\"\u003ejunit-team/junit-framework#5316\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/JINU-CHANG\"\u003e\u003ccode\u003e@​JINU-CHANG\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5290\"\u003ejunit-team/junit-framework#5290\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jaschdoc\"\u003e\u003ccode\u003e@​jaschdoc\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5427\"\u003ejunit-team/junit-framework#5427\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/kawshikbuet17\"\u003e\u003ccode\u003e@​kawshikbuet17\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5561\"\u003ejunit-team/junit-framework#5561\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/msridhar\"\u003e\u003ccode\u003e@​msridhar\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5602\"\u003ejunit-team/junit-framework#5602\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.0-M1...r6.1.0-RC1\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.0-M1...r6.1.0-RC1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.0-M1 = Platform 6.1.0-M1 + Jupiter 6.1.0-M1 + Vintage 6.1.0-M1\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.0-M1/release-notes/\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vy\"\u003e\u003ccode\u003e@​vy\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5041\"\u003ejunit-team/junit-framework#5041\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/f59f60d2cebdf2224235d81f781b1f310cbc8138\"\u003e\u003ccode\u003ef59f60d\u003c/code\u003e\u003c/a\u003e Release 6.1.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/cd8ec9202ce8260a434edb38a8565e36f620e8d6\"\u003e\u003ccode\u003ecd8ec92\u003c/code\u003e\u003c/a\u003e Finalize 6.1.3 release notes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/c8729f26aacd8e2dd6fa564b929fe047faaa7dc9\"\u003e\u003ccode\u003ec8729f2\u003c/code\u003e\u003c/a\u003e Restore compatibility with GraalVM 25 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5901\"\u003e#5901\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/ddc9e74e5d21c2dd18bc0cfe4681d5ff50ac379c\"\u003e\u003ccode\u003eddc9e74\u003c/code\u003e\u003c/a\u003e Update graalvm/setup-graalvm action to v1.6.4 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5959\"\u003e#5959\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/fe2c52a780fcbda6c7ccf5d6576beb7ad2d80bf8\"\u003e\u003ccode\u003efe2c52a\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.7 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5923\"\u003e#5923\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/62afc02b541ee9dfa16b121705f79b7d44f4dae0\"\u003e\u003ccode\u003e62afc02\u003c/code\u003e\u003c/a\u003e Delay GraalVM plugin updates for 3 days\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/0cc29022801365a409c1213a811a8877cb88cce3\"\u003e\u003ccode\u003e0cc2902\u003c/code\u003e\u003c/a\u003e Skip \u003ccode\u003egraalVmTest\u003c/code\u003e task if GraalVM env vars are not set\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/f6bbfc53e7e00b1b25e7d3b0bc09eef05cc4b721\"\u003e\u003ccode\u003ef6bbfc5\u003c/code\u003e\u003c/a\u003e Move GraalVM tests to separate test task (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5903\"\u003e#5903\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/e87e0521d4fbd75116a5fda42566fcb7a56eb340\"\u003e\u003ccode\u003ee87e052\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.6 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5899\"\u003e#5899\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/1cd56df89754fb8523ac9fbbf888e9a552e33ee8\"\u003e\u003ccode\u003e1cd56df\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.5 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5880\"\u003e#5880\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r5.10.2...r6.1.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.maven.plugins:maven-dependency-plugin` from 3.6.1 to 3.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/maven-dependency-plugin/releases\"\u003eorg.apache.maven.plugins:maven-dependency-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.11.0\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd dependency:add and dependency:remove goals (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1599\"\u003e#1599\u003c/a\u003e) \u003ca href=\"https://github.com/brunoborges\"\u003e\u003ccode\u003e@​brunoborges\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdded ability to provide arbitrary dependencies to properties mojo (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1561\"\u003e#1561\u003c/a\u003e) \u003ca href=\"https://github.com/treilhes\"\u003e\u003ccode\u003e@​treilhes\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix artifact relocation support (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1633\"\u003e#1633\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: fix addParentPoms=true causes repositories to be ignored. (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1585\"\u003e#1585\u003c/a\u003e) \u003ca href=\"https://github.com/k-wall\"\u003e\u003ccode\u003e@​k-wall\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix false positive in analyze-exclusions with transitive dependency exclusion (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1628\"\u003e#1628\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake AbstractAnalyzeMojo.filterArtifactsByScope() null-safe (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1622\"\u003e#1622\u003c/a\u003e) \u003ca href=\"https://github.com/elharo\"\u003e\u003ccode\u003e@​elharo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePrevent NPE in BuildClasspathMojo.appendArtifactPath() when an artifact has no resolved file (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1623\"\u003e#1623\u003c/a\u003e) \u003ca href=\"https://github.com/elharo\"\u003e\u003ccode\u003e@​elharo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eLog unpacking at debug level (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1624\"\u003e#1624\u003c/a\u003e) \u003ca href=\"https://github.com/elharo\"\u003e\u003ccode\u003e@​elharo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eResolve plugins declared in pluginManagement for resolve-plugins and go-offline (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1603\"\u003e#1603\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eanalyze-exclusions\u003c/code\u003e crashes if there is no \u003ccode\u003edependencyManagement\u003c/code\u003e element (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1597\"\u003e#1597\u003c/a\u003e) \u003ca href=\"https://github.com/JackPGreen\"\u003e\u003ccode\u003e@​JackPGreen\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eEnable ITs for dependency:remove and use mock dependencies (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1613\"\u003e#1613\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMore meaningful assertions (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1611\"\u003e#1611\u003c/a\u003e) \u003ca href=\"https://github.com/elharo\"\u003e\u003ccode\u003e@​elharo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCure various typos IntelliJ complains about (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1612\"\u003e#1612\u003c/a\u003e) \u003ca href=\"https://github.com/elharo\"\u003e\u003ccode\u003e@​elharo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove unused jansi dependency (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1606\"\u003e#1606\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEnable ITs for dependecy:add and use mock dependencies (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1610\"\u003e#1610\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCleaner exception handling (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1566\"\u003e#1566\u003c/a\u003e) \u003ca href=\"https://github.com/elharo\"\u003e\u003ccode\u003e@​elharo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eManage ASM version 9.10 to support JDK 27 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1632\"\u003e#1632\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump eu.maveniverse.maven.domtrip:domtrip-core from 1.5.0 to 1.5.1 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1631\"\u003e#1631\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump eu.maveniverse.maven.domtrip:domtrip-maven from 1.5.0 to 1.5.1 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1630\"\u003e#1630\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.15 to 3.9.16 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1626\"\u003e#1626\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.shared:maven-dependency-analyzer from 1.17.0 to 1.17.1 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1627\"\u003e#1627\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.commons:commons-lang3 from 3.17.0 to 3.18.0 in /src/it/projects/remove-dependency/basic (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1607\"\u003e#1607\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 47 to 48 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1605\"\u003e#1605\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.14 to 3.9.15 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1601\"\u003e#1601\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.jsoup:jsoup from 1.22.1 to 1.22.2 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1602\"\u003e#1602\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.doxia:doxia-sink-api from 2.0.0 to 2.1.0 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1595\"\u003e#1595\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.fusesource.jansi:jansi from 2.4.2 to 2.4.3 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1596\"\u003e#1596\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.12 to 3.9.14 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1594\"\u003e#1594\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugin-testing:maven-plugin-testing-harness from 3.5.0 to 3.5.1 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1589\"\u003e#1589\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.10.0\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eIntroduce graphRoots for dependencyFilter based mojos (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1571\"\u003e#1571\u003c/a\u003e) \u003ca href=\"https://github.com/rfscholte\"\u003e\u003ccode\u003e@​rfscholte\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/c186d05d80e15cd18651a3071a5186e275e04029\"\u003e\u003ccode\u003ec186d05\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release maven-dependency-plugin-3.11.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/371261124f9cff27cf0439fe3abaec4e322fae7e\"\u003e\u003ccode\u003e3712611\u003c/code\u003e\u003c/a\u003e Fix artifact relocation support\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/e873e0eb87775c0346b22cf6fe0c565e93e0b01f\"\u003e\u003ccode\u003ee873e0e\u003c/code\u003e\u003c/a\u003e Manage ASM version 9.10 to support JDK 27\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/70b535690ecbf985e795cabca9869d66a2c68e10\"\u003e\u003ccode\u003e70b5356\u003c/code\u003e\u003c/a\u003e fix: fix addParentPoms=true causes repositories to be ignored. (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/issues/1585\"\u003e#1585\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/51d893970655d18dade1f06ca48e2bf676349629\"\u003e\u003ccode\u003e51d8939\u003c/code\u003e\u003c/a\u003e Fix false positive in analyze-exclusions with transitive dependency exclusion...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/02b865b98376be8e9a0c31a028b87a4e1d4ff7a3\"\u003e\u003ccode\u003e02b865b\u003c/code\u003e\u003c/a\u003e Bump eu.maveniverse.maven.domtrip:domtrip-core from 1.5.0 to 1.5.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/04f4de17e7bd73276baeacc7275308d20f1257fd\"\u003e\u003ccode\u003e04f4de1\u003c/code\u003e\u003c/a\u003e Bump eu.maveniverse.maven.domtrip:domtrip-maven from 1.5.0 to 1.5.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/2812490a1263d186950becfe2d214f03e807048f\"\u003e\u003ccode\u003e2812490\u003c/code\u003e\u003c/a\u003e Bump mavenVersion from 3.9.15 to 3.9.16\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/ce117da219149e28f4253f85a805093222b8f868\"\u003e\u003ccode\u003ece117da\u003c/code\u003e\u003c/a\u003e Bump org.apache.maven.shared:maven-dependency-analyzer\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/aea7a6400a73696f8819071c607e3c0d16bb9294\"\u003e\u003ccode\u003eaea7a64\u003c/code\u003e\u003c/a\u003e Prevent NPE (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/issues/1622\"\u003e#1622\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/maven-dependency-plugin/compare/maven-dependency-plugin-3.6.1...maven-dependency-plugin-3.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 31.1-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.commons:commons-lang3` from 3.12.0 to 3.20.0\n\nUpdates `org.slf4j:slf4j-api` from 1.7.36 to 2.0.18\n\nUpdates `org.apache.logging.log4j:log4j-core` from 2.14.1 to 2.26.1\n\nUpdates `com.fasterxml.jackson.core:jackson-databind` from 2.9.10.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/25b2a221f9aa4107e455065a74635e209418cf55\"\u003e\u003ccode\u003e25b2a22\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bab1c1a702a941f8805ee6698e8fa4fdbfbec54a\"\u003e\u003ccode\u003ebab1c1a\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bc03cf83d74cf0e5944dce33a63ee59ddc344b64\"\u003e\u003ccode\u003ebc03cf8\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/83379fb6409075336edf3d8d88744e95911a43f8\"\u003e\u003ccode\u003e83379fb\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/0d400c9dc586fdd460d0c6a40db21ebbe22106d8\"\u003e\u003ccode\u003e0d400c9\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/ce36a279f8b078bef2d9d44a1d01034c3634f91a\"\u003e\u003ccode\u003ece36a27\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7a209e1fa97033746db50fd7bcd1e3dbab077599\"\u003e\u003ccode\u003e7a209e1\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/a432707afe6b7569243d1c2d8052a1bf33d9279c\"\u003e\u003ccode\u003ea432707\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/176df1d48b256ced412c65293ad4e09393e24bd3\"\u003e\u003ccode\u003e176df1d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7785f5f9ed24127e004115472c47b26ea4cf2774\"\u003e\u003ccode\u003e7785f5f\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-databind/compare/jackson-databind-2.9.10.1...jackson-databind-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.yaml:snakeyaml` from 1.26 to 2.6\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/015ab57b3a789f85cf8967f6f3431035d928d9bc\"\u003e\u003ccode\u003e015ab57\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/4795519ef773da23c8816a4e932f9aaffd630f8c\"\u003e\u003ccode\u003e4795519\u003c/code\u003e\u003c/a\u003e Update info\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/9c36c69034617a1c2e06b5b9b6da4073416279b8\"\u003e\u003ccode\u003e9c36c69\u003c/code\u003e\u003c/a\u003e Introduce devcontainer\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/0c5b3e513a8a3971f7c97404f73fadebb63b73c0\"\u003e\u003ccode\u003e0c5b3e5\u003c/code\u003e\u003c/a\u003e fix: add debug level to internal logger\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/a65b13170d1b221af062d6aa90fd7741ed7ea7cd\"\u003e\u003ccode\u003ea65b131\u003c/code\u003e\u003c/a\u003e Merge branch 'master' into devcontainers\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/788a98b92bfd1696e95a0a48eb1d652d80660149\"\u003e\u003ccode\u003e788a98b\u003c/code\u003e\u003c/a\u003e Update changes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/556b4bfec56355987f292f0ee515798b3a2eb3e0\"\u003e\u003ccode\u003e556b4bf\u003c/code\u003e\u003c/a\u003e Add info for devcontainer\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/0828c39da732f89844c0c66d7f55169417f8cd16\"\u003e\u003ccode\u003e0828c39\u003c/code\u003e\u003c/a\u003e ops: migrate deployment from OSSRH to Central Portal\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/30d6a3a64809f0f6d3d9fd901a85b7c3cda94930\"\u003e\u003ccode\u003e30d6a3a\u003c/code\u003e\u003c/a\u003e Add a test for issue 1108\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/2da4c6d8bfe0590dab56a5319366dc3b6558b9b5\"\u003e\u003ccode\u003e2da4c6d\u003c/code\u003e\u003c/a\u003e Remove unrelated code\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/branches/compare/snakeyaml-2.6..snakeyaml-1.26\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n\u003c/details\u003e","html_url":"https://github.com/shikhahere/dependabot-maven-usecases/pull/8","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/shikhahere%2Fdependabot-maven-usecases/issues/8","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/8/packages"},{"uuid":"5318965534","node_id":"PR_kwDOSv_54c8AAAABB1Ziqw","number":54,"state":"closed","title":"Bump com.google.guava:guava from 33.6.0-jre to 33.7.1-jre","user":"dependabot[bot]","labels":["dependencies","java","stale"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-09-16T03:04:55.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-02T02:24:01.000Z","updated_at":"2026-09-16T03:05:05.000Z","time_to_close":1212054,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"}],"path":null,"ecosystem":"maven"},"body":"Bumps [com.google.guava:guava](https://github.com/google/guava) from 33.6.0-jre to 33.7.1-jre.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.google.guava:guava\u0026package-manager=gradle\u0026previous-version=33.6.0-jre\u0026new-version=33.7.1-jre)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/hmcts/finrem-wa-post-deployment-ft-tests/pull/54","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/hmcts%2Ffinrem-wa-post-deployment-ft-tests/issues/54","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/54/packages"},{"uuid":"5300234107","node_id":"PR_kwDOSwV92s8AAAABBmbL2g","number":156,"state":"open","title":"build(deps): bump com.google.guava:guava from 33.6.0-android to 33.7.1-android","user":"dependabot[bot]","labels":[],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-08-31T12:38:39.000Z","updated_at":"2026-08-31T12:38:41.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps)","packages":[{"name":"com.google.guava:guava","old_version":"33.6.0-android","new_version":"33.7.1-android","repository_url":"https://github.com/google/guava"}],"path":null,"ecosystem":"maven"},"body":"Bumps [com.google.guava:guava](https://github.com/google/guava) from 33.6.0-android to 33.7.1-android.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.google.guava:guava\u0026package-manager=gradle\u0026previous-version=33.6.0-android\u0026new-version=33.7.1-android)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/darkpandawarrior/Mileway/pull/156","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/darkpandawarrior%2FMileway/issues/156","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/156/packages"},{"uuid":"5294732251","node_id":"PR_kwDOG2xsAc8AAAABBiG5IQ","number":1214,"state":"closed","title":"build(deps): bump the dependencies group across 1 directory with 6 updates","user":"dependabot[bot]","labels":[":house: pr: internal","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-06T22:32:37.000Z","author_association":null,"state_reason":null,"created_at":"2026-08-30T22:33:17.000Z","updated_at":"2026-09-06T22:32:40.000Z","time_to_close":604760,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps): bump","group_name":"dependencies","update_count":6,"packages":[{"name":"org.seleniumhq.selenium:selenium-java","old_version":"4.47.0","new_version":"4.48.0","repository_url":"https://github.com/SeleniumHQ/selenium"},{"name":"com.squareup.okhttp3:okhttp-jvm","old_version":"5.4.0","new_version":"5.5.0","repository_url":"https://github.com/lysine-dev/okhttp"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"com.fasterxml.jackson.dataformat:jackson-dataformat-yaml","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-dataformats-text"},{"name":"com.fasterxml.jackson.core:jackson-databind","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-databind"},{"name":"com.puppycrawl.tools:checkstyle","old_version":"12.3.1","new_version":"14.0.0","repository_url":"https://github.com/checkstyle/checkstyle"}],"path":null,"ecosystem":"maven"},"body":"Bumps the dependencies group with 6 updates in the /core-java directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [org.seleniumhq.selenium:selenium-java](https://github.com/SeleniumHQ/selenium) | `4.47.0` | `4.48.0` |\n| [com.squareup.okhttp3:okhttp-jvm](https://github.com/lysine-dev/okhttp) | `5.4.0` | `5.5.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [com.fasterxml.jackson.dataformat:jackson-dataformat-yaml](https://github.com/FasterXML/jackson-dataformats-text) | `2.22.1` | `2.22.2` |\n| [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson-databind) | `2.22.1` | `2.22.2` |\n| [com.puppycrawl.tools:checkstyle](https://github.com/checkstyle/checkstyle) | `12.3.1` | `14.0.0` |\n\n\nUpdates `org.seleniumhq.selenium:selenium-java` from 4.47.0 to 4.48.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/SeleniumHQ/selenium/releases\"\u003eorg.seleniumhq.selenium:selenium-java's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eSelenium 4.48.0\u003c/h2\u003e\n\u003ch2\u003eDetailed Changelogs by Component\u003c/h2\u003e\n\u003cp\u003e\u003c!-- raw HTML omitted --\u003e \u003cstrong\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/blob/trunk/java/CHANGELOG\"\u003eJava\u003c/a\u003e\u003c/strong\u003e     |    \u003c!-- raw HTML omitted --\u003e \u003cstrong\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/blob/trunk/py/CHANGES\"\u003ePython\u003c/a\u003e\u003c/strong\u003e     |    \u003c!-- raw HTML omitted --\u003e \u003cstrong\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/blob/trunk/dotnet/CHANGELOG\"\u003eDotNet\u003c/a\u003e\u003c/strong\u003e     |    \u003c!-- raw HTML omitted --\u003e \u003cstrong\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/blob/trunk/rb/CHANGES\"\u003eRuby\u003c/a\u003e\u003c/strong\u003e     |    \u003c!-- raw HTML omitted --\u003e \u003cstrong\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/blob/trunk/javascript/selenium-webdriver/CHANGES.md\"\u003eJavaScript\u003c/a\u003e\u003c/strong\u003e\n\u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e[js] Normalize empty custom locator results by \u003ca href=\"https://github.com/munawiki\"\u003e\u003ccode\u003e@​munawiki\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17851\"\u003eSeleniumHQ/selenium#17851\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[py]: fix W3C capabilities built from a list of options (create_matches) by \u003ca href=\"https://github.com/navin772\"\u003e\u003ccode\u003e@​navin772\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17897\"\u003eSeleniumHQ/selenium#17897\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[rb] add low-level BiDi protocol integration specs by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17878\"\u003eSeleniumHQ/selenium#17878\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix badge for CI build on the default branch by \u003ca href=\"https://github.com/nvborisenko\"\u003e\u003ccode\u003e@​nvborisenko\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17901\"\u003eSeleniumHQ/selenium#17901\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[py] Fix broken reStructuredText link in docs by \u003ca href=\"https://github.com/cgoldberg\"\u003e\u003ccode\u003e@​cgoldberg\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17902\"\u003eSeleniumHQ/selenium#17902\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[grid] stop forwarding se:remoteUrl past the Node that consumes it by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17908\"\u003eSeleniumHQ/selenium#17908\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[grid] Forward file upload/download for Kubernetes, Docker and relay sessions by \u003ca href=\"https://github.com/VietND96\"\u003e\u003ccode\u003e@​VietND96\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17914\"\u003eSeleniumHQ/selenium#17914\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] reduce github cache churn and aggressively prune CodeQL caches by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17909\"\u003eSeleniumHQ/selenium#17909\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[java] fix two flaky BiDi tests that left timing-dependent state behind by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17918\"\u003eSeleniumHQ/selenium#17918\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[java] Add warn annotation for undeclared field while JSON coercion  by \u003ca href=\"https://github.com/pujagani\"\u003e\u003ccode\u003e@​pujagani\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17917\"\u003eSeleniumHQ/selenium#17917\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[py] temporarily disable nightly TestPyPI publishing by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17920\"\u003eSeleniumHQ/selenium#17920\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[rb] fix Safari test failures by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17922\"\u003eSeleniumHQ/selenium#17922\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] fix the issues that caused the release workflow to fail during last release by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17921\"\u003eSeleniumHQ/selenium#17921\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRevert \u0026quot;[py] temporarily disable nightly TestPyPI publishing (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17920\"\u003e#17920\u003c/a\u003e)\u0026quot; by \u003ca href=\"https://github.com/diemol\"\u003e\u003ccode\u003e@​diemol\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17924\"\u003eSeleniumHQ/selenium#17924\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[rb] fix silent hang on oversized WebSocket frames by \u003ca href=\"https://github.com/aguspe\"\u003e\u003ccode\u003e@​aguspe\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17655\"\u003eSeleniumHQ/selenium#17655\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[js] Ensure BiDi is not exposed on Driver by \u003ca href=\"https://github.com/pujagani\"\u003e\u003ccode\u003e@​pujagani\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17926\"\u003eSeleniumHQ/selenium#17926\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[docs] charter: link the accepted BiDi support boundary record by \u003ca href=\"https://github.com/AutomatedTester\"\u003e\u003ccode\u003e@​AutomatedTester\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17928\"\u003eSeleniumHQ/selenium#17928\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHonour the \u003ccode\u003eDO_NOT_TRACK\u003c/code\u003e env var by \u003ca href=\"https://github.com/shs96c\"\u003e\u003ccode\u003e@​shs96c\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17931\"\u003eSeleniumHQ/selenium#17931\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] record flaky tests on trunk and report weekly offenders to Slack by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17930\"\u003eSeleniumHQ/selenium#17930\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] ignore .bazelbsp/ IDE-generated directory by \u003ca href=\"https://github.com/diemol\"\u003e\u003ccode\u003e@​diemol\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17932\"\u003eSeleniumHQ/selenium#17932\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[adr] Install browser extensions from the driver directly by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17817\"\u003eSeleniumHQ/selenium#17817\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[py] generate the internal BiDi protocol layer from the shared binding-neutral schema by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17761\"\u003eSeleniumHQ/selenium#17761\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[rb] always reject a missing required inbound BiDi field by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17936\"\u003eSeleniumHQ/selenium#17936\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] make Java and .NET release reruns pass when already published by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17935\"\u003eSeleniumHQ/selenium#17935\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] Move dependency updates into a weekly workflow by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17934\"\u003eSeleniumHQ/selenium#17934\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[rb] accept a whole-valued float for an integer BiDi field by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17939\"\u003eSeleniumHQ/selenium#17939\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] unlock trunk once the release finishes writing to it by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17938\"\u003eSeleniumHQ/selenium#17938\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[js] Add serialization and domain layer by \u003ca href=\"https://github.com/pujagani\"\u003e\u003ccode\u003e@​pujagani\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17927\"\u003eSeleniumHQ/selenium#17927\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] stop updating browsers and CDP during release preparation by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17940\"\u003eSeleniumHQ/selenium#17940\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[py] update new BiDi layer generation to conform to latest proposed ADR by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17942\"\u003eSeleniumHQ/selenium#17942\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[dotnet] [bidi] Throw in case of unknown discriminator by \u003ca href=\"https://github.com/nvborisenko\"\u003e\u003ccode\u003e@​nvborisenko\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17948\"\u003eSeleniumHQ/selenium#17948\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[rb] reject an inbound BiDi scalar outside its union's declared arms by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17947\"\u003eSeleniumHQ/selenium#17947\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] alert Slack when a CDP update lands on trunk by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17950\"\u003eSeleniumHQ/selenium#17950\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[js][bidi] Add BiDi connection-level event subscription by \u003ca href=\"https://github.com/pujagani\"\u003e\u003ccode\u003e@​pujagani\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17946\"\u003eSeleniumHQ/selenium#17946\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[dotnet] [bidi] SetMediaFeaturesOverride command in Emulation module by \u003ca href=\"https://github.com/nvborisenko\"\u003e\u003ccode\u003e@​nvborisenko\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17953\"\u003eSeleniumHQ/selenium#17953\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/munawiki\"\u003e\u003ccode\u003e@​munawiki\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17851\"\u003eSeleniumHQ/selenium#17851\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/SeleniumHQ/selenium/compare/selenium-4.47.0...selenium-4.48.0\"\u003ehttps://github.com/SeleniumHQ/selenium/compare/selenium-4.47.0...selenium-4.48.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/27f5213055e28398a5105b7892b7a3bb2012a6ef\"\u003e\u003ccode\u003e27f5213\u003c/code\u003e\u003c/a\u003e [build] Prepare for release of selenium-4.48.0 (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17956\"\u003e#17956\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/857ff4fe490f4914c354979efb4f62c74fe387d9\"\u003e\u003ccode\u003e857ff4f\u003c/code\u003e\u003c/a\u003e [build] remove cddl updates from release preparation\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/2183264fb7c1d63c7cebc64ba5649b67902b4c35\"\u003e\u003ccode\u003e2183264\u003c/code\u003e\u003c/a\u003e [dotnet] [bidi] SetMediaFeaturesOverride command in Emulation module (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17953\"\u003e#17953\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/5fd1f414be84a2e5b3753512fb1555d91c5c9ae1\"\u003e\u003ccode\u003e5fd1f41\u003c/code\u003e\u003c/a\u003e [build] unlock trunk when release preparation PR is closed without merging\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/5b053b5a2684a2104a56088d90d6c5e278d21e1e\"\u003e\u003ccode\u003e5b053b5\u003c/code\u003e\u003c/a\u003e [js][bidi] Add BiDi connection-level event subscription (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17946\"\u003e#17946\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/498c0e7e8dd4e314710e69855898e877d3fe291f\"\u003e\u003ccode\u003e498c0e7\u003c/code\u003e\u003c/a\u003e [build] alert Slack when a CDP update lands on trunk (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17950\"\u003e#17950\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/7bfaedb223f530da5b6e1e8e0038c50100bd6c4f\"\u003e\u003ccode\u003e7bfaedb\u003c/code\u003e\u003c/a\u003e [rb] reject an inbound BiDi scalar outside its union's declared arms (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17947\"\u003e#17947\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/083869ccd9866da3975b7f9cd8496a8ca864c62f\"\u003e\u003ccode\u003e083869c\u003c/code\u003e\u003c/a\u003e [dotnet] [bidi] Throw in case of unknown discriminator (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17948\"\u003e#17948\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/5b3666d62507b79ae08b0bf0e18604c28bb8f404\"\u003e\u003ccode\u003e5b3666d\u003c/code\u003e\u003c/a\u003e [py] update new BiDi layer generation to conform to latest proposed ADR (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17942\"\u003e#17942\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/a4b3c3d00c8b23177c61eb8820bdb1a308a20eac\"\u003e\u003ccode\u003ea4b3c3d\u003c/code\u003e\u003c/a\u003e [build] stop updating browsers and CDP during release preparation (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17940\"\u003e#17940\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/SeleniumHQ/selenium/compare/selenium-4.47.0...selenium-4.48.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.squareup.okhttp3:okhttp-jvm` from 5.4.0 to 5.5.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/lysine-dev/okhttp/blob/main/CHANGELOG.md\"\u003ecom.squareup.okhttp3:okhttp-jvm's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 5.5.0\u003c/h2\u003e\n\u003cp\u003e\u003cem\u003e2026-08-16\u003c/em\u003e\u003c/p\u003e\n\u003cp\u003eThis release introduces \u003cstrong\u003eopt-in\u003c/strong\u003e support for [Encrypted Client Hello (ECH)]. This new feature\nimproves user privacy by encrypting domain names in transit. With regular TLS, your coffee shop’s\nWi-Fi router can see that you’re visiting \u003cem\u003ewikipedia.com\u003c/em\u003e, but it cannot see which page you’re\nlooking at. With ECH, the router observes only the IP address. This additional privacy is most\neffective on sites hosted by big CDNs because the IP address doesn’t imply a particular website.\u003c/p\u003e\n\u003cp\u003eThis requires ECH support in the platform’s TLS stack. Today this is only Android 17 (API 37,\nreleased June 2026). When other TLS stacks add ECH support, we'll integrate them.\u003c/p\u003e\n\u003cp\u003eECH took a lot of work to implement because the encryption keys are published over DNS in the\n[HTTPS resource record], and we needed to write new code to fetch these records. This release\nincludes a major update to OkHttp’s DNS API: it now supports multiple resource record types (not\njust IP addresses!), asynchronous streaming results, and in-memory caching.\u003c/p\u003e\n\u003cp\u003eTo opt in, you can use \u003ccode\u003eDnsOverHttps\u003c/code\u003e:\u003c/p\u003e\n\u003cpre lang=\"kotlin\"\u003e\u003ccode\u003e// DnsOverHttps itself uses OkHttpClient. Build both clients upon the\n// same bootstrap client so they share a connection pool and dispatcher.\nval bootstrapClient = OkHttpClient()\n\u003cp\u003e// This sample uses Cloudflare's 1.1.1.1 DnsOverHttps service.\nval client = bootstrapClient.newBuilder()\n.dns(DnsOverHttps.Builder()\n.client(bootstrapClient)\n.url(\u0026quot;\u003ca href=\"https://1.1.1.1/dns-query\u0026amp;quot;.toHttpUrl()\"\u003ehttps://1.1.1.1/dns-query\u0026amp;quot;.toHttpUrl()\u003c/a\u003e)\n.build())\n.build()\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003cp\u003eYou could also opt in with our new \u003ccode\u003eAndroidDns\u003c/code\u003e API. Unfortunately, the privacy benefits of ECH are\nthwarted because its DNS queries are not encrypted by default.\u003c/p\u003e\n\u003cpre lang=\"kotlin\"\u003e\u003ccode\u003e// AndroidDns fetches the HTTPS DNS resource records necessary for ECH.\nval client = OkHttpClient.Builder()\n  .dns(AndroidDns())\n  .build()\n\u003c/code\u003e\u003c/pre\u003e\n\u003cul\u003e\n\u003cli\u003eNew: OkHttp artifacts are now signed with our [new signing key]. This project and three sibling\nprojects ([Retrofit], [Okio], and [SQLDelight]) recently joined [the Commonhaus Foundation].\u003c/li\u003e\n\u003cli\u003eFix: MockWebServer’s \u003ccode\u003e@StartStop\u003c/code\u003e annotation now supports \u003ccode\u003e@Nested\u003c/code\u003e JUnit 5 tests.\u003c/li\u003e\n\u003cli\u003eFix: Our default TLS hostname verifier now reject hosts that fail IP canonicalization.\u003c/li\u003e\n\u003cli\u003eFix: Closing a multipart part's sink no longer closes the entire request body.\u003c/li\u003e\n\u003cli\u003eFix: Flush HTTP/1 request bodies before detaching the timeout. We had a bug where timeouts\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/a94bdf152084d11acecd44dcd09ffef203f4f0aa\"\u003e\u003ccode\u003ea94bdf1\u003c/code\u003e\u003c/a\u003e Prepare for release 5.5.0.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/ecc3b05adfe6b2607b8ec251562c2cccf7c1923a\"\u003e\u003ccode\u003eecc3b05\u003c/code\u003e\u003c/a\u003e Use a fixed size for DoH request body (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9687\"\u003e#9687\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/9926082660dfa6f1cc848c6f465cf5ccb998e415\"\u003e\u003ccode\u003e9926082\u003c/code\u003e\u003c/a\u003e Revert \u0026quot;Use a fixed size for DoH request body\u0026quot; (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9686\"\u003e#9686\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/0070c2e7b4c162ee03abf1c88fd94083e94697f4\"\u003e\u003ccode\u003e0070c2e\u003c/code\u003e\u003c/a\u003e Use a fixed size for DoH request body\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/15764539c69842dad607462f102a2507223dbfe7\"\u003e\u003ccode\u003e1576453\u003c/code\u003e\u003c/a\u003e Order ServiceMetadata records per the spec (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9683\"\u003e#9683\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/fb582e976a9a82d691342a4d57b3c72208ce416c\"\u003e\u003ccode\u003efb582e9\u003c/code\u003e\u003c/a\u003e Flip wiring of Dns.SYSTEM (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9682\"\u003e#9682\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/4e884abb1a207c321acffb070c476acb4b89fa3f\"\u003e\u003ccode\u003e4e884ab\u003c/code\u003e\u003c/a\u003e retryOnConnectionFailure doesn't impact ECH retries (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9681\"\u003e#9681\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/0433cee8131b63fa2c0634fa2f9b3a01f9a8b1f3\"\u003e\u003ccode\u003e0433cee\u003c/code\u003e\u003c/a\u003e Only one contributing.md doc (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9678\"\u003e#9678\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/a2cf5aa9f8711dabe514871e9dc4a9336a0e403f\"\u003e\u003ccode\u003ea2cf5aa\u003c/code\u003e\u003c/a\u003e Don't recover after an ECH public_name fails to verify (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9680\"\u003e#9680\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/5410de9760bce8719129c3d08eb19e5bace75f6e\"\u003e\u003ccode\u003e5410de9\u003c/code\u003e\u003c/a\u003e Test ECH + HTTP proxy (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9671\"\u003e#9671\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/lysine-dev/okhttp/compare/parent-5.4.0...parent-5.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.dataformat:jackson-dataformat-yaml` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/3aab0261e5e03247fa0cd779de40c742c9ed847d\"\u003e\u003ccode\u003e3aab026\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-dataformats-text-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/0e4e5b9cdd2ef978411d0d67b991d02157403522\"\u003e\u003ccode\u003e0e4e5b9\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/3fd423826a06962319bbf5886be32723d2a35a75\"\u003e\u003ccode\u003e3fd4238\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/f0f96895fadd8a2063a73a12db8187b45305f29b\"\u003e\u003ccode\u003ef0f9689\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/50d9dfac796df6f2319394c7431f1c9319347005\"\u003e\u003ccode\u003e50d9dfa\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/0e9bdd490ae06b58f32de212618f71fcaadd36ab\"\u003e\u003ccode\u003e0e9bdd4\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/613de08b86c258aa7e96ee149c47676cf786b42f\"\u003e\u003ccode\u003e613de08\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/49dc929aa8d065073356f8b9bac314235a60e848\"\u003e\u003ccode\u003e49dc929\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/c09cd3f517982471e044a1f91f0865d07322ea14\"\u003e\u003ccode\u003ec09cd3f\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-dataformats-text-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/096a670a930a9f15886588784252e2c2bdab31ec\"\u003e\u003ccode\u003e096a670\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/compare/jackson-dataformats-text-2.22.1...jackson-dataformats-text-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.core:jackson-databind` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/25b2a221f9aa4107e455065a74635e209418cf55\"\u003e\u003ccode\u003e25b2a22\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bab1c1a702a941f8805ee6698e8fa4fdbfbec54a\"\u003e\u003ccode\u003ebab1c1a\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bc03cf83d74cf0e5944dce33a63ee59ddc344b64\"\u003e\u003ccode\u003ebc03cf8\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/83379fb6409075336edf3d8d88744e95911a43f8\"\u003e\u003ccode\u003e83379fb\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/0d400c9dc586fdd460d0c6a40db21ebbe22106d8\"\u003e\u003ccode\u003e0d400c9\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/ce36a279f8b078bef2d9d44a1d01034c3634f91a\"\u003e\u003ccode\u003ece36a27\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7a209e1fa97033746db50fd7bcd1e3dbab077599\"\u003e\u003ccode\u003e7a209e1\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/a432707afe6b7569243d1c2d8052a1bf33d9279c\"\u003e\u003ccode\u003ea432707\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/176df1d48b256ced412c65293ad4e09393e24bd3\"\u003e\u003ccode\u003e176df1d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7785f5f9ed24127e004115472c47b26ea4cf2774\"\u003e\u003ccode\u003e7785f5f\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-databind/compare/jackson-databind-2.22.1...jackson-databind-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.puppycrawl.tools:checkstyle` from 12.3.1 to 14.0.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/checkstyle/checkstyle/releases\"\u003ecom.puppycrawl.tools:checkstyle's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003echeckstyle-14.0.0\u003c/h2\u003e\n\u003cp\u003eCheckstyle 14.0.0 - \u003ca href=\"https://checkstyle.org/releasenotes.html#Release_14.0.0\"\u003ehttps://checkstyle.org/releasenotes.html#Release_14.0.0\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eNew:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/8240\"\u003e#8240\u003c/a\u003e - Java Grammar: module-info.java support.\u003c/p\u003e\n\u003cp\u003eBug fixes:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21112\"\u003e#21112\u003c/a\u003e - InvalidJavadocPosition: false positive on module-info.java Javadoc.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21110\"\u003e#21110\u003c/a\u003e - PackageDeclaration: false positive \u0026quot;Missing package declaration\u0026quot; on module-info.java.\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003echeckstyle-13.11.0\u003c/h2\u003e\n\u003cp\u003eCheckstyle 13.11.0 - \u003ca href=\"https://checkstyle.org/releasenotes.html#Release_13.11.0\"\u003ehttps://checkstyle.org/releasenotes.html#Release_13.11.0\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eBreaking backward compatibility:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21080\"\u003e#21080\u003c/a\u003e - WriteTag: remove tagSeverity property and make Check to work only for violation of tag absence.\u003c/p\u003e\n\u003cp\u003eNew:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20984\"\u003e#20984\u003c/a\u003e - new Check: PreferLiteralJavadocInlineTag.\u003c/p\u003e\n\u003cp\u003eBug fixes:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/13426\"\u003e#13426\u003c/a\u003e - Xdoc file generation should be separate project that executes in maven build as just another phase; remove doxia dependency.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21222\"\u003e#21222\u003c/a\u003e - Add PreferLiteralJavadocInlineTag in openjdk_checks.xml.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21101\"\u003e#21101\u003c/a\u003e - google_checks.xml: LocalVariableName/LocalFinalVariableName false positive for identifier example \u0026quot;guava33_4_6\u0026quot; from Google Java Style Guide.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20973\"\u003e#20973\u003c/a\u003e - Javadoc parse error on quoted HTML attribute value containing '\u003ccode\u003e\u0026lt;\u003c/code\u003e'.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19913\"\u003e#19913\u003c/a\u003e - Documentation Comments Style Guide - Avoid Latin.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/17728\"\u003e#17728\u003c/a\u003e - Google style: False negative missing spacing between type and variable.\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/2feea2e4223f0a7acdee9c498234d79fd09cc018\"\u003e\u003ccode\u003e2feea2e\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release checkstyle-14.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/9b5b44f5d708df54d670d8831cfc51ecae88c3bd\"\u003e\u003ccode\u003e9b5b44f\u003c/code\u003e\u003c/a\u003e doc: release notes for 14.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/9c5344b48e6b48c6cfb58648a3c6a6d4b420a347\"\u003e\u003ccode\u003e9c5344b\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21112\"\u003e#21112\u003c/a\u003e: Fix InvalidJavadocPosition false positive on module Javadoc\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/21cdce9bfdfc0062892f2ce45138a2489c9b7e05\"\u003e\u003ccode\u003e21cdce9\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21245\"\u003e#21245\u003c/a\u003e: Resolve Commons Logging incompatibility with XWiki validation\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/f1cdd26f76d7b57a9777b011e9cc26a11305bc34\"\u003e\u003ccode\u003ef1cdd26\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21110\"\u003e#21110\u003c/a\u003e: Fix PackageDeclaration false positive on module-info.java\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/48b0316dfa4e3efa7cb727f91cbb07b19bc95eee\"\u003e\u003ccode\u003e48b0316\u003c/code\u003e\u003c/a\u003e infra: use pull_request_target for site workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/e7d79f5b4b357ceda24ea8b0b9df1891eb8b3e00\"\u003e\u003ccode\u003ee7d79f5\u003c/code\u003e\u003c/a\u003e doc: mention 14.x in JRE matrix and Java 25 language support on index page\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/86c9dae51bcba40ebcf3181eb9c88232807401ce\"\u003e\u003ccode\u003e86c9dae\u003c/code\u003e\u003c/a\u003e minor: Bump version to 14.0.0-SNAPSHOT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/74d612a49fefe6f28b777fe041995654ca62da17\"\u003e\u003ccode\u003e74d612a\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/8240\"\u003e#8240\u003c/a\u003e: Add grammar support for module-info.java\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/0a64d24f2469a0ab5b236c18a5c930d013eb3f62\"\u003e\u003ccode\u003e0a64d24\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21207\"\u003e#21207\u003c/a\u003e: Make LocalFinalVariableName default-config example Example1\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/checkstyle/checkstyle/compare/checkstyle-12.3.1...checkstyle-14.0.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\u003cdetails\u003e\n\u003csummary\u003eMost Recent Ignore Conditions Applied to This Pull Request\u003c/summary\u003e\n\n| Dependency Name | Ignore Conditions |\n| --- | --- |\n| com.puppycrawl.tools:checkstyle | [\u003e= 13.a0, \u003c 14] |\n\u003c/details\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n\u003c/details\u003e","html_url":"https://github.com/BoykaFramework/boyka-framework/pull/1214","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/BoykaFramework%2Fboyka-framework/issues/1214","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/1214/packages"},{"uuid":"5291006551","node_id":"PR_kwDOHkBeUs8AAAABBfYHww","number":59,"state":"closed","title":"Bump the all group across 1 directory with 10 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-06T07:53:09.000Z","author_association":null,"state_reason":null,"created_at":"2026-08-30T07:53:26.000Z","updated_at":"2026-09-06T07:53:11.000Z","time_to_close":604783,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"all","update_count":10,"packages":[{"name":"org.junit:junit-bom","old_version":"6.1.1","new_version":"6.1.3","repository_url":"https://github.com/junit-team/junit-framework"},{"name":"io.javalin:javalin","old_version":"7.2.2","new_version":"7.2.3","repository_url":"https://github.com/javalin/javalin"},{"name":"com.fasterxml.jackson.datatype:jackson-datatype-jsr310","old_version":"2.22.0","new_version":"2.22.2"},{"name":"org.flywaydb:flyway-core","old_version":"12.10.0","new_version":"12.11.0"},{"name":"org.flywaydb:flyway-database-postgresql","old_version":"12.10.0","new_version":"12.11.0"},{"name":"org.postgresql:postgresql","old_version":"42.7.12","new_version":"42.7.13","repository_url":"https://github.com/pgjdbc/pgjdbc"},{"name":"ch.qos.logback:logback-classic","old_version":"1.5.37","new_version":"1.6.3","repository_url":"https://github.com/qos-ch/logback"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"io.github.hakky54:logcaptor","old_version":"2.12.6","new_version":"2.12.7","repository_url":"https://github.com/Hakky54/log-captor"},{"name":"io.rest-assured:rest-assured","old_version":"6.0.0","new_version":"6.0.1","repository_url":"https://github.com/rest-assured/rest-assured"}],"path":null,"ecosystem":"maven"},"body":"Bumps the all group with 10 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [org.junit:junit-bom](https://github.com/junit-team/junit-framework) | `6.1.1` | `6.1.3` |\n| [io.javalin:javalin](https://github.com/javalin/javalin) | `7.2.2` | `7.2.3` |\n| com.fasterxml.jackson.datatype:jackson-datatype-jsr310 | `2.22.0` | `2.22.2` |\n| org.flywaydb:flyway-core | `12.10.0` | `12.11.0` |\n| org.flywaydb:flyway-database-postgresql | `12.10.0` | `12.11.0` |\n| [org.postgresql:postgresql](https://github.com/pgjdbc/pgjdbc) | `42.7.12` | `42.7.13` |\n| [ch.qos.logback:logback-classic](https://github.com/qos-ch/logback) | `1.5.37` | `1.6.3` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [io.github.hakky54:logcaptor](https://github.com/Hakky54/log-captor) | `2.12.6` | `2.12.7` |\n| [io.rest-assured:rest-assured](https://github.com/rest-assured/rest-assured) | `6.0.0` | `6.0.1` |\n\n\nUpdates `org.junit:junit-bom` from 6.1.1 to 6.1.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/junit-team/junit-framework/releases\"\u003eorg.junit:junit-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003cp\u003eJUnit 6.1.3 = Platform 6.1.3 + Jupiter 6.1.3 + Vintage 6.1.3\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.3/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.2...r6.1.3\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.2...r6.1.3\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.2 = Platform 6.1.2 + Jupiter 6.1.2 + Vintage 6.1.2\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.2/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.2\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.2\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/f59f60d2cebdf2224235d81f781b1f310cbc8138\"\u003e\u003ccode\u003ef59f60d\u003c/code\u003e\u003c/a\u003e Release 6.1.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/cd8ec9202ce8260a434edb38a8565e36f620e8d6\"\u003e\u003ccode\u003ecd8ec92\u003c/code\u003e\u003c/a\u003e Finalize 6.1.3 release notes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/c8729f26aacd8e2dd6fa564b929fe047faaa7dc9\"\u003e\u003ccode\u003ec8729f2\u003c/code\u003e\u003c/a\u003e Restore compatibility with GraalVM 25 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5901\"\u003e#5901\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/ddc9e74e5d21c2dd18bc0cfe4681d5ff50ac379c\"\u003e\u003ccode\u003eddc9e74\u003c/code\u003e\u003c/a\u003e Update graalvm/setup-graalvm action to v1.6.4 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5959\"\u003e#5959\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/fe2c52a780fcbda6c7ccf5d6576beb7ad2d80bf8\"\u003e\u003ccode\u003efe2c52a\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.7 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5923\"\u003e#5923\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/62afc02b541ee9dfa16b121705f79b7d44f4dae0\"\u003e\u003ccode\u003e62afc02\u003c/code\u003e\u003c/a\u003e Delay GraalVM plugin updates for 3 days\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/0cc29022801365a409c1213a811a8877cb88cce3\"\u003e\u003ccode\u003e0cc2902\u003c/code\u003e\u003c/a\u003e Skip \u003ccode\u003egraalVmTest\u003c/code\u003e task if GraalVM env vars are not set\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/f6bbfc53e7e00b1b25e7d3b0bc09eef05cc4b721\"\u003e\u003ccode\u003ef6bbfc5\u003c/code\u003e\u003c/a\u003e Move GraalVM tests to separate test task (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5903\"\u003e#5903\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/e87e0521d4fbd75116a5fda42566fcb7a56eb340\"\u003e\u003ccode\u003ee87e052\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.6 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5899\"\u003e#5899\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/1cd56df89754fb8523ac9fbbf888e9a552e33ee8\"\u003e\u003ccode\u003e1cd56df\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.5 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5880\"\u003e#5880\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.javalin:javalin` from 7.2.2 to 7.2.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/javalin/javalin/releases\"\u003eio.javalin:javalin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e7.2.3\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e[workflow]: Bump codecov/codecov-action from 6.0.0 to 6.0.1 in the dependencies group by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2597\"\u003ejavalin/javalin#2597\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[deps] Bump grouped dependencies (excluding Jetty) by \u003ca href=\"https://github.com/tipsy\"\u003e\u003ccode\u003e@​tipsy\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2604\"\u003ejavalin/javalin#2604\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd default enum converters for validation by \u003ca href=\"https://github.com/tipsy\"\u003e\u003ccode\u003e@​tipsy\u003c/code\u003e\u003c/a\u003e with \u003ca href=\"https://github.com/Copilot\"\u003e\u003ccode\u003e@​Copilot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2600\"\u003ejavalin/javalin#2600\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eContext.addHeader\u003c/code\u003e method by \u003ca href=\"https://github.com/tipsy\"\u003e\u003ccode\u003e@​tipsy\u003c/code\u003e\u003c/a\u003e with \u003ca href=\"https://github.com/Copilot\"\u003e\u003ccode\u003e@​Copilot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2605\"\u003ejavalin/javalin#2605\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[workflow]: Bump codecov/codecov-action from 6.0.1 to 7.0.0 in the dependencies group by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2606\"\u003ejavalin/javalin#2606\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[http] Return 404 for unrecognized request methods instead of 500 by \u003ca href=\"https://github.com/tipsy\"\u003e\u003ccode\u003e@​tipsy\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2609\"\u003ejavalin/javalin#2609\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[workflow]: Bump the dependencies group across 1 directory with 2 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2612\"\u003ejavalin/javalin#2612\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eStream static files instead of reading all bytes into memory by \u003ca href=\"https://github.com/tipsy\"\u003e\u003ccode\u003e@​tipsy\u003c/code\u003e\u003c/a\u003e with \u003ca href=\"https://github.com/Copilot\"\u003e\u003ccode\u003e@​Copilot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2618\"\u003ejavalin/javalin#2618\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd application/xml to ContentType by \u003ca href=\"https://github.com/tipsy\"\u003e\u003ccode\u003e@​tipsy\u003c/code\u003e\u003c/a\u003e with \u003ca href=\"https://github.com/Copilot\"\u003e\u003ccode\u003e@​Copilot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2619\"\u003ejavalin/javalin#2619\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[deps]: Bump the dependencies group across 1 directory with 32 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2617\"\u003ejavalin/javalin#2617\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[deps] Bump stable deps and sync OptionalDependency.kt by \u003ca href=\"https://github.com/tipsy\"\u003e\u003ccode\u003e@​tipsy\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2624\"\u003ejavalin/javalin#2624\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/javalin/javalin/compare/javalin-parent-7.2.1...javalin-parent-7.2.3\"\u003ehttps://github.com/javalin/javalin/compare/javalin-parent-7.2.1...javalin-parent-7.2.3\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/8c12b9f8a5ecf889b54db7d6b2a7539490ceb86b\"\u003e\u003ccode\u003e8c12b9f\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release javalin-parent-7.2.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/3208ac58c1039987af1898ace8b0d55dc98072c6\"\u003e\u003ccode\u003e3208ac5\u003c/code\u003e\u003c/a\u003e [deps] Bump stable deps and sync OptionalDependency.kt (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2624\"\u003e#2624\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/54f055984f3b78135338f667d169bff77b383aa2\"\u003e\u003ccode\u003e54f0559\u003c/code\u003e\u003c/a\u003e [deps]: Bump the dependencies group across 1 directory with 32 updates (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2617\"\u003e#2617\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/48bf31c3e0fc9f218470dde17de67499fbf549eb\"\u003e\u003ccode\u003e48bf31c\u003c/code\u003e\u003c/a\u003e [content-type] Add application/xml (closes \u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2614\"\u003e#2614\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/c83b8b24982ea841345c6e2ca2f2c89e20007ccf\"\u003e\u003ccode\u003ec83b8b2\u003c/code\u003e\u003c/a\u003e [static-files] Stream static files instead of reading into memory (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2618\"\u003e#2618\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/6600d23a36eca699d57cca14110c3fb181222ed9\"\u003e\u003ccode\u003e6600d23\u003c/code\u003e\u003c/a\u003e [workflow]: Bump the dependencies group across 1 directory with 2 updates (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2\"\u003e#2\u003c/a\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/0ae00cac808d0d4418775ba04c54e2cd1d0af686\"\u003e\u003ccode\u003e0ae00ca\u003c/code\u003e\u003c/a\u003e [http] Return 404 for unrecognized request methods instead of 500 (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2609\"\u003e#2609\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/c397adc7ebb6a509de8b2a695d4f9a9b76667a9c\"\u003e\u003ccode\u003ec397adc\u003c/code\u003e\u003c/a\u003e [workflow]: Bump codecov/codecov-action in the dependencies group (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2606\"\u003e#2606\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/fd59a40fb123f121475202cfbf71071b0f7f0952\"\u003e\u003ccode\u003efd59a40\u003c/code\u003e\u003c/a\u003e [context] Add \u003ccode\u003eContext.addHeader\u003c/code\u003e method (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2605\"\u003e#2605\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/4b82867a17b4af68090b0e6247eb847bb56da999\"\u003e\u003ccode\u003e4b82867\u003c/code\u003e\u003c/a\u003e [validation] Add default enum converters (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2600\"\u003e#2600\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/javalin/javalin/compare/javalin-parent-7.2.2...javalin-parent-7.2.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.datatype:jackson-datatype-jsr310` from 2.22.0 to 2.22.2\n\nUpdates `org.flywaydb:flyway-core` from 12.10.0 to 12.11.0\n\nUpdates `org.flywaydb:flyway-database-postgresql` from 12.10.0 to 12.11.0\n\nUpdates `org.flywaydb:flyway-database-postgresql` from 12.10.0 to 12.11.0\n\nUpdates `org.postgresql:postgresql` from 42.7.12 to 42.7.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/pgjdbc/pgjdbc/releases\"\u003eorg.postgresql:postgresql's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev42.7.13\u003c/h2\u003e\n\u003ch2\u003eChanges\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edocs: add 42.7.13 release changelog \u003ca href=\"https://github.com/davecramer\"\u003e\u003ccode\u003e@​davecramer\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4270\"\u003e#4270\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdjust EditorConfig für Makefile \u003ca href=\"https://github.com/BaumiCoder\"\u003e\u003ccode\u003e@​BaumiCoder\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4279\"\u003e#4279\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(scram): fail closed on channel-binding downgrade (no scram bump) \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4272\"\u003e#4272\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump pgjdbc version from 42.7.12 to 42.7.13 \u003ca href=\"https://github.com/davecramer\"\u003e\u003ccode\u003e@​davecramer\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4269\"\u003e#4269\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore: remove test-anorm-sbt module and its disabled CI wiring \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4261\"\u003e#4261\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003erefactor(test-gss): convert to Java/JUnit 5 submodule of the main build \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4166\"\u003e#4166\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: derive PG test versions from a Renovate-managed maxPgVersion \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4218\"\u003e#4218\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(insert): cap reWriteBatchedInserts by the protocol limit, not 128 \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4207\"\u003e#4207\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003erefactor(metadata): derive getPrimaryKeys from pg_constraint.conkey \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4202\"\u003e#4202\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(protocol): defer flushes until response processing \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4196\"\u003e#4196\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(build): resolve the Temurin 8 test toolchain by vendor \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4257\"\u003e#4257\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ebuild: include multi-release source sets in the JaCoCo coverage report \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4256\"\u003e#4256\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(ci): read java_vendor before overwriting java_distribution \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4255\"\u003e#4255\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: generate the whole matrix in one batch, coverage job included \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4253\"\u003e#4253\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: pass CODECOV_TOKEN so protected-branch coverage uploads succeed \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4254\"\u003e#4254\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: collect coverage on one pinned job \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4245\"\u003e#4245\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: apply -DqueryTimeout from the matrix query_timeout axis \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4246\"\u003e#4246\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: make Codecov project and patch statuses informational \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4244\"\u003e#4244\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(build): restore JaCoCo XML report so Codecov receives coverage \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4240\"\u003e#4240\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest(replication): shrink big-transaction inserts to avoid CI timeouts \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4243\"\u003e#4243\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eupdate maintainers \u003ca href=\"https://github.com/davecramer\"\u003e\u003ccode\u003e@​davecramer\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4222\"\u003e#4222\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: add hermetic test for localSocketAddress \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4224\"\u003e#4224\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003edocs(translation): clean up leftover German header in ja.po \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4206\"\u003e#4206\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUpdate ja.po \u003ca href=\"https://github.com/davecramer\"\u003e\u003ccode\u003e@​davecramer\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/2004\"\u003e#2004\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: add PostgreSQL 18 to the CI test matrix \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4198\"\u003e#4198\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: silence expected SSPI warning stack trace in SSPIClientWaffleTest \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4197\"\u003e#4197\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(ssl): build PKIX trust anchors without a KeyStore so FIPS-mode JVMs can load sslrootcert \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4193\"\u003e#4193\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: fix flaky sentLocationEqualToLastReceiveLSN replication test \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4175\"\u003e#4175\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ebuild: promote MethodCanBeStatic to error level \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4172\"\u003e#4172\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix PGInterval.setSeconds to reject out of range and NaN values \u003ca href=\"https://github.com/sehrope\"\u003e\u003ccode\u003e@​sehrope\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4194\"\u003e#4194\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eReplace connectThreadFactory with connectExecutor \u003ca href=\"https://github.com/sehrope\"\u003e\u003ccode\u003e@​sehrope\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4165\"\u003e#4165\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix deleting temp file when spooling large stream to disk in StreamWrapper \u003ca href=\"https://github.com/sehrope\"\u003e\u003ccode\u003e@​sehrope\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4190\"\u003e#4190\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore: Add top level /scratch to gitignore \u003ca href=\"https://github.com/sehrope\"\u003e\u003ccode\u003e@​sehrope\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4164\"\u003e#4164\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003erefactor: favour composition over inheritance for Driver.ConnectTask \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4160\"\u003e#4160\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix NumberParser.getFastLong(...) handling of overlong values \u003ca href=\"https://github.com/sehrope\"\u003e\u003ccode\u003e@​sehrope\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4163\"\u003e#4163\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ebuild: produce a multi-release jar from reduced-pom.xml on Java 11+ \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4157\"\u003e#4157\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdd connectThreadFactory and refactor Driver to use FutureTask for loginTimeout connection attempts \u003ca href=\"https://github.com/sehrope\"\u003e\u003ccode\u003e@​sehrope\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4120\"\u003e#4120\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: verify custom properties reach socket factory \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4125\"\u003e#4125\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: fix LazyCleanerTest timeouts for the lingering Java 8 cleanup thread \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4122\"\u003e#4122\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: stabilise StatementTest.fastCloses on Windows \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4121\"\u003e#4121\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: append default non-proxy hosts when socksNonProxyHosts is set \u003ca href=\"https://github.com/davecramer\"\u003e\u003ccode\u003e@​davecramer\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4045\"\u003e#4045\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: budget terminating Sync in BatchDeadlockTest small-RETURNING branch \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4116\"\u003e#4116\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: make message assertions locale-independent \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4113\"\u003e#4113\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ebuild: drop xgettext default keywords; regenerate translations \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4100\"\u003e#4100\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: opt-in scheduled workflows via ENABLE_SCHEDULED_JOBS repo variable \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4085\"\u003e#4085\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAvoid direct java.lang.management dependency in maxResultBuffer parser \u003ca href=\"https://github.com/mblakley-casana\"\u003e\u003ccode\u003e@​mblakley-casana\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4069\"\u003e#4069\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: restore pre-describe for generated-key batches \u003ca href=\"https://github.com/bilalshehata\"\u003e\u003ccode\u003e@​bilalshehata\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4014\"\u003e#4014\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/pgjdbc/pgjdbc/blob/master/CHANGELOG.md\"\u003eorg.postgresql:postgresql's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[42.7.13] (2026-07-06)\u003c/h2\u003e\n\u003ch3\u003eAdded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efeat: invalidate the prepared-statement cache when the server reports a \u003ccode\u003esearch_path\u003c/code\u003e change via GUC_REPORT (PostgreSQL 18+), so cached plans are no longer used against the wrong schema [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4259\"\u003e#4259\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4259\"\u003epgjdbc/pgjdbc#4259\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat: \u003ccode\u003ereWriteBatchedInserts\u003c/code\u003e now merges up to 32768 rows into one multi-values \u003ccode\u003eINSERT\u003c/code\u003e (bounded by the 65535 bind-parameter limit on the extended protocol) instead of capping at 128, which speeds up batches of few-column rows. The new \u003ccode\u003ereWriteBatchedInsertsSize\u003c/code\u003e connection property lowers that cap when set; the default of \u003ccode\u003e0\u003c/code\u003e uses that maximum. [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4207\"\u003e#4207\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4207\"\u003epgjdbc/pgjdbc#4207\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat: invalidate the prepared-statement cache after CREATE/DROP/ALTER so callers no longer trip on \u0026quot;cached plan must not change result type\u0026quot; without opting into \u003ccode\u003eautosave=ALWAYS\u003c/code\u003e. Controlled by the new \u003ccode\u003eflushCacheOnDdl\u003c/code\u003e connection property (default \u003ccode\u003etrue\u003c/code\u003e); set to \u003ccode\u003efalse\u003c/code\u003e for the prior behaviour. [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4067\"\u003e#4067\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4067\"\u003epgjdbc/pgjdbc#4067\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat: add \u003ccode\u003econnectExecutor\u003c/code\u003e connection property to customize the \u003ccode\u003eExecutor\u003c/code\u003e used to run the worker task that performs the connection attempt when \u003ccode\u003eloginTimeout\u003c/code\u003e is in effect. The value is the fully qualified name of a class implementing \u003ccode\u003ejava.util.concurrent.Executor\u003c/code\u003e. With a null value, the default, the driver retains the prior behavior of running the connection attempt on a daemon thread named \u003ccode\u003e\u0026quot;PostgreSQL JDBC driver connection thread\u0026quot;\u003c/code\u003e. The executor must run the task on a thread other than the caller's. Running the attempt on a named thread lets applications that monitor driver-created threads identify it. [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4165\"\u003e#4165\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4165\"\u003epgjdbc/pgjdbc#4165\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat: add \u003ccode\u003eclassLoaderStrategy\u003c/code\u003e connection property to control which classloaders the driver searches when loading a class named by a connection property, for example \u003ccode\u003esocketFactory\u003c/code\u003e. The default \u003ccode\u003edriver-first\u003c/code\u003e now falls back to the thread context classloader when the driver's classloader cannot resolve the class, which fixes class loading in non-flat class paths such as Quarkus and OSGi. Set \u003ccode\u003edriver\u003c/code\u003e to keep the previous driver-classloader-only behaviour, or \u003ccode\u003econtext-first\u003c/code\u003e to prefer the thread context classloader [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/2112\"\u003e#2112\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/2112\"\u003epgjdbc/pgjdbc#2112\u003c/a\u003e) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4167\"\u003e#4167\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4167\"\u003epgjdbc/pgjdbc#4167\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat: add OID constants for geometric arrays, \u003ccode\u003eRECORD\u003c/code\u003e, and \u003ccode\u003erefcursor\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4220\"\u003e#4220\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4220\"\u003epgjdbc/pgjdbc#4220\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat: \u003ccode\u003eLargeObject\u003c/code\u003e \u003ccode\u003eBlobInputStream\u003c/code\u003e now skips by seeking instead of reading, and the driver exposes the server version so it can select the 64-bit large-object API where available [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4204\"\u003e#4204\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4204\"\u003epgjdbc/pgjdbc#4204\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003erefactor: the worker that runs the connection attempt under \u003ccode\u003eloginTimeout\u003c/code\u003e is now a \u003ccode\u003eFutureTask\u003c/code\u003e (\u003ccode\u003eConnectTask\u003c/code\u003e) instead of the hand-rolled \u003ccode\u003eConnectThread\u003c/code\u003e. When the caller hits the timeout, the task is now cancelled with \u003ccode\u003ecancel(true)\u003c/code\u003e, which interrupts the worker thread rather than letting it run to completion. This makes the connection attempt interruptible, so \u003ccode\u003eloginTimeout\u003c/code\u003e can stop a slow connection attempt instead of leaking a thread. As before, a connection that the worker still manages to establish after the caller gives up is closed by the worker so that it does not leak. There are no public API changes and this should only lead to faster background resource cleanup for connections that time out. [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4120\"\u003e#4120\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4120\"\u003epgjdbc/pgjdbc#4120\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore: \u003ccode\u003ePGXAConnection.ConnectionHandler\u003c/code\u003e now rejects \u003ccode\u003esetAutoCommit(false)\u003c/code\u003e and \u003ccode\u003esetSavepoint(...)\u003c/code\u003e during an active XA branch, in addition to the long-rejected \u003ccode\u003esetAutoCommit(true)\u003c/code\u003e / \u003ccode\u003ecommit()\u003c/code\u003e / \u003ccode\u003erollback()\u003c/code\u003e. The \u003ccode\u003esetSavepoint\u003c/code\u003e rejection was already meant to be in place but the guard misspelled the method name as \u003ccode\u003esetSavePoint\u003c/code\u003e, so savepoints silently went through. Both changes bring the proxy in line with JTA 1.2 §3.4. [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4114\"\u003e#4114\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4114\"\u003epgjdbc/pgjdbc#4114\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore: \u003ccode\u003ecommitPrepared\u003c/code\u003e / \u003ccode\u003erollback\u003c/code\u003e-of-prepared now return \u003ccode\u003eXAER_RMFAIL\u003c/code\u003e instead of \u003ccode\u003eXAER_RMERR\u003c/code\u003e when the underlying connection is left in a non-idle \u003ccode\u003eTransactionState\u003c/code\u003e. Transaction managers (Geronimo, Narayana, Atomikos) treat \u003ccode\u003eXAER_RMFAIL\u003c/code\u003e as retryable on a fresh \u003ccode\u003eXAResource\u003c/code\u003e; the prepared transaction is no longer abandoned. [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4114\"\u003e#4114\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4114\"\u003epgjdbc/pgjdbc#4114\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003erefactor: derive \u003ccode\u003egetPrimaryKeys\u003c/code\u003e from \u003ccode\u003epg_constraint.conkey\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4202\"\u003e#4202\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4202\"\u003epgjdbc/pgjdbc#4202\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efix: the published GitHub release now ships the released \u003ccode\u003epostgresql-\u0026lt;version\u0026gt;.jar\u003c/code\u003e and its detached PGP signature, taken from the same signed build that is uploaded to Maven Central, instead of a leftover SNAPSHOT jar [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3812\"\u003e#3812\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3812\"\u003epgjdbc/pgjdbc#3812\u003c/a\u003e) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3814\"\u003e#3814\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/3814\"\u003epgjdbc/pgjdbc#3814\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: simplify the \u003ccode\u003eStatement#cancel\u003c/code\u003e state machine by dropping the redundant \u003ccode\u003eCANCELLED\u003c/code\u003e state. \u003ccode\u003ekillTimerTask\u003c/code\u003e now waits for the state to return to \u003ccode\u003eIDLE\u003c/code\u003e directly, which removes a spin-forever case when more than one thread observes the cancel completing [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/1827\"\u003e#1827\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/1827\"\u003epgjdbc/pgjdbc#1827\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eperf: defer simple-query flushes until the driver reads the response, allowing \u003ccode\u003eBEGIN\u003c/code\u003e and the following query to share a network flush [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3894\"\u003e#3894\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3894\"\u003epgjdbc/pgjdbc#3894\u003c/a\u003e) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4196\"\u003e#4196\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4196\"\u003epgjdbc/pgjdbc#4196\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003ereWriteBatchedInserts\u003c/code\u003e no longer throws \u003ccode\u003eIllegalArgumentException\u003c/code\u003e when batching a parameterless \u003ccode\u003eINSERT\u003c/code\u003e (for example \u003ccode\u003eINSERT INTO t VALUES (1, 2)\u003c/code\u003e) of 256 rows or more [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4207\"\u003e#4207\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4207\"\u003epgjdbc/pgjdbc#4207\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: a comment before \u003ccode\u003eCALL\u003c/code\u003e in a \u003ccode\u003eCallableStatement\u003c/code\u003e no longer hides the native call, so OUT parameter registration works for \u003ccode\u003e/* comment */ call proc(?, ?)\u003c/code\u003e and similar. \u003ccode\u003eParser.modifyJdbcCall\u003c/code\u003e now skips leading whitespace and SQL comments (both \u003ccode\u003e--\u003c/code\u003e and \u003ccode\u003e/* */\u003c/code\u003e) before the call, tolerates a trailing comment after a \u003ccode\u003e{ ... }\u003c/code\u003e escape, and no longer adds a spurious comma when moving an OUT parameter into a call whose arguments are only a comment [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/2538\"\u003e#2538\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/2538\"\u003epgjdbc/pgjdbc#2538\u003c/a\u003e) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4209\"\u003e#4209\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4209\"\u003epgjdbc/pgjdbc#4209\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003ePreparedStatement.toString()\u003c/code\u003e no longer throws for a \u003ccode\u003ebytea\u003c/code\u003e value supplied as text via \u003ccode\u003ePGobject\u003c/code\u003e. Hex-format values (\u003ccode\u003e\\x...\u003c/code\u003e) are validated and rendered as a \u003ccode\u003ebytea\u003c/code\u003e literal, and escape-format values are quoted and cast like any other literal [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3757\"\u003e#3757\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3757\"\u003epgjdbc/pgjdbc#3757\u003c/a\u003e) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4201\"\u003e#4201\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4201\"\u003epgjdbc/pgjdbc#4201\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: the driver no longer nulls the \u003ccode\u003econtextClassLoader\u003c/code\u003e of shared \u003ccode\u003eForkJoinPool.commonPool()\u003c/code\u003e worker threads, which previously left unrelated tasks on those threads running with a \u003ccode\u003enull\u003c/code\u003e classloader [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4155\"\u003e#4155\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4155\"\u003epgjdbc/pgjdbc#4155\u003c/a\u003e) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4156\"\u003e#4156\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4156\"\u003epgjdbc/pgjdbc#4156\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003ePgResultSet#getCharacterStream\u003c/code\u003e wraps \u003ccode\u003eString\u003c/code\u003e in a \u003ccode\u003eStringReader\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4063\"\u003e#4063\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4063\"\u003epgjdbc/pgjdbc#4063\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003ePGXAConnection\u003c/code\u003e no longer saves and restores the underlying connection's JDBC \u003ccode\u003eautoCommit\u003c/code\u003e flag. All XA-protocol SQL (\u003ccode\u003eBEGIN\u003c/code\u003e, \u003ccode\u003ePREPARE TRANSACTION\u003c/code\u003e, \u003ccode\u003eCOMMIT\u003c/code\u003e, \u003ccode\u003eROLLBACK\u003c/code\u003e, \u003ccode\u003eCOMMIT PREPARED\u003c/code\u003e, \u003ccode\u003eROLLBACK PREPARED\u003c/code\u003e, the \u003ccode\u003erecover()\u003c/code\u003e SELECT) is sent through \u003ccode\u003eQUERY_SUPPRESS_BEGIN\u003c/code\u003e, so the caller's \u003ccode\u003eautoCommit\u003c/code\u003e value is invariant across every \u003ccode\u003eXAResource\u003c/code\u003e call. Fixes the \u0026quot;2nd phase commit must be issued using an idle connection\u0026quot; failure during recovery on managed datasources that pool connections with \u003ccode\u003eautoCommit=false\u003c/code\u003e (TomEE, WildFly, WebSphere Liberty) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4114\"\u003e#4114\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4114\"\u003epgjdbc/pgjdbc#4114\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003ePGXAConnection.prepare()\u003c/code\u003e now mutates XA state only after \u003ccode\u003ePREPARE TRANSACTION\u003c/code\u003e succeeds. A failed \u003ccode\u003ePREPARE\u003c/code\u003e previously left the driver thinking the branch was already prepared, so the follow-up \u003ccode\u003erollback(xid)\u003c/code\u003e tried \u003ccode\u003eROLLBACK PREPARED\u003c/code\u003e against a non-existent gid and returned \u003ccode\u003eXAER_RMERR\u003c/code\u003e. Transaction managers (Narayana) escalated this to \u003ccode\u003eHeuristicMixedException\u003c/code\u003e. With the fix, \u003ccode\u003erollback(xid)\u003c/code\u003e takes the active-branch path and issues a plain \u003ccode\u003eROLLBACK\u003c/code\u003e, which the server accepts cleanly. Fixes [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3153\"\u003e#3153\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3153\"\u003epgjdbc/pgjdbc#3153\u003c/a\u003e), [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3123\"\u003e#3123\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3123\"\u003epgjdbc/pgjdbc#3123\u003c/a\u003e). [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4114\"\u003e#4114\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4114\"\u003epgjdbc/pgjdbc#4114\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: an updatable result set over an unqualified table name is now classified using only the table visible through \u003ccode\u003esearch_path\u003c/code\u003e. When two schemas held a table with the same name and the same primary or unique index name but a different set of key columns, the driver took the union of both schemas' columns, so the result set could be wrongly rejected as not updatable [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4214\"\u003e#4214\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4214\"\u003epgjdbc/pgjdbc#4214\u003c/a\u003e). Supersedes [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3400\"\u003e#3400\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/3400\"\u003epgjdbc/pgjdbc#3400\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003eLargeObject.close()\u003c/code\u003e now flushes a buffered output stream before marking the object closed, so closing a large object without an explicit \u003ccode\u003eflush()\u003c/code\u003e no longer drops buffered writes. The flush runs while the object is still open (it calls back into \u003ccode\u003eLargeObject.write()\u003c/code\u003e), and \u003ccode\u003elo_close\u003c/code\u003e always runs afterward; a failure from \u003ccode\u003elo_close\u003c/code\u003e no longer masks an earlier flush error, and the transaction is not committed when the flush failed [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4247\"\u003e#4247\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4247\"\u003epgjdbc/pgjdbc#4247\u003c/a\u003e) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4248\"\u003e#4248\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4248\"\u003epgjdbc/pgjdbc#4248\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003efix: reject empty \u003ccode\u003etimestamp\u003c/code\u003e, \u003ccode\u003etimestamptz\u003c/code\u003e, and \u003ccode\u003edate\u003c/code\u003e text with a clear \u003ccode\u003eSQLException\u003c/code\u003e (SQLState \u003ccode\u003e22007\u003c/code\u003e) instead of an \u003ccode\u003eArrayIndexOutOfBoundsException\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4278\"\u003e#4278\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4278\"\u003epgjdbc/pgjdbc#4278\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: return null \u003ccode\u003eCHAR_OCTET_LENGTH\u003c/code\u003e for non-character columns [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4231\"\u003e#4231\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4231\"\u003epgjdbc/pgjdbc#4231\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: honor scale in \u003ccode\u003eResultSet.getBigDecimal(int, int)\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4211\"\u003e#4211\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4211\"\u003epgjdbc/pgjdbc#4211\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: support \u003ccode\u003ejava.time\u003c/code\u003e values in an updatable \u003ccode\u003eResultSet\u003c/code\u003e \u003ccode\u003eupdateRow()\u003c/code\u003e / \u003ccode\u003einsertRow()\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3848\"\u003e#3848\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/3848\"\u003epgjdbc/pgjdbc#3848\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: improve batching when the \u003ccode\u003eRETURNING\u003c/code\u003e clause contains \u003ccode\u003evarchar\u003c/code\u003e or \u003ccode\u003enumeric\u003c/code\u003e types [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4014\"\u003e#4014\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4014\"\u003epgjdbc/pgjdbc#4014\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: correct \u003ccode\u003eestimatedReceiveBufferBytes\u003c/code\u003e accounting after a forced \u003ccode\u003eSync\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4014\"\u003e#4014\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4014\"\u003epgjdbc/pgjdbc#4014\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: avoid creating a transient \u003ccode\u003eResultSet\u003c/code\u003e for describe-statement purposes, and restore the pre-describe path for generated-key batches [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4014\"\u003e#4014\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4014\"\u003epgjdbc/pgjdbc#4014\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: add an explicit failure message when a multi-statement command executes in a batch [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4014\"\u003e#4014\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4014\"\u003epgjdbc/pgjdbc#4014\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: detect \u003ccode\u003esearch_path\u003c/code\u003e changes case-insensitively [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4216\"\u003e#4216\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4216\"\u003epgjdbc/pgjdbc#4216\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: auto-detect the SSL key format instead of relying on the \u003ccode\u003e.key\u003c/code\u003e extension [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3946\"\u003e#3946\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/3946\"\u003epgjdbc/pgjdbc#3946\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: build PKIX trust anchors without a \u003ccode\u003eKeyStore\u003c/code\u003e so FIPS JVMs work [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4193\"\u003e#4193\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4193\"\u003epgjdbc/pgjdbc#4193\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: use \u003ccode\u003egssResponseTimeout\u003c/code\u003e rather than \u003ccode\u003esslResponseTimeout\u003c/code\u003e for GSS connections [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4076\"\u003e#4076\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4076\"\u003epgjdbc/pgjdbc#4076\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: skip the autosave savepoint for \u003ccode\u003eSET LOCAL\u003c/code\u003e / \u003ccode\u003eSET SESSION TRANSACTION\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4203\"\u003e#4203\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4203\"\u003epgjdbc/pgjdbc#4203\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: do not throw \u003ccode\u003eAssertionError\u003c/code\u003e from \u003ccode\u003eBatchResultHandler\u003c/code\u003e on a closed connection [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4187\"\u003e#4187\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4187\"\u003epgjdbc/pgjdbc#4187\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: reject \u003ccode\u003eSQL_TSI_FRAC_SECOND\u003c/code\u003e with an explicit, explained error [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4229\"\u003e#4229\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4229\"\u003epgjdbc/pgjdbc#4229\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: reject a null URL in \u003ccode\u003eDriver.acceptsURL\u003c/code\u003e with a clear \u003ccode\u003eNullPointerException\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4205\"\u003e#4205\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4205\"\u003epgjdbc/pgjdbc#4205\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: reject overlong inputs in \u003ccode\u003eNumberParser.getFastLong\u003c/code\u003e instead of silently wrapping [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4163\"\u003e#4163\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4163\"\u003epgjdbc/pgjdbc#4163\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: reject out-of-range and NaN values in \u003ccode\u003ePGInterval.setSeconds\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4194\"\u003e#4194\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4194\"\u003epgjdbc/pgjdbc#4194\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: close the socket when \u003ccode\u003ePgConnection\u003c/code\u003e setup fails after connect [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4161\"\u003e#4161\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4161\"\u003epgjdbc/pgjdbc#4161\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: keep the \u003ccode\u003eLazyCleanerImpl\u003c/code\u003e cleanup task alive across a transient empty queue [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4038\"\u003e#4038\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4038\"\u003epgjdbc/pgjdbc#4038\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/3297557c6a8059d0d6e3522c79f0bd9a6f82ee07\"\u003e\u003ccode\u003e3297557\u003c/code\u003e\u003c/a\u003e docs: add 42.7.13 release changelog (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4270\"\u003e#4270\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/d93d370984fbbccd099fc6466e4075ba46d8ec59\"\u003e\u003ccode\u003ed93d370\u003c/code\u003e\u003c/a\u003e style: apply Autostyle to docs/ and .github/\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/2e05ff9e3ea9e8249f25dcb7017984285f1f76b1\"\u003e\u003ccode\u003e2e05ff9\u003c/code\u003e\u003c/a\u003e build: check docs/ and .github/ formatting with Autostyle\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/b4a6087d2f07b578923a5272fa0155602ade9d40\"\u003e\u003ccode\u003eb4a6087\u003c/code\u003e\u003c/a\u003e Adjust EditorConfig für Makefiles\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/725cebbb4e13be777483bd916b19dfcd428b5f26\"\u003e\u003ccode\u003e725cebb\u003c/code\u003e\u003c/a\u003e fix(jdbc): reject empty timestamp/timestamptz text with a clear error\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/23a1b0dac5a8fc633cc163e883eb21f0219ea521\"\u003e\u003ccode\u003e23a1b0d\u003c/code\u003e\u003c/a\u003e fix(scram): fail closed on channel-binding downgrade (no scram bump)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/0b4077a529b2448cc55a6ca87b2be8667243c9ab\"\u003e\u003ccode\u003e0b4077a\u003c/code\u003e\u003c/a\u003e Bump pgjdbc version from 42.7.12 to 42.7.13 (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4269\"\u003e#4269\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/394800a38aebf54f9f293f6198e1fc5c8b19f10f\"\u003e\u003ccode\u003e394800a\u003c/code\u003e\u003c/a\u003e fix: flush LargeObject output stream before marking closed (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4248\"\u003e#4248\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/83780f130e0c83a77bb67350603f3cca8d4b9bb2\"\u003e\u003ccode\u003e83780f1\u003c/code\u003e\u003c/a\u003e Maintain consistency with the use of the word maintainer vs comitter (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4234\"\u003e#4234\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/d42cad5cd12a13197e68aa53f09a7721336dce7a\"\u003e\u003ccode\u003ed42cad5\u003c/code\u003e\u003c/a\u003e fix(jdbc): classify updatable result set by search_path visibility\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/pgjdbc/pgjdbc/compare/REL42.7.12...REL42.7.13\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ch.qos.logback:logback-classic` from 1.5.37 to 1.6.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/qos-ch/logback/releases\"\u003ech.qos.logback:logback-classic's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eLogback 1.6.3\u003c/h2\u003e\n\u003ch1\u003e2026-08-14 Release of logback version 1.6.3\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eIn response \u003ca href=\"https://www.cve.org/cverecord?id=CVE-2026-19880\"\u003eCVE-2026-19880\u003c/a\u003e,  \u003ccode\u003eMDCBasedDiscriminator\u003c/code\u003e (used by \u003ccode\u003eSiftingAppender\u003c/code\u003e) now strips forward and  backward slashes (\u003ccode\u003e/\u003c/code\u003e, \u003ccode\u003e\\\u003c/code\u003e) from MDC values before they are used as  discriminating keys. This prevents path segments from escaping into  destinations controlled by an attacker. When sanitisation actually changes a  value, a warning is emitted; the warning is rate-limited (a small batch, then  a lull of about ten minutes).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eColour console support is split out into a dedicated  \u003ca href=\"https://logback.qos.ch/manual/appenders.html#JansiConsoleAppender\"\u003e\u003ccode\u003eJansiConsoleAppender\u003c/code\u003e\u003c/a\u003e. It wraps stdout or stderr with  Jansi so ANSI escape sequences (for example coloured patterns) render  correctly on terminals that need it, notably Windows. Prefer this class over  the older path described next. See the  \u003ca href=\"https://logback.qos.ch/manual/appenders.html#JansiConsoleAppender\"\u003eappenders documentation\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe \u003ccode\u003ewithJansi\u003c/code\u003e property on \u003ccode\u003eConsoleAppender\u003c/code\u003e is \u003cstrong\u003edeprecated\u003c/strong\u003e. Existing  configurations that still set \u003ccode\u003e\u0026lt;withJansi\u0026gt;true\u0026lt;/withJansi\u0026gt;\u003c/code\u003e continue to work  for compatibility, but new setups should use \u003ccode\u003eJansiConsoleAppender\u003c/code\u003e instead.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ccode\u003eConsoleAppender\u003c/code\u003e no longer treats the process console as an exclusive  resource: stopping it does not close \u003ccode\u003eSystem.out\u003c/code\u003e / \u003ccode\u003eSystem.err\u003c/code\u003e.  \u003ccode\u003eJansiConsoleAppender\u003c/code\u003e pairs each \u003ccode\u003eAnsiConsole.systemInstall()\u003c/code\u003e with  \u003ccode\u003esystemUninstall()\u003c/code\u003e on stop, so repeated start/stop cycles do not leave Jansi  installed or tear down streams shared with the rest of the JVM. Related  behavior is covered by tests for  \u003ca href=\"https://redirect.github.com/qos-ch/logback/issues/1063\"\u003eissues/1063\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eInvocation throttling helpers were reworked: \u003ccode\u003eSimpleInvocationGate\u003c/code\u003e is renamed  \u003ccode\u003eFixedIntervalInvocationGate\u003c/code\u003e, and \u003ccode\u003eBatchedFixedIntervalInvocationGate\u003c/code\u003e allows  a short burst of invocations before applying a fixed lull. The sanitisation\nwarning above uses the batched gate.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe JPMS \u003ccode\u003emodule-info\u003c/code\u003e for logback-core now exports the  \u003ccode\u003ech.qos.logback.core.property\u003c/code\u003e package, which had been missing from the module   descriptor.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA bit-wise identical binary of this version can be reproduced by building from  \u003ca href=\"https://github.com/qos-ch/logback\"\u003esource code\u003c/a\u003e at commit  \u003ccode\u003ee8e824dede022a6d7208b36cfa875b0d1b7772f3\u003c/code\u003e associated with the tag \u003ccode\u003ev_1.6.3\u003c/code\u003e.  The release was built using Java \u0026quot;21\u0026quot; 2023-10-17 LTS build 21.0.1.+12-LTS-29   under Linux Debian 11.6.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e--\nSponsoring SLF4J/logback/reload4j at \u003ca href=\"https://github.com/sponsors/qos-ch\"\u003ehttps://github.com/sponsors/qos-ch\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eLogback 1.6.2\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/user-attachments/assets/9ceaf157-b758-4188-815d-edfe4e1b4edd\"\u003ehttps://github.com/user-attachments/assets/9ceaf157-b758-4188-815d-edfe4e1b4edd\u003c/a\u003e\u003c/p\u003e\n\u003ch1\u003e2026-08-10 Release of logback version 1.6.2\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eConfiguration analysis now detects \u003cem\u003econtradictory caller-data inclusion instructions\u003c/em\u003e. For example, an \u003ccode\u003eAsyncAppender\u003c/code\u003e, \u003ccode\u003eSocketAppender\u003c/code\u003e or \u003ccode\u003eSMTPAppender\u003c/code\u003e with \u003ccode\u003eincludeCallerData\u003c/code\u003e left at the default \u003ccode\u003efalse\u003c/code\u003e is incompatible with a layout or encoder pattern that uses a caller-data converter such as \u003ccode\u003e%C\u003c/code\u003e, \u003ccode\u003e%M\u003c/code\u003e, \u003ccode\u003e%L\u003c/code\u003e, \u003ccode\u003e%F\u003c/code\u003e, \u003ccode\u003e%l\u003c/code\u003e or \u003ccode\u003e%caller\u003c/code\u003e. At runtime those converters would print question marks and still incur extraction cost on a worker thread. Logback now emits a configuration-time warning when such instructions disagree. See \u003ca href=\"https://logback.qos.ch/codes.html#callerContradiction\"\u003ecodes.html#callerContradiction\u003c/a\u003e for details. This issue was reported in \u003ca href=\"https://redirect.github.com/qos-ch/logback/issues/1059\"\u003eissues/1059\u003c/a\u003e by \u003ca href=\"https://github.com/leeychee\"\u003eleeychee\u003c/a\u003e. The initial analysis was contributed by \u003ca href=\"https://github.com/seonwooj0810\"\u003eseonwoo_jung\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eCaller-contradiction analysis can be turned off by setting the \u003ccode\u003elogback.skipCallerContradictionAnalysis\u003c/code\u003e variable to \u003ccode\u003etrue\u003c/code\u003e, either as a system property (\u003ccode\u003e-Dlogback.skipCallerContradictionAnalysis=true\u003c/code\u003e) or as a property in the configuration file:\u003c/p\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;property name=\u0026quot;logback.skipCallerContradictionAnalysis\u0026quot; value=\u0026quot;true\u0026quot;/\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ccode\u003eSimpleSocketServer\u003c/code\u003e and \u003ccode\u003eSimpleSSLSocketServer\u003c/code\u003e now require an explicit client IP whitelist. On the command line, pass one or more allowed addresses (single IPs or CIDR ranges) after the configuration file. An empty whitelist means no clients are accepted. When embedding the server programmatically, register allowed addresses with \u003ccode\u003eaddAllowedClientAddress(String)\u003c/code\u003e or \u003ccode\u003esetAllowedClientAddresses(Collection)\u003c/code\u003e before clients connect. See the documentation on \u003ca href=\"https://logback.qos.ch/manual/appenders.html#simpleSocketServerClientAccess\"\u003erestricting client access\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdded \u003ccode\u003eThrowableProxyVOBuilder\u003c/code\u003e for assembling a \u003ccode\u003eThrowableProxyVO\u003c/code\u003e field by field, with a corresponding \u003ccode\u003eThrowableProxyVO.builder()\u003c/code\u003e entry point.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDependency analysis handlers now run their \u003ccode\u003epostHandle\u003c/code\u003e method after child models have been processed, so checks that depend on nested appenders (such as caller-contradiction analysis) see a complete picture.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated several dependencies, including Angus Mail to 2.0.4 and Jetty (test) to 12.1.12.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA bit-wise identical binary of this version can be reproduced by building from \u003ca href=\"https://github.com/qos-ch/logback\"\u003esource code\u003c/a\u003e at commit e3d78330ad1ba024fd987fd00c3ffb9cfcdb07dc associated with the tag \u003ccode\u003ev_1.6.2\u003c/code\u003e. The release was built using Java \u0026quot;21\u0026quot; 2023-10-17 LTS build 21.0.1.+12-LTS-29 under Linux Debian 11.6.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eLogback 1.6.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003e2026-07-28 Release of logback version 1.6.1\u003c/strong\u003e\u003c/p\u003e\n\u003cp\u003e• In TimeBasedRollingPolicy, when the file option is set, the intermediate file renamed before asynchronous compression now receives the target archive name without the compression suffix (e.g. \u003ccode\u003e.gz\u003c/code\u003e, \u003ccode\u003e.zip\u003c/code\u003e, \u003ccode\u003e.xz\u003c/code\u003e). Previously it used a nanotime-based \u003ccode\u003e.tmp\u003c/code\u003e suffix. This makes the file easier to identify if compression fails during rollover. (See also the following paragraph.)\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/e8e824dede022a6d7208b36cfa875b0d1b7772f3\"\u003e\u003ccode\u003ee8e824d\u003c/code\u003e\u003c/a\u003e prepare release 1.6.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/761821bfaacac3a0ad44fa546cfc814429bf9312\"\u003e\u003ccode\u003e761821b\u003c/code\u003e\u003c/a\u003e MDCBasedDiscriminator has a gated warning mechanism\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/53ed1229008d8b1902f5c234deaa07d742890879\"\u003e\u003ccode\u003e53ed122\u003c/code\u003e\u003c/a\u003e update copyright year\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/c7e2db244671ffa916182b5da8c89579eb54a645\"\u003e\u003ccode\u003ec7e2db2\u003c/code\u003e\u003c/a\u003e rename SimpleInvocationGate as FixedIntervalInvocationGate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/b5aa931b096a4b0b6a9e140b74fabe7da152cbf0\"\u003e\u003ccode\u003eb5aa931\u003c/code\u003e\u003c/a\u003e added BatchedSimpleInvocationGate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/1f22af7686aadd25c08b4bd1e6943a906a743ad4\"\u003e\u003ccode\u003e1f22af7\u003c/code\u003e\u003c/a\u003e add javadocs to SimpleInvocationGate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/638ffa7e7852478b605a91b3e91238ff26f8158c\"\u003e\u003ccode\u003e638ffa7\u003c/code\u003e\u003c/a\u003e prevent forward and backward slashes to escape to other directories\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/7d6b9a4f8c8996834c0a694f6c141705a003d7bb\"\u003e\u003ccode\u003e7d6b9a4\u003c/code\u003e\u003c/a\u003e add missing ch.qos.logback.core.property package\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/fa25930346f35636fb6a077c1f66ebb06edd3b6f\"\u003e\u003ccode\u003efa25930\u003c/code\u003e\u003c/a\u003e add an extension path in ConsoleAppender for JansiConsoleAppender\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/c73b43f2011f9d4545abc7ea461172276a0a43b3\"\u003e\u003ccode\u003ec73b43f\u003c/code\u003e\u003c/a\u003e deprecate the withJansi path\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/qos-ch/logback/compare/v_1.5.37...v_1.6.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.github.hakky54:logcaptor` from 2.12.6 to 2.12.7\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/Hakky54/log-captor/blob/master/CHANGELOG.MD\"\u003eio.github.hakky54:logcaptor's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003ev2.12.7\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBumped dependencies\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/0e0090799f1965ad081530daaf789d50bbe33042\"\u003e\u003ccode\u003e0e00907\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release v2.12.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/bf17c68af8f495eea4dc0a14f34b47d4a9ef3786\"\u003e\u003ccode\u003ebf17c68\u003c/code\u003e\u003c/a\u003e Updated docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/02ac9143b73638efd2dd87090e204b1938f01d84\"\u003e\u003ccode\u003e02ac914\u003c/code\u003e\u003c/a\u003e Bump net.bytebuddy:byte-buddy from 1.18.10 to 1.18.11 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/232\"\u003e#232\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/af21db7efd40c5004f4db27a258f6d7ead87a856\"\u003e\u003ccode\u003eaf21db7\u003c/code\u003e\u003c/a\u003e Bump org.apache.maven.plugins:maven-jar-plugin from 3.5.0 to 3.5.1 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/233\"\u003e#233\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/0c07e776c3fba290f574b715f00acfbbdc7b198d\"\u003e\u003ccode\u003e0c07e77\u003c/code\u003e\u003c/a\u003e Bump version.log4j from 2.26.0 to 2.26.1 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/231\"\u003e#231\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/853027b1cd7b86c4ce93048e0dc3dc72fed6f569\"\u003e\u003ccode\u003e853027b\u003c/code\u003e\u003c/a\u003e Bump org.jacoco:jacoco-maven-plugin from 0.8.14 to 0.8.15 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/229\"\u003e#229\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/af7832a17f210136767de0ce60dc2b9d3f6770c6\"\u003e\u003ccode\u003eaf7832a\u003c/code\u003e\u003c/a\u003e Bump net.bytebuddy:byte-buddy from 1.18.8 to 1.18.10 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/230\"\u003e#230\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/517ab9c042f45e73bb7c4601cdb905cfe1ba2d0f\"\u003e\u003ccode\u003e517ab9c\u003c/code\u003e\u003c/a\u003e Bump version.slf4j from 2.0.17 to 2.0.18 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/226\"\u003e#226\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/e02dd210557b6875f390bc0b247c94649db4a4f0\"\u003e\u003ccode\u003ee02dd21\u003c/code\u003e\u003c/a\u003e Bump version.log4j from 2.25.4 to 2.26.0 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/227\"\u003e#227\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/15429a2dd4d950a35fc6bed5b94e97f9a11da985\"\u003e\u003ccode\u003e15429a2\u003c/code\u003e\u003c/a\u003e Bump org.apache.maven.plugins:maven-surefire-plugin from 3.5.5 to 3.5.6 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/228\"\u003e#228\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/Hakky54/log-captor/compare/v2.12.6...v2.12.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.rest-assured:rest-assured` from 6.0.0 to 6.0.1\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/rest-assured/rest-assured/blob/master/changelog.txt\"\u003eio.rest-assured:rest-assured's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eChangelog 6.0.1 (2026-07-10)\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix a JsonPath denial-of-service where oversized numeric literals in untrusted JSON were parsed into arbitrarily large BigIntegers, an O(n^2) CPU and heap cost. JSON number tokens are now capped at 1000 characters by default, configurable via JsonPathConfig.numberLengthLimit and JsonConfig.numberLengthLimit (a negative value disables the check). Thanks to Brian Lee (PhD security researcher, Georgia Tech SSLab) for the private report.\u003c/li\u003e\n\u003cli\u003eUse custom Jackson 3 object mapper in JsonPath (\u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1858\"\u003e#1858\u003c/a\u003e) (thanks to gkiel for PR)\u003c/li\u003e\n\u003cli\u003eFix Spring MockMvc cookie handling with Jakarta-only servlet APIs (fixes \u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1853\"\u003e#1853\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse Jackson 3 mapper in JsonPath deserialization when Jackson 3 is the only Jackson on the classpath (\u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1865\"\u003e#1865\u003c/a\u003e) (thanks to dickerpulli for PR)\u003c/li\u003e\n\u003cli\u003eAdd JsonPath.using(Jackson3ObjectMapperFactory) overload (\u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1861\"\u003e#1861\u003c/a\u003e) (thanks to Anusha-7254 for PR)\u003c/li\u003e\n\u003cli\u003eFix typo in duplicate-finder-maven-plugin phase property (\u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1866\"\u003e#1866\u003c/a\u003e) (thanks to metacosm for PR)\u003c/li\u003e\n\u003cli\u003eFix incorrect serialization of enum constants declared with a body when used as query/path parameters (\u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1799\"\u003e#1799\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eThe spring-mock-mvc and spring-web-test-client modules now target Spring Framework 7 and no longer expose their own Spring version as a transitive dependency (the Spring dependencies are declared optional), so they no longer drag Spring 5 onto a Spring Boot 4 / Spring Framework 7 classpath. This removes the need for manual Spring exclusions on Spring Boot 4 (fixes \u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1853\"\u003e#1853\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1868\"\u003e#1868\u003c/a\u003e). Thanks to spencerarq for the detailed investigation.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eChangelog 5.5.7 (2026-01-16)\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSpring MockMvc module now supports Spring Framework 7.0 (thanks to Marcin Grzejszczak for PR)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/8cc835a516ece11c5a6af30c328cf8e10f564314\"\u003e\u003ccode\u003e8cc835a\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release rest-assured-6.0.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/92551ed73a02dbe6d6cd89e1f6a91dd0f1b4d71d\"\u003e\u003ccode\u003e92551ed\u003c/code\u003e\u003c/a\u003e Sync dist and OSGi module versions during release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/29b55e24dddab3b99841fc13ed5799916060ba17\"\u003e\u003ccode\u003e29b55e2\u003c/code\u003e\u003c/a\u003e Sync dist and osgi module parent versions to 6.0.1-SNAPSHOT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/f1abe776be4a17e034e6a72eb905d195f81a830a\"\u003e\u003ccode\u003ef1abe77\u003c/code\u003e\u003c/a\u003e [ci skip] Preparing for release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/d134dfb3ed147f35d90aef33cf9123581c956e28\"\u003e\u003ccode\u003ed134dfb\u003c/code\u003e\u003c/a\u003e Target Spring Framework 7 in the Spring modules and stop leaking Spring onto ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/a146f5600425a02479ea247ed0c86c5222d6b9cf\"\u003e\u003ccode\u003ea146f56\u003c/code\u003e\u003c/a\u003e Add AGENTS.md with changelog convention, reference it from CLAUDE.md\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/2bbb19a282df9ecebdcbaa93cde5c073e5bc9720\"\u003e\u003ccode\u003e2bbb19a\u003c/code\u003e\u003c/a\u003e Fix remaining duplicate-finder property typo in spring7-mvc-webapp\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/c5214b82740644f8fdd72930e99d1139de8a27f8\"\u003e\u003ccode\u003ec5214b8\u003c/code\u003e\u003c/a\u003e Fix serialization of enum constants declared with a body (\u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1799\"\u003e#1799\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/bc4608fbad56eca8fb640632e3b44fc993127808\"\u003e\u003ccode\u003ebc4608f\u003c/code\u003e\u003c/a\u003e [ci skip] Updated changelog to reflect the latest changes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/2054f37233111bd78357dbfc7d2800f951e13819\"\u003e\u003ccode\u003e2054f37\u003c/code\u003e\u003c/a\u003e Add JsonPath.using(Jackson3ObjectMapperFactory) overload\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/rest-assured/rest-assured/compare/rest-assured-6.0.0...rest-assured-6.0.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n\u003c/details\u003e","html_url":"https://github.com/alecigne/somafm-song-history/pull/59","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/alecigne%2Fsomafm-song-history/issues/59","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/59/packages"},{"uuid":"5290385979","node_id":"PR_kwDOKn3QjM8AAAABBe7SHQ","number":87,"state":"closed","title":"chore(deps): bump the version-updates group across 1 directory with 6 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-06T05:02:19.000Z","author_association":null,"state_reason":null,"created_at":"2026-08-30T04:42:40.000Z","updated_at":"2026-09-06T05:02:28.000Z","time_to_close":605979,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"version-updates","update_count":6,"packages":[{"name":"io.netty:netty-bom","old_version":"4.2.15.Final","new_version":"4.2.17.Final","repository_url":"https://github.com/netty/netty"},{"name":"io.qdrant:client","old_version":"1.18.3","new_version":"1.19.0","repository_url":"https://github.com/qdrant/java-client"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"io.grpc:grpc-protobuf","old_version":"1.82.1","new_version":"1.83.1","repository_url":"https://github.com/grpc/grpc-java"},{"name":"org.apache.spark:spark-sql_2.13","old_version":"4.1.2","new_version":"4.2.0"},{"name":"com.fasterxml.jackson.core:jackson-databind","old_version":"2.21.5","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-databind"}],"path":null,"ecosystem":"maven"},"body":"Bumps the version-updates group with 6 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [io.netty:netty-bom](https://github.com/netty/netty) | `4.2.15.Final` | `4.2.17.Final` |\n| [io.qdrant:client](https://github.com/qdrant/java-client) | `1.18.3` | `1.19.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [io.grpc:grpc-protobuf](https://github.com/grpc/grpc-java) | `1.82.1` | `1.83.1` |\n| org.apache.spark:spark-sql_2.13 | `4.1.2` | `4.2.0` |\n| [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson-databind) | `2.21.5` | `2.22.2` |\n\n\nUpdates `io.netty:netty-bom` from 4.2.15.Final to 4.2.17.Final\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/netty/netty/releases\"\u003eio.netty:netty-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003enetty-4.2.17.Final\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAsciiString.cached(String) should sanitize the provided String (\u003ca href=\"https://redirect.github.com/netty/netty/issues/13749\"\u003e#13749\u003c/a\u003e) by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix deploy workflow by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17071\"\u003enetty/netty#17071\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AsciiString.cached(String) performance regression by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17074\"\u003enetty/netty#17074\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSslHandler: Fix possible buffer leak when an OOME is thrown during allocation by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17059\"\u003enetty/netty#17059\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid leak presence detector in leak profile by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17073\"\u003enetty/netty#17073\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd HttpContentCompressor constructor with ability to specify desired maxPipelineDepth by \u003ca href=\"https://github.com/reta\"\u003e\u003ccode\u003e@​reta\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17068\"\u003enetty/netty#17068\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: preserve readPending when rescheduling cancelled reads by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17087\"\u003enetty/netty#17087\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReject negative maxOrder in PooledByteBufAllocator by \u003ca href=\"https://github.com/coderbruis\"\u003e\u003ccode\u003e@​coderbruis\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17093\"\u003enetty/netty#17093\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AdaptiveByteBuf._setLongLE calling checked setLongLE by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17098\"\u003enetty/netty#17098\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSnappy: Guard decoder against invalid chunk lengths by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17099\"\u003enetty/netty#17099\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix OCSP Tests by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17114\"\u003enetty/netty#17114\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate to latest netty-tcnative release by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17056\"\u003enetty/netty#17056\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse safe decompressor in Lz4FrameDecoder by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17118\"\u003enetty/netty#17118\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eConfigure TestLens for the PR builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17129\"\u003enetty/netty#17129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: add SO_INQ support for Unix domain sockets by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17127\"\u003enetty/netty#17127\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(mqtt): drop UNSUBACK reason codes for MQTT 3.x encoding by \u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropagate the CI envionment variables through to the docker builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17138\"\u003enetty/netty#17138\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add decompressor API by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/16745\"\u003enetty/netty#16745\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix silent failures and optimize error short-circuit in multi-threaded tests by \u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Bzip2Decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17145\"\u003enetty/netty#17145\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix buddy cache evicting chunks with live buffers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17154\"\u003enetty/netty#17154\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Snappy frame decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17153\"\u003enetty/netty#17153\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add zlib decompressors by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17155\"\u003enetty/netty#17155\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Zstd decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17152\"\u003enetty/netty#17152\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add LZF decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17147\"\u003enetty/netty#17147\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add BrotliDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17146\"\u003enetty/netty#17146\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Lz4FrameDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17148\"\u003enetty/netty#17148\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpObjectEncoder\u003c/code\u003e / \u003ccode\u003eDefaultHttp2FrameWriter\u003c/code\u003e: fix buffer leak when a \u003ccode\u003eThrowable\u003c/code\u003e is thrown during header encoding by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17089\"\u003enetty/netty#17089\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix direct memory OOM on low-core containers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17166\"\u003enetty/netty#17166\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: Fix the recvmmsg emulation by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17187\"\u003enetty/netty#17187\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid classloader leak via GlobalEventExecutor terminationFuture failure by \u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBrotliEncoder: Prevent duplicate close scheduling by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17175\"\u003enetty/netty#17175\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix JdkZlibDecompressor losing the tail of highly compressible streams by \u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate compress-lzf to 1.2.1 by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17194\"\u003enetty/netty#17194\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDo not write WebSocket handshake response to the tail of the pipeline by \u003ca href=\"https://github.com/el-psy-kongroo-d\"\u003e\u003ccode\u003e@​el-psy-kongroo-d\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17192\"\u003enetty/netty#17192\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpServerCodec\u003c/code\u003e: do not consume the method queue for 1xx interim responses by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17182\"\u003enetty/netty#17182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWeakly reference engines from the OpenSSL engine map by \u003ca href=\"https://github.com/bryce-anderson\"\u003e\u003ccode\u003e@​bryce-anderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17199\"\u003enetty/netty#17199\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eOpenSSL: Allow to obtain used named group via OpenSslSession by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17058\"\u003enetty/netty#17058\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17052\"\u003enetty/netty#17052\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate surefire plugin to latest version by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17210\"\u003enetty/netty#17210\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMerge changes from forks by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17213\"\u003enetty/netty#17213\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/e0789d32c72f46fd2e7c99b6fdbbf7e2f4409e44\"\u003e\u003ccode\u003ee0789d3\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release netty-4.2.17.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/1b5abc6443b63726c72cdd285af2feb7ddbb8ff7\"\u003e\u003ccode\u003e1b5abc6\u003c/code\u003e\u003c/a\u003e Merge changes from forks (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17213\"\u003e#17213\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/36fbf5788c73e7040e6f18fed841a2cdfcae1452\"\u003e\u003ccode\u003e36fbf57\u003c/code\u003e\u003c/a\u003e Update surefire plugin to latest version (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17210\"\u003e#17210\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/a96226cb54e87e963e1e341cd7121f2217fc7c2e\"\u003e\u003ccode\u003ea96226c\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17052\"\u003e#17052\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/14a4e6ad865a187c3f1bf0da18d9146472e18192\"\u003e\u003ccode\u003e14a4e6a\u003c/code\u003e\u003c/a\u003e OpenSSL: Allow to obtain used named group via OpenSslSession (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17058\"\u003e#17058\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/26255b123f7c699cd88cbdb42f6ecc6ed5cb7843\"\u003e\u003ccode\u003e26255b1\u003c/code\u003e\u003c/a\u003e Weakly reference engines from the OpenSSL engine map (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17199\"\u003e#17199\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/ae414179e3a030e0747fb68648ff2433fa4539e1\"\u003e\u003ccode\u003eae41417\u003c/code\u003e\u003c/a\u003e \u003ccode\u003eHttpServerCodec\u003c/code\u003e: do not consume the method queue for 1xx interim responses ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/41f1db523d3657954e9ad12250004cbdfde2a97d\"\u003e\u003ccode\u003e41f1db5\u003c/code\u003e\u003c/a\u003e Do not write WebSocket handshake response to the tail of the pipeline (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17192\"\u003e#17192\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/035d76e3f43fa462e101c1e03b59a69984c5ebf3\"\u003e\u003ccode\u003e035d76e\u003c/code\u003e\u003c/a\u003e Update compress-lzf to 1.2.1 (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17194\"\u003e#17194\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/7681affcf120fca1de8554095216ddea20b408c5\"\u003e\u003ccode\u003e7681aff\u003c/code\u003e\u003c/a\u003e Fix JdkZlibDecompressor losing the tail of highly compressible streams (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17191\"\u003e#17191\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/netty/netty/compare/netty-4.2.15.Final...netty-4.2.17.Final\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.qdrant:client` from 1.18.3 to 1.19.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/qdrant/java-client/releases\"\u003eio.qdrant:client's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.19.0\u003c/h2\u003e\n\u003ch1\u003eUpdates\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eSupport for Qdrant v1.19.x - \u003ca href=\"https://github.com/qdrant/qdrant/releases/tag/v1.19.0\"\u003ehttps://github.com/qdrant/qdrant/releases/tag/v1.19.0\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eCommits\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore(deps): bump the version-updates group with 2 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/134\"\u003eqdrant/java-client#134\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the version-updates group with 5 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/135\"\u003eqdrant/java-client#135\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the version-updates group with 6 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/137\"\u003eqdrant/java-client#137\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump actions/setup-java from 5.4.0 to 5.5.0 in the version-updates group by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/138\"\u003eqdrant/java-client#138\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the version-updates group with 5 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/139\"\u003eqdrant/java-client#139\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the version-updates group with 4 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/142\"\u003eqdrant/java-client#142\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump actions/setup-java from 5.5.0 to 5.6.0 in the version-updates group by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/140\"\u003eqdrant/java-client#140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump actions/checkout from 5.0.1 to 6.1.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/141\"\u003eqdrant/java-client#141\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the version-updates group with 6 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/144\"\u003eqdrant/java-client#144\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e1.19.0 by \u003ca href=\"https://github.com/Anush008\"\u003e\u003ccode\u003e@​Anush008\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/143\"\u003eqdrant/java-client#143\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/qdrant/java-client/compare/v1.18.3...v1.19.0\"\u003ehttps://github.com/qdrant/java-client/compare/v1.18.3...v1.19.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/d30855a7232ecc03dd39a4f393590b15a533e778\"\u003e\u003ccode\u003ed30855a\u003c/code\u003e\u003c/a\u003e 1.19.0 (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/143\"\u003e#143\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/058c3e75244f6c707ba1148fda1415e0ec13bebe\"\u003e\u003ccode\u003e058c3e7\u003c/code\u003e\u003c/a\u003e chore(deps): bump the version-updates group with 6 updates (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/144\"\u003e#144\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/e50da949dcb421438c780dcba72d50358927d045\"\u003e\u003ccode\u003ee50da94\u003c/code\u003e\u003c/a\u003e chore(deps): bump actions/checkout from 5.0.1 to 6.1.0 (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/141\"\u003e#141\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/9ce0b0f9ea0832b39ae4a766e3831b8e7b33f8f6\"\u003e\u003ccode\u003e9ce0b0f\u003c/code\u003e\u003c/a\u003e chore(deps): bump actions/setup-java in the version-updates group (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/140\"\u003e#140\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/7dbe0291e82d72c2f0da84c8691f4f81880a6a1e\"\u003e\u003ccode\u003e7dbe029\u003c/code\u003e\u003c/a\u003e chore(deps): bump the version-updates group with 4 updates (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/142\"\u003e#142\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/fdbc3ce69ef91741ece6177ef09dc7965ab44651\"\u003e\u003ccode\u003efdbc3ce\u003c/code\u003e\u003c/a\u003e chore(deps): bump the version-updates group with 5 updates (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/139\"\u003e#139\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/c6abd557de7c2a13e4a0ba4ae7aafcb0682c7cb0\"\u003e\u003ccode\u003ec6abd55\u003c/code\u003e\u003c/a\u003e chore(deps): bump actions/setup-java in the version-updates group (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/138\"\u003e#138\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/b613a134d8e3f90ea05221674f1b52524ce091fd\"\u003e\u003ccode\u003eb613a13\u003c/code\u003e\u003c/a\u003e chore(deps): bump the version-updates group with 6 updates (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/137\"\u003e#137\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/806cfd44469e886534653c1287874035d4ee1bc8\"\u003e\u003ccode\u003e806cfd4\u003c/code\u003e\u003c/a\u003e chore(deps): bump the version-updates group with 5 updates (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/135\"\u003e#135\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/64cf2c208638755fa6a7b7e6fa0905b96c0414f3\"\u003e\u003ccode\u003e64cf2c2\u003c/code\u003e\u003c/a\u003e chore(deps): bump the version-updates group with 2 updates (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/134\"\u003e#134\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/qdrant/java-client/compare/v1.18.3...v1.19.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.grpc:grpc-protobuf` from 1.82.1 to 1.83.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/grpc/grpc-java/releases\"\u003eio.grpc:grpc-protobuf's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.83.1\u003c/h2\u003e\n\u003ch2\u003egRPC Java 1.83.1 Release Notes\u003c/h2\u003e\n\u003ch3\u003eImprovements\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003enetty: Fix client-initiated stream limit bypass in NettyServerHandler (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12942\"\u003e#12942\u003c/a\u003e). Enforces the limit proactively at startup without waiting for SETTINGS_ACK\u003c/li\u003e\n\u003cli\u003ecore: Coalesce Contiguous Small Buffers for ReadableBuffer (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12944\"\u003e#12944\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev1.83.0\u003c/h2\u003e\n\u003ch2\u003egRPC Java 1.83.0 Release Notes\u003c/h2\u003e\n\u003ch3\u003eAPI Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eapi: Turn on RFC 3986 parsing by default and update javadoc. (4456721328)\u003c/li\u003e\n\u003cli\u003eapi: Add Grpc.newChannelBuilder accepting NameResolverRegistry (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/11901\"\u003e#11901\u003c/a\u003e) (2b86f8f42f). This allows users to explicitly provide a NameResolverRegistry during channel creation rather than relying on the global registry, offering better isolation and control over name resolution per-channel.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBehavior Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eokhttp: enable TLS 1.3 for servers on Android (3018ce341c). v1.82.0 enabled TLS 1.3 for clients; this does the same for servers\u003c/li\u003e\n\u003cli\u003exds: enable orca to lrs propagation by default (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12836\"\u003e#12836\u003c/a\u003e) (1e85674a40) Enables xDS configuration to control which fields get propagated from ORCA backend metric reports to LRS load reports as per gRFC A85\u003c/li\u003e\n\u003cli\u003exds: Use leaf cluster name for  backend service label in metrics, instead of aggregate cluster name (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12882\"\u003e#12882\u003c/a\u003e) (c8079eed98). This only has an effect when using aggregate clusters\u003c/li\u003e\n\u003cli\u003exds: Hold parsed service config in CdsUpdate (3db3235ebd). Previously, modifications to LoadBalancerRegistry could cause failures in the LB tree\u003c/li\u003e\n\u003cli\u003exds: Revert \u0026quot;xds: reuse connections to the control plane across channels\u0026quot; added in 1.81.0 (d49c0b15d8). If using xds heavily with many targets, then MAX_CONCURRENT_STREAMS to the control plane could be exceeded. This then prevents loading resources for new targets, which causes those channels to hang on name resolution. RPCs would see the nondescript \u0026quot;DEADLINE_EXCEEDED: Deadline Context was exceeded after Xs\u0026quot; or \u0026quot;DEADLINE_EXCEEDED: Deadline CallOptions was exceeded after Xs\u0026quot;\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eImprovements\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eapi: Move attributes to the end of ResolvedAddresses.toString(), for better legibility (103bd4b852)\u003c/li\u003e\n\u003cli\u003ecore: normalize service config number values (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12826\"\u003e#12826\u003c/a\u003e) (663c505dbd) This updates default service config validation to accept numeric values represented as Number, not only Double. Common JSON parsers may deserialize integer-looking JSON values such as maxAttempts: 4 and backoffMultiplier: 2 as Integer, which previously caused defaultServiceConfig() to fail with IllegalArgumentException. The values are normalized to Double when copied into the validated service config, preserving the existing internal representation expected by the service config parsing code.\u003c/li\u003e\n\u003cli\u003ecore: DEADLINE_EXCEEDED before initial name resolution completes will now mention “name_resolver” in the error description (56d2b25eb5). Previously there was not a hint as to what gRPC was delayed on when the deadline was exceeded.\u003c/li\u003e\n\u003cli\u003enetty: Reduce TcpMetrics log from INFO to FINE (4ec83df1eb). This removes unnecessary log noise\u003c/li\u003e\n\u003cli\u003ecore: Enable child channel plugins (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12578\"\u003e#12578\u003c/a\u003e) (89aef90d52). This introduces the ChildChannelConfigurer API to allow intercepting and customizing the configuration (such as injecting interceptors or modifying credentials) of child channels created dynamically by load balancers.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade to Netty 4.2.15 (66c6ab1da6). If you need Netty 4.1 support, please file an issue\u003c/li\u003e\n\u003cli\u003eUpgrade codegen plugin to C++ Protobuf 35.1 (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12876\"\u003e#12876\u003c/a\u003e) (c886f0a06b)\u003c/li\u003e\n\u003cli\u003eUpgrade various dependencies (064272c61d):\n\u003cul\u003e\n\u003cli\u003egson to 2.14.0\u003c/li\u003e\n\u003cli\u003eguava to 33.6.0\u003c/li\u003e\n\u003cli\u003ecel-java to 0.13.0\u003c/li\u003e\n\u003cli\u003eprotobuf-java to 3.25.9\u003c/li\u003e\n\u003cli\u003eerror-prone-annotations to 2.50.0\u003c/li\u003e\n\u003cli\u003eopentelemetry to 1.63.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eDocumentation\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eDocument how to build with Bazel and introduce bazel support for building android and binder (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12811\"\u003e#12811\u003c/a\u003e) (f94574eff7)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eThanks to\u003c/h3\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/8f621c03b776eed114c39969ce1bf347625d2e9d\"\u003e\u003ccode\u003e8f621c0\u003c/code\u003e\u003c/a\u003e Bump version to 1.83.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/2bafe5e8c7b40c1244656894d3ac0170ab792912\"\u003e\u003ccode\u003e2bafe5e\u003c/code\u003e\u003c/a\u003e Update README etc to reference 1.83.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/e1f2dbd873bf1dc5d26218276a40c055ab49c4f4\"\u003e\u003ccode\u003ee1f2dbd\u003c/code\u003e\u003c/a\u003e netty: Fix client-initiated stream limit bypass in NettyServerHandler (v1.83....\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/ee8232feb42e64bff79eb9be1ff107da7c10d9e7\"\u003e\u003ccode\u003eee8232f\u003c/code\u003e\u003c/a\u003e core: Coalesce Contiguous Small Buffers for ReadableBuffer (v1.83.x backport)...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/b4ca099f30d8c362fad54b63f34cab87c11530f2\"\u003e\u003ccode\u003eb4ca099\u003c/code\u003e\u003c/a\u003e Fix docker tagging failure in upload_artifacts by using stable tag name (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12922\"\u003e#12922\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/b4fb7f425fa5186da6512ed332005d38a391af15\"\u003e\u003ccode\u003eb4fb7f4\u003c/code\u003e\u003c/a\u003e build: Allow downloading pkgconfiglite with empty checksum\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/1fbfa8692d18c6d86184c19443ea05e22f28e092\"\u003e\u003ccode\u003e1fbfa86\u003c/code\u003e\u003c/a\u003e Bump version to 1.83.1-SNAPSHOT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/8ab6e0af58129d6fc397d0da3cbfae8fe5f21b17\"\u003e\u003ccode\u003e8ab6e0a\u003c/code\u003e\u003c/a\u003e Bump version to 1.83.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/33ad6a45369a4b4cbb60639cb112895e7f4e771f\"\u003e\u003ccode\u003e33ad6a4\u003c/code\u003e\u003c/a\u003e Update README etc to reference 1.83.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/17d5bd6c675496f23c239497faf4beba7142ea7e\"\u003e\u003ccode\u003e17d5bd6\u003c/code\u003e\u003c/a\u003e Revert \u0026quot;enable child channel plugins (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12578\"\u003e#12578\u003c/a\u003e)\u0026quot; (v1.83.x backport) (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12913\"\u003e#12913\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/grpc/grpc-java/compare/v1.82.1...v1.83.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.spark:spark-sql_2.13` from 4.1.2 to 4.2.0\n\nUpdates `com.fasterxml.jackson.core:jackson-databind` from 2.21.5 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/25b2a221f9aa4107e455065a74635e209418cf55\"\u003e\u003ccode\u003e25b2a22\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bab1c1a702a941f8805ee6698e8fa4fdbfbec54a\"\u003e\u003ccode\u003ebab1c1a\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bc03cf83d74cf0e5944dce33a63ee59ddc344b64\"\u003e\u003ccode\u003ebc03cf8\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/83379fb6409075336edf3d8d88744e95911a43f8\"\u003e\u003ccode\u003e83379fb\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/0d400c9dc586fdd460d0c6a40db21ebbe22106d8\"\u003e\u003ccode\u003e0d400c9\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/ce36a279f8b078bef2d9d44a1d01034c3634f91a\"\u003e\u003ccode\u003ece36a27\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7a209e1fa97033746db50fd7bcd1e3dbab077599\"\u003e\u003ccode\u003e7a209e1\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/a432707afe6b7569243d1c2d8052a1bf33d9279c\"\u003e\u003ccode\u003ea432707\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/176df1d48b256ced412c65293ad4e09393e24bd3\"\u003e\u003ccode\u003e176df1d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7785f5f9ed24127e004115472c47b26ea4cf2774\"\u003e\u003ccode\u003e7785f5f\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-databind/compare/jackson-databind-2.21.5...jackson-databind-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n","html_url":"https://github.com/qdrant/qdrant-spark/pull/87","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/qdrant%2Fqdrant-spark/issues/87","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/87/packages"},{"uuid":"5283572808","node_id":"PR_kwDOTN-QB88AAAABBZ05TQ","number":24,"state":"open","title":"[12.1.x EE8] Bump the dev-dependencies group in /jetty-ee8 with 37 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-08-29T00:57:28.000Z","updated_at":"2026-09-05T01:08:38.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"[12.1.x EE8] Bump","group_name":"dev-dependencies","update_count":37,"packages":[{"name":"org.ow2.asm:asm","old_version":"9.10","new_version":"9.10.1"},{"name":"org.ow2.asm:asm-commons","old_version":"9.10","new_version":"9.10.1"},{"name":"org.ow2.asm:asm-bom","old_version":"9.10","new_version":"9.10.1"},{"name":"org.codehaus.plexus:plexus-utils","old_version":"4.0.3","new_version":"4.1.0","repository_url":"https://github.com/codehaus-plexus/plexus-utils"},{"name":"org.codehaus.plexus:plexus-xml","old_version":"4.1.1","new_version":"4.2.0","repository_url":"https://github.com/codehaus-plexus/plexus-xml"},{"name":"com.fasterxml.jackson:jackson-bom","old_version":"2.21.3","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-bom"},{"name":"io.netty:netty-bom","old_version":"4.2.13.Final","new_version":"4.2.17.Final","repository_url":"https://github.com/netty/netty"},{"name":"org.hibernate.search:hibernate-search-bom","old_version":"8.3.1.Final","new_version":"8.4.0.Final","repository_url":"https://github.com/hibernate/hibernate-search"},{"name":"org.junit:junit-bom","old_version":"6.0.3","new_version":"6.1.3","repository_url":"https://github.com/junit-team/junit-framework"},{"name":"ch.qos.logback:logback-core","old_version":"1.5.32","new_version":"1.6.3","repository_url":"https://github.com/qos-ch/logback"},{"name":"com.github.jnr:jffi","old_version":"1.3.15","new_version":"1.4.0","repository_url":"https://github.com/jnr/jffi"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"commons-codec:commons-codec","old_version":"1.22.0","new_version":"1.22.1","repository_url":"https://github.com/apache/commons-codec"},{"name":"io.grpc:grpc-core","old_version":"1.81.0","new_version":"1.83.1","repository_url":"https://github.com/grpc/grpc-java"},{"name":"io.grpc:grpc-netty-shaded","old_version":"1.81.0","new_version":"1.83.1","repository_url":"https://github.com/grpc/grpc-java"},{"name":"io.smallrye.common:smallrye-common-annotation","old_version":"2.18.1","new_version":"2.20.0","repository_url":"https://github.com/smallrye/smallrye-common"},{"name":"io.smallrye.common:smallrye-common-cpu","old_version":"2.18.1","new_version":"2.20.0","repository_url":"https://github.com/smallrye/smallrye-common"},{"name":"net.java.dev.jna:jna","old_version":"5.18.1","new_version":"5.19.1","repository_url":"https://github.com/java-native-access/jna"},{"name":"net.java.dev.jna:jna-jpms","old_version":"5.18.1","new_version":"5.19.1","repository_url":"https://github.com/java-native-access/jna"},{"name":"org.apache.kerby:kerb-simplekdc","old_version":"2.1.1","new_version":"2.1.2"},{"name":"org.apache.logging.log4j:log4j-api","old_version":"2.26.0","new_version":"2.26.1"},{"name":"org.bouncycastle:bcpkix-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.bouncycastle:bcprov-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.bouncycastle:bctls-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.bouncycastle:bcutil-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.codehaus.plexus:plexus-classworlds","old_version":"2.11.0","new_version":"2.12.1","repository_url":"https://github.com/codehaus-plexus/plexus-classworlds"},{"name":"org.conscrypt:conscrypt-openjdk-uber","old_version":"2.5.2","new_version":"2.6.3","repository_url":"https://github.com/google/conscrypt"},{"name":"org.eclipse.jdt:ecj","old_version":"3.45.0","new_version":"3.46.0","repository_url":"https://github.com/eclipse-jdt/eclipse.jdt.core"},{"name":"org.hibernate.models:hibernate-models","old_version":"1.1.1","new_version":"1.3.0","repository_url":"https://github.com/hibernate/hibernate-models"},{"name":"org.mariadb.jdbc:mariadb-java-client","old_version":"3.5.8","new_version":"3.5.10","repository_url":"https://github.com/mariadb-corporation/mariadb-connector-j"},{"name":"org.mortbay.jetty.quiche:jetty-quiche-native","old_version":"0.29.2","new_version":"0.29.3","repository_url":"https://github.com/jetty-project/jetty-quiche-native"},{"name":"org.junit.platform:junit-platform-engine","old_version":"6.0.3","new_version":"6.1.3","repository_url":"https://github.com/junit-team/junit-framework"},{"name":"org.eclipse.jetty.toolchain:jetty-build-support","old_version":"1.5","new_version":"1.6"},{"name":"eu.maveniverse.maven.njord:extension3","old_version":"0.9.6","new_version":"0.9.10","repository_url":"https://github.com/maveniverse/njord"},{"name":"eu.maveniverse.maven.plugins:njord","old_version":"0.9.6","new_version":"0.9.10","repository_url":"https://github.com/maveniverse/njord"},{"name":"org.apache.maven.extensions:maven-build-cache-extension","old_version":"1.2.2","new_version":"1.3.0","repository_url":"https://github.com/apache/maven-build-cache-extension"},{"name":"org.cyclonedx:cyclonedx-maven-plugin","old_version":"2.9.1","new_version":"2.9.3","repository_url":"https://github.com/CycloneDX/cyclonedx-maven-plugin"}],"path":"/jetty-ee8","ecosystem":"maven"},"body":"Bumps the dev-dependencies group in /jetty-ee8 with 37 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| org.ow2.asm:asm | `9.10` | `9.10.1` |\n| org.ow2.asm:asm-commons | `9.10` | `9.10.1` |\n| org.ow2.asm:asm-bom | `9.10` | `9.10.1` |\n| [org.codehaus.plexus:plexus-utils](https://github.com/codehaus-plexus/plexus-utils) | `4.0.3` | `4.1.0` |\n| [org.codehaus.plexus:plexus-xml](https://github.com/codehaus-plexus/plexus-xml) | `4.1.1` | `4.2.0` |\n| [com.fasterxml.jackson:jackson-bom](https://github.com/FasterXML/jackson-bom) | `2.21.3` | `2.22.2` |\n| [io.netty:netty-bom](https://github.com/netty/netty) | `4.2.13.Final` | `4.2.17.Final` |\n| [org.hibernate.search:hibernate-search-bom](https://github.com/hibernate/hibernate-search) | `8.3.1.Final` | `8.4.0.Final` |\n| [org.junit:junit-bom](https://github.com/junit-team/junit-framework) | `6.0.3` | `6.1.3` |\n| [ch.qos.logback:logback-core](https://github.com/qos-ch/logback) | `1.5.32` | `1.6.3` |\n| [com.github.jnr:jffi](https://github.com/jnr/jffi) | `1.3.15` | `1.4.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [commons-codec:commons-codec](https://github.com/apache/commons-codec) | `1.22.0` | `1.22.1` |\n| [io.grpc:grpc-core](https://github.com/grpc/grpc-java) | `1.81.0` | `1.83.1` |\n| [io.grpc:grpc-netty-shaded](https://github.com/grpc/grpc-java) | `1.81.0` | `1.83.1` |\n| [io.smallrye.common:smallrye-common-annotation](https://github.com/smallrye/smallrye-common) | `2.18.1` | `2.20.0` |\n| [io.smallrye.common:smallrye-common-cpu](https://github.com/smallrye/smallrye-common) | `2.18.1` | `2.20.0` |\n| [net.java.dev.jna:jna](https://github.com/java-native-access/jna) | `5.18.1` | `5.19.1` |\n| [net.java.dev.jna:jna-jpms](https://github.com/java-native-access/jna) | `5.18.1` | `5.19.1` |\n| org.apache.kerby:kerb-simplekdc | `2.1.1` | `2.1.2` |\n| org.apache.logging.log4j:log4j-api | `2.26.0` | `2.26.1` |\n| [org.bouncycastle:bcpkix-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.bouncycastle:bcprov-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.bouncycastle:bctls-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.bouncycastle:bcutil-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.codehaus.plexus:plexus-classworlds](https://github.com/codehaus-plexus/plexus-classworlds) | `2.11.0` | `2.12.1` |\n| [org.conscrypt:conscrypt-openjdk-uber](https://github.com/google/conscrypt) | `2.5.2` | `2.6.3` |\n| [org.eclipse.jdt:ecj](https://github.com/eclipse-jdt/eclipse.jdt.core) | `3.45.0` | `3.46.0` |\n| [org.hibernate.models:hibernate-models](https://github.com/hibernate/hibernate-models) | `1.1.1` | `1.3.0` |\n| [org.mariadb.jdbc:mariadb-java-client](https://github.com/mariadb-corporation/mariadb-connector-j) | `3.5.8` | `3.5.10` |\n| [org.mortbay.jetty.quiche:jetty-quiche-native](https://github.com/jetty-project/jetty-quiche-native) | `0.29.2` | `0.29.3` |\n| [org.junit.platform:junit-platform-engine](https://github.com/junit-team/junit-framework) | `6.0.3` | `6.1.3` |\n| org.eclipse.jetty.toolchain:jetty-build-support | `1.5` | `1.6` |\n| [eu.maveniverse.maven.njord:extension3](https://github.com/maveniverse/njord) | `0.9.6` | `0.9.10` |\n| [eu.maveniverse.maven.plugins:njord](https://github.com/maveniverse/njord) | `0.9.6` | `0.9.10` |\n| [org.apache.maven.extensions:maven-build-cache-extension](https://github.com/apache/maven-build-cache-extension) | `1.2.2` | `1.3.0` |\n| [org.cyclonedx:cyclonedx-maven-plugin](https://github.com/CycloneDX/cyclonedx-maven-plugin) | `2.9.1` | `2.9.3` |\n\nUpdates `org.ow2.asm:asm` from 9.10 to 9.10.1\n\nUpdates `org.ow2.asm:asm-commons` from 9.10 to 9.10.1\n\nUpdates `org.ow2.asm:asm-bom` from 9.10 to 9.10.1\n\nUpdates `org.ow2.asm:asm-commons` from 9.10 to 9.10.1\n\nUpdates `org.codehaus.plexus:plexus-utils` from 4.0.3 to 4.1.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/releases\"\u003eorg.codehaus.plexus:plexus-utils's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.1.0\u003c/h2\u003e\n\u003cp\u003e\u003ccode\u003eDirectoryScanner\u003c/code\u003e no longer excludes \u003ccode\u003e.gitignore\u003c/code\u003e and \u003ccode\u003e.cvsignore\u003c/code\u003e by default. Code that relied on\nthe old defaults has to add the two patterns explicitly. That change is what makes this a minor\nrelease rather than 4.0.4.\u003c/p\u003e\n\u003ch2\u003e:boom: Breaking changes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDo not exclude \u0026quot;.gitignore\u0026quot; and \u0026quot;.cvsignore\u0026quot; by default (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/326\"\u003e#326\u003c/a\u003e) \u003ca href=\"https://github.com/kwin\"\u003e\u003ccode\u003e@​kwin\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRewrite README with usage, status and version guidance (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/332\"\u003e#332\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Build\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate parent to plexus 27 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/338\"\u003e#338\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDrop the Publish Site workflow (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/337\"\u003e#337\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd the Publish Site workflow (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/334\"\u003e#334\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse the shared release-drafter config instead of a local copy (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/333\"\u003e#333\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump the plexus dependencies released today (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/340\"\u003e#340\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus from 25 to 26 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/335\"\u003e#335\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7.6.0 to 7.7.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/331\"\u003e#331\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7 to 7.6.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/330\"\u003e#330\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/572ce90d98d71bfe29078b680fc14d3088f43a14\"\u003e\u003ccode\u003e572ce90\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release plexus-utils-4.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/077e8010c109576715077f4a70094623295d5ce9\"\u003e\u003ccode\u003e077e801\u003c/code\u003e\u003c/a\u003e Bump the plexus dependencies released today\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/840a1b49b3b7bdc3f883ef0c698566988c7e21ec\"\u003e\u003ccode\u003e840a1b4\u003c/code\u003e\u003c/a\u003e Update parent to plexus 27\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/9c560fa3ea573e48d7d528c86eca4690ff1a6bc0\"\u003e\u003ccode\u003e9c560fa\u003c/code\u003e\u003c/a\u003e Drop the Publish Site workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/5f96b03fefa9e3f9d7c47b88bebc400a44c88795\"\u003e\u003ccode\u003e5f96b03\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus from 25 to 26\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/4846c05a48b35bb12dc3fb5254b3b77b93784730\"\u003e\u003ccode\u003e4846c05\u003c/code\u003e\u003c/a\u003e Add the Publish Site workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/4df3a8663601eaeb0fd5c71fd6bcc2b2ecc2234d\"\u003e\u003ccode\u003e4df3a86\u003c/code\u003e\u003c/a\u003e Use the shared release-drafter config instead of a local copy\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/9eb5fc61fe732c5e16737490f11b1898634252fe\"\u003e\u003ccode\u003e9eb5fc6\u003c/code\u003e\u003c/a\u003e Apply spotless formatting to README\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/f2856f90460216275047fa6c5b4c333726ee3f80\"\u003e\u003ccode\u003ef2856f9\u003c/code\u003e\u003c/a\u003e Rewrite README with usage, status and version guidance\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/62fe2fa47a81245ca0588a110c35a918a8f4402e\"\u003e\u003ccode\u003e62fe2fa\u003c/code\u003e\u003c/a\u003e Bump release-drafter/release-drafter from 7.6.0 to 7.7.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/compare/plexus-utils-4.0.3...plexus-utils-4.1.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.codehaus.plexus:plexus-xml` from 4.1.1 to 4.2.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/releases\"\u003eorg.codehaus.plexus:plexus-xml's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.2.0\u003c/h2\u003e\n\u003cp\u003eThe 4.x line no longer builds its DOM through Maven's deprecated \u003ccode\u003eXmlNodeBuilder\u003c/code\u003e: \u003ccode\u003eXpp3DomBuilder\u003c/code\u003e uses a pull builder of its own, so a future Maven can delete that class without breaking this one. The artifact also carries \u003ccode\u003eAutomatic-Module-Name: org.codehaus.plexus.util.xml\u003c/code\u003e, which anyone on the module path sees.\u003c/p\u003e\n\u003cp\u003eThe Maven dependency is split: \u003ccode\u003emaven-api-xml\u003c/code\u003e at compile, \u003ccode\u003emaven-xml\u003c/code\u003e at runtime, since \u003ccode\u003eXmlService\u003c/code\u003e resolves its implementation through \u003ccode\u003eServiceLoader\u003c/code\u003e. Consumers keep the API transitively and lose \u003ccode\u003eorg.apache.maven.internal.*\u003c/code\u003e along with woodstox-core and stax2-api.\u003c/p\u003e\n\u003cp\u003eRequires Java 17 and Maven 4. On Maven 3, use the 3.x line.\u003c/p\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eEstablish an automatic module name (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/92\"\u003e#92\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBuild the DOM with a local pull builder instead of Maven's deprecated XmlNodeBuilder (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/94\"\u003e#94\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📝 Documentation updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRewrite README with usage, status and version guidance (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/88\"\u003e#88\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSet the next development version to 4.2.0-SNAPSHOT (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/97\"\u003e#97\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBuild against maven-xml 4.0.0-rc-6 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/87\"\u003e#87\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove deprecated XmlNode references (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/81\"\u003e#81\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Build\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate parent to plexus 27 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/99\"\u003e#99\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDepend on maven-api-xml at compile and maven-xml at runtime (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/96\"\u003e#96\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus from 25 to 26 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/90\"\u003e#90\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7.6.0 to 7.7.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/86\"\u003e#86\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7 to 7.6.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/84\"\u003e#84\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 6 to 7 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/79\"\u003e#79\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/215f435589f545e3c6bb840513f45a952709fb5a\"\u003e\u003ccode\u003e215f435\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release plexus-xml-4.2.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/ce5d0624363998ebfc398f55672921552d7578ae\"\u003e\u003ccode\u003ece5d062\u003c/code\u003e\u003c/a\u003e Update parent to plexus 27\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/38c200b943a3109066ea3a18001ab8f1e11d4ee3\"\u003e\u003ccode\u003e38c200b\u003c/code\u003e\u003c/a\u003e Depend on maven-api-xml at compile and maven-xml at runtime\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/ae27358905fc4eb0fb28a6b10ea2a0cbb566c966\"\u003e\u003ccode\u003eae27358\u003c/code\u003e\u003c/a\u003e Set the next development version to 4.2.0-SNAPSHOT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/d1c51ce927244d359ed7aeb86ef809c0e77205cb\"\u003e\u003ccode\u003ed1c51ce\u003c/code\u003e\u003c/a\u003e Establish an automatic module name\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/d0f198be29880b2124560a72f4a7684ceb5d24f8\"\u003e\u003ccode\u003ed0f198b\u003c/code\u003e\u003c/a\u003e Build the DOM with a local pull builder, not Maven's XmlNodeBuilder\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/470396adc7ca98a41b00b45ea908d6941ebe6ae3\"\u003e\u003ccode\u003e470396a\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus from 25 to 26\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/51d60d59faff0fde7d6fe75986909819fb45f0e3\"\u003e\u003ccode\u003e51d60d5\u003c/code\u003e\u003c/a\u003e Rewrite README with usage, status and version guidance\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/e91d180a097e8777450d6cfba5cc0c4c3fd3226c\"\u003e\u003ccode\u003ee91d180\u003c/code\u003e\u003c/a\u003e Bump release-drafter/release-drafter from 7.6.0 to 7.7.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/b628bf3a4e89d939808f90eb1fd431f039ef5d18\"\u003e\u003ccode\u003eb628bf3\u003c/code\u003e\u003c/a\u003e Build against maven-xml 4.0.0-rc-6\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/compare/plexus-xml-4.1.1...plexus-xml-4.2.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson:jackson-bom` from 2.21.3 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/062d76d67a3619238e00d4d62f9bdb51cfe6cd52\"\u003e\u003ccode\u003e062d76d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-bom-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/dcf18f79fa8a9b935d880b3906291d8ed8cb1d0d\"\u003e\u003ccode\u003edcf18f7\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/9688c7b1dfc9072fdec7c9770653072d0a728fd1\"\u003e\u003ccode\u003e9688c7b\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/7796a7ddb240ce41c1b6c6a3a435b29948a6a727\"\u003e\u003ccode\u003e7796a7d\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/d3cd7fc1794f6d1a9f0a4dee41d8d46a310741d7\"\u003e\u003ccode\u003ed3cd7fc\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/7a28068902087b3c407d2dcabd875d7593127d97\"\u003e\u003ccode\u003e7a28068\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/51eb4657b141f598bb285763ac42492bd23a1da3\"\u003e\u003ccode\u003e51eb465\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/34ff5e8c68b0712086794b8287d0ad643a0a1993\"\u003e\u003ccode\u003e34ff5e8\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/0b44a458b999c5ac5568e2a4b1190a7d1080038e\"\u003e\u003ccode\u003e0b44a45\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-bom-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/691ec93ce7c1fcc582a2a44348e82e91ca424098\"\u003e\u003ccode\u003e691ec93\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-bom/compare/jackson-bom-2.21.3...jackson-bom-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.netty:netty-bom` from 4.2.13.Final to 4.2.17.Final\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/netty/netty/releases\"\u003eio.netty:netty-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003enetty-4.2.17.Final\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAsciiString.cached(String) should sanitize the provided String (\u003ca href=\"https://redirect.github.com/netty/netty/issues/13749\"\u003e#13749\u003c/a\u003e) by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix deploy workflow by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17071\"\u003enetty/netty#17071\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AsciiString.cached(String) performance regression by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17074\"\u003enetty/netty#17074\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSslHandler: Fix possible buffer leak when an OOME is thrown during allocation by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17059\"\u003enetty/netty#17059\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid leak presence detector in leak profile by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17073\"\u003enetty/netty#17073\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd HttpContentCompressor constructor with ability to specify desired maxPipelineDepth by \u003ca href=\"https://github.com/reta\"\u003e\u003ccode\u003e@​reta\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17068\"\u003enetty/netty#17068\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: preserve readPending when rescheduling cancelled reads by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17087\"\u003enetty/netty#17087\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReject negative maxOrder in PooledByteBufAllocator by \u003ca href=\"https://github.com/coderbruis\"\u003e\u003ccode\u003e@​coderbruis\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17093\"\u003enetty/netty#17093\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AdaptiveByteBuf._setLongLE calling checked setLongLE by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17098\"\u003enetty/netty#17098\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSnappy: Guard decoder against invalid chunk lengths by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17099\"\u003enetty/netty#17099\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix OCSP Tests by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17114\"\u003enetty/netty#17114\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate to latest netty-tcnative release by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17056\"\u003enetty/netty#17056\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse safe decompressor in Lz4FrameDecoder by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17118\"\u003enetty/netty#17118\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eConfigure TestLens for the PR builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17129\"\u003enetty/netty#17129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: add SO_INQ support for Unix domain sockets by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17127\"\u003enetty/netty#17127\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(mqtt): drop UNSUBACK reason codes for MQTT 3.x encoding by \u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropagate the CI envionment variables through to the docker builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17138\"\u003enetty/netty#17138\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add decompressor API by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/16745\"\u003enetty/netty#16745\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix silent failures and optimize error short-circuit in multi-threaded tests by \u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Bzip2Decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17145\"\u003enetty/netty#17145\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix buddy cache evicting chunks with live buffers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17154\"\u003enetty/netty#17154\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Snappy frame decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17153\"\u003enetty/netty#17153\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add zlib decompressors by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17155\"\u003enetty/netty#17155\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Zstd decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17152\"\u003enetty/netty#17152\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add LZF decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17147\"\u003enetty/netty#17147\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add BrotliDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17146\"\u003enetty/netty#17146\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Lz4FrameDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17148\"\u003enetty/netty#17148\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpObjectEncoder\u003c/code\u003e / \u003ccode\u003eDefaultHttp2FrameWriter\u003c/code\u003e: fix buffer leak when a \u003ccode\u003eThrowable\u003c/code\u003e is thrown during header encoding by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17089\"\u003enetty/netty#17089\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix direct memory OOM on low-core containers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17166\"\u003enetty/netty#17166\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: Fix the recvmmsg emulation by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17187\"\u003enetty/netty#17187\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid classloader leak via GlobalEventExecutor terminationFuture failure by \u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBrotliEncoder: Prevent duplicate close scheduling by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17175\"\u003enetty/netty#17175\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix JdkZlibDecompressor losing the tail of highly compressible streams by \u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate compress-lzf to 1.2.1 by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17194\"\u003enetty/netty#17194\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDo not write WebSocket handshake response to the tail of the pipeline by \u003ca href=\"https://github.com/el-psy-kongroo-d\"\u003e\u003ccode\u003e@​el-psy-kongroo-d\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17192\"\u003enetty/netty#17192\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpServerCodec\u003c/code\u003e: do not consume the method queue for 1xx interim responses by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17182\"\u003enetty/netty#17182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWeakly reference engines from the OpenSSL engine map by \u003ca href=\"https://github.com/bryce-anderson\"\u003e\u003ccode\u003e@​bryce-anderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17199\"\u003enetty/netty#17199\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eOpenSSL: Allow to obtain used named group via OpenSslSession by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17058\"\u003enetty/netty#17058\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17052\"\u003enetty/netty#17052\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate surefire plugin to latest version by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17210\"\u003enetty/netty#17210\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMerge changes from forks by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17213\"\u003enetty/netty#17213\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/e0789d32c72f46fd2e7c99b6fdbbf7e2f4409e44\"\u003e\u003ccode\u003ee0789d3\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release netty-4.2.17.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/1b5abc6443b63726c72cdd285af2feb7ddbb8ff7\"\u003e\u003ccode\u003e1b5abc6\u003c/code\u003e\u003c/a\u003e Merge changes from forks (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17213\"\u003e#17213\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/36fbf5788c73e7040e6f18fed841a2cdfcae1452\"\u003e\u003ccode\u003e36fbf57\u003c/code\u003e\u003c/a\u003e Update surefire plugin to latest version (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17210\"\u003e#17210\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/a96226cb54e87e963e1e341cd7121f2217fc7c2e\"\u003e\u003ccode\u003ea96226c\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17052\"\u003e#17052\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/14a4e6ad865a187c3f1bf0da18d9146472e18192\"\u003e\u003ccode\u003e14a4e6a\u003c/code\u003e\u003c/a\u003e OpenSSL: Allow to obtain used named group via OpenSslSession (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17058\"\u003e#17058\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/26255b123f7c699cd88cbdb42f6ecc6ed5cb7843\"\u003e\u003ccode\u003e26255b1\u003c/code\u003e\u003c/a\u003e Weakly reference engines from the OpenSSL engine map (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17199\"\u003e#17199\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/ae414179e3a030e0747fb68648ff2433fa4539e1\"\u003e\u003ccode\u003eae41417\u003c/code\u003e\u003c/a\u003e \u003ccode\u003eHttpServerCodec\u003c/code\u003e: do not consume the method queue for 1xx interim responses ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/41f1db523d3657954e9ad12250004cbdfde2a97d\"\u003e\u003ccode\u003e41f1db5\u003c/code\u003e\u003c/a\u003e Do not write WebSocket handshake response to the tail of the pipeline (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17192\"\u003e#17192\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/035d76e3f43fa462e101c1e03b59a69984c5ebf3\"\u003e\u003ccode\u003e035d76e\u003c/code\u003e\u003c/a\u003e Update compress-lzf to 1.2.1 (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17194\"\u003e#17194\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/7681affcf120fca1de8554095216ddea20b408c5\"\u003e\u003ccode\u003e7681aff\u003c/code\u003e\u003c/a\u003e Fix JdkZlibDecompressor losing the tail of highly compressible streams (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17191\"\u003e#17191\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/netty/netty/compare/netty-4.2.13.Final...netty-4.2.17.Final\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.hibernate.search:hibernate-search-bom` from 8.3.1.Final to 8.4.0.Final\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/hibernate/hibernate-search/releases\"\u003eorg.hibernate.search:hibernate-search-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eRelease 8.4.0.Final\u003c/h2\u003e\n\u003ch1\u003eHibernate Search 8.4.0.Final released\u003c/h1\u003e\n\u003cp\u003eWe are pleased to announce the release of Hibernate Search 8.4: 8.4.0.Final.\u003c/p\u003e\n\u003cp\u003eYou can find the full list of 8.4.0.Final changes \u003ca href=\"https://hibernate.atlassian.net/issues/?jql=project%20%3D%20HSEARCH%20AND%20fixVersion%20%3D%208.4.0.Final\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eWhat's new\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSee the \u003ca href=\"https://hibernate.org/search/releases/8.4\"\u003ewebsite\u003c/a\u003e for requirements and compatibilities.\u003c/li\u003e\n\u003cli\u003eSee the \u003ca href=\"https://docs.hibernate.org/search/8.4/whats-new/en-US/html_single/\"\u003eWhat's New\u003c/a\u003e guide for details about new features and capabilities.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eConclusion\u003c/h2\u003e\n\u003cp\u003eFor additional details, see:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003ethe \u003ca href=\"https://hibernate.org/search/releases/8.4/\"\u003erelease page\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/migration/html_single/\"\u003eMigration Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/getting-started/orm/en-US/html_single/\"\u003eORM Getting Started Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/getting-started/standalone/en-US/html_single/\"\u003eStandalone Getting Started Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/reference/en-US/html_single/\"\u003eReference Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/api\"\u003eAPI docs\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eVisit the \u003ca href=\"https://hibernate.org/community/\"\u003ewebsite\u003c/a\u003e for details on getting in touch with us.\u003c/p\u003e\n\u003ch2\u003eRelease 8.4.0.CR1\u003c/h2\u003e\n\u003ch1\u003eHibernate Search 8.4.0.CR1 released\u003c/h1\u003e\n\u003cp\u003eWe are pleased to announce the release of Hibernate Search 8.4: 8.4.0.CR1.\u003c/p\u003e\n\u003cp\u003eYou can find the full list of 8.4.0.CR1 changes \u003ca href=\"https://hibernate.atlassian.net/issues/?jql=project%20%3D%20HSEARCH%20AND%20fixVersion%20%3D%208.4.0.CR1\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eWhat's new\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSee the \u003ca href=\"https://hibernate.org/search/releases/8.4\"\u003ewebsite\u003c/a\u003e for requirements and compatibilities.\u003c/li\u003e\n\u003cli\u003eSee the \u003ca href=\"https://docs.hibernate.org/search/8.4/whats-new/en-US/html_single/\"\u003eWhat's New\u003c/a\u003e guide for details about new features and capabilities.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eConclusion\u003c/h2\u003e\n\u003cp\u003eFor additional details, see:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003ethe \u003ca href=\"https://hibernate.org/search/releases/8.4/\"\u003erelease page\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/migration/html_single/\"\u003eMigration Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/getting-started/orm/en-US/html_single/\"\u003eORM Getting Started Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/getting-started/standalone/en-US/html_single/\"\u003eStandalone Getting Started Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/reference/en-US/html_single/\"\u003eReference Guide\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/hibernate/hibernate-search/blob/main/changelog.md\"\u003eorg.hibernate.search:hibernate-search-bom's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.4.0.Final (2026-05-27)\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://hibernate.atlassian.net/projects/HSEARCH/versions/39072\"\u003eFull changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eImprovement\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5630\"\u003eHSEARCH-5630\u003c/a\u003e - Update to Hibernate ORM 7.4.0.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5629\"\u003eHSEARCH-5629\u003c/a\u003e - Use Maven 3.9.16 as a required minimum version for the build\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5627\"\u003eHSEARCH-5627\u003c/a\u003e - Switch from the Search session holder to a Hibernate ORM session extension\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5626\"\u003eHSEARCH-5626\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest-client) to 9.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5625\"\u003eHSEARCH-5625\u003c/a\u003e - Test against latest Elasticsearch 9.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5624\"\u003eHSEARCH-5624\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest5-client) to 9.4.1\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.4.0.CR1 (2026-05-11)\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://hibernate.atlassian.net/projects/HSEARCH/versions/37437\"\u003eFull changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eBug\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5595\"\u003eHSEARCH-5595\u003c/a\u003e - \u003ccode\u003echeckstyle:check\u003c/code\u003e is not build cache relocatable due to project resources including the workspace root\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eImprovement\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5623\"\u003eHSEARCH-5623\u003c/a\u003e - Update to Hibernate ORM 7.4.0.CR1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5622\"\u003eHSEARCH-5622\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest5-client) to 9.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5621\"\u003eHSEARCH-5621\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest-client) to 9.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5620\"\u003eHSEARCH-5620\u003c/a\u003e - Add compatibility with Elasticsearch 9.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5619\"\u003eHSEARCH-5619\u003c/a\u003e - Upgrade to GSON 2.14.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5618\"\u003eHSEARCH-5618\u003c/a\u003e - Update Jackson to 2.21.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5617\"\u003eHSEARCH-5617\u003c/a\u003e - Update to AWS SDK 2.44.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5616\"\u003eHSEARCH-5616\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest-client) to 9.3.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5613\"\u003eHSEARCH-5613\u003c/a\u003e - Use Maven 3.9.15 as a required minimum version for the build\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5612\"\u003eHSEARCH-5612\u003c/a\u003e - Upgrade to commons-codec 1.22.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5611\"\u003eHSEARCH-5611\u003c/a\u003e - Update Apache HTTP Client components to 5.6.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5609\"\u003eHSEARCH-5609\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest-client) to 9.3.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5608\"\u003eHSEARCH-5608\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest5-client) to 9.3.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5607\"\u003eHSEARCH-5607\u003c/a\u003e - Update Elasticsearch rest client (opensearch-rest-client) to 3.6.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5606\"\u003eHSEARCH-5606\u003c/a\u003e - Add compatibility with OpenSearch 3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5601\"\u003eHSEARCH-5601\u003c/a\u003e - Update to commons-logging to 1.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5600\"\u003eHSEARCH-5600\u003c/a\u003e - Update Jackson to 2.21.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5599\"\u003eHSEARCH-5599\u003c/a\u003e - Update Apache HTTP Core client components to 5.4.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5598\"\u003eHSEARCH-5598\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest-client) to 9.3.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5597\"\u003eHSEARCH-5597\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest5-client) to 9.3.3\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eTask\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5596\"\u003eHSEARCH-5596\u003c/a\u003e - Use changeDetection config option instead of the deprecated overwrite in maven-resources-plugin\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5280\"\u003eHSEARCH-5280\u003c/a\u003e - Look into \u003ccode\u003eOutboxPollingAutomaticIndexingDynamicShardingRebalancingIT#agentJoined\u003c/code\u003e test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5242\"\u003eHSEARCH-5242\u003c/a\u003e - Investigate why building hibernate-search-integrationtest-performance-backend-lucene fails on some envs\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.3.0.Final (2026-03-20)\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/7369a18fc526aaffba13336fdcdc95a333702b19\"\u003e\u003ccode\u003e7369a18\u003c/code\u003e\u003c/a\u003e [Jenkins release job] Preparing release 8.4.0.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/4e26c085ba83c21cde89022a2f10864b08711e25\"\u003e\u003ccode\u003e4e26c08\u003c/code\u003e\u003c/a\u003e [Jenkins release job] changelog.txt updated by release build 8.4.0.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/fe410d2d5c25d9e05648f67c027441564a32be03\"\u003e\u003ccode\u003efe410d2\u003c/code\u003e\u003c/a\u003e HSEARCH-5630 Add a few migration notes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/87335b65fd124493bf91ad83de78f64eafc1155c\"\u003e\u003ccode\u003e87335b6\u003c/code\u003e\u003c/a\u003e HSEARCH-5630 Update to Hibernate ORM 7.4.0.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/58d6af143d22c9ce55872c9f13c51c8dd8e03d32\"\u003e\u003ccode\u003e58d6af1\u003c/code\u003e\u003c/a\u003e HSEARCH-5624 Update Elasticsearch client (elasticsearch-rest5-client) to 9.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/9efe369fcb419ded47b3e77a02b3d84451e64853\"\u003e\u003ccode\u003e9efe369\u003c/code\u003e\u003c/a\u003e Bump the build-dependencies group with 4 updates\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/bc1c18509b22d2b1fa9e41149fbe5cf166d7f663\"\u003e\u003ccode\u003ebc1c185\u003c/code\u003e\u003c/a\u003e Use the ssh URL for updating the website during the release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/311adb00224ab04fc2c397da94cf41a373338801\"\u003e\u003ccode\u003e311adb0\u003c/code\u003e\u003c/a\u003e HSEARCH-5627 Mention limitations of a StatelessSession\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/d429b05110cf6015d70faa6278176c6b3e7defa0\"\u003e\u003ccode\u003ed429b05\u003c/code\u003e\u003c/a\u003e HSEARCH-5627 Better error message for \u0026quot;incompatible\u0026quot; session types\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/2eaeb282d9d9bc136bc32f93ca12634374e249d4\"\u003e\u003ccode\u003e2eaeb28\u003c/code\u003e\u003c/a\u003e HSEARCH-5627 Add a simple StatelessSession test\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/hibernate/hibernate-search/compare/8.3.1.Final...8.4.0.Final\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.junit:junit-bom` from 6.0.3 to 6.1.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/junit-team/junit-framework/releases\"\u003eorg.junit:junit-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003cp\u003eJUnit 6.1.3 = Platform 6.1.3 + Jupiter 6.1.3 + Vintage 6.1.3\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.3/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.2...r6.1.3\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.2...r6.1.3\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.2 = Platform 6.1.2 + Jupiter 6.1.2 + Vintage 6.1.2\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.2/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.2\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.2\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.1 = Platform 6.1.1 + Jupiter 6.1.1 + Vintage 6.1.1\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.1/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.0...r6.1.1\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.0...r6.1.1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.0 = Platform 6.1.0 + Jupiter 6.1.0 + Vintage 6.1.0\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.0/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/JarvisCraft\"\u003e\u003ccode\u003e@​JarvisCraft\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5633\"\u003ejunit-team/junit-framework#5633\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Maran23\"\u003e\u003ccode\u003e@​Maran23\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5644\"\u003ejunit-team/junit-framework#5644\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.0.3...r6.1.0\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.0.3...r6.1.0\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.0-RC1 = Platform 6.1.0-RC1 + Jupiter 6.1.0-RC1 + Vintage 6.1.0-RC1\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.0-RC1/release-notes/\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariokhoury4\"\u003e\u003ccode\u003e@​mariokhoury4\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/4574\"\u003ejunit-team/junit-framework#4574\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Ogu1208\"\u003e\u003ccode\u003e@​Ogu1208\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5145\"\u003ejunit-team/junit-framework#5145\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/HyungGeun94\"\u003e\u003ccode\u003e@​HyungGeun94\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5271\"\u003ejunit-team/junit-framework#5271\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yalishevant\"\u003e\u003ccode\u003e@​yalishevant\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5316\"\u003ejunit-team/junit-framework#5316\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/JINU-CHANG\"\u003e\u003ccode\u003e@​JINU-CHANG\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5290\"\u003ejunit-team/junit-framework#5290\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jaschdoc\"\u003e\u003ccode\u003e@​jaschdoc\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5427\"\u003ejunit-team/junit-framework#5427\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/kawshikbuet17\"\u003e\u003ccode\u003e@​kawshikbuet17\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5561\"\u003ejunit-team/junit-framework#5561\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/msridhar\"\u003e\u003ccode\u003e@​msridhar\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5602\"\u003ejunit-team/junit-framework#5602\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.0-M1...r6.1.0-RC1\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.0-M1...r6.1.0-RC1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.0-M1 = Platform 6.1.0-M1 + Jupiter 6.1.0-M1 + Vintage 6.1.0-M1\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.0-M1/release-notes/\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vy\"\u003e\u003ccode\u003e@​vy\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5041\"\u003ejunit-team/junit-framework#5041\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/f59f60d2cebdf2224235d81f781b1f310cbc8138\"\u003e\u003ccode\u003ef59f60d\u003c/code\u003e\u003c/a\u003e Release 6.1.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/cd8ec9202ce8260a434edb38a8565e36f620e8d6\"\u003e\u003ccode\u003ecd8ec92\u003c/code\u003e\u003c/a\u003e Finalize 6.1.3 release notes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/c8729f26aacd8e2dd6fa564b929fe047faaa7dc9\"\u003e\u003ccode\u003ec8729f2\u003c/code\u003e\u003c/a\u003e Restore compatibility with GraalVM 25 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5901\"\u003e#5901\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/ddc9e74e5d21c2dd18bc0cfe4681d5ff50ac379c\"\u003e\u003ccode\u003eddc9e74\u003c/code\u003e\u003c/a\u003e Update graalvm/setup-graalvm action to v1.6.4 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5959\"\u003e#5959\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/fe2c52a780fcbda6c7ccf5d6576beb7ad2d80bf8\"\u003e\u003ccode\u003efe2c52a\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.7 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5923\"\u003e#5923\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/62afc02b541ee9dfa16b121705f79b7d44f4dae0\"\u003e\u003ccode\u003e62afc02\u003c/code\u003e\u003c/a\u003e Delay GraalVM plugin updates for 3 days\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/0cc29022801365a409c1213a811a8877cb88cce3\"\u003e\u003ccode\u003e0cc2902\u003c/code\u003e\u003c/a\u003e Skip \u003ccode\u003egraalVmTest\u003c/code\u003e task if GraalVM env vars are not set\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/f6bbfc53e7e00b1b25e7d3b0bc09eef05cc4b721\"\u003e\u003ccode\u003ef6bbfc5\u003c/code\u003e\u003c/a\u003e Move GraalVM tests to separate test task (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5903\"\u003e#5903\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/e87e0521d4fbd75116a5fda42566fcb7a56eb340\"\u003e\u003ccode\u003ee87e052\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.6 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5899\"\u003e#5899\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/1cd56df89754fb8523ac9fbbf888e9a552e33ee8\"\u003e\u003ccode\u003e1cd56df\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.5 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5880\"\u003e#5880\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.0.3...r6.1.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.ow2.asm:asm-bom` from 9.10 to 9.10.1\n\nUpdates `ch.qos.logback:logback-core` from 1.5.32 to 1.6.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/qos-ch/logback/releases\"\u003ech.qos.logback:logback-core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eLogback 1.6.3\u003c/h2\u003e\n\u003ch1\u003e2026-08-14 Release of logback version 1.6.3\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eIn response \u003ca href=\"https://www.cve.org/cverecord?id=CVE-2026-19880\"\u003eCVE-2026-19880\u003c/a\u003e,  \u003ccode\u003eMDCBasedDiscriminator\u003c/code\u003e (used by \u003ccode\u003eSiftingAppender\u003c/code\u003e) now strips forward and  backward slashes (\u003ccode\u003e/\u003c/code\u003e, \u003ccode\u003e\\\u003c/code\u003e) from MDC values before they are used as  discriminating keys. This prevents path segments from escaping into  destinations controlled by an attacker. When sanitisation actually changes a  value, a warning is emitted; the warning is rate-limited (a small batch, then  a lull of about ten minutes).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eColour console support is split out into a dedicated  \u003ca href=\"https://logback.qos.ch/manual/appenders.html#JansiConsoleAppender\"\u003e\u003ccode\u003eJansiConsoleAppender\u003c/code\u003e\u003c/a\u003e. It wraps stdout or stderr with  Jansi so ANSI escape sequences (for example coloured patterns) render  correctly on terminals that need it, notably Windows. Prefer this class over  the older path described next. See the  \u003ca href=\"https://logback.qos.ch/manual/appenders.html#JansiConsoleAppender\"\u003eappenders documentation\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe \u003ccode\u003ewithJansi\u003c/code\u003e property on \u003ccode\u003eConsoleAppender\u003c/code\u003e is \u003cstrong\u003edeprecated\u003c/strong\u003e. Existing  configurations that still set \u003ccode\u003e\u0026lt;withJansi\u0026gt;true\u0026lt;/withJansi\u0026gt;\u003c/code\u003e continue to work  for compatibility, but new setups should use \u003ccode\u003eJansiConsoleAppender\u003c/code\u003e instead.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ccode\u003eConsoleAppender\u003c/code\u003e no longer treats the process console as an exclusive  resource: stopping it does not close \u003ccode\u003eSystem.out\u003c/code\u003e / \u003ccode\u003eSystem.err\u003c/code\u003e.  \u003ccode\u003eJansiConsoleAppender\u003c/code\u003e pairs each \u003ccode\u003eAnsiConsole.systemInstall()\u003c/code\u003e with  \u003ccode\u003esystemUninstall()\u003c/code\u003e on stop, so repeated start/stop cycles do not leave Jansi  installed or tear down streams shared with the rest of the JVM. Related  behavior is covered by tests for  \u003ca href=\"https://redirect.github.com/qos-ch/logback/issues/1063\"\u003eissues/1063\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eInvocation throttling helpers were reworked: \u003ccode\u003eSimpleInvocationGate\u003c/code\u003e is renamed  \u003ccode\u003eFixedIntervalInvocationGate\u003c/code\u003e, and \u003ccode\u003eBatchedFixedIntervalInvocationGate\u003c/code\u003e allows  a short burst of invocations before applying a fixed lull. The sanitisation\nwarning above uses the batched gate.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe JPMS \u003ccode\u003emodule-info\u003c/code\u003e for logback-core now exports the  \u003ccode\u003ech.qos.logback.core.property\u003c/code\u003e package, which had been missing from the module   descriptor.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA bit-wise identical binary of this version can be reproduced by building from  \u003ca href=\"https://github.com/qos-ch/logback\"\u003esource code\u003c/a\u003e at commit  \u003ccode\u003ee8e824dede022a6d7208b36cfa875b0d1b7772f3\u003c/code\u003e associated with the tag \u003ccode\u003ev_1.6.3\u003c/code\u003e.  The release was built using Java \u0026quot;21\u0026quot; 2023-10-17 LTS build 21.0.1.+12-LTS-29   under Linux Debian 11.6.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e--\nSponsoring SLF4J/logback/reload4j at \u003ca href=\"https://github.com/sponsors/qos-ch\"\u003ehttps://github.com/sponsors/qos-ch\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eLogback 1.6.2\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/user-attachments/assets/9ceaf157-b758-4188-815d-edfe4e1b4edd\"\u003ehttps://github.com/user-attachments/assets/9ceaf157-b758-4188-815d-edfe4e1b4edd\u003c/a\u003e\u003c/p\u003e\n\u003ch1\u003e2026-08-10 Release of logback version 1.6.2\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eConfiguration analysis now detects \u003cem\u003econtradictory caller-data inclusion instructions\u003c/em\u003e. For example, an \u003ccode\u003eAsyncAppender\u003c/code\u003e, \u003ccode\u003eSocketAppender\u003c/code\u003e or \u003ccode\u003eSMTPAppender\u003c/code\u003e with \u003ccode\u003eincludeCallerData\u003c/code\u003e left at the default \u003ccode\u003efalse\u003c/code\u003e is incompatible with a layout or encoder pattern that uses a caller-data converter such as \u003ccode\u003e%C\u003c/code\u003e, \u003ccode\u003e%M\u003c/code\u003e, \u003ccode\u003e%L\u003c/code\u003e, \u003ccode\u003e%F\u003c/code\u003e, \u003ccode\u003e%l\u003c/code\u003e or \u003ccode\u003e%caller\u003c/code\u003e. At runtime those converters would print question marks and still incur extraction cost on a worker thread. Logback now emits a configuration-time warning when such instructions disagree. See \u003ca href=\"https://logback.qos.ch/codes.html#callerContradiction\"\u003ecodes.html#callerContradiction\u003c/a\u003e for details. This issue was reported in \u003ca href=\"https://redirect.github.com/qos-ch/logback/issues/1059\"\u003eissues/1059\u003c/a\u003e by \u003ca href=\"https://github.com/leeychee\"\u003eleeychee\u003c/a\u003e. The initial analysis was contributed by \u003ca href=\"https://github.com/seonwooj0810\"\u003eseonwoo_jung\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eCaller-contradiction analysis can be turned off by setting the \u003ccode\u003elogback.skipCallerContradictionAnalysis\u003c/code\u003e variable to \u003ccode\u003etrue\u003c/code\u003e, either as a system property (\u003ccode\u003e-Dlogback.skipCallerContradictionAnalysis=true\u003c/code\u003e) or as a property in the configuration file:\u003c/p\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;property name=\u0026quot;logback.skipCallerContradictionAnalysis\u0026quot; value=\u0026quot;true\u0026quot;/\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ccode\u003eSimpleSocketServer\u003c/code\u003e and \u003ccode\u003eSimpleSSLSocketServer\u003c/code\u003e now require an explicit client IP whitelist. On the command line, pass one or more allowed addresses (single IPs or CIDR ranges) after the configuration file. An empty whitelist means no clients are accepted. When embedding the server programmatically, register allowed addresses with \u003ccode\u003eaddAllowedClientAddress(String)\u003c/code\u003e or \u003ccode\u003esetAllowedClientAddresses(Collection)\u003c/code\u003e before clients connect. See the documentation on \u003ca href=\"https://logback.qos.ch/manual/appenders.html#simpleSocketServerClientAccess\"\u003erestricting client access\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdded \u003ccode\u003eThrowableProxyVOBuilder\u003c/code\u003e for assembling a \u003ccode\u003eThrowableProxyVO\u003c/code\u003e field by field, with a corresponding \u003ccode\u003eThrowableProxyVO.builder()\u003c/code\u003e entry point.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDependency analysis handlers now run their \u003ccode\u003epostHandle\u003c/code\u003e method after child models have been processed, so checks that depend on nested appenders (such as caller-contradiction analysis) see a complete picture.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated several dependencies, including Angus Mail to 2.0.4 and Jetty (test) to 12.1.12.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA bit-wise identical binary of this version can be reproduced by building from \u003ca href=\"https://github.com/qos-ch/logback\"\u003esource code\u003c/a\u003e at commit e3d78330ad1ba024fd987fd00c3ffb9cfcdb07dc associated with the tag \u003ccode\u003ev_1.6.2\u003c/code\u003e. The release was built using Java \u0026quot;21\u0026quot; 2023-10-17 LTS build 21.0.1.+12-LTS-29 under Linux Debian 11.6.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eLogback 1.6.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003e2026-07-28 Release of logback version 1.6.1\u003c/strong\u003e\u003c/p\u003e\n\u003cp\u003e• In TimeBasedRollingPolicy, when the file option is set, the intermediate file renamed before asynchronous compression now receives the target archive name without the compression suffix (e.g. \u003ccode\u003e.gz\u003c/code\u003e, \u003ccode\u003e.zip\u003c/code\u003e, \u003ccode\u003e.xz\u003c/code\u003e). Previously it used a nanotime-based \u003ccode\u003e.tmp\u003c/code\u003e suffix. This makes the file easier to identify if compression fails during rollover. (See also the following paragraph.)\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/e8e824dede022a6d7208b36cfa875b0d1b7772f3\"\u003e\u003ccode\u003ee8e824d\u003c/code\u003e\u003c/a\u003e prepare release 1.6.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/761821bfaacac3a0ad44fa546cfc814429bf9312\"\u003e\u003ccode\u003e761821b\u003c/code\u003e\u003c/a\u003e MDCBasedDiscriminator has a gated warning mechanism\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/53ed1229008d8b1902f5c234deaa07d742890879\"\u003e\u003ccode\u003e53ed122\u003c/code\u003e\u003c/a\u003e update copyright year\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/c7e2db244671ffa916182b5da8c89579eb54a645\"\u003e\u003ccode\u003ec7e2db2\u003c/code\u003e\u003c/a\u003e rename SimpleInvocationGate as FixedIntervalInvocationGate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/b5aa931b096a4b0b6a9e140b74fabe7da152cbf0\"\u003e\u003ccode\u003eb5aa931\u003c/code\u003e\u003c/a\u003e added BatchedSimpleInvocationGate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/1f22af7686aadd25c08b4bd1e6943a906a743ad4\"\u003e\u003ccode\u003e1f22af7\u003c/code\u003e\u003c/a\u003e add javadocs to SimpleInvocationGate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/638ffa7e7852478b605a91b3e91238ff26f8158c\"\u003e\u003ccode\u003e638ffa7\u003c/code\u003e\u003c/a\u003e prevent forward and backward slashes to escape to other directories\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/7d6b9a4f8c8996834c0a694f6c141705a003d7bb\"\u003e\u003ccode\u003e7d6b9a4\u003c/code\u003e\u003c/a\u003e add missing ch.qos.logback.core.property package\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/fa25930346f35636fb6a077c1f66ebb06edd3b6f\"\u003e\u003ccode\u003efa25930\u003c/code\u003e\u003c/a\u003e add an extension path in ConsoleAppender for JansiConsoleAppender\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/c73b43f2011f9d4545abc7ea461172276a0a43b3\"\u003e\u003ccode\u003ec73b43f\u003c/code\u003e\u003c/a\u003e deprecate the withJansi path\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/qos-ch/logback/compare/v_1.5.32...v_1.6.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.github.jnr:jffi` from 1.3.15 to 1.4.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jnr/jffi/releases\"\u003ecom.github.jnr:jffi's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.4.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUse a parent pom to ease management and release by \u003ca href=\"https://github.com/headius\"\u003e\u003ccode\u003e@​headius\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jnr/jffi/pull/195\"\u003ejnr/jffi#195\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/jnr/jffi/compare/jffi-1.3.15...1.4.0\"\u003ehttps://github.com/jnr/jffi/compare/jffi-1.3.15...1.4.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/3a2aa585b2beefda5d3d4ed9cb1747c87c3e58fd\"\u003e\u003ccode\u003e3a2aa58\u003c/code\u003e\u003c/a\u003e Bump the major minor for new Maven structure before release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/3da7efbef832eac19811fccccf2378b616879458\"\u003e\u003ccode\u003e3da7efb\u003c/code\u003e\u003c/a\u003e Add bare relativePath to always resolve parent\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/4621e143079aec80dcc5e276113734096a860658\"\u003e\u003ccode\u003e4621e14\u003c/code\u003e\u003c/a\u003e Update version for release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/2b02140805647cf1cfd4c4fcbb040d86c37b044e\"\u003e\u003ccode\u003e2b02140\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/jnr/jffi/issues/195\"\u003e#195\u003c/a\u003e from headius/jnr-parent\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/ea18e4800785d586133fbe08a6e159bcd9075050\"\u003e\u003ccode\u003eea18e48\u003c/code\u003e\u003c/a\u003e Remove snapshot repository inherited from parent\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/f761f8dd494b54dcd0bfd4ebc6d0a9cf3f97ff51\"\u003e\u003ccode\u003ef761f8d\u003c/code\u003e\u003c/a\u003e Update to release version of parent\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/5c1077eaa89b7096a8c882236249eb286e379490\"\u003e\u003ccode\u003e5c1077e\u003c/code\u003e\u003c/a\u003e Install prerequisites to compile tests on macOS\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/2a8b56a4b281a5660da0df692d693915138f80e0\"\u003e\u003ccode\u003e2a8b56a\u003c/code\u003e\u003c/a\u003e Tweaks for toolchain use in jffi\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/86a17749ce763d78d64265fb7bfbbef06f2b72ee\"\u003e\u003ccode\u003e86a1774\u003c/code\u003e\u003c/a\u003e Disable fail-fast\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/45269c3f87753b667c379383972e504191de1ec9\"\u003e\u003ccode\u003e45269c3\u003c/code\u003e\u003c/a\u003e Update for toolchain and parent defaults\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/jnr/jffi/compare/jffi-1.3.15...1.4.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `commons-codec:commons-codec` from 1.22.0 to 1.22.1\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/commons-codec/blob/master/RELEASE-NOTES.txt\"\u003ecommons-codec:commons-codec's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eApache Commons Codec 1.22.1 Release Notes\u003c/h2\u003e\n\u003cp\u003eThe Apache Commons Codec team is pleased to announce the release of Apache Commons Codec 1.22.1.\u003c/p\u003e\n\u003cp\u003eThe Apache Commons Codec component contains encoders and decoders for\nformats such as Base16, Base32, Base64, digest, and Hexadecimal. In addition to these\nwidely used encoders and decoders, the codec package also maintains a\ncollection of phonetic encoding utilities.\u003c/p\u003e\n\u003cp\u003eThis is a feature and maintenance release. Java 8 or later is required.\u003c/p\u003e\n\u003ch2\u003eFixed Bugs\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eCODEC-344:  Base64.Builder.setEncodeTable(byte...) accepts invalid custom alphabets. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-340:  Base58.Builder.setEncodeTable(byte...) is ignored when encoding and decoding. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-342:  Base32.Builder.setEncodeTable(byte...) can create a codec that cannot decode its own output. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-343:  Base32.Builder.setHexDecodeTable(boolean) sets the encode table to a decode lookup table. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-341:  Base16.Builder.setEncodeTable(byte...) can create a codec that cannot decode its own output. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-339:  URLCodec.encodeUrl(BitSet, byte[]) allows custom safe sets to emit URL encoding control characters. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-338:  PercentCodec loses literal '+' when plusForSpace is enabled. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-337:  Digest ALL reuses System.in, so only the first algorithm sees the real input (\u003ca href=\"https://redirect.github.com/apache/commons-codec/issues/431\"\u003e#431\u003c/a\u003e). Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Fix Base64.toIntegerBytes(BigInteger) for zero edge case ([#441](https://github.com/apache/commons-codec/issues/441)). Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Add messages when throwing NullPointerException. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Add messages when throwing NullPointerException. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        StringEncoderComparator.StringEncoderComparator(StringEncoder) now fails fast on null input. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eChanges\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Bump org.apache.commons:commons-parent from 98 to 103. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Bump commons-io:commons-io from 2.21.0 to 2.22.0. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eFor complete information on Apache Commons Codec, including instructions on how to submit bug reports,\npatches, or suggestions for improvement, see the Apache Commons Codec website:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://commons.apache.org/proper/commons-codec/\"\u003ehttps://commons.apache.org/proper/commons-codec/\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eDownload page: \u003ca href=\"https://commons.apache.org/proper/commons-codec/download_codec.cgi\"\u003ehttps://commons.apache.org/proper/commons-codec/download_codec.cg...\n\n_Description has been truncated_","html_url":"https://github.com/finos-osera/patch-jetty/pull/24","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/finos-osera%2Fpatch-jetty/issues/24","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/24/packages"}],"issue_packages":[{"old_version":"33.6.0-android","new_version":"33.7.0-android","update_type":"minor","path":null,"pr_created_at":"2026-09-16T18:17:54.000Z","version_change":"33.6.0-android → 33.7.0-android","issue":{"uuid":"5478331689","node_id":"PR_kwDOBk-9i88AAAABD0AKYw","number":16569,"state":"open","title":"Bump com.google.guava:guava from 33.6.0-android to 33.7.0-android","user":"dependabot[bot]","labels":["bot: dependencies update"],"assignees":[],"locked":false,"comments_count":3,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-16T18:17:54.000Z","updated_at":"2026-09-16T18:24:49.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"com.google.guava:guava","old_version":"33.6.0-android","new_version":"33.7.0-android","repository_url":"https://github.com/google/guava"}],"path":null,"ecosystem":"maven"},"body":"Bumps [com.google.guava:guava](https://github.com/google/guava) from 33.6.0-android to 33.7.0-android.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.0-jre/guava-33.7.0-jre.jar\"\u003e33.7.0-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.0-android/guava-33.7.0-android.jar\"\u003e33.7.0-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.0-jre/api/docs/\"\u003e33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.0-android/api/docs/\"\u003e33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.0-jre/api/diffs/\"\u003e33.7.0-jre vs. 33.6.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.0-android/api/diffs/\"\u003e33.7.0-android vs. 33.6.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.0-android/api/androiddiffs/\"\u003e33.7.0-android vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe Android jar now contains our Proguard configs. (b0668e7174)\u003c/li\u003e\n\u003cli\u003eThe Guava \u003ccode\u003emodule-info.class\u003c/code\u003e is now present at the root of the jar instead of under \u003ca href=\"https://openjdk.org/jeps/238\"\u003ea multi-release root\u003c/a\u003e. This prevents the jar from containing a file at \u003ccode\u003eMETA-INF/versions/9/OSGI-INF/MANIFEST.MF\u003c/code\u003e, which occasionally causes \u003ca href=\"https://redirect.github.com/jspecify/jspecify/issues/484#issuecomment-2819506604\"\u003etrouble for some users\u003c/a\u003e. (230019b31e)\u003c/li\u003e\n\u003cli\u003eOur Android \u003ccode\u003eminSdkVersion\u003c/code\u003e is now 24 (Nougat). This follows the minimum of Google's foundational Android libraries, and we expect it to have no practical impact on users. (ea0af870d5)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003ecollect\u003c/code\u003e: Changed some \u003ccode\u003eImmutableMap\u003c/code\u003e implementations to create a new, lightweight object on each call to view methods like \u003ccode\u003ekeySet()\u003c/code\u003e, rather than creating and storing that object during the first call for reuse later. This is likely to slightly improve performance for some users, but it could lead to regressions in unusual cases, such as repeatedly calling \u003ccode\u003easMultimap().inverse()\u003c/code\u003e on the same \u003ccode\u003eImmutableMap\u003c/code\u003e instance. (e87d019e47)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enet\u003c/code\u003e: Added \u003ccode\u003eHttpHeaders\u003c/code\u003e constant for \u003ccode\u003eon-prefetch-activation\u003c/code\u003e. (abd06a3679)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003enet\u003c/code\u003e: Added \u003ccode\u003eMediaType\u003c/code\u003e constants for \u003ccode\u003eapplication/yaml\u003c/code\u003e and \u003ccode\u003eapplication/x-pem-file\u003c/code\u003e. (a8e9533b49, 1d40e27a4b)\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eutil.concurrent\u003c/code\u003e: Fixed \u003ccode\u003eExecutionSequencer\u003c/code\u003e queue stall when delegate executor throws \u003ccode\u003eRejectedExecutionException\u003c/code\u003e. (8410194eed)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.google.guava:guava\u0026package-manager=gradle\u0026previous-version=33.6.0-android\u0026new-version=33.7.0-android)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/woocommerce/woocommerce-android/pull/16569","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/woocommerce%2Fwoocommerce-android/issues/16569","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/16569/packages"}},{"old_version":"33.6.0-jre","new_version":"33.7.1-jre","update_type":"minor","path":null,"pr_created_at":"2026-09-16T01:43:48.000Z","version_change":"33.6.0-jre → 33.7.1-jre","issue":{"uuid":"5469234376","node_id":"PR_kwDODnpKsM8AAAABDsq6nw","number":90,"state":"open","title":"Bump the build-dependencies group across 1 directory with 25 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-16T01:43:48.000Z","updated_at":"2026-09-16T01:43:49.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"build-dependencies","update_count":25,"packages":[{"name":"net.bytebuddy:byte-buddy","old_version":"1.18.11","new_version":"1.18.13","repository_url":"https://github.com/raphw/byte-buddy"},{"name":"org.slf4j:slf4j-api","old_version":"2.0.18","new_version":"2.0.19"},{"name":"org.apache.groovy:groovy-jsr223","old_version":"5.0.7","new_version":"5.1.2","repository_url":"https://github.com/apache/groovy"},{"name":"org.easymock:easymock","old_version":"5.6.0","new_version":"5.7.0","repository_url":"https://github.com/easymock/easymock"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"org.springframework:spring-expression","old_version":"7.0.8","new_version":"7.0.9","repository_url":"https://github.com/spring-projects/spring-framework"},{"name":"tools.jackson:jackson-bom","old_version":"3.2.1","new_version":"3.2.2","repository_url":"https://github.com/FasterXML/jackson-bom"},{"name":"com.puppycrawl.tools:checkstyle","old_version":"13.8.0","new_version":"14.1.0","repository_url":"https://github.com/checkstyle/checkstyle"},{"name":"org.codehaus.mojo:build-helper-maven-plugin","old_version":"3.6.1","new_version":"3.6.2","repository_url":"https://github.com/mojohaus/build-helper-maven-plugin"},{"name":"org.apache.maven.plugins:maven-jar-plugin","old_version":"3.5.0","new_version":"3.5.1","repository_url":"https://github.com/apache/maven-jar-plugin"},{"name":"org.apache.maven.plugins:maven-compiler-plugin","old_version":"3.15.0","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-compiler-plugin"},{"name":"org.apache.maven.plugins:maven-surefire-plugin","old_version":"3.5.6","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-surefire"},{"name":"org.apache.maven.plugins:maven-surefire-report-plugin","old_version":"3.5.6","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-surefire"},{"name":"org.apache.maven.plugins:maven-install-plugin","old_version":"3.1.4","new_version":"3.2.0","repository_url":"https://github.com/apache/maven-install-plugin"},{"name":"org.apache.felix:maven-bundle-plugin","old_version":"6.0.2","new_version":"6.1.2"},{"name":"org.apache.maven.plugins:maven-deploy-plugin","old_version":"3.1.4","new_version":"3.2.0","repository_url":"https://github.com/apache/maven-deploy-plugin"},{"name":"com.github.siom79.japicmp:japicmp-maven-plugin","old_version":"0.26.1","new_version":"0.26.2","repository_url":"https://github.com/siom79/japicmp"},{"name":"jakarta.tck:sigtest-maven-plugin","old_version":"2.6","new_version":"2.7","repository_url":"https://github.com/eclipse-ee4j/jakartaee-tck-tools"},{"name":"org.codehaus.mojo:flatten-maven-plugin","old_version":"1.7.3","new_version":"1.8.0","repository_url":"https://github.com/mojohaus/flatten-maven-plugin"},{"name":"com.diffplug.spotless:spotless-maven-plugin","old_version":"3.8.0","new_version":"3.10.2","repository_url":"https://github.com/diffplug/spotless"},{"name":"org.eclipse.sisu:sisu-maven-plugin","old_version":"1.0.1","new_version":"1.1.0"},{"name":"org.codehaus.mojo:versions-maven-plugin","old_version":"2.21.0","new_version":"2.22.0","repository_url":"https://github.com/mojohaus/versions"},{"name":"org.slf4j:slf4j-log4j12","old_version":"2.0.18","new_version":"2.0.19"},{"name":"com.gradle:common-custom-user-data-maven-extension","old_version":"2.3.0","new_version":"2.4.0","repository_url":"https://github.com/gradle/common-custom-user-data-maven-extension"}],"path":null,"ecosystem":"maven"},"body":"Bumps the build-dependencies group with 24 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [net.bytebuddy:byte-buddy](https://github.com/raphw/byte-buddy) | `1.18.11` | `1.18.13` |\n| org.slf4j:slf4j-api | `2.0.18` | `2.0.19` |\n| [org.apache.groovy:groovy-jsr223](https://github.com/apache/groovy) | `5.0.7` | `5.1.2` |\n| [org.easymock:easymock](https://github.com/easymock/easymock) | `5.6.0` | `5.7.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [org.springframework:spring-expression](https://github.com/spring-projects/spring-framework) | `7.0.8` | `7.0.9` |\n| [tools.jackson:jackson-bom](https://github.com/FasterXML/jackson-bom) | `3.2.1` | `3.2.2` |\n| [com.puppycrawl.tools:checkstyle](https://github.com/checkstyle/checkstyle) | `13.8.0` | `14.1.0` |\n| [org.codehaus.mojo:build-helper-maven-plugin](https://github.com/mojohaus/build-helper-maven-plugin) | `3.6.1` | `3.6.2` |\n| [org.apache.maven.plugins:maven-jar-plugin](https://github.com/apache/maven-jar-plugin) | `3.5.0` | `3.5.1` |\n| [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin) | `3.15.0` | `3.16.0` |\n| [org.apache.maven.plugins:maven-surefire-plugin](https://github.com/apache/maven-surefire) | `3.5.6` | `3.6.0` |\n| [org.apache.maven.plugins:maven-surefire-report-plugin](https://github.com/apache/maven-surefire) | `3.5.6` | `3.6.0` |\n| [org.apache.maven.plugins:maven-install-plugin](https://github.com/apache/maven-install-plugin) | `3.1.4` | `3.2.0` |\n| org.apache.felix:maven-bundle-plugin | `6.0.2` | `6.1.2` |\n| [org.apache.maven.plugins:maven-deploy-plugin](https://github.com/apache/maven-deploy-plugin) | `3.1.4` | `3.2.0` |\n| [com.github.siom79.japicmp:japicmp-maven-plugin](https://github.com/siom79/japicmp) | `0.26.1` | `0.26.2` |\n| [jakarta.tck:sigtest-maven-plugin](https://github.com/eclipse-ee4j/jakartaee-tck-tools) | `2.6` | `2.7` |\n| [org.codehaus.mojo:flatten-maven-plugin](https://github.com/mojohaus/flatten-maven-plugin) | `1.7.3` | `1.8.0` |\n| [com.diffplug.spotless:spotless-maven-plugin](https://github.com/diffplug/spotless) | `3.8.0` | `3.10.2` |\n| org.eclipse.sisu:sisu-maven-plugin | `1.0.1` | `1.1.0` |\n| [org.codehaus.mojo:versions-maven-plugin](https://github.com/mojohaus/versions) | `2.21.0` | `2.22.0` |\n| org.slf4j:slf4j-log4j12 | `2.0.18` | `2.0.19` |\n| [com.gradle:common-custom-user-data-maven-extension](https://github.com/gradle/common-custom-user-data-maven-extension) | `2.3.0` | `2.4.0` |\n\n\nUpdates `net.bytebuddy:byte-buddy` from 1.18.11 to 1.18.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/releases\"\u003enet.bytebuddy:byte-buddy's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eByte Buddy 1.18.13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eByte Buddy 1.18.12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eAdd support for native attach on Windows for ARM64.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/blob/master/release-notes.md\"\u003enet.bytebuddy:byte-buddy's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003e2. September 2026: version 1.18.13\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e17. July 2026: version 1.18.12\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003cli\u003eSupport dynamic attach on Windows ARM64 by shipping a native \u003ccode\u003eattach_hotspot_windows\u003c/code\u003e library for \u003ccode\u003ewin32-aarch64\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/d4da51578490c841b56b38c9c8fc9d3e8815f046\"\u003e\u003ccode\u003ed4da515\u003c/code\u003e\u003c/a\u003e [publish] Releasing Byte Buddy 1.18.13\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/bb914e33837267c05704f167179ba31abe3bf787\"\u003e\u003ccode\u003ebb914e3\u003c/code\u003e\u003c/a\u003e [release] Release new version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/af2034b8c55c2596f6430e63152586e02d06fd0e\"\u003e\u003ccode\u003eaf2034b\u003c/code\u003e\u003c/a\u003e Create Gradle tasks via the task registration API if available to avoid the u...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/30aca5581534d52570a60ffd524109adb3671759\"\u003e\u003ccode\u003e30aca55\u003c/code\u003e\u003c/a\u003e Shortcut traversal of previously visited type hierarchies and harden 1-1 tran...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/debd527b31bb095c26ff6943545cfe01a9045f32\"\u003e\u003ccode\u003edebd527\u003c/code\u003e\u003c/a\u003e Bump actions/checkout from 6.0.2 to 7.0.1 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1910\"\u003e#1910\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/8315af6acb72b5e0d913ad65c4112e828f01d735\"\u003e\u003ccode\u003e8315af6\u003c/code\u003e\u003c/a\u003e Bump step-security/harden-runner from 2.16.1 to 2.19.4 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1909\"\u003e#1909\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/e30e24f4106f6be28b97a34c81bf6d5dccfa34bb\"\u003e\u003ccode\u003ee30e24f\u003c/code\u003e\u003c/a\u003e Bump actions/cache from 5.0.3 to 5.0.5 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1914\"\u003e#1914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/1885f2a1e77d70d3cc57ff935e2b5a4b675cde85\"\u003e\u003ccode\u003e1885f2a\u003c/code\u003e\u003c/a\u003e Bump github/codeql-action from 3.27.6 to 4.36.2 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1916\"\u003e#1916\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/de4ed85e1e4e1e83dcfd90fc791684e3607459fa\"\u003e\u003ccode\u003ede4ed85\u003c/code\u003e\u003c/a\u003e Correct Javadoc of Gradle plugin to avoid errors and warnings during generation.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/5d3a3129ceb66ec0c168c9648757cbffccf18aec\"\u003e\u003ccode\u003e5d3a312\u003c/code\u003e\u003c/a\u003e Bump actions/setup-java from 5.2.0 to 5.4.0 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1918\"\u003e#1918\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/raphw/byte-buddy/compare/byte-buddy-1.18.11...byte-buddy-1.18.13\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.slf4j:slf4j-api` from 2.0.18 to 2.0.19\n\nUpdates `org.apache.groovy:groovy-jsr223` from 5.0.7 to 5.1.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/apache/groovy/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.easymock:easymock` from 5.6.0 to 5.7.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/easymock/easymock/releases\"\u003eorg.easymock:easymock's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e5.7.0\u003c/h2\u003e\n\u003cp\u003eAdd Java 26 support where bytebuddy isn't using unsafe anymore.\u003c/p\u003e\n\u003ch2\u003eChange log\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd mock() methods without parameters using varargs reification (\u003ca href=\"https://redirect.github.com/easymock/easymock/issues/933\"\u003e#933\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eMock creation fails with JDK 26 and ByteBuddy 1.18.10 (\u003ca href=\"https://redirect.github.com/easymock/easymock/issues/908\"\u003e#908\u003c/a\u003e)git log --oneline\u003c/li\u003e\n\u003cli\u003eUse new Maven central plugin\u003c/li\u003e\n\u003cli\u003eUse a github_token instead\u003c/li\u003e\n\u003cli\u003eAdd the missing REST calls to fully automated the release\u003c/li\u003e\n\u003cli\u003eMove to .mvn style version\u003c/li\u003e\n\u003cli\u003eUse assertThrows all over the place\u003c/li\u003e\n\u003cli\u003eOptimize imports and finish updating to JUnit 5\u003c/li\u003e\n\u003cli\u003eUpdate eclipse configuration\u003c/li\u003e\n\u003cli\u003eMove all to UTF-8 like it should already be\u003c/li\u003e\n\u003cli\u003eUse https for xsd\u003c/li\u003e\n\u003cli\u003eUpdate objenesis to 3.6\u003c/li\u003e\n\u003cli\u003eUpdate copyrights to 2026\u003c/li\u003e\n\u003cli\u003eRemove Hamcrest usage\u003c/li\u003e\n\u003cli\u003eAdd Maven cache\u003c/li\u003e\n\u003cli\u003eBump actions/checkout from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/917\"\u003e#917\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump actions/github-script from 8 to 9 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/887\"\u003e#887\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump actions/setup-java from 5.6.0 to 5.7.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/918\"\u003e#918\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump activesupport from 8.1.2 to 8.1.2.1 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/882\"\u003e#882\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump addressable from 2.8.8 to 2.9.0 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/886\"\u003e#886\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump ch.qos.logback:logback-classic from 1.3.14 to 1.6.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/930\"\u003e#930\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.github.spotbugs:spotbugs from 4.8.6 to 4.10.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/921\"\u003e#921\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.github.spotbugs:spotbugs-maven-plugin from 4.8.6.6 to 4.10.3.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/922\"\u003e#922\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.mycila:license-maven-plugin from 4.6 to 5.1.1 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/919\"\u003e#919\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.puppycrawl.tools:checkstyle from 13.9.0 to 13.11.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/931\"\u003e#931\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump concurrent-ruby from 1.3.6 to 1.3.7 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/913\"\u003e#913\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump faraday from 2.14.2 to 2.14.3 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/912\"\u003e#912\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump json from 2.20.0 to 2.21.2 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/924\"\u003e#924\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump junit.jupiter.version from 5.14.1 to 6.1.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/926\"\u003e#926\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump net.bytebuddy:byte-buddy from 1.18.8 to 1.18.12 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/932\"\u003e#932\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump nokogiri from 1.19.3 to 1.19.4 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/911\"\u003e#911\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.felix:maven-bundle-plugin from 5.1.9 to 6.1.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/929\"\u003e#929\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-assembly-plugin from 3.7.1 to 3.8.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/832\"\u003e#832\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-compiler-plugin from 3.14.1 to 3.15.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/863\"\u003e#863\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-dependency-plugin from 3.10.0 to 3.11.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/899\"\u003e#899\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-enforcer-plugin from 3.6.2 to 3.6.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/894\"\u003e#894\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-jar-plugin from 3.4.2 to 3.5.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/833\"\u003e#833\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-resources-plugin from 3.4.0 to 3.5.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/879\"\u003e#879\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-shade-plugin from 3.6.1 to 3.6.2 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/880\"\u003e#880\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-source-plugin from 3.3.1 to 3.4.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/837\"\u003e#837\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-surefire-plugin from 3.5.5 to 3.5.6 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/900\"\u003e#900\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-toolchains-plugin from 3.2.0 to 3.3.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/928\"\u003e#928\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.surefire:surefire-testng from 3.5.5 to 3.5.6 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/897\"\u003e#897\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:animal-sniffer-maven-plugin from 1.26 to 1.27 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/852\"\u003e#852\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:exec-maven-plugin from 3.6.2 to 3.6.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/844\"\u003e#844\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/easymock/easymock/blob/master/ReleaseNotes.md\"\u003eorg.easymock:easymock's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003cp\u003eAdd Java 26 support where bytebuddy isn't using unsafe anymore.\u003c/p\u003e\n\u003ch2\u003eChange log\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd mock() methods without parameters using varargs reification (\u003ca href=\"https://redirect.github.com/easymock/easymock/issues/933\"\u003e#933\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eMock creation fails with JDK 26 and ByteBuddy 1.18.10 (\u003ca href=\"https://redirect.github.com/easymock/easymock/issues/908\"\u003e#908\u003c/a\u003e)git log --oneline\u003c/li\u003e\n\u003cli\u003eUse new Maven central plugin\u003c/li\u003e\n\u003cli\u003eUse a github_token instead\u003c/li\u003e\n\u003cli\u003eAdd the missing REST calls to fully automated the release\u003c/li\u003e\n\u003cli\u003eMove to .mvn style version\u003c/li\u003e\n\u003cli\u003eUse assertThrows all over the place\u003c/li\u003e\n\u003cli\u003eOptimize imports and finish updating to JUnit 5\u003c/li\u003e\n\u003cli\u003eUpdate eclipse configuration\u003c/li\u003e\n\u003cli\u003eMove all to UTF-8 like it should already be\u003c/li\u003e\n\u003cli\u003eUse https for xsd\u003c/li\u003e\n\u003cli\u003eUpdate objenesis to 3.6\u003c/li\u003e\n\u003cli\u003eUpdate copyrights to 2026\u003c/li\u003e\n\u003cli\u003eRemove Hamcrest usage\u003c/li\u003e\n\u003cli\u003eAdd Maven cache\u003c/li\u003e\n\u003cli\u003eBump actions/checkout from 7.0.0 to 7.0.1 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/917\"\u003e#917\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump actions/github-script from 8 to 9 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/887\"\u003e#887\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump actions/setup-java from 5.6.0 to 5.7.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/918\"\u003e#918\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump activesupport from 8.1.2 to 8.1.2.1 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/882\"\u003e#882\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump addressable from 2.8.8 to 2.9.0 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/886\"\u003e#886\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump ch.qos.logback:logback-classic from 1.3.14 to 1.6.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/930\"\u003e#930\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.github.spotbugs:spotbugs from 4.8.6 to 4.10.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/921\"\u003e#921\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.github.spotbugs:spotbugs-maven-plugin from 4.8.6.6 to 4.10.3.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/922\"\u003e#922\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.mycila:license-maven-plugin from 4.6 to 5.1.1 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/919\"\u003e#919\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump com.puppycrawl.tools:checkstyle from 13.9.0 to 13.11.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/931\"\u003e#931\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump concurrent-ruby from 1.3.6 to 1.3.7 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/913\"\u003e#913\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump faraday from 2.14.2 to 2.14.3 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/912\"\u003e#912\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump json from 2.20.0 to 2.21.2 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/924\"\u003e#924\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump junit.jupiter.version from 5.14.1 to 6.1.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/926\"\u003e#926\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump net.bytebuddy:byte-buddy from 1.18.8 to 1.18.12 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/932\"\u003e#932\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump nokogiri from 1.19.3 to 1.19.4 in /website (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/911\"\u003e#911\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.felix:maven-bundle-plugin from 5.1.9 to 6.1.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/929\"\u003e#929\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-assembly-plugin from 3.7.1 to 3.8.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/832\"\u003e#832\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-compiler-plugin from 3.14.1 to 3.15.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/863\"\u003e#863\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-dependency-plugin from 3.10.0 to 3.11.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/899\"\u003e#899\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-enforcer-plugin from 3.6.2 to 3.6.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/894\"\u003e#894\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-jar-plugin from 3.4.2 to 3.5.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/833\"\u003e#833\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-resources-plugin from 3.4.0 to 3.5.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/879\"\u003e#879\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-shade-plugin from 3.6.1 to 3.6.2 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/880\"\u003e#880\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-source-plugin from 3.3.1 to 3.4.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/837\"\u003e#837\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-surefire-plugin from 3.5.5 to 3.5.6 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/900\"\u003e#900\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-toolchains-plugin from 3.2.0 to 3.3.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/928\"\u003e#928\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.surefire:surefire-testng from 3.5.5 to 3.5.6 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/897\"\u003e#897\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:animal-sniffer-maven-plugin from 1.26 to 1.27 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/852\"\u003e#852\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:exec-maven-plugin from 3.6.2 to 3.6.3 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/844\"\u003e#844\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:jdepend-maven-plugin from 2.1 to 2.2.0 (\u003ca href=\"https://redirect.github.com/easymock/easymock/pull/855\"\u003e#855\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/a8422b97046b58a1671ebd4493729db070281645\"\u003e\u003ccode\u003ea8422b9\u003c/code\u003e\u003c/a\u003e Move to version 5.7.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/c0ffdcc99d2b29cd127a1e553aaac1e0e3804066\"\u003e\u003ccode\u003ec0ffdcc\u003c/code\u003e\u003c/a\u003e Flatten for oss\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/dc07999c696465eee8b5f04315f3a9adcfeadb17\"\u003e\u003ccode\u003edc07999\u003c/code\u003e\u003c/a\u003e Add missing headers\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/6047a3c60be00801eeb3887d45c6b286eaf4f10b\"\u003e\u003ccode\u003e6047a3c\u003c/code\u003e\u003c/a\u003e Class can be static\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/e208b61da22d603562342a80945bbf6a361d6c15\"\u003e\u003ccode\u003ee208b61\u003c/code\u003e\u003c/a\u003e Upgrade samples to JUnit 5 and reified calls\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/f833ee7fbf2e4f4ea6a889c5bc66bfdfee8001f7\"\u003e\u003ccode\u003ef833ee7\u003c/code\u003e\u003c/a\u003e Add reified methods (close \u003ca href=\"https://redirect.github.com/easymock/easymock/issues/933\"\u003e#933\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/ffaa64ba5001d6a2b02db5d82cb06398f75d6bb4\"\u003e\u003ccode\u003effaa64b\u003c/code\u003e\u003c/a\u003e Add flatten-maven-plugin\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/02e038e95c77116bcb7136dec58133a1a5cf363a\"\u003e\u003ccode\u003e02e038e\u003c/code\u003e\u003c/a\u003e Bump com.puppycrawl.tools:checkstyle from 13.10.0 to 13.11.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/dd4dcf8fc8acb6a1b5e5cc0c8652020ecc28da00\"\u003e\u003ccode\u003edd4dcf8\u003c/code\u003e\u003c/a\u003e Bump net.bytebuddy:byte-buddy from 1.18.11 to 1.18.12\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/easymock/easymock/commit/4d66c46c87de489f58a23562be1eb2ad5cae0702\"\u003e\u003ccode\u003e4d66c46\u003c/code\u003e\u003c/a\u003e CI has been github actions for years now\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/easymock/easymock/compare/easymock-5.6.0...easymock-5.7.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.springframework:spring-expression` from 7.0.8 to 7.0.9\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/spring-projects/spring-framework/releases\"\u003eorg.springframework:spring-expression's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.0.9\u003c/h2\u003e\n\u003ch2\u003e:warning: Attention Required\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eIn Spring Framework 7.0.9, \u003ccode\u003eForwardedHeaderFilter\u003c/code\u003e (Spring MVC) and \u003ccode\u003eForwardedHeaderTransformer\u003c/code\u003e (WebFlux) each provide a boolean constructor argument whether to use the standard \u0026quot;Forwarded\u0026quot; header or the \u0026quot;X-Forwarded\u0026quot; alternative headers. A separate property turns on and off use of \u0026quot;X-Forwarded-Prefix\u0026quot;. While the default constructor preserves the existing behavior, we recommend to use the new constructor to explicitly specify which forwarded headers to use to make the processing more deterministic and aligned with what is expected from the proxy. Please, see the updated \u003ca href=\"https://docs.spring.io/spring-framework/reference/7.0.9-SNAPSHOT/web/webmvc/filters.html#filters-forwarded-headers-security\"\u003eSecurity Considerations\u003c/a\u003e section for details. In 7.1 with \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37072\"\u003e#37072\u003c/a\u003e the default constructor is deprecated and marked for removal. \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37090\"\u003e#37090\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIn Spring Framework 7.0.9, \u003ccode\u003eSimpleEvaluationContext\u003c/code\u003e no longer supports expression compilation by default, regardless of the compiler mode configured via \u003ccode\u003eSpelParserConfiguration\u003c/code\u003e or the \u003ccode\u003espring.expression.compiler.mode\u003c/code\u003e system property or Spring property. Applications that intentionally use \u003ccode\u003eSimpleEvaluationContext\u003c/code\u003e with trusted expressions and require compilation for performance reasons can opt in by calling \u003ccode\u003ewithCompilationSupported()\u003c/code\u003e on the \u003ccode\u003eSimpleEvaluationContext\u003c/code\u003e builder. Care should be taken when opting in to compilation, as doing so removes the safety guards applied during interpreted evaluation. \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37035\"\u003e#37035\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:star: New Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore an empty port value in URI parsing \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37117\"\u003e#37117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid retaining class files in annotation metadata \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/pull/37112\"\u003e#37112\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003e@Nullable\u003c/code\u003e annotations when treating \u003ccode\u003eMap.remove()\u003c/code\u003e as returning \u003ccode\u003e@Nullable\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/pull/37067\"\u003e#37067\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRevisit SSE view fragments handling \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37061\"\u003e#37061\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCheck list index after auto-grow in \u003ccode\u003eAbstractNestablePropertyAccessor\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37036\"\u003e#37036\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDisable SpEL expression compilation by default in \u003ccode\u003eSimpleEvaluationContext\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37035\"\u003e#37035\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eLimit result size of \u003ccode\u003eBigDecimal\u003c/code\u003e/\u003ccode\u003eBigInteger\u003c/code\u003e power operations in SpEL \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37034\"\u003e#37034\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor redirect handling in UrlHandlerFilter \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37030\"\u003e#37030\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRevise stylesheet source handling in XsltView \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37029\"\u003e#37029\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRevise view name handling in UrlFilenameViewController \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37027\"\u003e#37027\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHandle pre-flight requests in functional endpoint setup without DispatcherHandler \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37024\"\u003e#37024\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove WebSocket handshake error logging \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37023\"\u003e#37023\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix missing nullability in JdbcTemplate.batchUpdate \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/pull/37012\"\u003e#37012\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eTimeout property in RetryPolicy does not have a default constant \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36983\"\u003e#36983\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWrite native configuration files as UTF-8 \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/pull/36972\"\u003e#36972\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDefaultServerRequest.ServletParametersMap.entrySet() does not retain HttpServletRequest.getParameterMap() order \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36966\"\u003e#36966\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePerform nextKey within synchronization for SQLite as well \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36959\"\u003e#36959\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd support for custom ObjectInputFilter on DefaultDeserializer \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36958\"\u003e#36958\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRevise resource bundle caching for common locales \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36957\"\u003e#36957\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove nullability for \u003ccode\u003egetSession(*)\u003c/code\u003e in \u003ccode\u003eMockHttpServletRequest\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36926\"\u003e#36926\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove fallback logic in ParameterContentNegotiationStrategy and ParameterContentTypeResolver \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36925\"\u003e#36925\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove ambiguous match check on preflight request \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36903\"\u003e#36903\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove Groovy markup template loading \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36902\"\u003e#36902\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove request path handling on a Reactor Netty server \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36893\"\u003e#36893\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eImprove JettyWebSocketSession error handling \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/36891\"\u003e#36891\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:lady_beetle: Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eEclipseLinkJpaDialect singleton lock in EclipseLinkConnectionHandle.getConnection() serializes all JDBC connection acquisitions under load \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37085\"\u003e#37085\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadataReader fails to read byte[] array from annotation \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37083\"\u003e#37083\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEnsure parsing/tostring symmetry in ContentDisposition \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37064\"\u003e#37064\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCharacter outside of permitted range in Content Disposition \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37062\"\u003e#37062\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRelease Jackson BufferRecycler to its pool in encoders \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/pull/37059\"\u003e#37059\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEnsure consistent error escaping \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37055\"\u003e#37055\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefine template name processing \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37054\"\u003e#37054\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReset TwoByteMatcher partial match on mismatching byte \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/pull/37053\"\u003e#37053\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor async XML parsing limit checks \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37031\"\u003e#37031\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix part constraint checks in PartEventHttpMessageReader \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37028\"\u003e#37028\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix buffer leak in RSocket SETUP frame handling \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37026\"\u003e#37026\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEnsure correct Jetty core response cookie handling \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37025\"\u003e#37025\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAlign \u003ccode\u003edomainToAscii\u003c/code\u003e with current WhatWG spec \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37018\"\u003e#37018\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEnsure consistent \u003ccode\u003eButtonTag\u003c/code\u003e value attribute processing \u003ca href=\"https://redirect.github.com/spring-projects/spring-framework/issues/37017\"\u003e#37017\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/82a6b40b9366ec181ededdad282b307ee5381a52\"\u003e\u003ccode\u003e82a6b40\u003c/code\u003e\u003c/a\u003e Release Spring Framework 7.0.9\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/a7b1b59cbd79175ed79b0f4aa967be70288bb2ee\"\u003e\u003ccode\u003ea7b1b59\u003c/code\u003e\u003c/a\u003e Upgrade to Reactor 2025.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/996e3d3f18dbb13d92a2eaf988abfe77b06928d4\"\u003e\u003ccode\u003e996e3d3\u003c/code\u003e\u003c/a\u003e Upgrade to Micrometer 1.16.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/73f5ddddcd4278580c9c879b2effdac29aa3bff5\"\u003e\u003ccode\u003e73f5ddd\u003c/code\u003e\u003c/a\u003e Refactor maxInMemory limit handling for async XML parsing\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/675f25de72e7ac31db1ffe0dc324381d7cc1a308\"\u003e\u003ccode\u003e675f25d\u003c/code\u003e\u003c/a\u003e Leading slash handling in UrlHandlerFilter\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/692dbc9160de3b5de50ccedeee014716d0cedb7b\"\u003e\u003ccode\u003e692dbc9\u003c/code\u003e\u003c/a\u003e Apply ResourceHandlerUtils checks in XsltView\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/8647e90bc7b2da9b299566296f2b253a6fd9c128\"\u003e\u003ccode\u003e8647e90\u003c/code\u003e\u003c/a\u003e Consistent maxPartSize check in PartEventHttpMessageReader\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/b9379e33d52b491e227715776a072d07bcccddab\"\u003e\u003ccode\u003eb9379e3\u003c/code\u003e\u003c/a\u003e Check viewName for special prefixes in UrlFilenameViewController\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/a784dbe286beaa70e5a88638b6af7f58f458c07e\"\u003e\u003ccode\u003ea784dbe\u003c/code\u003e\u003c/a\u003e Ensure Payload release on early error in createHeaders\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-framework/commit/3b492f3908df3fe0adc639b7da98f737d1ff7a02\"\u003e\u003ccode\u003e3b492f3\u003c/code\u003e\u003c/a\u003e Return sameSite cookie value in Jetty response\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/spring-projects/spring-framework/compare/v7.0.8...v7.0.9\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `tools.jackson:jackson-bom` from 3.2.1 to 3.2.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/719429d87e0d92615d67668cb3329b8dd1505b37\"\u003e\u003ccode\u003e719429d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-bom-3.2.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/d0b98774d055e546461f1a7c7da3f3bc5361a881\"\u003e\u003ccode\u003ed0b9877\u003c/code\u003e\u003c/a\u003e Prep for 3.2.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/e32f526099b197d4dfb54de78f61b6fb60d716f0\"\u003e\u003ccode\u003ee32f526\u003c/code\u003e\u003c/a\u003e Merge branch '3.1' into 3.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/113f6a1c10d68bc7d5c68e3f32e460fb9ed3059d\"\u003e\u003ccode\u003e113f6a1\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/46176f6827827d1be11758b12cdfadac0bf15b6d\"\u003e\u003ccode\u003e46176f6\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/8b4a513d2b5a34079eaa358109d87fbc99639d78\"\u003e\u003ccode\u003e8b4a513\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-bom-3.1.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/adeda6f6cf5e631ff7155a0cda3c56e8fc828a96\"\u003e\u003ccode\u003eadeda6f\u003c/code\u003e\u003c/a\u003e Prep for 3.1.6 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/c3a4debfa3d36192ea8a7ea4b54a698f46b025b8\"\u003e\u003ccode\u003ec3a4deb\u003c/code\u003e\u003c/a\u003e Merge branch '3.1' into 3.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/3c74470ab201f11de73204a35abe38150640360b\"\u003e\u003ccode\u003e3c74470\u003c/code\u003e\u003c/a\u003e Merge branch '2.x' into 3.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/06416bab1a4a7258531eee9686b80c619bfecea6\"\u003e\u003ccode\u003e06416ba\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/FasterXML/jackson-bom/issues/129\"\u003e#129\u003c/a\u003e from FasterXML/tatu/2.23/woodstox-7.2.2\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-bom/compare/jackson-bom-3.2.1...jackson-bom-3.2.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.puppycrawl.tools:checkstyle` from 13.8.0 to 14.1.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/checkstyle/checkstyle/releases\"\u003ecom.puppycrawl.tools:checkstyle's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003echeckstyle-14.1.0\u003c/h2\u003e\n\u003cp\u003eCheckstyle 14.1.0 - \u003ca href=\"https://checkstyle.org/releasenotes.html#Release_14.1.0\"\u003ehttps://checkstyle.org/releasenotes.html#Release_14.1.0\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eNew:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/14872\"\u003e#14872\u003c/a\u003e - UnnecessaryParentheses: no violation if casting is present before expression.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21163\"\u003e#21163\u003c/a\u003e - SuppressWarnings: no support for module declarations.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21161\"\u003e#21161\u003c/a\u003e - NoLineWrap: no support for module declarations.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21162\"\u003e#21162\u003c/a\u003e - OpenjdkAnnotationLocation: no support for module declarations.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20692\"\u003e#20692\u003c/a\u003e - new Check: ExpressionOverBlockLambda.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21062\"\u003e#21062\u003c/a\u003e - New Check: InappropriateJavadocBlockTagsOnField.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19967\"\u003e#19967\u003c/a\u003e - New Check: ModuleImportOrder.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21063\"\u003e#21063\u003c/a\u003e - New Check: InappropriateJavadocBlockTagsOnPackage.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21088\"\u003e#21088\u003c/a\u003e - New Check: ModuleDirectiveOrder.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19968\"\u003e#19968\u003c/a\u003e - New Check: AvoidModuleImport.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20982\"\u003e#20982\u003c/a\u003e - New check: JavadocEndCommentDelimiter.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19885\"\u003e#19885\u003c/a\u003e - New Check: UnnecessaryFullyQualifiedTypeCheck.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/12596\"\u003e#12596\u003c/a\u003e - Add UnusedPrivateField  check for unused private fields.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19937\"\u003e#19937\u003c/a\u003e - New check: JavadocLinkFirstOccurrence.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20792\"\u003e#20792\u003c/a\u003e - New check: JavadocNoErrorInThrowsTag.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21061\"\u003e#21061\u003c/a\u003e - New Check: InappropriateJavadocBlockTagsOnType.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19938\"\u003e#19938\u003c/a\u003e - New check: JavadocLinkWellKnownApi.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19698\"\u003e#19698\u003c/a\u003e - New check: JavadocThrowsOrderCheck.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/8990\"\u003e#8990\u003c/a\u003e - New check JavadocParamOrder: to validate method parameter order in javadoc to match parameter order in method.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20986\"\u003e#20986\u003c/a\u003e - new Check: PreferCodeOrSnippetJavadocInlineTag.\u003c/p\u003e\n\u003cp\u003eBug fixes:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21199\"\u003e#21199\u003c/a\u003e - JavadocPackage: false positive \u0026quot;Missing package-info.java file\u0026quot; on module-info.java.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/4454\"\u003e#4454\u003c/a\u003e - Fix wrong implementation of compareTo in LocalizedMessages.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19156\"\u003e#19156\u003c/a\u003e - VariableDeclarationUsageDistance: no violation on variable used in inner class.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/3885\"\u003e#3885\u003c/a\u003e - FallThrough check doesn't handle infinite loops.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21343\"\u003e#21343\u003c/a\u003e - Update Documentation Comments Style Guide: add JavadocEndCommentDelimiter.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21331\"\u003e#21331\u003c/a\u003e - False Positive: IllegalInstantiationCheck does not recognize records shadowing java.lang.Boolean.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19948\"\u003e#19948\u003c/a\u003e - Update Documentation Comments Style Guide: param description separator.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20227\"\u003e#20227\u003c/a\u003e - ClassMemberImpliedModifierCheck: nested enum/interface missing implied static not flagged in compact source files (JEP 512).\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21336\"\u003e#21336\u003c/a\u003e - Update Documentation Comments Style Guide: add JavadocNoErrorInThrowsTagCheck.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20978\"\u003e#20978\u003c/a\u003e - Extend OpenjdkAnnotationLocationCheck to allow Annotation on target line for all single line targets and add check in openjdk_checks.xml.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21320\"\u003e#21320\u003c/a\u003e - Update Documentation Comments Style Guide:  add JavadocLinkWellKnownApi JavadocLinkFirstOccurrence.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21218\"\u003e#21218\u003c/a\u003e - Enable in Doc Comments style guide: JavadocParamOrder and JavadocThrowsOrderare.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20555\"\u003e#20555\u003c/a\u003e - WriteTagCheck: first top-level method's Javadoc tags not reported in compact source files (JEP 512).\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/1bfc2e23003d419835b0c9c6f60247b9d0c8b1bb\"\u003e\u003ccode\u003e1bfc2e2\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release checkstyle-14.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/bdf617f9076a5a4b0a2f4d059893da50469e24a4\"\u003e\u003ccode\u003ebdf617f\u003c/code\u003e\u003c/a\u003e doc: release notes for 14.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/ae866b226284057bad8481419bc3b1f557234e03\"\u003e\u003ccode\u003eae866b2\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/12189\"\u003e#12189\u003c/a\u003e: Test ArchUnit unnecessary suppressions\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/88ab43ffa9a123002580651313fc745c40ebb725\"\u003e\u003ccode\u003e88ab43f\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21229\"\u003e#21229\u003c/a\u003e: Align AtclauseOrder examples with property count\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/a2703ce6656769ef4f740d99040e258990d08bbe\"\u003e\u003ccode\u003ea2703ce\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21229\"\u003e#21229\u003c/a\u003e: Align LineEnding examples with property count\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/8d88ee0783fb1ceef6df6a34eca7633f0d0733d6\"\u003e\u003ccode\u003e8d88ee0\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20692\"\u003e#20692\u003c/a\u003e: Add new check ExpressionOverBlockLambda\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/07e06a612a07cb94f6deb537bd49846429babcd0\"\u003e\u003ccode\u003e07e06a6\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21229\"\u003e#21229\u003c/a\u003e: Align JavadocBlockTagLocation examples with property count\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/4205f8df9fbdcbcadfc42870e742c5b5e75b96f2\"\u003e\u003ccode\u003e4205f8d\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21393\"\u003e#21393\u003c/a\u003e: Improper indentation in property_types.html code snippets\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/ee4191b2517085565b9e237a6786360ff9c34dec\"\u003e\u003ccode\u003eee4191b\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21062\"\u003e#21062\u003c/a\u003e: Add InappropriateJavadocBlockTagsOnField check\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/47b4b774648d2229c40e78572e37def1e1b26c45\"\u003e\u003ccode\u003e47b4b77\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/13159\"\u003e#13159\u003c/a\u003e: naming convention change for xdoc files\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/checkstyle/checkstyle/compare/checkstyle-13.8.0...checkstyle-14.1.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.codehaus.mojo:build-helper-maven-plugin` from 3.6.1 to 3.6.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/releases\"\u003eorg.codehaus.mojo:build-helper-maven-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.6.2\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReplace raw \u003ccode\u003eNPEx\u003c/code\u003e with customized exception message (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/239\"\u003e#239\u003c/a\u003e) \u003ca href=\"https://github.com/pzygielo\"\u003e\u003ccode\u003e@​pzygielo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove redundant maven-resolver-api dependency and ignore Resolver/SLF4J 2.x in Dependabot (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/248\"\u003e#248\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cul\u003e\n\u003cli\u003eRemove redundant maven-resolver-api dependency and ignore Resolver/SLF4J 2.x in Dependabot (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/248\"\u003e#248\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-utils from 4.0.3 to 4.1.0 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/247\"\u003e#247\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/244\"\u003e#244\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 96 to 97 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/246\"\u003e#246\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/245\"\u003e#245\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-utils from 4.0.2 to 4.0.3 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/241\"\u003e#241\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 95 to 96 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/240\"\u003e#240\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 94 to 95 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/235\"\u003e#235\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 93 to 94 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/233\"\u003e#233\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 92 to 93 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/232\"\u003e#232\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 91 to 92 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/231\"\u003e#231\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/813bc7d2f03f2c9975de1f079cf7a7334211e0b6\"\u003e\u003ccode\u003e813bc7d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release 3.6.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/07d91091b06db894178bcb6e71bc55f857546f46\"\u003e\u003ccode\u003e07d9109\u003c/code\u003e\u003c/a\u003e Remove redundant maven-resolver-api and ignore Resolver/SLF4J 2.x in Dependabot\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/9abd552f324e429beb586407139eb4d43127344a\"\u003e\u003ccode\u003e9abd552\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-utils from 4.0.3 to 4.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/3c15526bf151e28d6ce651197b36958164da4d4a\"\u003e\u003ccode\u003e3c15526\u003c/code\u003e\u003c/a\u003e Bump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/3b1f104096756ce33e8fc3e4c3062b1ccd8cf227\"\u003e\u003ccode\u003e3b1f104\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.mojo:mojo-parent from 96 to 97\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/1749855c90317f651eed427e45cb27c52cf8a542\"\u003e\u003ccode\u003e1749855\u003c/code\u003e\u003c/a\u003e Bump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/52300415d70e84a20924c06c26d9375b152e5409\"\u003e\u003ccode\u003e5230041\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-utils from 4.0.2 to 4.0.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/c0e937567a4604534e32cf3cc4c3abb43bfa243c\"\u003e\u003ccode\u003ec0e9375\u003c/code\u003e\u003c/a\u003e Delete .github/release-drafter.yml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/84a839e4cb9b84b3afbbeef7f6c950ba5b478b31\"\u003e\u003ccode\u003e84a839e\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.mojo:mojo-parent from 95 to 96\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/a85c668b83334b423844fc448709b1d6e53cb32c\"\u003e\u003ccode\u003ea85c668\u003c/code\u003e\u003c/a\u003e Replace raw \u003ccode\u003eNPEx\u003c/code\u003e with customized exception message\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/compare/3.6.1...3.6.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.maven.plugins:maven-jar-plugin` from 3.5.0 to 3.5.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/maven-jar-plugin/releases\"\u003eorg.apache.maven.plugins:maven-jar-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.5.1\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e📝 Documentation updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/550\"\u003e#550\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/550\"\u003e#550\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse plugin version properties (3.x) (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/535\"\u003e#535\u003c/a\u003e) \u003ca href=\"https://github.com/Bukama\"\u003e\u003ccode\u003e@​Bukama\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 48 to 49 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/547\"\u003e#547\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-archiver from 4.11.0 to 4.12.0 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/538\"\u003e#538\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.15 to 3.9.16 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/536\"\u003e#536\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 47 to 48 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/534\"\u003e#534\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump commons-io:commons-io from 2.21.0 to 2.22.0 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/529\"\u003e#529\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.14 to 3.9.15 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/528\"\u003e#528\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.12 to 3.9.14 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/526\"\u003e#526\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugin-testing:maven-plugin-testing-harness from 3.5.0 to 3.5.1 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/523\"\u003e#523\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 46 to 47 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/519\"\u003e#519\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-archiver from 4.10.4 to 4.11.0 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/516\"\u003e#516\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugin-testing:maven-plugin-testing-harness from 3.4.0 to 3.5.0 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/517\"\u003e#517\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 45 to 46 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/514\"\u003e#514\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven:maven-archiver from 3.6.5 to 3.6.6 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/511\"\u003e#511\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.11 to 3.9.12 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/pull/509\"\u003e#509\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/b0cd63d0ad544aa552f06e4492faf984bf2c85c1\"\u003e\u003ccode\u003eb0cd63d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release maven-jar-plugin-3.5.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/5318a4feaf529d6fa22c4622fff2d54fefe7f7dd\"\u003e\u003ccode\u003e5318a4f\u003c/code\u003e\u003c/a\u003e Add AGENTS.md + SECURITY.md security-model pointer for scanner discoverability\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/8e0b9bb307fc29b8d267f18eca9d47be0a7f16e0\"\u003e\u003ccode\u003e8e0b9bb\u003c/code\u003e\u003c/a\u003e Bump org.apache.maven.plugins:maven-plugins from 48 to 49 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/issues/547\"\u003e#547\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/d5a438b6add9a9115f5a2c9b27db67e0d962bb74\"\u003e\u003ccode\u003ed5a438b\u003c/code\u003e\u003c/a\u003e Fix javadoc\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/774fac9215d92bfac67ece082872b00475580b21\"\u003e\u003ccode\u003e774fac9\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-archiver from 4.11.0 to 4.12.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/b71f40368edc878b3dcaa9840d950bd7d297d4c4\"\u003e\u003ccode\u003eb71f403\u003c/code\u003e\u003c/a\u003e Bump mavenVersion from 3.9.15 to 3.9.16 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/issues/536\"\u003e#536\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/9f2a001a00fcbb0408219a11f62b48c4dfde78d3\"\u003e\u003ccode\u003e9f2a001\u003c/code\u003e\u003c/a\u003e Use plugin version properties (3.x) (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/issues/535\"\u003e#535\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/68a978f952ba510f7378fd287c5172dc560079e3\"\u003e\u003ccode\u003e68a978f\u003c/code\u003e\u003c/a\u003e Bump org.apache.maven.plugins:maven-plugins from 47 to 48 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/issues/534\"\u003e#534\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/e1058217f657691a3e50b0c7e0620fd13c8e83c3\"\u003e\u003ccode\u003ee105821\u003c/code\u003e\u003c/a\u003e Bump commons-io:commons-io from 2.21.0 to 2.22.0 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/issues/529\"\u003e#529\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-jar-plugin/commit/953dc1abbb527b8128657f2aeadfdca0557d974d\"\u003e\u003ccode\u003e953dc1a\u003c/code\u003e\u003c/a\u003e Bump mavenVersion from 3.9.14 to 3.9.15 (\u003ca href=\"https://redirect.github.com/apache/maven-jar-plugin/issues/528\"\u003e#528\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/maven-jar-plugin/compare/maven-jar-plugin-3.5.0...maven-jar-plugin-3.5.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.maven.plugins:maven-compiler-plugin` from 3.15.0 to 3.16.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/maven-compiler-plugin/releases\"\u003eorg.apache.maven.plugins:maven-compiler-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.16.0\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRecompile when dependencies change (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1102\"\u003e#1102\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix incremental detection of empty sources, 3.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1075\"\u003e#1075\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-578\"\u003e[MCOMPILER-578]\u003c/a\u003e - Track outputs across compiler executions (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1091\"\u003e#1091\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBuild fails when annotation processor list is empty (but present) (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1077\"\u003e#1077\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-374\"\u003e[MCOMPILER-374]\u003c/a\u003e - Unable to compile MR-JAR code against older directories when module-info.java is present (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1093\"\u003e#1093\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake mcompiler-120 IT locale independent (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1063\"\u003e#1063\u003c/a\u003e) \u003ca href=\"https://github.com/anilvdl\"\u003e\u003ccode\u003e@​anilvdl\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📝 Documentation updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-569\"\u003e[MCOMPILER-569]\u003c/a\u003e - Document implicitly compiled excluded sources (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1092\"\u003e#1092\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1074\"\u003e#1074\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAvoid using deprecated method CompilerConfiguration.setCompilerVersion (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1121\"\u003e#1121\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReplace adopt-openj9 by semeru JDK distribution on GH (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1122\"\u003e#1122\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePort the site documentation from APT to Markdown (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1110\"\u003e#1110\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eVerify against Maven 4.0.0-rc-6 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1105\"\u003e#1105\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix tests on Jenkins (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1100\"\u003e#1100\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1074\"\u003e#1074\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor compiler mojo to use dependency injection and improve string… (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1066\"\u003e#1066\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix ITs for Maven 3.10.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1061\"\u003e#1061\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate maven-surefire-plugin version to 3.x in the MCOMPILER-481 IT (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1035\"\u003e#1035\u003c/a\u003e) \u003ca href=\"https://github.com/cdouillard\"\u003e\u003ccode\u003e@​cdouillard\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump plexusCompilerVersion from 2.16.2 to 2.17.0 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1112\"\u003e#1112\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1113\"\u003e#1113\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003euse latest Maven 4 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1045\"\u003e#1045\u003c/a\u003e) \u003ca href=\"https://github.com/hboutemy\"\u003e\u003ccode\u003e@​hboutemy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1083\"\u003e#1083\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/pr-automation.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1082\"\u003e#1082\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1084\"\u003e#1084\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 48 to 49 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1068\"\u003e#1068\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-invoker-plugin from 3.9.1 to 3.10.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1047\"\u003e#1047\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 47 to 48 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1050\"\u003e#1050\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.14 to 3.9.16 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1054\"\u003e#1054\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.ow2.asm:asm from 9.10 to 9.10.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1059\"\u003e#1059\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.ow2.asm:asm from 9.9.1 to 9.10 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1053\"\u003e#1053\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.13 to 3.9.14 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1041\"\u003e#1041\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.12 to 3.9.13 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1038\"\u003e#1038\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugin-testing:maven-plugin-testing-harness from 3.5.0 to 3.5.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1032\"\u003e#1032\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/e7bba6ed5f9c17003d5c5d1413144bb214177408\"\u003e\u003ccode\u003ee7bba6e\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release maven-compiler-plugin-3.16.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"h...\n\n_Description has been truncated_","html_url":"https://github.com/changsongyang/hibernate-validator/pull/90","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/changsongyang%2Fhibernate-validator/issues/90","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/90/packages"}},{"old_version":"33.6.0-jre","new_version":"33.7.1-jre","update_type":"minor","path":null,"pr_created_at":"2026-09-15T04:25:39.000Z","version_change":"33.6.0-jre → 33.7.1-jre","issue":{"uuid":"5457492621","node_id":"PR_kwDOBNevYc8AAAABDjNTWQ","number":494,"state":"open","title":"chore(deps): Bump the maven-minor-patch group across 1 directory with 27 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":3,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-15T04:25:39.000Z","updated_at":"2026-09-15T04:26:54.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): Bump","group_name":"maven-minor-patch","update_count":27,"packages":[{"name":"org.projectlombok:lombok","old_version":"1.18.46","new_version":"1.18.48","repository_url":"https://github.com/projectlombok/lombok"},{"name":"io.smallrye.common:smallrye-common-function","old_version":"2.19.0","new_version":"2.20.0","repository_url":"https://github.com/smallrye/smallrye-common"},{"name":"org.hibernate.validator:hibernate-validator","old_version":"9.1.2.Final","new_version":"9.1.3.Final","repository_url":"https://github.com/hibernate/hibernate-validator"},{"name":"org.springframework.boot:spring-boot-starter-parent","old_version":"4.1.0","new_version":"4.1.1","repository_url":"https://github.com/spring-projects/spring-boot"},{"name":"org.apache.maven.plugins:maven-surefire-plugin","old_version":"3.5.6","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-surefire"},{"name":"org.apache.maven.plugins:maven-compiler-plugin","old_version":"3.15.0","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-compiler-plugin"},{"name":"org.codehaus.mojo:build-helper-maven-plugin","old_version":"3.6.1","new_version":"3.6.2","repository_url":"https://github.com/mojohaus/build-helper-maven-plugin"},{"name":"io.projectreactor:reactor-core","old_version":"3.8.6","new_version":"3.8.7","repository_url":"https://github.com/reactor/reactor-core"},{"name":"com.fasterxml.jackson.core:jackson-databind","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-databind"},{"name":"io.swagger.core.v3:swagger-annotations","old_version":"2.2.52","new_version":"2.2.55"},{"name":"org.freemarker:freemarker","old_version":"2.3.34","new_version":"2.3.35"},{"name":"net.bytebuddy:byte-buddy-agent","old_version":"1.18.11","new_version":"1.18.13","repository_url":"https://github.com/raphw/byte-buddy"},{"name":"net.bytebuddy:byte-buddy","old_version":"1.18.11","new_version":"1.18.13","repository_url":"https://github.com/raphw/byte-buddy"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"org.slf4j:slf4j-api","old_version":"2.0.18","new_version":"2.0.19"},{"name":"com.fasterxml.jackson.datatype:jackson-datatype-jsr310","old_version":"2.22.1","new_version":"2.22.2"},{"name":"com.fasterxml.jackson.dataformat:jackson-dataformat-yaml","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-dataformats-text"},{"name":"com.auth0:java-jwt","old_version":"4.6.0","new_version":"4.6.1","repository_url":"https://github.com/auth0/java-jwt"},{"name":"io.smallrye:jandex-maven-plugin","old_version":"3.2.7","new_version":"3.6.0","repository_url":"https://github.com/smallrye/jandex"},{"name":"io.projectreactor:reactor-test","old_version":"3.8.6","new_version":"3.8.7","repository_url":"https://github.com/reactor/reactor-core"},{"name":"io.quarkus:quarkus-rest","old_version":"3.38.0","new_version":"3.39.3"},{"name":"io.quarkus:quarkus-spring-di","old_version":"3.38.0","new_version":"3.39.3"},{"name":"io.helidon.webserver:helidon-webserver","old_version":"4.5.1","new_version":"4.5.4"},{"name":"org.apache.maven:maven-plugin-api","old_version":"3.9.9","new_version":"3.9.16","repository_url":"https://github.com/apache/maven"},{"name":"org.apache.maven:maven-core","old_version":"3.9.9","new_version":"3.9.16"},{"name":"org.apache.maven.plugin-tools:maven-plugin-annotations","old_version":"3.13.1","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-plugin-tools"},{"name":"org.apache.maven.plugins:maven-plugin-plugin","old_version":"3.13.1","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-plugin-tools"}],"path":null,"ecosystem":"maven"},"body":"Bumps the maven-minor-patch group with 27 updates in the /backend directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [org.projectlombok:lombok](https://github.com/projectlombok/lombok) | `1.18.46` | `1.18.48` |\n| [io.smallrye.common:smallrye-common-function](https://github.com/smallrye/smallrye-common) | `2.19.0` | `2.20.0` |\n| [org.hibernate.validator:hibernate-validator](https://github.com/hibernate/hibernate-validator) | `9.1.2.Final` | `9.1.3.Final` |\n| [org.springframework.boot:spring-boot-starter-parent](https://github.com/spring-projects/spring-boot) | `4.1.0` | `4.1.1` |\n| [org.apache.maven.plugins:maven-surefire-plugin](https://github.com/apache/maven-surefire) | `3.5.6` | `3.6.0` |\n| [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin) | `3.15.0` | `3.16.0` |\n| [org.codehaus.mojo:build-helper-maven-plugin](https://github.com/mojohaus/build-helper-maven-plugin) | `3.6.1` | `3.6.2` |\n| [io.projectreactor:reactor-core](https://github.com/reactor/reactor-core) | `3.8.6` | `3.8.7` |\n| [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson-databind) | `2.22.1` | `2.22.2` |\n| io.swagger.core.v3:swagger-annotations | `2.2.52` | `2.2.55` |\n| org.freemarker:freemarker | `2.3.34` | `2.3.35` |\n| [net.bytebuddy:byte-buddy-agent](https://github.com/raphw/byte-buddy) | `1.18.11` | `1.18.13` |\n| [net.bytebuddy:byte-buddy](https://github.com/raphw/byte-buddy) | `1.18.11` | `1.18.13` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| org.slf4j:slf4j-api | `2.0.18` | `2.0.19` |\n| com.fasterxml.jackson.datatype:jackson-datatype-jsr310 | `2.22.1` | `2.22.2` |\n| [com.fasterxml.jackson.dataformat:jackson-dataformat-yaml](https://github.com/FasterXML/jackson-dataformats-text) | `2.22.1` | `2.22.2` |\n| [com.auth0:java-jwt](https://github.com/auth0/java-jwt) | `4.6.0` | `4.6.1` |\n| [io.smallrye:jandex-maven-plugin](https://github.com/smallrye/jandex) | `3.2.7` | `3.6.0` |\n| [io.projectreactor:reactor-test](https://github.com/reactor/reactor-core) | `3.8.6` | `3.8.7` |\n| io.quarkus:quarkus-rest | `3.38.0` | `3.39.3` |\n| io.quarkus:quarkus-spring-di | `3.38.0` | `3.39.3` |\n| io.helidon.webserver:helidon-webserver | `4.5.1` | `4.5.4` |\n| [org.apache.maven:maven-plugin-api](https://github.com/apache/maven) | `3.9.9` | `3.9.16` |\n| org.apache.maven:maven-core | `3.9.9` | `3.9.16` |\n| [org.apache.maven.plugin-tools:maven-plugin-annotations](https://github.com/apache/maven-plugin-tools) | `3.13.1` | `3.16.0` |\n| [org.apache.maven.plugins:maven-plugin-plugin](https://github.com/apache/maven-plugin-tools) | `3.13.1` | `3.16.0` |\n\n\nUpdates `org.projectlombok:lombok` from 1.18.46 to 1.18.48\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/projectlombok/lombok/blob/master/doc/changelog.markdown\"\u003eorg.projectlombok:lombok's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003ev1.18.48 (September 1st, 2026)\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBREAKING CHANGE/BUGFIX: \u003ccode\u003e@Builder(builderClassName = \u0026quot;Builder\u0026quot;)\u003c/code\u003e now generates an error, because the type names collide. \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/3857\"\u003e#3857\u003c/a\u003e  (found after release)\u003c/li\u003e\n\u003cli\u003ePLATFORM: JDK27 support added \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/4072\"\u003e#4072\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eBUGFIX: \u003ccode\u003e@SneakyThrows\u003c/code\u003e usage on JDK26 no longer results in class files that require \u003ccode\u003elombok.jar\u003c/code\u003e to be on the runtime classpath (which should not be neccessary). \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/4040\"\u003e#4040\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eFEATURE: New \u003ca href=\"https://projectlombok.org/features/configuration\"\u003econfig key\u003c/a\u003e \u003ccode\u003elombok.checkReturnValueAnnotation\u003c/code\u003e (values: \u003ccode\u003enone\u003c/code\u003e, \u003ccode\u003elombok\u003c/code\u003e; default: \u003ccode\u003enone\u003c/code\u003e) lets lombok generate \u003ccode\u003e@lombok.CheckReturnValue\u003c/code\u003e on generated methods where the return value should not be ignored, such as \u003ccode\u003e@With\u003c/code\u003e methods and \u003ccode\u003e@Builder.build()\u003c/code\u003e. A future lombok release may flip the default to \u003ccode\u003elombok\u003c/code\u003e. \u003ca href=\"https://redirect.github.com/projectlombok/lombok/pull/4013\"\u003e#4013\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003ePROMOTION: \u003ccode\u003e@SuperBuilder\u003c/code\u003e has been promoted to the main package. Otherwise, no changes have been made to the annotation. The old experimental annotation will remain for a few versions, at which point it will be marked as a deprecated annotation. Eventually it'll be removed. If you had \u003ccode\u003elombok.config\u003c/code\u003e configuration for this annotation, the configuration keys for this feature have been renamed. \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/2209\"\u003e#2209\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eOLD-CRUFT: \u003ccode\u003elombok.experimental.Wither\u003c/code\u003e and \u003ccode\u003elombok.Delegate\u003c/code\u003e are deprecated remnants; these features were moved (to respectively \u003ccode\u003elombok.With\u003c/code\u003e and \u003ccode\u003elombok.experimental.Delegate\u003c/code\u003e over 5 years ago. They are now removed entirely. If your project is dependent on an older version of lombok which still has those; fret not, lombok still processes these annotations. It just no longer includes them in the jar.\u003c/li\u003e\n\u003cli\u003eFEATURE: CheckerFramework: Lombok now adds \u003ccode\u003e@SideEffectFree\u003c/code\u003e to constructors it makes if you have enabled checker framework via \u003ccode\u003elombok.config\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eBUGFIX: CheckerFramework: Lombok would add \u003ccode\u003e@SideEffectFree\u003c/code\u003e to the \u003ccode\u003ebuild()\u003c/code\u003e method of any generated builder, even if it is a builder for invoking a method; in that case, the side-effect-free nature of \u003ccode\u003ebuild()\u003c/code\u003e mirrors the side-effect-free nature of the method invocation you've built. Lombok now checks if the method it generated a builder for is side effect free / 'check return type'.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/b48657c83ce44d027984f539bd36048293ce5e8e\"\u003e\u003ccode\u003eb48657c\u003c/code\u003e\u003c/a\u003e [version] pre-release version bump v1.18.48\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/d1d003945f864d32bb3115cf81fa363e1c7bc6bb\"\u003e\u003ccode\u003ed1d0039\u003c/code\u003e\u003c/a\u003e Merge branch 'jdk27'\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/1a23dad52c01e7b18892573549841e36d6e4abde\"\u003e\u003ccode\u003e1a23dad\u003c/code\u003e\u003c/a\u003e [review][refactor] No meaningful changes: Improved comments, javadoc, and cle...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/40cdde815038a4bddc2bc31afce80c4c62e75e67\"\u003e\u003ccode\u003e40cdde8\u003c/code\u003e\u003c/a\u003e [changelog] JDK27 support\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/25eae29093410cba53e3f91e2da4ba1fbf1953f4\"\u003e\u003ccode\u003e25eae29\u003c/code\u003e\u003c/a\u003e Add Danish Nawab to AUTHORS\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/10ab92b5d9eb852ccac7295d8017203e7efd7449\"\u003e\u003ccode\u003e10ab92b\u003c/code\u003e\u003c/a\u003e Support JDK27: end positions moved from EndPosTable to JCTree.endpos\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/af01b7a27b469b723e88de508480186113569185\"\u003e\u003ccode\u003eaf01b7a\u003c/code\u003e\u003c/a\u003e Document the new configuration syntax for listy things\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/1be3857dfef96cde703012a43ec649a4c3f7eea9\"\u003e\u003ccode\u003e1be3857\u003c/code\u003e\u003c/a\u003e There is no more HtAccess\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/405985dd2512786439448e43f390c359e7595269\"\u003e\u003ccode\u003e405985d\u003c/code\u003e\u003c/a\u003e Semantic sections for website\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/04b73406d04a279401b43a74314aa1dcbadbc143\"\u003e\u003ccode\u003e04b7340\u003c/code\u003e\u003c/a\u003e [trivial] fixing some outdated tests (tests were broken, not lombok).\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/projectlombok/lombok/compare/v1.18.46...v1.18.48\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.smallrye.common:smallrye-common-function` from 2.19.0 to 2.20.0\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/defd310a881f1c168e958f8f73fc7c6518499a4e\"\u003e\u003ccode\u003edefd310\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release 2.20.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/ffc98f68f60160620b1156b233dd650104f09862\"\u003e\u003ccode\u003effc98f6\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/smallrye/smallrye-common/issues/581\"\u003e#581\u003c/a\u003e from smallrye/release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/7cf7fcc86bddc8a9e96f14a34ac292e617d0202b\"\u003e\u003ccode\u003e7cf7fcc\u003c/code\u003e\u003c/a\u003e Release 2.20.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/e6f3c592559944617e16f008f1d1ac3285fcef75\"\u003e\u003ccode\u003ee6f3c59\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/smallrye/smallrye-common/issues/579\"\u003e#579\u003c/a\u003e from smallrye/dependabot/maven/version.vertx4-4.5.30\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/232049fc7397665ed85ed6a57ae57574a7a2b84f\"\u003e\u003ccode\u003e232049f\u003c/code\u003e\u003c/a\u003e Bump version.vertx4 from 4.5.29 to 4.5.30\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/b89fee46677f6d62fa10cfb67adb16fbe9fe767a\"\u003e\u003ccode\u003eb89fee4\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/smallrye/smallrye-common/issues/576\"\u003e#576\u003c/a\u003e from smallrye/dependabot/maven/org.graalvm.sdk-native...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/d2c6a36fce245cb95cf3a08f8268c530f6eceeff\"\u003e\u003ccode\u003ed2c6a36\u003c/code\u003e\u003c/a\u003e Bump org.graalvm.sdk:nativeimage from 25.0.3 to 25.1.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/dc378965bead25b95112ee86c264ff88b41fd7e4\"\u003e\u003ccode\u003edc37896\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/smallrye/smallrye-common/issues/578\"\u003e#578\u003c/a\u003e from smallrye/dependabot/maven/version.vertx4-4.5.29\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/3d73326ea1c881fad45e48db7a67383359be1f35\"\u003e\u003ccode\u003e3d73326\u003c/code\u003e\u003c/a\u003e Bump version.vertx4 from 4.5.28 to 4.5.29\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/smallrye/smallrye-common/commit/bdb9f0b6c1089eddb54a3959905d0316aa49db37\"\u003e\u003ccode\u003ebdb9f0b\u003c/code\u003e\u003c/a\u003e Bump io.smallrye:smallrye-parent from 50 to 51 (\u003ca href=\"https://redirect.github.com/smallrye/smallrye-common/issues/577\"\u003e#577\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/smallrye/smallrye-common/compare/2.19.0...2.20.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.hibernate.validator:hibernate-validator` from 9.1.2.Final to 9.1.3.Final\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/hibernate/hibernate-validator/releases\"\u003eorg.hibernate.validator:hibernate-validator's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eRelease 9.1.3.Final\u003c/h2\u003e\n\u003ch1\u003eHibernate Validator 9.1.3.Final released\u003c/h1\u003e\n\u003cp\u003eWe are pleased to announce the release of Hibernate Validator 9.1: 9.1.3.Final.\u003c/p\u003e\n\u003cp\u003eYou can find the full list of 9.1.3.Final changes \u003ca href=\"https://hibernate.atlassian.net/issues/?jql=project%20%3D%20HV%20AND%20fixVersion%20%3D%209.1.3.Final\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eWhat's new\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSee the \u003ca href=\"https://hibernate.org/validator/releases/9.1\"\u003ewebsite\u003c/a\u003e for requirements and compatibilities.\u003c/li\u003e\n\u003cli\u003eSee the \u003ca href=\"https://docs.hibernate.org/validator/9.1/whats-new/en-US/html_single/\"\u003eWhat's New\u003c/a\u003e guide for details about new features and capabilities.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eConclusion\u003c/h2\u003e\n\u003cp\u003eFor additional details, see:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003ethe \u003ca href=\"https://hibernate.org/validator/releases/9.1/\"\u003erelease page\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/validator/9.1/migration-guide/\"\u003eMigration Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/validator/9.1/reference/en-US/html_single/#validator-gettingstarted\"\u003eGetting started\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/validator/9.1/reference/en-US/html_single/\"\u003eReference Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/validator/9.1/api\"\u003eAPI docs\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eVisit the \u003ca href=\"https://hibernate.org/community/\"\u003ewebsite\u003c/a\u003e for details on getting in touch with us.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/hibernate/hibernate-validator/blob/9.1.3.Final/changelog.md\"\u003eorg.hibernate.validator:hibernate-validator's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e9.1.3.Final (2026-07-26)\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://hibernate.atlassian.net/projects/HV/versions/40065\"\u003eFull changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eBug\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HV-2231\"\u003eHV-2231\u003c/a\u003e - RegexpURLValidator throws NPE when URL has no authority component\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-validator/commit/8ab68bcc99e0727065e194693f5c3b03395fa87e\"\u003e\u003ccode\u003e8ab68bc\u003c/code\u003e\u003c/a\u003e [Jenkins release job] Preparing release 9.1.3.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-validator/commit/36a8551a92d42ae8ece6e2f534fa1d16df088943\"\u003e\u003ccode\u003e36a8551\u003c/code\u003e\u003c/a\u003e [Jenkins release job] changelog.md updated by release build 9.1.3.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-validator/commit/e8b4ebd670356e58c14d11a569044a228f63e09a\"\u003e\u003ccode\u003ee8b4ebd\u003c/code\u003e\u003c/a\u003e [Jenkins release job] README.md updated by release build 9.1.3.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-validator/commit/8ba5072bc668fc14d71d169c1897e11112a9e084\"\u003e\u003ccode\u003e8ba5072\u003c/code\u003e\u003c/a\u003e HV-2231 Fix NPE in RegexpURLValidator when URL has no host\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-validator/commit/e9d4856774aae38431feb9569e4fe58af02806f6\"\u003e\u003ccode\u003ee9d4856\u003c/code\u003e\u003c/a\u003e [9.1] Bump the build-dependencies group with 3 updates\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-validator/commit/7793c80bfa0d99390229863bc5a7b95dab8d34a7\"\u003e\u003ccode\u003e7793c80\u003c/code\u003e\u003c/a\u003e Use correct env var name for additional arguments in the release script\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-validator/commit/8cffdd8f9ca4a0d869772ff11686507b0fc0726e\"\u003e\u003ccode\u003e8cffdd8\u003c/code\u003e\u003c/a\u003e [Jenkins release job] Preparing next development iteration\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/hibernate/hibernate-validator/compare/9.1.2.Final...9.1.3.Final\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.springframework.boot:spring-boot-starter-parent` from 4.1.0 to 4.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/spring-projects/spring-boot/releases\"\u003eorg.springframework.boot:spring-boot-starter-parent's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.1.1\u003c/h2\u003e\n\u003ch2\u003e:warning: Attention Required\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSpring Boot's Gradle plugin no longer automatically configures gRPC when the Protobuf plugin is applied. This behavior caused problems for those using Protobuf without gRPC. To opt in to the configuration of gRPC, configure the \u003ccode\u003eprotobuf\u003c/code\u003e extension with the \u003ccode\u003egrpc\u003c/code\u003e plugin using an empty block. The Spring Boot Gradle plugin will then automatically configure the use of \u003ccode\u003eprotoc-gen-grpc-java\u003c/code\u003e as before. \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50822\"\u003e#50822\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:lady_beetle: Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eKafka consumer-specific security protocol is not taken into account \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51369\"\u003e#51369\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eStructured logging: a failed JSON encode corrupts the next log event written on the same thread \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51156\"\u003e#51156\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMicrometer registries pin the application context \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51135\"\u003e#51135\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eTemporary file is not deleted when ExportedImageTar construction fails \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51132\"\u003e#51132\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadata annotation processor ignores getter-level \u003ccode\u003e@NestedConfigurationProperty\u003c/code\u003e for records \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51098\"\u003e#51098\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring-boot-h2-console pulls servlet-api as transitive dependency \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51095\"\u003e#51095\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropertiesLauncher does not log nested archive paths \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51089\"\u003e#51089\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMethods that return the result of Map#remove are not declared with a \u003ccode\u003e@Nullable\u003c/code\u003e return type \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51087\"\u003e#51087\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eNativeImageResourceProvider flattens Flyway migration paths in subdirectories \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50964\"\u003e#50964\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix ordering of Kotlinx Serialization CodecCustomizer \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50961\"\u003e#50961\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJarFile is not closed when finding main class from archive \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50959\"\u003e#50959\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eApplication-managed JUL bridge handler should only be removed if installed \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50950\"\u003e#50950\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCloudFoundry reactive auto-configuration should not require a WebClient.Builder bean to be defined \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50944\"\u003e#50944\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails on reactive Cloud Foundry when using Actuator without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50942\"\u003e#50942\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eResources are not cleaned up when resolving an image that is not yet present in the builder \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50941\"\u003e#50941\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eGraphQlWebMvcAutoConfiguration should apply customizers in order \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50914\"\u003e#50914\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAuto-configured RedisMessageListenerContainer does not use virtual threads when spring.threads.virtual.enabled is true \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50884\"\u003e#50884\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails when using Actuator on Jersey without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50872\"\u003e#50872\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails on Cloud Foundry when using Actuator without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50871\"\u003e#50871\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIllegalStateException when binding properties to a \u003ccode\u003e@Validated\u003c/code\u003e class that contains a map whose value type is a wildcard \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50856\"\u003e#50856\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHigh number of connections due to Mongo health indicator \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50852\"\u003e#50852\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eInconsistent handling of empty string values of spring.security.oauth2.resourceserver.jwt issuer-uri and jwk-set-uri \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50849\"\u003e#50849\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReturn type nullability of ApplicationContextAssert's getBean methods does not indicate that bean may be null \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50845\"\u003e#50845\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropertiesWebClientHttpServiceGroupConfigurer has highest precedence, preventing other configurers from being ordered ahead of it \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50843\"\u003e#50843\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eExposing gRPC test server port should backoff if gRPC is not present \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50825\"\u003e#50825\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJpaBaseConfiguration#entityManagerConfiguration can cause a dependency loop on beans declaring AsyncTaskExecutor \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50801\"\u003e#50801\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring.grpc.server.health.include-overall-health is not taken into account \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50799\"\u003e#50799\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSetting 'server.servlet.session.cookie.partitioned' to false still emits the 'Partitioned' cookie attribute \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50790\"\u003e#50790\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eManaged version of Prometheus Client is not aligned with Micrometer's micrometer-registry-prometheus \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50780\"\u003e#50780\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMap properties bound from empty strings fail with ConverterNotFoundException \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50773\"\u003e#50773\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eProtobuf Common Protos should not be a managed dependency \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50772\"\u003e#50772\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAn application that depends on spring-boot-security-oauth2-resource-server may fail to start with a ClassNotFoundException when Reactor is on the classpath but WebFlux is not \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50764\"\u003e#50764\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eW3CHeaderParser's decoding is not compliant with RFC 3986 \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50650\"\u003e#50650\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:notebook_with_decorative_cover: Documentation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDescription of spring.graphql.websocket.connection-init-timeout does not render correctly in the reference guide \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51348\"\u003e#51348\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring.profiles.group should have a 'spring-profile-name' hint provider \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51284\"\u003e#51284\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove reference to removed InfluxDB auto-configuration \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51176\"\u003e#51176\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse JacksonJsonSerde in Kafka Streams documentation \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51161\"\u003e#51161\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDocument alternatives to HttpMessageConverters \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51129\"\u003e#51129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix stale type reference for OTLP logging transport metadata \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51119\"\u003e#51119\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadata for spring.test.mockmvc.htmlunit.url declares the wrong type \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51115\"\u003e#51115\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/6fdf67ea1552691e932604d4bf67a5e08ff0b0ea\"\u003e\u003ccode\u003e6fdf67e\u003c/code\u003e\u003c/a\u003e Release 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/fde599b28b40932e4ea6194399d89245923a01e7\"\u003e\u003ccode\u003efde599b\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Pulsar 2.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/9daa58f7d98b82bf16febcb91943ce267c220a50\"\u003e\u003ccode\u003e9daa58f\u003c/code\u003e\u003c/a\u003e Upgrade to Spring HATEOAS 3.1.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/353993ebc1d7b1ceccbb981b0439a42ba122a816\"\u003e\u003ccode\u003e353993e\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Data Bom 2026.0.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/24ba596bc4fa000614834016452435c834fdeda2\"\u003e\u003ccode\u003e24ba596\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Session 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/5cb5c294d1f4780e78d010a964049e47c074e4d6\"\u003e\u003ccode\u003e5cb5c29\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Security 7.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/4adc8eb130c4e0c688ed85316f385f4e04d47679\"\u003e\u003ccode\u003e4adc8eb\u003c/code\u003e\u003c/a\u003e Upgrade to Spring LDAP 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/4d9c19cbc0589f57a7265052b507bf4b961082ac\"\u003e\u003ccode\u003e4d9c19c\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Kafka 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/f30f6120c4f6f8f873ac56cba478ae1f011c276c\"\u003e\u003ccode\u003ef30f612\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Integration 7.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/b930283d97e92eb24da1de3721cdd41625266dea\"\u003e\u003ccode\u003eb930283\u003c/code\u003e\u003c/a\u003e Upgrade to Spring gRPC 1.1.1\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/spring-projects/spring-boot/compare/v4.1.0...v4.1.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.maven.plugins:maven-surefire-plugin` from 3.5.6 to 3.6.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/maven-surefire/releases\"\u003eorg.apache.maven.plugins:maven-surefire-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.6.0\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cp\u003ePlease refer to the main page for what's new \u003ca href=\"https://maven.apache.org/surefire/\"\u003ehttps://maven.apache.org/surefire/\u003c/a\u003e\nAnd the migration page \u003ca href=\"https://maven.apache.org/surefire/maven-surefire-plugin/whats-new-3-6-0.html\"\u003ehttps://maven.apache.org/surefire/maven-surefire-plugin/whats-new-3-6-0.html\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3303\"\u003e#3303\u003c/a\u003e: distinguish JUnit 6 ParameterizedClass invocations (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3432\"\u003e#3432\u003c/a\u003e) \u003ca href=\"https://github.com/AzazelSensei\"\u003e\u003ccode\u003e@​AzazelSensei\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/SUREFIRE-1639\"\u003e[SUREFIRE-1639]\u003c/a\u003e - Add ability to configure JUnit 5 TestExecutionListener (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3438\"\u003e#3438\u003c/a\u003e) \u003ca href=\"https://github.com/pan3793\"\u003e\u003ccode\u003e@​pan3793\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIssue \u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/838\"\u003e#838\u003c/a\u003e Implement extension point to run diagnosis tools when forked JVM times out (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3372\"\u003e#3372\u003c/a\u003e) \u003ca href=\"https://github.com/olamy\"\u003e\u003ccode\u003e@​olamy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/SUREFIRE-2148\"\u003e[SUREFIRE-2148]\u003c/a\u003e - Verify recovered BeforeAll does not fail build (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3419\"\u003e#3419\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/SUREFIRE-823\"\u003e[SUREFIRE-823]\u003c/a\u003e - Decouple -DskipTests from Failsafe plugin (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3371\"\u003e#3371\u003c/a\u003e) \u003ca href=\"https://github.com/olamy\"\u003e\u003ccode\u003e@​olamy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse StackWalker in StackTraceProvider when available (Java 9+) (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3374\"\u003e#3374\u003c/a\u003e) \u003ca href=\"https://github.com/olamy\"\u003e\u003ccode\u003e@​olamy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[Issue-3380] Send sourceQualifiedName to forked clients (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3380\"\u003e#3380\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3381\"\u003e#3381\u003c/a\u003e) \u003ca href=\"https://github.com/fabriciorby\"\u003e\u003ccode\u003e@​fabriciorby\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/SUREFIRE-523\"\u003e[SUREFIRE-523]\u003c/a\u003e - Link all reported tests to source XRef (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3445\"\u003e#3445\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/SUREFIRE-3446\"\u003e[SUREFIRE-3446]\u003c/a\u003e - Fix direct selection of JUnit Jupiter \u003ca href=\"https://github.com/Nested\"\u003e\u003ccode\u003e@​Nested\u003c/code\u003e\u003c/a\u003e classes (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3447\"\u003e#3447\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDiscover tests in a fork when a toolchain JDK is used (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3444\"\u003e#3444\u003c/a\u003e) \u003ca href=\"https://github.com/olamy\"\u003e\u003ccode\u003e@​olamy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[SUREFIRE-2239, SUREFIRE-2241, SUREFIRE-2260, SUREFIRE-2274, SUREFIRE-2300] Preserve JUnit Platform test identity across reruns (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3418\"\u003e#3418\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix \u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3428\"\u003e#3428\u003c/a\u003e: resolve parents via TestPlan.getParent for pre-1.8 platforms (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3429\"\u003e#3429\u003c/a\u003e) \u003ca href=\"https://github.com/kalayciburak\"\u003e\u003ccode\u003e@​kalayciburak\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/SUREFIRE-859\"\u003e[SUREFIRE-859]\u003c/a\u003e - Make random test order reproducible (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3421\"\u003e#3421\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[SUREFIRE-862, SUREFIRE-3178] Handle missing Failsafe summary files (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3417\"\u003e#3417\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: report AfterAll/AfterClass exceptions as errors again (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3412\"\u003e#3412\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3413\"\u003e#3413\u003c/a\u003e) \u003ca href=\"https://github.com/arimu1\"\u003e\u003ccode\u003e@​arimu1\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFixes \u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3264\"\u003e#3264\u003c/a\u003e : tests inside \u003ca href=\"https://github.com/Suite\"\u003e\u003ccode\u003e@​Suite\u003c/code\u003e\u003c/a\u003e incorrectly classified as flakes (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3342\"\u003e#3342\u003c/a\u003e) \u003ca href=\"https://github.com/mirkoalicastro\"\u003e\u003ccode\u003e@​mirkoalicastro\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix Windows flake in CommandChannelDecoderTest (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3400\"\u003e#3400\u003c/a\u003e) \u003ca href=\"https://github.com/ascheman\"\u003e\u003ccode\u003e@​ascheman\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix reportNameSuffix in XML testcase classname (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3379\"\u003e#3379\u003c/a\u003e) \u003ca href=\"https://github.com/goutamadwant\"\u003e\u003ccode\u003e@​goutamadwant\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix: resolve relative classpath elements against the fork's working dir (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3333\"\u003e#3333\u003c/a\u003e) \u003ca href=\"https://github.com/cwegener-79\"\u003e\u003ccode\u003e@​cwegener-79\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📝 Documentation updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMagnify the home, well at least have something rather than nothing :) (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3377\"\u003e#3377\u003c/a\u003e) \u003ca href=\"https://github.com/olamy\"\u003e\u003ccode\u003e@​olamy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRestore the straight quotes the FAQ conversion turned typographic (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3425\"\u003e#3425\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRestore the table borders lost in the APT conversion (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3424\"\u003e#3424\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eConvert the FAQ from FML to Markdown (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3423\"\u003e#3423\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eConvert the remaining site documentation from APT to Markdown (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3422\"\u003e#3422\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ejavadoc: clarify statelessTestsetReporter, consoleOutputReporter, (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3410\"\u003e#3410\u003c/a\u003e) \u003ca href=\"https://github.com/joshinii\"\u003e\u003ccode\u003e@​joshinii\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3387\"\u003e#3387\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate documentation we support Junit 6 as well :) (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3370\"\u003e#3370\u003c/a\u003e) \u003ca href=\"https://github.com/olamy\"\u003e\u003ccode\u003e@​olamy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eStop dependabot from updating test fixtures (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3440\"\u003e#3440\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMigrate legacy plugin Javadoc annotations (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3416\"\u003e#3416\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse the resolver's own HTTP transport in the report plugin tests (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3414\"\u003e#3414\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePin maven-jar-plugin 3.5.1 in modular IT fixtures (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3398\"\u003e#3398\u003c/a\u003e) \u003ca href=\"https://github.com/ascheman\"\u003e\u003ccode\u003e@​ascheman\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/pull/3387\"\u003e#3387\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/0ff622b160253f362511a72d29a1f8067631f9d3\"\u003e\u003ccode\u003e0ff622b\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release surefire-3.6.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/bb3932a10a9706df70cf8095e2402348b7a64f0b\"\u003e\u003ccode\u003ebb3932a\u003c/code\u003e\u003c/a\u003e Let's go for 3.6.0 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/3002a1648cc8092dbd80492aa00509c825fd58e7\"\u003e\u003ccode\u003e3002a16\u003c/code\u003e\u003c/a\u003e Bump mavenVersion from 3.9.14 to 3.9.16\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/61a531d5981b0e70f8e88a329150f75501bb73e4\"\u003e\u003ccode\u003e61a531d\u003c/code\u003e\u003c/a\u003e Bump Maven parent version from 47 to 49 (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3449\"\u003e#3449\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/e52ead4cf5075f519578d0053c1ff878dff238f5\"\u003e\u003ccode\u003ee52ead4\u003c/code\u003e\u003c/a\u003e [SUREFIRE-523] Link all reported tests to source XRef (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3445\"\u003e#3445\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/45102fa9f2dfc5bc3d2909798e67358ae33e2d49\"\u003e\u003ccode\u003e45102fa\u003c/code\u003e\u003c/a\u003e [SUREFIRE-3446] Fix direct selection of JUnit Jupiter \u003ca href=\"https://github.com/Nested\"\u003e\u003ccode\u003e@​Nested\u003c/code\u003e\u003c/a\u003e classes (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3447\"\u003e#3447\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/b2e1f70b24df2d8a6cf1583ca955311184e68022\"\u003e\u003ccode\u003eb2e1f70\u003c/code\u003e\u003c/a\u003e Fix \u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3303\"\u003e#3303\u003c/a\u003e: distinguish JUnit 6 ParameterizedClass invocations (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3432\"\u003e#3432\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/c051938593a29d654b3c1c20d454b9062c3fa3f4\"\u003e\u003ccode\u003ec051938\u003c/code\u003e\u003c/a\u003e Discover tests in a fork when a toolchain JDK is used (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3444\"\u003e#3444\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/db75df85a76abf35346f559fe7f7f020cf6435b6\"\u003e\u003ccode\u003edb75df8\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0 (\u003ca href=\"https://redirect.github.com/apache/maven-surefire/issues/3441\"\u003e#3441\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-surefire/commit/77f2759d895a4460f917bdaaff7a025454afebe4\"\u003e\u003ccode\u003e77f2759\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-interpolation from 1.29 to 1.30.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/maven-surefire/compare/surefire-3.5.6...surefire-3.6.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.maven.plugins:maven-compiler-plugin` from 3.15.0 to 3.16.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/maven-compiler-plugin/releases\"\u003eorg.apache.maven.plugins:maven-compiler-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.16.0\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRecompile when dependencies change (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1102\"\u003e#1102\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix incremental detection of empty sources, 3.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1075\"\u003e#1075\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-578\"\u003e[MCOMPILER-578]\u003c/a\u003e - Track outputs across compiler executions (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1091\"\u003e#1091\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBuild fails when annotation processor list is empty (but present) (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1077\"\u003e#1077\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-374\"\u003e[MCOMPILER-374]\u003c/a\u003e - Unable to compile MR-JAR code against older directories when module-info.java is present (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1093\"\u003e#1093\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake mcompiler-120 IT locale independent (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1063\"\u003e#1063\u003c/a\u003e) \u003ca href=\"https://github.com/anilvdl\"\u003e\u003ccode\u003e@​anilvdl\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📝 Documentation updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-569\"\u003e[MCOMPILER-569]\u003c/a\u003e - Document implicitly compiled excluded sources (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1092\"\u003e#1092\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1074\"\u003e#1074\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAvoid using deprecated method CompilerConfiguration.setCompilerVersion (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1121\"\u003e#1121\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReplace adopt-openj9 by semeru JDK distribution on GH (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1122\"\u003e#1122\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePort the site documentation from APT to Markdown (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1110\"\u003e#1110\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eVerify against Maven 4.0.0-rc-6 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1105\"\u003e#1105\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix tests on Jenkins (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1100\"\u003e#1100\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1074\"\u003e#1074\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor compiler mojo to use dependency injection and improve string… (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1066\"\u003e#1066\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix ITs for Maven 3.10.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1061\"\u003e#1061\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate maven-surefire-plugin version to 3.x in the MCOMPILER-481 IT (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1035\"\u003e#1035\u003c/a\u003e) \u003ca href=\"https://github.com/cdouillard\"\u003e\u003ccode\u003e@​cdouillard\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump plexusCompilerVersion from 2.16.2 to 2.17.0 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1112\"\u003e#1112\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1113\"\u003e#1113\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003euse latest Maven 4 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1045\"\u003e#1045\u003c/a\u003e) \u003ca href=\"https://github.com/hboutemy\"\u003e\u003ccode\u003e@​hboutemy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1083\"\u003e#1083\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/pr-automation.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1082\"\u003e#1082\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1084\"\u003e#1084\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 48 to 49 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1068\"\u003e#1068\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-invoker-plugin from 3.9.1 to 3.10.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1047\"\u003e#1047\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 47 to 48 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1050\"\u003e#1050\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.14 to 3.9.16 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1054\"\u003e#1054\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.ow2.asm:asm from 9.10 to 9.10.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1059\"\u003e#1059\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.ow2.asm:asm from 9.9.1 to 9.10 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1053\"\u003e#1053\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.13 to 3.9.14 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1041\"\u003e#1041\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.12 to 3.9.13 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1038\"\u003e#1038\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugin-testing:maven-plugin-testing-harness from 3.5.0 to 3.5.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1032\"\u003e#1032\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/e7bba6ed5f9c17003d5c5d1413144bb214177408\"\u003e\u003ccode\u003ee7bba6e\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release maven-compiler-plugin-3.16.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/c906809e0c0b2c79e8a03165cb942f152a911416\"\u003e\u003ccode\u003ec906809\u003c/code\u003e\u003c/a\u003e Avoid using deprecated method CompilerConfiguration.setCompilerVersion\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/ad74fee36865d7a1752c9b96ff9a9e702565fdb3\"\u003e\u003ccode\u003ead74fee\u003c/code\u003e\u003c/a\u003e Replace adopt-openj9 by semeru JDK distribution on GH\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/beb0eda2100e77d3f01bf4cc89edd5b721411f63\"\u003e\u003ccode\u003ebeb0eda\u003c/code\u003e\u003c/a\u003e Recompile when dependencies change (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1102\"\u003e#1102\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/a0b689e0e7f13d3a7dded7847a807fe6453e0358\"\u003e\u003ccode\u003ea0b689e\u003c/code\u003e\u003c/a\u003e [MCOMPILER-578] Track outputs across compiler executions (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1091\"\u003e#1091\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/2e8122841d9b10d2d83a90cc07530d7a09eebc47\"\u003e\u003ccode\u003e2e81228\u003c/code\u003e\u003c/a\u003e Fix incremental detection of empty sources, 3.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1075\"\u003e#1075\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/2132f5bf0cbfcde26301084c4833f1a9420f1baf\"\u003e\u003ccode\u003e2132f5b\u003c/code\u003e\u003c/a\u003e configure ATR project\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/5992b772033a7488767c4b3aa806f080eba96593\"\u003e\u003ccode\u003e5992b77\u003c/code\u003e\u003c/a\u003e Build fails when annotation processor list is empty (but present) (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1077\"\u003e#1077\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/acccef703e5491c29c6dd9e8381677d3e7927589\"\u003e\u003ccode\u003eacccef7\u003c/code\u003e\u003c/a\u003e Bump plexusCompilerVersion from 2.16.2 to 2.17.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/72bc4454dfdcd1c3551137e5b27560f88b4480ae\"\u003e\u003ccode\u003e72bc445\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/maven-compiler-plugin/compare/maven-compiler-plugin-3.15.0...maven-compiler-plugin-3.16.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.codehaus.mojo:build-helper-maven-plugin` from 3.6.1 to 3.6.2\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/releases\"\u003eorg.codehaus.mojo:build-helper-maven-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.6.2\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReplace raw \u003ccode\u003eNPEx\u003c/code\u003e with customized exception message (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/239\"\u003e#239\u003c/a\u003e) \u003ca href=\"https://github.com/pzygielo\"\u003e\u003ccode\u003e@​pzygielo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRemove redundant maven-resolver-api dependency and ignore Resolver/SLF4J 2.x in Dependabot (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/248\"\u003e#248\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cul\u003e\n\u003cli\u003eRemove redundant maven-resolver-api dependency and ignore Resolver/SLF4J 2.x in Dependabot (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/248\"\u003e#248\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-utils from 4.0.3 to 4.1.0 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/247\"\u003e#247\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/244\"\u003e#244\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 96 to 97 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/246\"\u003e#246\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/245\"\u003e#245\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-utils from 4.0.2 to 4.0.3 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/241\"\u003e#241\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 95 to 96 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/240\"\u003e#240\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 94 to 95 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/235\"\u003e#235\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 93 to 94 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/233\"\u003e#233\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 92 to 93 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/232\"\u003e#232\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.mojo:mojo-parent from 91 to 92 (\u003ca href=\"https://redirect.github.com/mojohaus/build-helper-maven-plugin/pull/231\"\u003e#231\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/813bc7d2f03f2c9975de1f079cf7a7334211e0b6\"\u003e\u003ccode\u003e813bc7d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release 3.6.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/07d91091b06db894178bcb6e71bc55f857546f46\"\u003e\u003ccode\u003e07d9109\u003c/code\u003e\u003c/a\u003e Remove redundant maven-resolver-api and ignore Resolver/SLF4J 2.x in Dependabot\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/9abd552f324e429beb586407139eb4d43127344a\"\u003e\u003ccode\u003e9abd552\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-utils from 4.0.3 to 4.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/3c15526bf151e28d6ce651197b36958164da4d4a\"\u003e\u003ccode\u003e3c15526\u003c/code\u003e\u003c/a\u003e Bump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/3b1f104096756ce33e8fc3e4c3062b1ccd8cf227\"\u003e\u003ccode\u003e3b1f104\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.mojo:mojo-parent from 96 to 97\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/1749855c90317f651eed427e45cb27c52cf8a542\"\u003e\u003ccode\u003e1749855\u003c/code\u003e\u003c/a\u003e Bump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/52300415d70e84a20924c06c26d9375b152e5409\"\u003e\u003ccode\u003e5230041\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-utils from 4.0.2 to 4.0.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/c0e937567a4604534e32cf3cc4c3abb43bfa243c\"\u003e\u003ccode\u003ec0e9375\u003c/code\u003e\u003c/a\u003e Delete .github/release-drafter.yml\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/84a839e4cb9b84b3afbbeef7f6c950ba5b478b31\"\u003e\u003ccode\u003e84a839e\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.mojo:mojo-parent from 95 to 96\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/commit/a85c668b83334b423844fc448709b1d6e53cb32c\"\u003e\u003ccode\u003ea85c668\u003c/code\u003e\u003c/a\u003e Replace raw \u003ccode\u003eNPEx\u003c/code\u003e with customized exception message\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/mojohaus/build-helper-maven-plugin/compare/3.6.1...3.6.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.projectreactor:reactor-core` from 3.8.6 to 3.8.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/reactor/reactor-core/releases\"\u003eio.projectreactor:reactor-core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev3.8.7\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003cp\u003e\u003ccode\u003eReactor Core\u003c/code\u003e \u003ccode\u003e3.8.7\u003c/code\u003e is part of the \u003ccode\u003e2025.0.7\u003c/code\u003e and \u003ccode\u003e2026.0.0-M1\u003c/code\u003e \u003cstrong\u003eRelease Trains\u003c/strong\u003e.\u003c/p\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003ch3\u003e:lady_beetle: Bug fixes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eFix elapsed time computation in \u003ccode\u003eOptimisticEmitFailureHandler\u003c/code\u003e by \u003ca href=\"https://github.com/bjmi\"\u003e\u003ccode\u003e@​bjmi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/reactor/reactor-core/issues/4112\"\u003e#4112\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003ewindowTimeout\u003c/code\u003e fair-backpressure index wraparound by \u003ca href=\"https://github.com/chemicL\"\u003e\u003ccode\u003e@​chemicL\u003c/code\u003e\u003c/a\u003e in 9fdb2cf7108d738fe80e65d010571982610b7eb8\u003c/li\u003e\n\u003cli\u003eGuard against flush-state update in \u003ccode\u003eFluxBufferTimeout\u003c/code\u003e by \u003ca href=\"https://github.com/Sage-Pierce\"\u003e\u003ccode\u003e@​Sage-Pierce\u003c/code\u003e\u003c/a\u003e in 1791421affc59e0a551ba8596e4122c069e782ba\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/bjmi\"\u003e\u003ccode\u003e@​bjmi\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/reactor/reactor-core/issues/4112\"\u003e#4112\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/reactor/reactor-core/compare/v3.8.6...v3.8.7\"\u003ehttps://github.com/reactor/reactor-core/compare/v3.8.6...v3.8.7\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/cda5359710de9a9b70ff432efe0062190a4014d3\"\u003e\u003ccode\u003ecda5359\u003c/code\u003e\u003c/a\u003e [release] Prepare and release 3.8.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/c2b3afd7fb1cdc11b84010b5425ef5827391a3d1\"\u003e\u003ccode\u003ec2b3afd\u003c/code\u003e\u003c/a\u003e Prepare release/3.8.7 branch\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/1791421affc59e0a551ba8596e4122c069e782ba\"\u003e\u003ccode\u003e1791421\u003c/code\u003e\u003c/a\u003e Guard against flush-state update in FluxBufferTimeout\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/9fdb2cf7108d738fe80e65d010571982610b7eb8\"\u003e\u003ccode\u003e9fdb2cf\u003c/code\u003e\u003c/a\u003e Fix windowTimeout fair-backpressure index wraparound\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/200db94c591322c27ef972b3ca9356af77176641\"\u003e\u003ccode\u003e200db94\u003c/code\u003e\u003c/a\u003e Prepare main-internal branch\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/a794eae1d1aacc684133e5124883e922467b8aab\"\u003e\u003ccode\u003ea794eae\u003c/code\u003e\u003c/a\u003e Bump github/codeql-action from 4.37.5 to 4.37.6 in /.github/workflows (\u003ca href=\"https://redirect.github.com/reactor/reactor-core/issues/4353\"\u003e#4353\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/87cdb28749a3dc76a808ca3f0bc065d97d80b841\"\u003e\u003ccode\u003e87cdb28\u003c/code\u003e\u003c/a\u003e Bump github/codeql-action from 4.37.4 to 4.37.5 in /.github/workflows (\u003ca href=\"https://redirect.github.com/reactor/reactor-core/issues/4351\"\u003e#4351\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/ed121c4f7201a1c247b2cd85e6ffef31aeb5de68\"\u003e\u003ccode\u003eed121c4\u003c/code\u003e\u003c/a\u003e Bump gradle/actions/wrapper-validation from 6.2.0 to 6.3.0 in /.github/workfl...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/869b950f6fe2844af08c43b97b00ec76ee021a97\"\u003e\u003ccode\u003e869b950\u003c/code\u003e\u003c/a\u003e Bump gradle/actions/setup-gradle from 6.2.0 to 6.3.0 in /.github/workflows (#...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/reactor/reactor-core/commit/4f160faaf9ee50575ada93cf2f789b6e8747d7ed\"\u003e\u003ccode\u003e4f160fa\u003c/code\u003e\u003c/a\u003e Bump \u003ccode\u003e@​antora/pdf-extension\u003c/code\u003e from 1.0.0-rc.6 to 1.0.0-rc.7 in /docs (\u003ca href=\"https://redirect.github.com/reactor/reactor-core/issues/4348\"\u003e#4348\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/reactor/reactor-core/compare/v3.8.6...v3.8.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.core:jackson-databind` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/25b2a221f9aa4107e455065a74635e209418cf55\"\u003e\u003ccode\u003e25b2a22\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bab1c1a702a941f8805ee6698e8fa4fdbfbec54a\"\u003e\u003ccode\u003ebab1c1a\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bc03cf83d74cf0e5944dce33a63ee59ddc344b64\"\u003e\u003ccode\u003ebc03cf8\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/83379fb6409075336edf3d8d88744e95911a43f8\"\u003e\u003ccode\u003e83379fb\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/0d400c9dc586fdd460d0c6a40db21ebbe22106d8\"\u003e\u003ccode\u003e0d400c9\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/ce36a279f8b078bef2d9d44a1d01034c3634f91a\"\u003e\u003ccode\u003ece36a27\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7a209e1fa97033746db50fd7bcd1e3dbab077599\"\u003e\u003ccode\u003e7a209e1\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/a432707afe6b7569243d1c2d8052a1bf33d9279c\"\u003e\u003ccode\u003ea432707\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/176df1d48b256ced412c65293ad4e09393e24bd3\"\u003e\u003ccode\u003e176df1d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7785f5f9ed24127e004115472c47b26ea4cf2774\"\u003e\u003ccode\u003e7785f5f\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-databind/compare/jackson-databind-2.22.1...jackson-databind-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.swagger.core.v3:swagger-annotations` from 2.2.52 to 2.2.55\n\nUpdates `org.freemarker:freemarker` from 2.3.34 to 2.3.35\n\nUpdates `net.bytebuddy:byte-buddy-agent` from 1.18.11 to 1.18.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/releases\"\u003enet.bytebuddy:byte-buddy-agent's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eByte Buddy 1.18.13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eByte Buddy 1.18.12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eAdd support for native attach on Windows for ARM64.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/blob/master/release-notes.md\"\u003enet.bytebuddy:byte-buddy-agent's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003e2. September 2026: version 1.18.13\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e17. July 2026: version 1.18.12\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003cli\u003eSupport dynamic attach on Windows ARM64 by shipping a native \u003ccode\u003eattach_hotspot_windows\u003c/code\u003e library for \u003ccode\u003ewin32-aarch64\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/d4da51578490c841b56b38c9c8fc9d3e8815f046\"\u003e\u003ccode\u003ed4da515\u003c/code\u003e\u003c/a\u003e [publish] Releasing Byte Buddy 1.18.13\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/bb914e33837267c05704f167179ba31abe3bf787\"\u003e\u003ccode\u003ebb914e3\u003c/code\u003e\u003c/a\u003e [release] Release new version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/af2034b8c55c2596f6430e63152586e02d06fd0e\"\u003e\u003ccode\u003eaf2034b\u003c/code\u003e\u003c/a\u003e Create Gradle tasks via the task registration API if available to avoid the u...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/30aca5581534d52570a60ffd524109adb3671759\"\u003e\u003ccode\u003e30aca55\u003c/code\u003e\u003c/a\u003e Shortcut traversal of previously visited type hierarchies and harden 1-1 tran...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/debd527b31bb095c26ff6943545cfe01a9045f32\"\u003e\u003ccode\u003edebd527\u003c/code\u003e\u003c/a\u003e Bump actions/checkout from 6.0.2 to 7.0.1 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1910\"\u003e#1910\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/8315af6acb72b5e0d913ad65c4112e828f01d735\"\u003e\u003ccode\u003e8315af6\u003c/code\u003e\u003c/a\u003e Bump step-security/harden-runner from 2.16.1 to 2.19.4 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1909\"\u003e#1909\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/e30e24f4106f6be28b97a34c81bf6d5dccfa34bb\"\u003e\u003ccode\u003ee30e24f\u003c/code\u003e\u003c/a\u003e Bump actions/cache from 5.0.3 to 5.0.5 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1914\"\u003e#1914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/1885f2a1e77d70d3cc57ff935e2b5a4b675cde85\"\u003e\u003ccode\u003e1885f2a\u003c/code\u003e\u003c/a\u003e Bump github/codeql-action from 3.27.6 to 4.36.2 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1916\"\u003e#1916\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/de4ed85e1e4e1e83dcfd90fc791684e3607459fa\"\u003e\u003ccode\u003ede4ed85\u003c/code\u003e\u003c/a\u003e Correct Javadoc of Gradle plugin to avoid errors and warnings during generation.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/5d3a3129ceb66ec0c168c9648757cbffccf18aec\"\u003e\u003ccode\u003e5d3a312\u003c/code\u003e\u003c/a\u003e Bump actions/setup-java from 5.2.0 to 5.4.0 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1918\"\u003e#1918\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/raphw/byte-buddy/compare/byte-buddy-1.18.11...byte-buddy-1.18.13\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `net.bytebuddy:byte-buddy` from 1.18.11 to 1.18.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/releases\"\u003enet.bytebuddy:byte-buddy's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eByte Buddy 1.18.13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eByte Buddy 1.18.12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eAdd support for native attach on Windows for ARM64.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/blob/master/release-notes.md\"\u003enet.bytebuddy:byte-buddy's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003e2. September 2026: version 1.18.13\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e17. July 2026: version 1.18.12\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003cli\u003eSupport dynamic attach on Windows ARM64 by shipping a native \u003ccode\u003eattach_hotspot_windows\u003c/code\u003e library for \u003ccode\u003ewin32-aarch64\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/d4da51578490c841b56b38c9c8fc9d3e8815f046\"\u003e\u003ccode\u003ed4da515\u003c/code\u003e\u003c/a\u003e [publish] Releasing Byte Buddy 1.18.13\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/bb914e33837267c0...\n\n_Description has been truncated_","html_url":"https://github.com/miguelperezcolom/mateu/pull/494","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/miguelperezcolom%2Fmateu/issues/494","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/494/packages"}},{"old_version":"33.6.0-jre","new_version":"33.7.1-jre","update_type":"minor","path":null,"pr_created_at":"2026-09-14T13:24:38.000Z","version_change":"33.6.0-jre → 33.7.1-jre","issue":{"uuid":"5449914034","node_id":"PR_kwDOIatzEs8AAAABDdItIA","number":3382,"state":"open","title":"build(deps): Bump the gradle-version group across 1 directory with 34 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-14T13:24:38.000Z","updated_at":"2026-09-15T22:10:29.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps): Bump","group_name":"gradle-version","update_count":34,"packages":[{"name":"com.diffplug.spotless","old_version":"8.9.0","new_version":"8.10.2"},{"name":"software.amazon.awssdk:arns","old_version":"2.51.2","new_version":"2.54.16"},{"name":"software.amazon.awssdk:auth","old_version":"2.51.2","new_version":"2.54.16"},{"name":"software.amazon.awssdk:s3","old_version":"2.51.2","new_version":"2.54.16"},{"name":"software.amazon.awssdk:s3-transfer-manager","old_version":"2.51.2","new_version":"2.54.16"},{"name":"software.amazon.awssdk:sdk-core","old_version":"2.51.2","new_version":"2.54.16"},{"name":"software.amazon.awssdk:bom","old_version":"2.51.2","new_version":"2.54.16"},{"name":"software.amazon.awssdk.crt:aws-crt","old_version":"0.48.3","new_version":"0.48.4","repository_url":"https://github.com/awslabs/aws-crt-java"},{"name":"software.amazon.msk:aws-msk-iam-auth","old_version":"2.3.7","new_version":"2.3.8","repository_url":"https://github.com/aws/aws-msk-iam-auth"},{"name":"org.bouncycastle:bcpkix-jdk18on","old_version":"1.85","new_version":"1.86","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.bouncycastle:bcprov-jdk18on","old_version":"1.85","new_version":"1.86","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.apache.commons:commons-collections4","old_version":"4.5.0","new_version":"4.6.0"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"com.google.cloud:google-cloud-storage","old_version":"2.71.0","new_version":"2.73.0","repository_url":"https://github.com/googleapis/google-cloud-java"},{"name":"org.apache.httpcomponents.client5:httpclient5","old_version":"5.6.3","new_version":"5.6.4","repository_url":"https://github.com/apache/httpcomponents-client"},{"name":"com.fasterxml.jackson.core:jackson-core","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-core"},{"name":"com.fasterxml.jackson.core:jackson-databind","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-databind"},{"name":"com.fasterxml.jackson.dataformat:jackson-dataformat-smile","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-dataformats-binary"},{"name":"com.fasterxml.jackson.dataformat:jackson-dataformat-yaml","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-dataformats-text"},{"name":"com.fasterxml.jackson:jackson-bom","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-bom"},{"name":"org.json:json","old_version":"20260719","new_version":"20260814","repository_url":"https://github.com/douglascrockford/JSON-java"},{"name":"org.projectlombok:lombok","old_version":"1.18.46","new_version":"1.18.48","repository_url":"https://github.com/projectlombok/lombok"},{"name":"io.opentelemetry:opentelemetry-api","old_version":"1.64.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"io.opentelemetry:opentelemetry-exporter-otlp","old_version":"1.64.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"io.opentelemetry:opentelemetry-sdk","old_version":"1.64.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"io.opentelemetry:opentelemetry-sdk-testing","old_version":"1.64.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"io.opentelemetry:opentelemetry-bom","old_version":"1.64.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"com.google.protobuf:protobuf-java","old_version":"4.35.1","new_version":"4.36.1","repository_url":"https://github.com/protocolbuffers/protobuf"},{"name":"com.google.protobuf:protoc","old_version":"4.35.1","new_version":"4.36.1","repository_url":"https://github.com/protocolbuffers/protobuf"},{"name":"io.projectreactor:reactor-core","old_version":"3.8.6","new_version":"3.8.7","repository_url":"https://github.com/reactor/reactor-core"},{"name":"org.slf4j:slf4j-api","old_version":"2.0.18","new_version":"2.0.19"},{"name":"com.github.luben:zstd-jni","old_version":"1.5.7-12","new_version":"1.5.7-16","repository_url":"https://github.com/luben/zstd-jni"},{"name":"org.jsoup:jsoup","old_version":"1.23.1","new_version":"1.23.2","repository_url":"https://github.com/jhy/jsoup"},{"name":"org.apache.tika:tika-core","old_version":"3.3.2","new_version":"4.0.0","repository_url":"https://github.com/apache/tika"}],"path":null,"ecosystem":"maven"},"body":"Bumps the gradle-version group with 34 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| com.diffplug.spotless | `8.9.0` | `8.10.2` |\n| software.amazon.awssdk:arns | `2.51.2` | `2.54.16` |\n| software.amazon.awssdk:auth | `2.51.2` | `2.54.16` |\n| software.amazon.awssdk:s3 | `2.51.2` | `2.54.16` |\n| software.amazon.awssdk:s3-transfer-manager | `2.51.2` | `2.54.16` |\n| software.amazon.awssdk:sdk-core | `2.51.2` | `2.54.16` |\n| software.amazon.awssdk:bom | `2.51.2` | `2.54.16` |\n| [software.amazon.awssdk.crt:aws-crt](https://github.com/awslabs/aws-crt-java) | `0.48.3` | `0.48.4` |\n| [software.amazon.msk:aws-msk-iam-auth](https://github.com/aws/aws-msk-iam-auth) | `2.3.7` | `2.3.8` |\n| [org.bouncycastle:bcpkix-jdk18on](https://github.com/bcgit/bc-java) | `1.85` | `1.86` |\n| [org.bouncycastle:bcprov-jdk18on](https://github.com/bcgit/bc-java) | `1.85` | `1.86` |\n| org.apache.commons:commons-collections4 | `4.5.0` | `4.6.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [com.google.cloud:google-cloud-storage](https://github.com/googleapis/google-cloud-java) | `2.71.0` | `2.73.0` |\n| [org.apache.httpcomponents.client5:httpclient5](https://github.com/apache/httpcomponents-client) | `5.6.3` | `5.6.4` |\n| [com.fasterxml.jackson.core:jackson-core](https://github.com/FasterXML/jackson-core) | `2.22.1` | `2.22.2` |\n| [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson-databind) | `2.22.1` | `2.22.2` |\n| [com.fasterxml.jackson.dataformat:jackson-dataformat-smile](https://github.com/FasterXML/jackson-dataformats-binary) | `2.22.1` | `2.22.2` |\n| [com.fasterxml.jackson.dataformat:jackson-dataformat-yaml](https://github.com/FasterXML/jackson-dataformats-text) | `2.22.1` | `2.22.2` |\n| [com.fasterxml.jackson:jackson-bom](https://github.com/FasterXML/jackson-bom) | `2.22.1` | `2.22.2` |\n| [org.json:json](https://github.com/douglascrockford/JSON-java) | `20260719` | `20260814` |\n| [org.projectlombok:lombok](https://github.com/projectlombok/lombok) | `1.18.46` | `1.18.48` |\n| [io.opentelemetry:opentelemetry-api](https://github.com/open-telemetry/opentelemetry-java) | `1.64.0` | `1.65.0` |\n| [io.opentelemetry:opentelemetry-exporter-otlp](https://github.com/open-telemetry/opentelemetry-java) | `1.64.0` | `1.65.0` |\n| [io.opentelemetry:opentelemetry-sdk](https://github.com/open-telemetry/opentelemetry-java) | `1.64.0` | `1.65.0` |\n| [io.opentelemetry:opentelemetry-sdk-testing](https://github.com/open-telemetry/opentelemetry-java) | `1.64.0` | `1.65.0` |\n| [io.opentelemetry:opentelemetry-bom](https://github.com/open-telemetry/opentelemetry-java) | `1.64.0` | `1.65.0` |\n| [com.google.protobuf:protobuf-java](https://github.com/protocolbuffers/protobuf) | `4.35.1` | `4.36.1` |\n| [com.google.protobuf:protoc](https://github.com/protocolbuffers/protobuf) | `4.35.1` | `4.36.1` |\n| [io.projectreactor:reactor-core](https://github.com/reactor/reactor-core) | `3.8.6` | `3.8.7` |\n| org.slf4j:slf4j-api | `2.0.18` | `2.0.19` |\n| [com.github.luben:zstd-jni](https://github.com/luben/zstd-jni) | `1.5.7-12` | `1.5.7-16` |\n| [org.jsoup:jsoup](https://github.com/jhy/jsoup) | `1.23.1` | `1.23.2` |\n| [org.apache.tika:tika-core](https://github.com/apache/tika) | `3.3.2` | `4.0.0` |\n\n\nUpdates `com.diffplug.spotless` from 8.9.0 to 8.10.2\n\nUpdates `software.amazon.awssdk:arns` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:auth` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:s3` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:s3-transfer-manager` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:sdk-core` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:bom` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:auth` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk.crt:aws-crt` from 0.48.3 to 0.48.4\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/awslabs/aws-crt-java/releases\"\u003esoftware.amazon.awssdk.crt:aws-crt's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev0.48.4\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003elatest submodules by \u003ca href=\"https://github.com/TingDaoK\"\u003e\u003ccode\u003e@​TingDaoK\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/awslabs/aws-crt-java/pull/1010\"\u003eawslabs/aws-crt-java#1010\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/awslabs/aws-crt-java/compare/v0.48.3...v0.48.4\"\u003ehttps://github.com/awslabs/aws-crt-java/compare/v0.48.3...v0.48.4\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/awslabs/aws-crt-java/commit/c80c559c6c966e1209b4db44b6213ea5b1a08962\"\u003e\u003ccode\u003ec80c559\u003c/code\u003e\u003c/a\u003e latest submodules (\u003ca href=\"https://redirect.github.com/awslabs/aws-crt-java/issues/1010\"\u003e#1010\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/awslabs/aws-crt-java/compare/v0.48.3...v0.48.4\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `software.amazon.msk:aws-msk-iam-auth` from 2.3.7 to 2.3.8\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-msk-iam-auth/releases\"\u003esoftware.amazon.msk:aws-msk-iam-auth's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.3.8\u003c/h2\u003e\n\u003ch2\u003eWhat's changed in 2.3.8\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix signing-region resolution for cluster names containing an AWS region id: the region is now anchored to the endpoint DNS suffix instead of matched as an unanchored substring (\u003ca href=\"https://redirect.github.com/aws/aws-msk-iam-auth/issues/245\"\u003e#245\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUpgrade the AWS SDK BOM from 2.44.12 to 2.51.2\u003c/li\u003e\n\u003cli\u003eUpdate \u003ccode\u003ejackson-databind\u003c/code\u003e to 2.22.1, resolving CVE-2026-54512, CVE-2026-54513, CVE-2026-54514 and CVE-2026-54515\u003c/li\u003e\n\u003cli\u003eSwitch the synchronous HTTP client from \u003ccode\u003eapache-client\u003c/code\u003e to \u003ccode\u003eapache5-client\u003c/code\u003e, replacing Apache HttpClient 4.x with 5.x and removing \u003ccode\u003ecommons-logging\u003c/code\u003e from the dependency tree\u003c/li\u003e\n\u003cli\u003eConstrain \u003ccode\u003ehttpclient5\u003c/code\u003e to 5.6.4, resolving CVE-2026-64607 and CVE-2026-71290\u003c/li\u003e\n\u003cli\u003eExclude the unused \u003ccode\u003enetty-nio-client\u003c/code\u003e asynchronous HTTP client, which this library never instantiates, reducing the uber jar from roughly 14.4 MB to 10.2 MB and removing all 36 CVEs reported against Netty 4.1.133.Final across its ten modules\u003c/li\u003e\n\u003cli\u003eUpdate \u003ccode\u003eslf4j-api\u003c/code\u003e to 1.7.36\u003c/li\u003e\n\u003cli\u003eRaise the \u003ccode\u003ekafka-clients\u003c/code\u003e compile floor from 2.8.1 to 3.9.2\u003c/li\u003e\n\u003cli\u003eUpgrade the OWASP \u003ccode\u003edependency-check\u003c/code\u003e plugin from 7.1.0.1 to 13.0.0. Releases 9.0.0 and later use the NVD API in place of the retired NVD data feeds, which the previous version could no longer reach\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eMaven Central\u003c/h2\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n    \u0026lt;groupId\u0026gt;software.amazon.msk\u0026lt;/groupId\u0026gt;\r\n    \u0026lt;artifactId\u0026gt;aws-msk-iam-auth\u0026lt;/artifactId\u0026gt;\r\n    \u0026lt;version\u0026gt;2.3.8\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003cp\u003eThe attached \u003ccode\u003eaws-msk-iam-auth-2.3.8-all.jar\u003c/code\u003e is the self-contained uber jar for use on the Kafka client classpath.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/a9850eaa8a233a89a6cd69800ec6ab333787a21e\"\u003e\u003ccode\u003ea9850ea\u003c/code\u003e\u003c/a\u003e chore: Prepare release 2.3.8 (\u003ca href=\"https://redirect.github.com/aws/aws-msk-iam-auth/issues/250\"\u003e#250\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/e471175f7303c1a6af75a90092c5c908e3d2086e\"\u003e\u003ccode\u003ee471175\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/aws/aws-msk-iam-auth/issues/249\"\u003e#249\u003c/a\u003e from aws/fix/kafka-clients-compile-floor\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/10b73f49e1ca37a2c03635a0389ee16607b117be\"\u003e\u003ccode\u003e10b73f4\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/aws/aws-msk-iam-auth/issues/247\"\u003e#247\u003c/a\u003e from aws/fix/anchored-region-resolution\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/b1900152394cd30876c54d621f85a982aa8fd70a\"\u003e\u003ccode\u003eb190015\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/aws/aws-msk-iam-auth/issues/244\"\u003e#244\u003c/a\u003e from aws/fix/dependency-currency-2.3.8\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/db6eda1057319d5e536412f3f47a9b0ff49693a2\"\u003e\u003ccode\u003edb6eda1\u003c/code\u003e\u003c/a\u003e docs: Document only the NVD_API_KEY environment variable for the scan key\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/89dc1206ba761673c02f41dbb6f6366e23d42325\"\u003e\u003ccode\u003e89dc120\u003c/code\u003e\u003c/a\u003e fix: Publish the httpclient5 floor in the POM and exclude apache-client\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/462873bdfc90eeb1863c521646195b663c504819\"\u003e\u003ccode\u003e462873b\u003c/code\u003e\u003c/a\u003e fix: Anchor signing-region resolution to the endpoint DNS suffix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/6a8466058e557e11d4d7c99406338af62555035c\"\u003e\u003ccode\u003e6a84660\u003c/code\u003e\u003c/a\u003e fix: Raise the kafka-clients compile floor to 3.9.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/4a9cb314828a03ef8a6bbc56a00708ac1d7b89a7\"\u003e\u003ccode\u003e4a9cb31\u003c/code\u003e\u003c/a\u003e chore: Tighten build script comments\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-msk-iam-auth/commit/673cf0e7e5eecc8d941614adbd97db338e46e5c2\"\u003e\u003ccode\u003e673cf0e\u003c/code\u003e\u003c/a\u003e fix: Restore the OWASP dependency-check scanner\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-msk-iam-auth/compare/v2.3.7...v2.3.8\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `software.amazon.awssdk:s3` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:s3-transfer-manager` from 2.51.2 to 2.54.16\n\nUpdates `software.amazon.awssdk:sdk-core` from 2.51.2 to 2.54.16\n\nUpdates `org.bouncycastle:bcpkix-jdk18on` from 1.85 to 1.86\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/bcgit/bc-java/blob/main/docs/releasenotes.md\"\u003eorg.bouncycastle:bcpkix-jdk18on's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eBouncy Castle Crypto Package - Release Notes\u003c/h1\u003e\n\u003ch2\u003e1.0 Introduction\u003c/h2\u003e\n\u003cp\u003eThe Bouncy Castle Crypto package is a Java implementation of cryptographic algorithms. The package is organised so that it contains a light-weight API suitable for use in any environment (including the J2ME) with the additional infrastructure to conform the algorithms to the JCE framework.\u003c/p\u003e\n\u003ch2\u003e2.0 Release History\u003c/h2\u003e\n\u003cp\u003e\u003c!-- raw HTML omitted --\u003e\u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003ch3\u003e2.1.1 Version\u003c/h3\u003e\n\u003cp\u003eRelease: 1.87\u003cbr /\u003e\nDate: 2026, TBD\u003c/p\u003e\n\u003ch3\u003e2.1.2 Defects Fixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eA KeyAgreement asked for its shared secret before doPhase returned data rather than refusing. javax.crypto.KeyAgreement specifies IllegalStateException for that state, but nothing in the provider tracked it, so each SPI handed back whatever its result field held: for Diffie-Hellman that was the private value itself - engineInit seeded result with x, so generateSecret() returned the private exponent padded to the prime's length and generateSecret(\u0026quot;AES\u0026quot;) an all-zero key taken from that padding - while ECDH returned null and its named-algorithm overload raised NullPointerException. BaseAgreementSpi now records whether a doPhase has completed the agreement since the last init and refuses the request with an IllegalStateException naming the algorithm, so every family in the provider - DH, ECDH and ECMQV, the SM2 exchange, both ECGOST families, XDH, SM9 and NewHope - answers the same way, and the DH SPI no longer holds the private value in that field at all.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMac.getInstance and KeyGenerator.getInstance by the HMAC SHA-512/224 and SHA-512/256 object identifiers (1.2.840.113549.2.12 and .13) failed, although the same algorithms resolved by name and the matching SecretKeyFactory aliases were registered: the SHA512 mappings called addHMACAlgorithm for the two truncated variants without the addHMACAlias that registers their OIDs against Mac and KeyGenerator. Both are now aliased, as every other HMAC in that class already was.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA KTSParameterSpec naming an HKDF key-derivation function with a parameters field - a form the provider does not service - was accepted at Cipher init and then failed out of wrap or unwrap with an unchecked IllegalStateException neither method declares. The KTS key-wrapping Ciphers (ML-KEM, Classic McEliece, FrodoKEM, the composite KEM and RSA-KEM) now validate the spec's KDF when they take it, reporting an unserviceable one as the InvalidAlgorithmParameterException engineInit declares, which is what the javax.crypto.KEM services already did through KdfUtil.resolveKemSpec.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA DTLS handshake deadlocked when a handshake message ahead of the peer's ChangeCipherSpec (a client's CertificateVerify, say) was lost while the ChangeCipherSpec and Finished behind it arrived: the record layer moved its read epoch on at the ChangeCipherSpec and then discarded every retransmission of the lost message as belonging to the old epoch, whose records are only accepted once the handshake has completed. Each side then waited on the other until a handshake timeout, if one was configured, ended it. Every client-authenticated handshake, and every handshake in which the server issues a NewSessionTicket, was exposed. Until the handshake completes, handshake records from the current epoch are now still accepted after the read epoch has moved on, and each message is checked against the epoch of the record that carried it. The DTLS loopback tests now run their handshakes at 10% datagram loss in each direction, with a client-authenticated handshake at 25%.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe lightweight SubjectPublicKeyInfoFactory and PrivateKeyInfoFactory encoded a GOST R 34.10-2012 key on one of the legacy CryptoPro curves under id-GostR3410-2001, although RFC 9215 sec. 4.2 permits those curves for 2012 keys. The digestParamSet now decides: a GOST R 34.11-94 parameter set means 2001 (RFC 4491 sec. 2.3.2), a GOST R 34.11-2012 digest or none means 2012 with 256/512 taken from the curve field size, and any other value is rejected. GOST3410PublicKeyAlgParameters treats digestParamSet as OPTIONAL on both read and write per RFC 9215, and PrivateKeyInfoFactory now passes attributes through for ECGOST3410 keys (bc-csharp github \u003ca href=\"https://redirect.github.com/bcgit/bc-java/issues/707\"\u003e#707\u003c/a\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe name-constraint host canonicalisation removed a single RFC 1034 root-label dot, the only empty label a name may legally carry, but nothing refused the ones that are not legal: a dNSName, rfc822Name host or uniformResourceIdentifier host such as \u0026quot;example.com..\u0026quot; kept a phantom empty label after the strip and so matched no constraint at all, escaping an excluded subtree naming the host it appears to carry. A tested name whose host carries an empty label - a second trailing dot, a doubled dot or a leading dot - is now refused outright wherever a constraint of that type is in force, rather than canonicalised into a name it is not: removing the extra dots would decide on the caller's behalf that \u0026quot;example.com..\u0026quot; names example.com, which is not how a consumer resolving or comparing the name reads it, and refusing fails closed in both directions where canonicalising would newly admit such a name under a permitted subtree. The single trailing dot is canonicalised as before, a bare \u0026quot;.\u0026quot; remains the root label rather than an empty one, and the guard is scoped to the host, so the doubled dot a quoted local part may legally carry is unaffected. Constraints are untouched - one may still begin with a dot, which is how this implementation spells \u0026quot;subdomains only\u0026quot; (github PR \u003ca href=\"https://redirect.github.com/bcgit/bc-java/issues/2436\"\u003e#2436\u003c/a\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e2.1.3 Additional Features and Functionality\u003c/h3\u003e\n\u003ch3\u003e2.1.4 Additional Notes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe sources and javadoc jars of the Ant-built distributions (jdk14, jdk15to18 and jdk13) no longer carry test material. Each module's javadoc target copies the package documentation it needs - org/bouncycastle/\u003c!-- raw HTML omitted --\u003e/\u003cstrong\u003e/*.html - back into the module source directory that has already been compiled from, and zip-src zips that directory afterwards, so every test package's package.html arrived in the sources jar by that route; javadoc-util additionally copied org/bouncycastle/asn1/isismtt/\u003c/strong\u003e/*.java, which put test classes into the bcutil javadoc as generated pages, and javadoc-pg deliberately copied the gpg and bcpg test sources in order to document them. Separately the source copies excluded test material only one directory deep and only for *.java, because Ant reads ** as an any-depth wildcard just where it is a whole path segment, so anything nested further or with another extension - the PEM certificate fixtures under org/bouncycastle/est/test/san corrected in 1.86, and an ICAO master list under org/bouncycastle/asn1/icao/test - went through. The source and javadoc copies of every module now exclude test directories at any depth, and javadoc-pg no longer documents the test packages. org.bouncycastle.util.test is unaffected and still ships in the bcprov binary, sources and javadoc jars, as it does from the Gradle build: it is the SimpleTest framework the light-weight API's own test classes are written against, not test material of the distribution. No binary changes - the classes and resources of every Ant-built jar are identical to those of the 1.86 release - and the Gradle-built jdk18on artifacts never carried any of this.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003c!-- raw HTML omitted --\u003e\u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003ch3\u003e2.2.1 Version\u003c/h3\u003e\n\u003cp\u003eRelease: 1.86\u003cbr /\u003e\nDate: 2026, 11th September.\u003c/p\u003e\n\u003ch3\u003e2.2.2 Defects Fixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe high-level OpenPGP API let a subkey inherit the primary key's Key Flags when its own Subkey Binding signature carried none, so a subkey bound with no flags counted as signing-capable for one check while the cross-certification check RFC 9580 sec. 5.2.1.8 requires of a signing subkey saw none and was skipped - letting a third party's public signing subkey be bound to an attacker's primary key and that party's genuine signatures verify under the attacker's identity. Flags are no longer inherited (CVE-2026-71887).\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API used a version 6 key carrying no valid Direct Key signature, falling back to the primary user ID binding as it correctly does for version 4. RFC 9580 sec. 5.2.3.10 requires the opposite, and since a v6 certificate carries its expiration and preferences there, stripping that one packet silently dropped them - the certificate went on offering subkeys of a key set to expire. isBoundBy now requires a valid Direct Key self-signature before any v6 component is treated as bound; version 4 is unaffected.\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API ignored the OpenPGPPolicy a caller had configured when verifying signatures on an inline message: OpenPGPMessageInputStream took the policy from the implementation's own default rather than from the processor doing the verification, so a hardened policy had no bearing on acceptance and getSignatures() reported isTestedCorrect() true for a signature that policy rejects. Both the one-pass and prefixed-signature paths now read the configured policy.\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API went on offering the subkeys of a certificate whose primary key had expired, the binding check evaluating only a subkey's own Subkey Binding signature - so the certificate contradicted itself, reporting the primary unbound while still handing out its subkeys. The primary key's expiration now applies to the whole certificate, as GnuPG and Sequoia treat it, and a subkey no longer inherits the primary's validity period, which RFC 9580 sec. 5.2.3.13 counts from the creation time of the key the carrying signature is made on.\u003c/li\u003e\n\u003cli\u003eOpenPGPDocumentSignature.isValidAt(Date) reported a data signature as valid past the signature's own Signature Expiration Time (RFC 9580 sec. 5.2.3.18): it checked that the signature was correct and the issuing key bound and signing-capable at that date, but never the signature's own expiration, so it disagreed with isEffectiveAt() on the same object and with its own javadoc. isValid() and isValid(policy), which evaluate at creation time, are unchanged.\u003c/li\u003e\n\u003cli\u003eThe lightweight LMSSigner and HSSSigner refused a key wrapped in ParametersWithRandom, which is how BcContentSignerBuilder passes one once setSecureRandom() has been called, so BcHssLmsContentSignerBuilder failed with \u0026quot;Incorrect Key Parameters\u0026quot; and the two signers raised ClassCastException. All three now unwrap it, as the ML-DSA and SLH-DSA signers already did; the random is accepted and ignored, LMS deriving its message randomiser deterministically from the seed and one-time index.\u003c/li\u003e\n\u003cli\u003eLMS signature verification did not apply two checks RFC 8554 sec. 5.4.2 requires before a signature is processed: step 2g, refusing a signature whose LMS typecode is not the public key's - without it a signature claiming a height-25 parameter set drove a 25-level computation against a height-5 key - and step 2i, refusing a leaf number outside the tree. Neither was a forgery, but both are attacker-chosen work the specification says to refuse up front. Both are now checked.\u003c/li\u003e\n\u003cli\u003eThe LMS and HSS key parameter classes now apply at construction the checks their decoders apply, so a key built directly cannot be one the decoder would refuse: LMSPrivateKeyParameters accepted an identifier of any length where the decoder reads exactly 16 bytes, and left q, maxQ and the seed length unchecked, while HSSPrivateKeyParameters checked neither its level count nor that it had a component key and chaining signature per level. The decoders now report a bad version or seed length as IOException rather than IllegalStateException.\u003c/li\u003e\n\u003cli\u003eIn the LMS JCE layer, LMSKeyGenParameterSpec.fromNames knew all twenty LMS parameter-set names but only four of the sixteen LM-OTS ones, so none of the SP 800-208 n24 or SHAKE sets could be named; all sixteen are now present. initialize(int, SecureRandom) now reports InvalidParameterException as the JCA specifies, and BCLMSPrivateKey.getIndex takes the exhaustion check and the index read under one monitor.\u003c/li\u003e\n\u003cli\u003eKeyPairGenerator.initialize(int, SecureRandom) is documented to raise InvalidParameterException when the key size is not one the generator supports, and thirty of them raised a bare IllegalArgumentException instead. Every generator in BCPQC, and the ML-DSA, ML-KEM, SLH-DSA, Classic McEliece, FrodoKEM, NTRU and composite ones in the BC provider, now raise the documented type - which extends IllegalArgumentException, so existing catches still match. The two RSA generators translate the lightweight refusal through a new SecurityExceptions.invalidParameterException factory.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/bcgit/bc-java/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.bouncycastle:bcprov-jdk18on` from 1.85 to 1.86\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/bcgit/bc-java/blob/main/docs/releasenotes.md\"\u003eorg.bouncycastle:bcprov-jdk18on's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eBouncy Castle Crypto Package - Release Notes\u003c/h1\u003e\n\u003ch2\u003e1.0 Introduction\u003c/h2\u003e\n\u003cp\u003eThe Bouncy Castle Crypto package is a Java implementation of cryptographic algorithms. The package is organised so that it contains a light-weight API suitable for use in any environment (including the J2ME) with the additional infrastructure to conform the algorithms to the JCE framework.\u003c/p\u003e\n\u003ch2\u003e2.0 Release History\u003c/h2\u003e\n\u003cp\u003e\u003c!-- raw HTML omitted --\u003e\u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003ch3\u003e2.1.1 Version\u003c/h3\u003e\n\u003cp\u003eRelease: 1.87\u003cbr /\u003e\nDate: 2026, TBD\u003c/p\u003e\n\u003ch3\u003e2.1.2 Defects Fixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eA KeyAgreement asked for its shared secret before doPhase returned data rather than refusing. javax.crypto.KeyAgreement specifies IllegalStateException for that state, but nothing in the provider tracked it, so each SPI handed back whatever its result field held: for Diffie-Hellman that was the private value itself - engineInit seeded result with x, so generateSecret() returned the private exponent padded to the prime's length and generateSecret(\u0026quot;AES\u0026quot;) an all-zero key taken from that padding - while ECDH returned null and its named-algorithm overload raised NullPointerException. BaseAgreementSpi now records whether a doPhase has completed the agreement since the last init and refuses the request with an IllegalStateException naming the algorithm, so every family in the provider - DH, ECDH and ECMQV, the SM2 exchange, both ECGOST families, XDH, SM9 and NewHope - answers the same way, and the DH SPI no longer holds the private value in that field at all.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMac.getInstance and KeyGenerator.getInstance by the HMAC SHA-512/224 and SHA-512/256 object identifiers (1.2.840.113549.2.12 and .13) failed, although the same algorithms resolved by name and the matching SecretKeyFactory aliases were registered: the SHA512 mappings called addHMACAlgorithm for the two truncated variants without the addHMACAlias that registers their OIDs against Mac and KeyGenerator. Both are now aliased, as every other HMAC in that class already was.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA KTSParameterSpec naming an HKDF key-derivation function with a parameters field - a form the provider does not service - was accepted at Cipher init and then failed out of wrap or unwrap with an unchecked IllegalStateException neither method declares. The KTS key-wrapping Ciphers (ML-KEM, Classic McEliece, FrodoKEM, the composite KEM and RSA-KEM) now validate the spec's KDF when they take it, reporting an unserviceable one as the InvalidAlgorithmParameterException engineInit declares, which is what the javax.crypto.KEM services already did through KdfUtil.resolveKemSpec.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA DTLS handshake deadlocked when a handshake message ahead of the peer's ChangeCipherSpec (a client's CertificateVerify, say) was lost while the ChangeCipherSpec and Finished behind it arrived: the record layer moved its read epoch on at the ChangeCipherSpec and then discarded every retransmission of the lost message as belonging to the old epoch, whose records are only accepted once the handshake has completed. Each side then waited on the other until a handshake timeout, if one was configured, ended it. Every client-authenticated handshake, and every handshake in which the server issues a NewSessionTicket, was exposed. Until the handshake completes, handshake records from the current epoch are now still accepted after the read epoch has moved on, and each message is checked against the epoch of the record that carried it. The DTLS loopback tests now run their handshakes at 10% datagram loss in each direction, with a client-authenticated handshake at 25%.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe lightweight SubjectPublicKeyInfoFactory and PrivateKeyInfoFactory encoded a GOST R 34.10-2012 key on one of the legacy CryptoPro curves under id-GostR3410-2001, although RFC 9215 sec. 4.2 permits those curves for 2012 keys. The digestParamSet now decides: a GOST R 34.11-94 parameter set means 2001 (RFC 4491 sec. 2.3.2), a GOST R 34.11-2012 digest or none means 2012 with 256/512 taken from the curve field size, and any other value is rejected. GOST3410PublicKeyAlgParameters treats digestParamSet as OPTIONAL on both read and write per RFC 9215, and PrivateKeyInfoFactory now passes attributes through for ECGOST3410 keys (bc-csharp github \u003ca href=\"https://redirect.github.com/bcgit/bc-java/issues/707\"\u003e#707\u003c/a\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe name-constraint host canonicalisation removed a single RFC 1034 root-label dot, the only empty label a name may legally carry, but nothing refused the ones that are not legal: a dNSName, rfc822Name host or uniformResourceIdentifier host such as \u0026quot;example.com..\u0026quot; kept a phantom empty label after the strip and so matched no constraint at all, escaping an excluded subtree naming the host it appears to carry. A tested name whose host carries an empty label - a second trailing dot, a doubled dot or a leading dot - is now refused outright wherever a constraint of that type is in force, rather than canonicalised into a name it is not: removing the extra dots would decide on the caller's behalf that \u0026quot;example.com..\u0026quot; names example.com, which is not how a consumer resolving or comparing the name reads it, and refusing fails closed in both directions where canonicalising would newly admit such a name under a permitted subtree. The single trailing dot is canonicalised as before, a bare \u0026quot;.\u0026quot; remains the root label rather than an empty one, and the guard is scoped to the host, so the doubled dot a quoted local part may legally carry is unaffected. Constraints are untouched - one may still begin with a dot, which is how this implementation spells \u0026quot;subdomains only\u0026quot; (github PR \u003ca href=\"https://redirect.github.com/bcgit/bc-java/issues/2436\"\u003e#2436\u003c/a\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e2.1.3 Additional Features and Functionality\u003c/h3\u003e\n\u003ch3\u003e2.1.4 Additional Notes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe sources and javadoc jars of the Ant-built distributions (jdk14, jdk15to18 and jdk13) no longer carry test material. Each module's javadoc target copies the package documentation it needs - org/bouncycastle/\u003c!-- raw HTML omitted --\u003e/\u003cstrong\u003e/*.html - back into the module source directory that has already been compiled from, and zip-src zips that directory afterwards, so every test package's package.html arrived in the sources jar by that route; javadoc-util additionally copied org/bouncycastle/asn1/isismtt/\u003c/strong\u003e/*.java, which put test classes into the bcutil javadoc as generated pages, and javadoc-pg deliberately copied the gpg and bcpg test sources in order to document them. Separately the source copies excluded test material only one directory deep and only for *.java, because Ant reads ** as an any-depth wildcard just where it is a whole path segment, so anything nested further or with another extension - the PEM certificate fixtures under org/bouncycastle/est/test/san corrected in 1.86, and an ICAO master list under org/bouncycastle/asn1/icao/test - went through. The source and javadoc copies of every module now exclude test directories at any depth, and javadoc-pg no longer documents the test packages. org.bouncycastle.util.test is unaffected and still ships in the bcprov binary, sources and javadoc jars, as it does from the Gradle build: it is the SimpleTest framework the light-weight API's own test classes are written against, not test material of the distribution. No binary changes - the classes and resources of every Ant-built jar are identical to those of the 1.86 release - and the Gradle-built jdk18on artifacts never carried any of this.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003c!-- raw HTML omitted --\u003e\u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003ch3\u003e2.2.1 Version\u003c/h3\u003e\n\u003cp\u003eRelease: 1.86\u003cbr /\u003e\nDate: 2026, 11th September.\u003c/p\u003e\n\u003ch3\u003e2.2.2 Defects Fixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe high-level OpenPGP API let a subkey inherit the primary key's Key Flags when its own Subkey Binding signature carried none, so a subkey bound with no flags counted as signing-capable for one check while the cross-certification check RFC 9580 sec. 5.2.1.8 requires of a signing subkey saw none and was skipped - letting a third party's public signing subkey be bound to an attacker's primary key and that party's genuine signatures verify under the attacker's identity. Flags are no longer inherited (CVE-2026-71887).\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API used a version 6 key carrying no valid Direct Key signature, falling back to the primary user ID binding as it correctly does for version 4. RFC 9580 sec. 5.2.3.10 requires the opposite, and since a v6 certificate carries its expiration and preferences there, stripping that one packet silently dropped them - the certificate went on offering subkeys of a key set to expire. isBoundBy now requires a valid Direct Key self-signature before any v6 component is treated as bound; version 4 is unaffected.\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API ignored the OpenPGPPolicy a caller had configured when verifying signatures on an inline message: OpenPGPMessageInputStream took the policy from the implementation's own default rather than from the processor doing the verification, so a hardened policy had no bearing on acceptance and getSignatures() reported isTestedCorrect() true for a signature that policy rejects. Both the one-pass and prefixed-signature paths now read the configured policy.\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API went on offering the subkeys of a certificate whose primary key had expired, the binding check evaluating only a subkey's own Subkey Binding signature - so the certificate contradicted itself, reporting the primary unbound while still handing out its subkeys. The primary key's expiration now applies to the whole certificate, as GnuPG and Sequoia treat it, and a subkey no longer inherits the primary's validity period, which RFC 9580 sec. 5.2.3.13 counts from the creation time of the key the carrying signature is made on.\u003c/li\u003e\n\u003cli\u003eOpenPGPDocumentSignature.isValidAt(Date) reported a data signature as valid past the signature's own Signature Expiration Time (RFC 9580 sec. 5.2.3.18): it checked that the signature was correct and the issuing key bound and signing-capable at that date, but never the signature's own expiration, so it disagreed with isEffectiveAt() on the same object and with its own javadoc. isValid() and isValid(policy), which evaluate at creation time, are unchanged.\u003c/li\u003e\n\u003cli\u003eThe lightweight LMSSigner and HSSSigner refused a key wrapped in ParametersWithRandom, which is how BcContentSignerBuilder passes one once setSecureRandom() has been called, so BcHssLmsContentSignerBuilder failed with \u0026quot;Incorrect Key Parameters\u0026quot; and the two signers raised ClassCastException. All three now unwrap it, as the ML-DSA and SLH-DSA signers already did; the random is accepted and ignored, LMS deriving its message randomiser deterministically from the seed and one-time index.\u003c/li\u003e\n\u003cli\u003eLMS signature verification did not apply two checks RFC 8554 sec. 5.4.2 requires before a signature is processed: step 2g, refusing a signature whose LMS typecode is not the public key's - without it a signature claiming a height-25 parameter set drove a 25-level computation against a height-5 key - and step 2i, refusing a leaf number outside the tree. Neither was a forgery, but both are attacker-chosen work the specification says to refuse up front. Both are now checked.\u003c/li\u003e\n\u003cli\u003eThe LMS and HSS key parameter classes now apply at construction the checks their decoders apply, so a key built directly cannot be one the decoder would refuse: LMSPrivateKeyParameters accepted an identifier of any length where the decoder reads exactly 16 bytes, and left q, maxQ and the seed length unchecked, while HSSPrivateKeyParameters checked neither its level count nor that it had a component key and chaining signature per level. The decoders now report a bad version or seed length as IOException rather than IllegalStateException.\u003c/li\u003e\n\u003cli\u003eIn the LMS JCE layer, LMSKeyGenParameterSpec.fromNames knew all twenty LMS parameter-set names but only four of the sixteen LM-OTS ones, so none of the SP 800-208 n24 or SHAKE sets could be named; all sixteen are now present. initialize(int, SecureRandom) now reports InvalidParameterException as the JCA specifies, and BCLMSPrivateKey.getIndex takes the exhaustion check and the index read under one monitor.\u003c/li\u003e\n\u003cli\u003eKeyPairGenerator.initialize(int, SecureRandom) is documented to raise InvalidParameterException when the key size is not one the generator supports, and thirty of them raised a bare IllegalArgumentException instead. Every generator in BCPQC, and the ML-DSA, ML-KEM, SLH-DSA, Classic McEliece, FrodoKEM, NTRU and composite ones in the BC provider, now raise the documented type - which extends IllegalArgumentException, so existing catches still match. The two RSA generators translate the lightweight refusal through a new SecurityExceptions.invalidParameterException factory.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/bcgit/bc-java/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.bouncycastle:bcprov-jdk18on` from 1.85 to 1.86\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/bcgit/bc-java/blob/main/docs/releasenotes.md\"\u003eorg.bouncycastle:bcprov-jdk18on's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eBouncy Castle Crypto Package - Release Notes\u003c/h1\u003e\n\u003ch2\u003e1.0 Introduction\u003c/h2\u003e\n\u003cp\u003eThe Bouncy Castle Crypto package is a Java implementation of cryptographic algorithms. The package is organised so that it contains a light-weight API suitable for use in any environment (including the J2ME) with the additional infrastructure to conform the algorithms to the JCE framework.\u003c/p\u003e\n\u003ch2\u003e2.0 Release History\u003c/h2\u003e\n\u003cp\u003e\u003c!-- raw HTML omitted --\u003e\u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003ch3\u003e2.1.1 Version\u003c/h3\u003e\n\u003cp\u003eRelease: 1.87\u003cbr /\u003e\nDate: 2026, TBD\u003c/p\u003e\n\u003ch3\u003e2.1.2 Defects Fixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eA KeyAgreement asked for its shared secret before doPhase returned data rather than refusing. javax.crypto.KeyAgreement specifies IllegalStateException for that state, but nothing in the provider tracked it, so each SPI handed back whatever its result field held: for Diffie-Hellman that was the private value itself - engineInit seeded result with x, so generateSecret() returned the private exponent padded to the prime's length and generateSecret(\u0026quot;AES\u0026quot;) an all-zero key taken from that padding - while ECDH returned null and its named-algorithm overload raised NullPointerException. BaseAgreementSpi now records whether a doPhase has completed the agreement since the last init and refuses the request with an IllegalStateException naming the algorithm, so every family in the provider - DH, ECDH and ECMQV, the SM2 exchange, both ECGOST families, XDH, SM9 and NewHope - answers the same way, and the DH SPI no longer holds the private value in that field at all.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eMac.getInstance and KeyGenerator.getInstance by the HMAC SHA-512/224 and SHA-512/256 object identifiers (1.2.840.113549.2.12 and .13) failed, although the same algorithms resolved by name and the matching SecretKeyFactory aliases were registered: the SHA512 mappings called addHMACAlgorithm for the two truncated variants without the addHMACAlias that registers their OIDs against Mac and KeyGenerator. Both are now aliased, as every other HMAC in that class already was.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA KTSParameterSpec naming an HKDF key-derivation function with a parameters field - a form the provider does not service - was accepted at Cipher init and then failed out of wrap or unwrap with an unchecked IllegalStateException neither method declares. The KTS key-wrapping Ciphers (ML-KEM, Classic McEliece, FrodoKEM, the composite KEM and RSA-KEM) now validate the spec's KDF when they take it, reporting an unserviceable one as the InvalidAlgorithmParameterException engineInit declares, which is what the javax.crypto.KEM services already did through KdfUtil.resolveKemSpec.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA DTLS handshake deadlocked when a handshake message ahead of the peer's ChangeCipherSpec (a client's CertificateVerify, say) was lost while the ChangeCipherSpec and Finished behind it arrived: the record layer moved its read epoch on at the ChangeCipherSpec and then discarded every retransmission of the lost message as belonging to the old epoch, whose records are only accepted once the handshake has completed. Each side then waited on the other until a handshake timeout, if one was configured, ended it. Every client-authenticated handshake, and every handshake in which the server issues a NewSessionTicket, was exposed. Until the handshake completes, handshake records from the current epoch are now still accepted after the read epoch has moved on, and each message is checked against the epoch of the record that carried it. The DTLS loopback tests now run their handshakes at 10% datagram loss in each direction, with a client-authenticated handshake at 25%.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe lightweight SubjectPublicKeyInfoFactory and PrivateKeyInfoFactory encoded a GOST R 34.10-2012 key on one of the legacy CryptoPro curves under id-GostR3410-2001, although RFC 9215 sec. 4.2 permits those curves for 2012 keys. The digestParamSet now decides: a GOST R 34.11-94 parameter set means 2001 (RFC 4491 sec. 2.3.2), a GOST R 34.11-2012 digest or none means 2012 with 256/512 taken from the curve field size, and any other value is rejected. GOST3410PublicKeyAlgParameters treats digestParamSet as OPTIONAL on both read and write per RFC 9215, and PrivateKeyInfoFactory now passes attributes through for ECGOST3410 keys (bc-csharp github \u003ca href=\"https://redirect.github.com/bcgit/bc-java/issues/707\"\u003e#707\u003c/a\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe name-constraint host canonicalisation removed a single RFC 1034 root-label dot, the only empty label a name may legally carry, but nothing refused the ones that are not legal: a dNSName, rfc822Name host or uniformResourceIdentifier host such as \u0026quot;example.com..\u0026quot; kept a phantom empty label after the strip and so matched no constraint at all, escaping an excluded subtree naming the host it appears to carry. A tested name whose host carries an empty label - a second trailing dot, a doubled dot or a leading dot - is now refused outright wherever a constraint of that type is in force, rather than canonicalised into a name it is not: removing the extra dots would decide on the caller's behalf that \u0026quot;example.com..\u0026quot; names example.com, which is not how a consumer resolving or comparing the name reads it, and refusing fails closed in both directions where canonicalising would newly admit such a name under a permitted subtree. The single trailing dot is canonicalised as before, a bare \u0026quot;.\u0026quot; remains the root label rather than an empty one, and the guard is scoped to the host, so the doubled dot a quoted local part may legally carry is unaffected. Constraints are untouched - one may still begin with a dot, which is how this implementation spells \u0026quot;subdomains only\u0026quot; (github PR \u003ca href=\"https://redirect.github.com/bcgit/bc-java/issues/2436\"\u003e#2436\u003c/a\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e2.1.3 Additional Features and Functionality\u003c/h3\u003e\n\u003ch3\u003e2.1.4 Additional Notes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe sources and javadoc jars of the Ant-built distributions (jdk14, jdk15to18 and jdk13) no longer carry test material. Each module's javadoc target copies the package documentation it needs - org/bouncycastle/\u003c!-- raw HTML omitted --\u003e/\u003cstrong\u003e/*.html - back into the module source directory that has already been compiled from, and zip-src zips that directory afterwards, so every test package's package.html arrived in the sources jar by that route; javadoc-util additionally copied org/bouncycastle/asn1/isismtt/\u003c/strong\u003e/*.java, which put test classes into the bcutil javadoc as generated pages, and javadoc-pg deliberately copied the gpg and bcpg test sources in order to document them. Separately the source copies excluded test material only one directory deep and only for *.java, because Ant reads ** as an any-depth wildcard just where it is a whole path segment, so anything nested further or with another extension - the PEM certificate fixtures under org/bouncycastle/est/test/san corrected in 1.86, and an ICAO master list under org/bouncycastle/asn1/icao/test - went through. The source and javadoc copies of every module now exclude test directories at any depth, and javadoc-pg no longer documents the test packages. org.bouncycastle.util.test is unaffected and still ships in the bcprov binary, sources and javadoc jars, as it does from the Gradle build: it is the SimpleTest framework the light-weight API's own test classes are written against, not test material of the distribution. No binary changes - the classes and resources of every Ant-built jar are identical to those of the 1.86 release - and the Gradle-built jdk18on artifacts never carried any of this.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003c!-- raw HTML omitted --\u003e\u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003ch3\u003e2.2.1 Version\u003c/h3\u003e\n\u003cp\u003eRelease: 1.86\u003cbr /\u003e\nDate: 2026, 11th September.\u003c/p\u003e\n\u003ch3\u003e2.2.2 Defects Fixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eThe high-level OpenPGP API let a subkey inherit the primary key's Key Flags when its own Subkey Binding signature carried none, so a subkey bound with no flags counted as signing-capable for one check while the cross-certification check RFC 9580 sec. 5.2.1.8 requires of a signing subkey saw none and was skipped - letting a third party's public signing subkey be bound to an attacker's primary key and that party's genuine signatures verify under the attacker's identity. Flags are no longer inherited (CVE-2026-71887).\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API used a version 6 key carrying no valid Direct Key signature, falling back to the primary user ID binding as it correctly does for version 4. RFC 9580 sec. 5.2.3.10 requires the opposite, and since a v6 certificate carries its expiration and preferences there, stripping that one packet silently dropped them - the certificate went on offering subkeys of a key set to expire. isBoundBy now requires a valid Direct Key self-signature before any v6 component is treated as bound; version 4 is unaffected.\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API ignored the OpenPGPPolicy a caller had configured when verifying signatures on an inline message: OpenPGPMessageInputStream took the policy from the implementation's own default rather than from the processor doing the verification, so a hardened policy had no bearing on acceptance and getSignatures() reported isTestedCorrect() true for a signature that policy rejects. Both the one-pass and prefixed-signature paths now read the configured policy.\u003c/li\u003e\n\u003cli\u003eThe high-level OpenPGP API went on offering the subkeys of a certificate whose primary key had expired, the binding check evaluating only a subkey's own Subkey Binding signature - so the certificate contradicted itself, reporting the primary unbound while still handing out its subkeys. The primary key's expiration now applies to the whole certificate, as GnuPG and Sequoia treat it, and a subkey no longer inherits the primary's validity period, which RFC 9580 sec. 5.2.3.13 counts from the creation time of the key the carrying signature is made on.\u003c/li\u003e\n\u003cli\u003eOpenPGPDocumentSignature.isValidAt(Date) reported a data signature as valid past the signature's own Signature Expiration Time (RFC 9580 sec. 5.2.3.18): it checked that the signature was correct and the issuing key bound and signing-capable at that date, but never the signature's own expiration, so it disagreed with isEffectiveAt() on the same object and with its own javadoc. isValid() and isValid(policy), which evaluate at creation time, are unchanged.\u003c/li\u003e\n\u003cli\u003eThe lightweight LMSSigner and HSSSigner refused a key wrapped in ParametersWithRandom, which is how BcContentSignerBuilder passes one once setSecureRandom() has been called, so BcHssLmsContentSignerBuilder failed with \u0026quot;Incorrect Key Parameters\u0026quot; and the two signers raised ClassCastException. All three now unwrap it, as the ML-DSA and SLH-DSA signers already did; the random is accepted and ignored, LMS deriving its message randomiser deterministically from the seed and one-time index.\u003c/li\u003e\n\u003cli\u003eLMS signature verification did not apply two checks RFC 8554 sec. 5.4.2 requires before a signature is processed: step 2g, refusing a signature whose LMS typecode is not the public key's - without it a signature claiming a height-25 parameter set drove a 25-level computation against a height-5 key - and step 2i, refusing a leaf number outside the tree. Neither was a forgery, but both are attacker-chosen work the specification says to refuse up front. Both are now checked.\u003c/li\u003e\n\u003cli\u003eThe LMS and HSS key parameter classes now apply at construction the checks their decoders apply, so a key built directly cannot be one the decoder would refuse: LMSPrivateKeyParameters accepted an identifier of any length where the decoder reads exactly 16 bytes, and left q, maxQ and the seed length unchecked, while HSSPrivateKeyParameters checked neither its level count nor that it had a component key and chaining signature per level. The decoders now report a bad version or seed length as IOException rather than IllegalStateException.\u003c/li\u003e\n\u003cli\u003eIn the LMS JCE layer, LMSKeyGenParameterSpec.fromNames knew all twenty LMS parameter-set names but only four of the sixteen LM-OTS ones, so none of the SP 800-208 n24 or SHAKE sets could be named; all sixteen are now present. initialize(int, SecureRandom) now reports InvalidParameterException as the JCA specifies, and BCLMSPrivateKey.getIndex takes the exhaustion check and the index read under one monitor.\u003c/li\u003e\n\u003cli\u003eKeyPairGenerator.initialize(int, SecureRandom) is documented to raise InvalidParameterException when the key size is not one the generator supports, and thirty of them raised a bare IllegalArgumentException instead. Every generator in BCPQC, and the ML-DSA, ML-KEM, SLH-DSA, Classic McEliece, FrodoKEM, NTRU and composite ones in the BC provider, now raise the documented type - which extends IllegalArgumentException, so existing catches still match. The two RSA generators translate the lightweight refusal through a new SecurityExceptions.invalidParameterException factory.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/bcgit/bc-java/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.commons:commons-collections4` from 4.5.0 to 4.6.0\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.cloud:google-cloud-storage` from 2.71.0 to 2.73.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/googleapis/google-cloud-java/blob/main/java-document-ai/CHANGELOG.md\"\u003ecom.google.cloud:google-cloud-storage's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.73.0 (2025-07-28)\u003c/h2\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eupdate dependency com.google.cloud:sdk-platform-java-config to v3.50.2 (\u003ca href=\"https://redirect.github.com/googleapis/google-cloud-java/issues/11680\"\u003e#11680\u003c/a\u003e) (\u003ca href=\"https://github.com/googleapis/google-cloud-java/commit/d1b99a706daa10c487b56edbb5170b41530628ca\"\u003ed1b99a7\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.72.0 (2025-07-11)\u003c/h2\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eupdate dependency com.google.cloud:sdk-platform-java-config to v3.50.1 (\u003ca href=\"https://redirect.github.com/googleapis/google-cloud-java/issues/11655\"\u003e#11655\u003c/a\u003e) (\u003ca href=\"https://github.com/googleapis/google-cloud-java/commit/9b34528f85043049e3349fffc30bb2dbfe01836c\"\u003e9b34528\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/googleapis/google-cloud-java/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.httpcomponents.client5:httpclient5` from 5.6.3 to 5.6.4\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/httpcomponents-client/blob/rel/v5.6.4/RELEASE_NOTES.txt\"\u003eorg.apache.httpcomponents.client5:httpclient5's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eRelease 5.6.4\u003c/h2\u003e\n\u003cp\u003eThis maintenance release fixes SSL parameter application in the async TLS upgrade\nstrategy.\u003c/p\u003e\n\u003ch2\u003eChange Log\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eBearerScheme to reject control characters in bearer token.\nContributed by Javid Khan \u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eCorrects application of SSL parameters in the async TLS upgrade method.\nContributed by Oleg Kalnichevski \u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/httpcomponents-client/commit/36508cead5c4388d04d20aa7efad5a68595631a0\"\u003e\u003ccode\u003e36508ce\u003c/code\u003e\u003c/a\u003e HttpClient 5.6.4 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/httpcomponents-client/commit/59b3d2ed71b206530e286fa86548e7833b4815eb\"\u003e\u003ccode\u003e59b3d2e\u003c/code\u003e\u003c/a\u003e Updated release notes for HttpClient 5.6.4 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/httpcomponents-client/commit/c0af75978b64d66542dd1e1a4bde723a96e4f77b\"\u003e\u003ccode\u003ec0af759\u003c/code\u003e\u003c/a\u003e reject control characters in bearer token in BearerScheme\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/httpcomponents-client/commit/2422b6c89aaacb8d25823b7535479a6fb5a09d0d\"\u003e\u003ccode\u003e2422b6c\u003c/code\u003e\u003c/a\u003e Corrects application of SSL parameters in the async TLS upgrade method\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/httpcomponents-client/commit/66452ea55d9477d721b3c2c1d8c42b3a934a9408\"\u003e\u003ccode\u003e66452ea\u003c/code\u003e\u003c/a\u003e Upgraded HttpClient version to 5.6.4-SNAPSHOT\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/apache/httpcomponents-client/compare/rel/v5.6.3...rel/v5.6.4\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.core:jackson-core` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/24bab144a85cfb0625fcc8201c44d0ccd9029213\"\u003e\u003ccode\u003e24bab14\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-core-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/dbbd2a0685db196fcd074733f89f5aa50b28a195\"\u003e\u003ccode\u003edbbd2a0\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/038fc7a56ff8cc49ef441982a413608bcb391322\"\u003e\u003ccode\u003e038fc7a\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/aaf33980b51dd6ef9514a9cafc7960b26ba70d08\"\u003e\u003ccode\u003eaaf3398\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/2911daeb8b08b146bf3e11c4de86b3bc579b4d39\"\u003e\u003ccode\u003e2911dae\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/ed8e9dc86ffdaea88ed4d1f414d0a37d32d8336b\"\u003e\u003ccode\u003eed8e9dc\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/f8dc7d77b4d743801b40dca4501ea2685ba69808\"\u003e\u003ccode\u003ef8dc7d7\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/7add1bf0be43a70384c87c92d28076c831edbd5c\"\u003e\u003ccode\u003e7add1bf\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/d11418c82b77a7684e91827c6bac4356c7d6bf07\"\u003e\u003ccode\u003ed11418c\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-core-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-core/commit/66a7a170daaf69f0c5d5ed5d81c47ebd0452cc9d\"\u003e\u003ccode\u003e66a7a17\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-core/compare/jackson-core-2.22.1...jackson-core-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.core:jackson-databind` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/25b2a221f9aa4107e455065a74635e209418cf55\"\u003e\u003ccode\u003e25b2a22\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bab1c1a702a941f8805ee6698e8fa4fdbfbec54a\"\u003e\u003ccode\u003ebab1c1a\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bc03cf83d74cf0e5944dce33a63ee59ddc344b64\"\u003e\u003ccode\u003ebc03cf8\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/83379fb6409075336edf3d8d88744e95911a43f8\"\u003e\u003ccode\u003e83379fb\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/0d400c9dc586fdd460d0c6a40db21ebbe22106d8\"\u003e\u003ccode\u003e0d400c9\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/ce36a279f8b078bef2d9d44a1d01034c3634f91a\"\u003e\u003ccode\u003ece36a27\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7a209e1fa97033746db50fd7bcd1e3dbab077599\"\u003e\u003ccode\u003e7a209e1\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/a432707afe6b7569243d1c2d8052a1bf33d9279c\"\u003e\u003ccode\u003ea432707\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/176df1d48b256ced412c65293ad4e09393e24bd3\"\u003e\u003ccode\u003e176df1d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7785f5f9ed24127e004115472c47b26ea4cf2774\"\u003e\u003ccode\u003e7785f5f\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-databind/compare/jackson-databind-2.22.1...jackson-databind-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.dataformat:jackson-dataformat-smile` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/8ef06d38d36fcef8ee79a3b21e4572236dd43183\"\u003e\u003ccode\u003e8ef06d3\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-dataformats-binary-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/749b0d56ebb6d9e8ec5b2d2f4000f129e31801ab\"\u003e\u003ccode\u003e749b0d5\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/e3f564c59268ab6a041fc9dd1ea894bb9474ae95\"\u003e\u003ccode\u003ee3f564c\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/4ee316a0df03f27fb2d28f9f85460b6eac640f62\"\u003e\u003ccode\u003e4ee316a\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/41fc4b0891f21046544d2eb5b271a02d761b78e2\"\u003e\u003ccode\u003e41fc4b0\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/d96bae29fc934f001a5f4429ad8927650cdd26c1\"\u003e\u003ccode\u003ed96bae2\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/d8a7168141e5f4c74998612e62f03cc9ee5f6cf6\"\u003e\u003ccode\u003ed8a7168\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/cbba1ba11405a41098d20009f647a9dc62a0c296\"\u003e\u003ccode\u003ecbba1ba\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/4dd9e81e945f61ff9e5d9cc4ac136be6abb1e0d7\"\u003e\u003ccode\u003e4dd9e81\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-dataformats-binary-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/commit/abb6b6d67eb98b8ee8a990f211d1458f55a40bf6\"\u003e\u003ccode\u003eabb6b6d\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-dataformats-binary/compare/jackson-dataformats-binary-2.22.1...jackson-dataformats-binary-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.dataformat:jackson-dataformat-yaml` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/3aab0261e5e03247fa0cd779de40c742c9ed847d\"\u003e\u003ccode\u003e3aab026\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-dataformats-text-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/0e4e5b9cdd2ef978411d0d67b991d02157403522\"\u003e\u003ccode\u003e0e4e5b9\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/3fd423826a06962319bbf5886be32723d2a35a75\"\u003e\u003ccode\u003e3fd4238\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/f0f96895fadd8a2063a73a12db8187b45305f29b\"\u003e\u003ccode\u003ef0f9689\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/50d9dfac796df6f2319394c7431f1c9319347005\"\u003e\u003ccode\u003e50d9dfa\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/0e9bdd490ae06b58f32de212618f71fcaadd36ab\"\u003e\u003ccode\u003e0e9bdd4\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/613de08b86c258aa7e96ee149c47676cf786b42f\"\u003e\u003ccode\u003e613de08\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/49dc929aa8d065073356f8b9bac314235a60e848\"\u003e\u003ccode\u003e49dc929\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/c09cd3f517982471e044a1f91f0865d07322ea14\"\u003e\u003ccode\u003ec09cd3f\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-dataformats-text-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/096a670a930a9f15886588784252e2c2bdab31ec\"\u003e\u003ccode\u003e096a670\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/compare/jackson-dataformats-text-2.22.1...jackson-dataformats-text-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson:jackson-bom` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/062d76d67a3619238e00d4d62f9bdb51cfe6cd52\"\u003e\u003ccode\u003e062d76d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-bom-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/dcf18f79fa8a9b935d880b3906291d8ed8cb1d0d\"\u003e\u003ccode\u003edcf18f7\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/9688c7b1dfc9072fdec7c9770653072d0a728fd1\"\u003e\u003ccode\u003e9688c7b\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/7796a7ddb240ce41c1b6c6a3a435b29948a6a727\"\u003e\u003ccode\u003e7796a7d\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/d3cd7fc1794f6d1a9f0a4dee41d8d46a310741d7\"\u003e\u003ccode\u003ed3cd7fc\u003c/code...\n\n_Description has been truncated_","html_url":"https://github.com/opensearch-project/opensearch-migrations/pull/3382","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/opensearch-project%2Fopensearch-migrations/issues/3382","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/3382/packages"}},{"old_version":"33.6.0-jre","new_version":"33.7.1-jre","update_type":"minor","path":null,"pr_created_at":"2026-09-08T15:05:19.000Z","version_change":"33.6.0-jre → 33.7.1-jre","issue":{"uuid":"5388414407","node_id":"PR_kwDOQ7hLKM8AAAABCsTiOQ","number":5,"state":"closed","title":"Bump com.google.guava:guava from 33.6.0-jre to 33.7.1-jre","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-08T23:48:35.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-08T15:05:19.000Z","updated_at":"2026-09-08T23:48:43.000Z","time_to_close":31396,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"}],"path":null,"ecosystem":"maven"},"body":"Bumps [com.google.guava:guava](https://github.com/google/guava) from 33.6.0-jre to 33.7.1-jre.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.google.guava:guava\u0026package-manager=gradle\u0026previous-version=33.6.0-jre\u0026new-version=33.7.1-jre)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/hidemikimura/jimble/pull/5","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/hidemikimura%2Fjimble/issues/5","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/5/packages"}},{"old_version":"33.4.8-jre","new_version":"33.7.1-jre","update_type":"minor","path":null,"pr_created_at":"2026-09-07T09:22:24.000Z","version_change":"33.4.8-jre → 33.7.1-jre","issue":{"uuid":"5372670566","node_id":"PR_kwDOF1l8-M8AAAABCfsnUw","number":32843,"state":"closed","title":"build(deps): bump the maven-minor-patch group with 166 updates","user":"dependabot[bot]","labels":["java","dependencies"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-09-09T08:56:02.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-07T09:22:24.000Z","updated_at":"2026-09-09T08:56:05.000Z","time_to_close":171218,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps): bump","group_name":"maven-minor-patch","update_count":166,"packages":[{"name":"org.eclipse.jetty:jetty-bom","old_version":"12.1.10","new_version":"12.1.13","repository_url":"https://github.com/jetty/jetty.project"},{"name":"org.eclipse.jetty.ee10:jetty-ee10-bom","old_version":"12.1.10","new_version":"12.1.13","repository_url":"https://github.com/jetty/jetty.project"},{"name":"org.eclipse.jetty:jetty-server","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.eclipse.jetty.ee10:jetty-ee10-servlet","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jetty-server","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jakarta-server","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.eclipse.jetty.ee10:jetty-ee10-servlets","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.eclipse.jetty:jetty-io","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.apache.commons:commons-lang3","old_version":"3.18.0","new_version":"3.20.0"},{"name":"io.opentelemetry:opentelemetry-bom","old_version":"1.62.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"org.eclipse.angus:angus-mail","old_version":"2.0.4","new_version":"2.0.5","repository_url":"https://github.com/eclipse-ee4j/angus-mail"},{"name":"com.fasterxml.jackson.core:jackson-annotations","old_version":"2.18.10","new_version":"2.22","repository_url":"https://github.com/FasterXML/jackson-annotations"},{"name":"com.fasterxml.jackson.core:jackson-core","old_version":"2.18.10","new_version":"2.22"},{"name":"com.fasterxml.jackson.core:jackson-databind","old_version":"2.18.10","new_version":"2.22"},{"name":"com.fasterxml.jackson.module:jackson-module-blackbird","old_version":"2.18.10","new_version":"2.22"},{"name":"com.fasterxml.jackson.datatype:jackson-datatype-jsr353","old_version":"2.18.10","new_version":"2.22"},{"name":"com.fasterxml.jackson.datatype:jackson-datatype-jakarta-jsonp","old_version":"2.18.10","new_version":"2.22"},{"name":"com.fasterxml.jackson.dataformat:jackson-dataformat-cbor","old_version":"2.18.10","new_version":"2.22"},{"name":"com.fasterxml.jackson.dataformat:jackson-dataformat-yaml","old_version":"2.18.10","new_version":"2.22"},{"name":"io.dropwizard:dropwizard-core","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-assets","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-http2","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-client","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-testing","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-json-logging","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-metrics","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-jersey","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-views","old_version":"5.0.0","new_version":"5.0.2"},{"name":"io.dropwizard:dropwizard-jetty","old_version":"5.0.0","new_version":"5.0.2"},{"name":"ch.qos.logback:logback-core","old_version":"1.5.36","new_version":"1.6.3","repository_url":"https://github.com/qos-ch/logback"},{"name":"ch.qos.logback:logback-classic","old_version":"1.5.36","new_version":"1.6.3","repository_url":"https://github.com/qos-ch/logback"},{"name":"ch.qos.logback.access:logback-access-jetty12","old_version":"2.0.7","new_version":"2.0.15"},{"name":"ch.qos.logback.access:logback-access-common","old_version":"2.0.7","new_version":"2.0.15"},{"name":"org.awaitility:awaitility","old_version":"4.2.0","new_version":"4.3.0","repository_url":"https://github.com/awaitility/awaitility"},{"name":"io.dropwizard:dropwizard-jdbi3","old_version":"5.0.0","new_version":"5.0.2"},{"name":"org.jdbi:jdbi3-core","old_version":"3.37.1","new_version":"3.54.0","repository_url":"https://github.com/jdbi/jdbi"},{"name":"org.jdbi:jdbi3-sqlobject","old_version":"3.37.1","new_version":"3.54.0","repository_url":"https://github.com/jdbi/jdbi"},{"name":"commons-cli:commons-cli","old_version":"1.9.0","new_version":"1.11.0","repository_url":"https://github.com/apache/commons-cli"},{"name":"commons-io:commons-io","old_version":"2.17.0","new_version":"2.22.0"},{"name":"org.postgresql:postgresql","old_version":"42.7.12","new_version":"42.7.13","repository_url":"https://github.com/pgjdbc/pgjdbc"},{"name":"com.google.code.gson:gson","old_version":"2.13.1","new_version":"2.14.0","repository_url":"https://github.com/google/gson"},{"name":"io.swagger.core.v3:swagger-core","old_version":"2.2.25","new_version":"2.2.55","repository_url":"https://github.com/swagger-api/swagger-core"},{"name":"io.swagger.core.v3:swagger-jaxrs2","old_version":"2.2.25","new_version":"2.2.55"},{"name":"io.swagger.core.v3:swagger-integration","old_version":"2.2.25","new_version":"2.2.55"},{"name":"io.swagger.core.v3:swagger-annotations","old_version":"2.2.25","new_version":"2.2.55"},{"name":"jakarta.xml.bind:jakarta.xml.bind-api","old_version":"4.0.2","new_version":"4.0.5","repository_url":"https://github.com/jakartaee/jaxb-api"},{"name":"io.prometheus:prometheus-metrics-instrumentation-dropwizard","old_version":"1.4.3","new_version":"1.8.0"},{"name":"org.mockito:mockito-core","old_version":"5.5.0","new_version":"5.23.0","repository_url":"https://github.com/mockito/mockito"},{"name":"org.mockito:mockito-junit-jupiter","old_version":"5.23.0","new_version":"5.23.0","repository_url":"https://github.com/mockito/mockito"},{"name":"com.amazon.redshift:redshift-jdbc42","old_version":"2.2.2","new_version":"2.2.8","repository_url":"https://github.com/aws/amazon-redshift-jdbc-driver"},{"name":"org.slf4j:slf4j-api","old_version":"2.0.4","new_version":"2.0.18"},{"name":"org.slf4j:slf4j-simple","old_version":"2.0.4","new_version":"2.0.18"},{"name":"org.projectlombok:lombok","old_version":"1.18.30","new_version":"1.18.48","repository_url":"https://github.com/projectlombok/lombok"},{"name":"org.apache.tomcat:tomcat-jdbc","old_version":"11.0.11","new_version":"11.0.25"},{"name":"com.zaxxer:HikariCP","old_version":"7.0.2","new_version":"7.1.0","repository_url":"https://github.com/brettwooldridge/HikariCP"},{"name":"io.github.classgraph:classgraph","old_version":"4.8.177","new_version":"4.8.194","repository_url":"https://github.com/classgraph/classgraph"},{"name":"org.reflections:reflections","old_version":"0.9.11","new_version":"0.10.2","repository_url":"https://github.com/ronmamo/reflections"},{"name":"org.apache.logging.log4j:log4j-core","old_version":"2.25.5","new_version":"2.26.1"},{"name":"org.apache.logging.log4j:log4j-api","old_version":"2.25.5","new_version":"2.26.1"},{"name":"io.github.resilience4j:resilience4j-retry","old_version":"2.3.0","new_version":"2.4.0","repository_url":"https://github.com/resilience4j/resilience4j"},{"name":"io.github.resilience4j:resilience4j-ratelimiter","old_version":"2.3.0","new_version":"2.4.0","repository_url":"https://github.com/resilience4j/resilience4j"},{"name":"info.picocli:picocli","old_version":"4.7.6","new_version":"4.7.7","repository_url":"https://github.com/remkop/picocli"},{"name":"com.github.erosb:everit-json-schema","old_version":"1.14.4","new_version":"1.14.6","repository_url":"https://github.com/erosb/everit-json-schema"},{"name":"com.github.jknack:handlebars","old_version":"4.5.2","new_version":"4.5.4","repository_url":"https://github.com/jknack/handlebars.java"},{"name":"com.microsoft.azure:msal4j","old_version":"1.17.2","new_version":"1.26.0","repository_url":"https://github.com/AzureAD/microsoft-authentication-library-for-java"},{"name":"com.azure:azure-identity","old_version":"1.15.2","new_version":"1.18.6","repository_url":"https://github.com/Azure/azure-sdk-for-java"},{"name":"org.yaml:snakeyaml","old_version":"2.3","new_version":"2.7"},{"name":"org.apache.commons:commons-compress","old_version":"1.26.0","new_version":"1.28.0","repository_url":"https://github.com/apache/commons-compress"},{"name":"org.bouncycastle:bcprov-jdk18on","old_version":"1.85","new_version":"1.85.2","repository_url":"https://github.com/bcgit/bc-java"},{"name":"tools.jackson:jackson-bom","old_version":"3.1.6","new_version":"3.2.2","repository_url":"https://github.com/FasterXML/jackson-bom"},{"name":"software.amazon.awssdk:bom","old_version":"2.41.30","new_version":"2.54.12"},{"name":"org.jacoco:jacoco-maven-plugin","old_version":"0.8.10","new_version":"0.8.15","repository_url":"https://github.com/jacoco/jacoco"},{"name":"org.apache.maven.plugins:maven-source-plugin","old_version":"3.3.1","new_version":"3.4.0","repository_url":"https://github.com/apache/maven-source-plugin"},{"name":"org.apache.maven.plugins:maven-javadoc-plugin","old_version":"3.6.0","new_version":"3.12.0","repository_url":"https://github.com/apache/maven-javadoc-plugin"},{"name":"org.apache.maven.plugins:maven-gpg-plugin","old_version":"3.0.1","new_version":"3.2.8","repository_url":"https://github.com/apache/maven-gpg-plugin"},{"name":"org.apache.maven.plugins:maven-jxr-plugin","old_version":"3.3.0","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-jxr"},{"name":"org.apache.maven.plugins:maven-enforcer-plugin","old_version":"3.1.0","new_version":"3.6.3","repository_url":"https://github.com/apache/maven-enforcer"},{"name":"org.apache.maven.plugins:maven-clean-plugin","old_version":"3.2.0","new_version":"3.5.0","repository_url":"https://github.com/apache/maven-clean-plugin"},{"name":"org.apache.maven.plugins:maven-deploy-plugin","old_version":"3.0.0","new_version":"3.1.4","repository_url":"https://github.com/apache/maven-deploy-plugin"},{"name":"org.apache.maven.plugins:maven-install-plugin","old_version":"3.0.1","new_version":"3.1.4","repository_url":"https://github.com/apache/maven-install-plugin"},{"name":"org.apache.maven.plugins:maven-resources-plugin","old_version":"3.3.0","new_version":"3.5.0","repository_url":"https://github.com/apache/maven-resources-plugin"},{"name":"org.apache.maven.plugins:maven-assembly-plugin","old_version":"3.4.2","new_version":"3.8.0","repository_url":"https://github.com/apache/maven-assembly-plugin"},{"name":"org.apache.maven.plugins:maven-site-plugin","old_version":"3.12.1","new_version":"3.22.0","repository_url":"https://github.com/apache/maven-site-plugin"},{"name":"org.apache.maven.plugins:maven-dependency-plugin","old_version":"3.6.0","new_version":"3.11.0","repository_url":"https://github.com/apache/maven-dependency-plugin"},{"name":"org.apache.maven.plugins:maven-checkstyle-plugin","old_version":"3.2.0","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-checkstyle-plugin"},{"name":"org.apache.maven.plugins:maven-release-plugin","old_version":"3.0.1","new_version":"3.3.1","repository_url":"https://github.com/apache/maven-release"},{"name":"org.apache.maven.plugins:maven-compiler-plugin","old_version":"3.13.0","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-compiler-plugin"},{"name":"org.apache.maven.plugins:maven-jar-plugin","old_version":"3.3.0","new_version":"3.5.1","repository_url":"https://github.com/apache/maven-jar-plugin"},{"name":"org.apache.maven.plugins:maven-surefire-plugin","old_version":"3.1.2","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-surefire"},{"name":"org.apache.maven.plugins:maven-surefire-report-plugin","old_version":"3.1.2","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-surefire"},{"name":"org.codehaus.mojo:versions-maven-plugin","old_version":"2.13.0","new_version":"2.21.0","repository_url":"https://github.com/mojohaus/versions"},{"name":"org.sonatype.central:central-publishing-maven-plugin","old_version":"0.9.0","new_version":"0.11.0","repository_url":"https://github.com/sonatype/central-publishing-maven-plugin"},{"name":"org.jsonschema2pojo:jsonschema2pojo-maven-plugin","old_version":"1.3.1","new_version":"1.3.3","repository_url":"https://github.com/joelittlejohn/jsonschema2pojo"},{"name":"org.jsonschema2pojo:jsonschema2pojo-core","old_version":"1.3.1","new_version":"1.3.3","repository_url":"https://github.com/joelittlejohn/jsonschema2pojo"},{"name":"com.flipkart.zjsonpatch:zjsonpatch","old_version":"0.4.14","new_version":"0.4.16","repository_url":"https://github.com/flipkart-incubator/zjsonpatch"},{"name":"io.socket:socket.io-client","old_version":"2.1.1","new_version":"2.1.2","repository_url":"https://github.com/socketio/socket.io-client-java"},{"name":"com.auth0:java-jwt","old_version":"4.4.0","new_version":"4.6.0","repository_url":"https://github.com/auth0/java-jwt"},{"name":"org.eclipse.parsson:parsson","old_version":"1.1.8","new_version":"1.1.9","repository_url":"https://github.com/eclipse-ee4j/parsson"},{"name":"org.apache.maven.plugins:maven-failsafe-plugin","old_version":"3.1.2","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-surefire"},{"name":"commons-codec:commons-codec","old_version":"1.17.1","new_version":"1.22.1","repository_url":"https://github.com/apache/commons-codec"},{"name":"co.elastic.clients:elasticsearch-java","old_version":"9.2.4","new_version":"9.5.3","repository_url":"https://github.com/elastic/elasticsearch-java"},{"name":"org.apache.maven.plugins:maven-shade-plugin","old_version":"3.6.0","new_version":"3.6.2","repository_url":"https://github.com/apache/maven-shade-plugin"},{"name":"org.codehaus.mojo:build-helper-maven-plugin","old_version":"3.4.0","new_version":"3.6.1","repository_url":"https://github.com/mojohaus/build-helper-maven-plugin"},{"name":"org.opensearch.client:opensearch-java","old_version":"3.4.0","new_version":"3.10.0","repository_url":"https://github.com/opensearch-project/opensearch-java"},{"name":"com.google.cloud:libraries-bom","old_version":"26.73.0","new_version":"26.87.0","repository_url":"https://github.com/googleapis/google-cloud-java"},{"name":"org.pac4j:pac4j-core","old_version":"6.5.6","new_version":"6.5.7","repository_url":"https://github.com/pac4j/pac4j"},{"name":"org.pac4j:pac4j-oidc","old_version":"6.5.6","new_version":"6.5.7","repository_url":"https://github.com/pac4j/pac4j"},{"name":"jakarta.validation:jakarta.validation-api","old_version":"3.0.2","new_version":"3.1.1","repository_url":"https://github.com/jakartaee/validation"},{"name":"com.nimbusds:nimbus-jose-jwt","old_version":"10.0.2","new_version":"10.9.1"},{"name":"net.minidev:json-smart","old_version":"2.5.2","new_version":"2.6.0","repository_url":"https://github.com/netplex/json-smart-v2"},{"name":"com.google.api-client:google-api-client","old_version":"2.2.0","new_version":"2.9.1","repository_url":"https://github.com/googleapis/google-api-java-client"},{"name":"com.google.oauth-client:google-oauth-client","old_version":"1.34.1","new_version":"1.39.0","repository_url":"https://github.com/googleapis/google-oauth-java-client"},{"name":"io.swagger.core.v3:swagger-core-jakarta","old_version":"2.2.30","new_version":"2.2.55"},{"name":"io.swagger.core.v3:swagger-jaxrs2-jakarta","old_version":"2.2.30","new_version":"2.2.55"},{"name":"com.azure:azure-security-keyvault-secrets","old_version":"4.10.7","new_version":"4.11.2","repository_url":"https://github.com/Azure/azure-sdk-for-java"},{"name":"com.azure:azure-identity-extensions","old_version":"1.0.0","new_version":"1.2.9","repository_url":"https://github.com/azure/azure-sdk-for-java"},{"name":"jakarta.servlet:jakarta.servlet-api","old_version":"6.0.0","new_version":"6.1.0","repository_url":"https://github.com/eclipse-ee4j/servlet-api"},{"name":"io.micrometer:micrometer-observation","old_version":"1.16.7","new_version":"1.17.1","repository_url":"https://github.com/micrometer-metrics/micrometer-commercial"},{"name":"io.micrometer:micrometer-registry-prometheus","old_version":"1.16.7","new_version":"1.17.1","repository_url":"https://github.com/micrometer-metrics/micrometer-commercial"},{"name":"io.micrometer:micrometer-core","old_version":"1.16.7","new_version":"1.17.1","repository_url":"https://github.com/micrometer-metrics/micrometer-commercial"},{"name":"io.dropwizard.metrics:metrics-core","old_version":"4.2.19","new_version":"4.2.40","repository_url":"https://github.com/dropwizard/metrics"},{"name":"ai.djl:api","old_version":"0.34.0","new_version":"0.36.0","repository_url":"https://github.com/deepjavalibrary/djl"},{"name":"ai.djl.pytorch:pytorch-engine","old_version":"0.34.0","new_version":"0.36.0","repository_url":"https://github.com/deepjavalibrary/djl"},{"name":"ai.djl.huggingface:tokenizers","old_version":"0.34.0","new_version":"0.36.0","repository_url":"https://github.com/deepjavalibrary/djl"},{"name":"org.skyscreamer:jsonassert","old_version":"1.5.1","new_version":"1.5.3","repository_url":"https://github.com/skyscreamer/JSONassert"},{"name":"io.jsonwebtoken:jjwt","old_version":"0.9.1","new_version":"0.13.0","repository_url":"https://github.com/jwtk/jjwt"},{"name":"com.auth0:jwks-rsa","old_version":"0.22.1","new_version":"0.24.1","repository_url":"https://github.com/auth0/jwks-rsa-java"},{"name":"io.socket:socket.io-server","old_version":"4.0.1","new_version":"4.1.2","repository_url":"https://github.com/trinopoty/socket.io-server-java"},{"name":"io.socket:engine.io-server","old_version":"6.2.1","new_version":"6.3.2","repository_url":"https://github.com/socketio/engine.io-server-java"},{"name":"org.eclipse.jetty.websocket:jetty-websocket-jetty-api","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.eclipse.jetty:jetty-http","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.freemarker:freemarker","old_version":"2.3.33","new_version":"2.3.35"},{"name":"org.apache.commons:commons-csv","old_version":"1.12.0","new_version":"1.14.1","repository_url":"https://github.com/apache/commons-csv"},{"name":"com.opencsv:opencsv","old_version":"5.9","new_version":"5.12.0"},{"name":"org.quartz-scheduler:quartz","old_version":"2.5.0-rc2","new_version":"2.5.2","repository_url":"https://github.com/quartz-scheduler/quartz"},{"name":"com.mchange:c3p0","old_version":"0.14.1","new_version":"0.14.2","repository_url":"https://github.com/swaldman/c3p0"},{"name":"com.google.guava:guava","old_version":"33.4.8-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"org.testcontainers:junit-jupiter","old_version":"1.20.3","new_version":"1.21.4","repository_url":"https://github.com/testcontainers/testcontainers-java"},{"name":"com.slack.api:bolt-servlet","old_version":"1.44.1","new_version":"1.51.0","repository_url":"https://github.com/slackapi/java-slack-sdk"},{"name":"com.slack.api:slack-api-client","old_version":"1.44.1","new_version":"1.51.0","repository_url":"https://github.com/slackapi/java-slack-sdk"},{"name":"io.github.jamsesso:json-logic-java","old_version":"1.0.7","new_version":"1.1.0","repository_url":"https://github.com/jamsesso/json-logic-java"},{"name":"org.commonmark:commonmark","old_version":"0.26.0","new_version":"0.30.0","repository_url":"https://github.com/commonmark/commonmark-java"},{"name":"org.commonmark:commonmark-ext-gfm-strikethrough","old_version":"0.26.0","new_version":"0.30.0","repository_url":"https://github.com/commonmark/commonmark-java"},{"name":"org.commonmark:commonmark-ext-autolink","old_version":"0.26.0","new_version":"0.30.0","repository_url":"https://github.com/commonmark/commonmark-java"},{"name":"org.commonmark:commonmark-ext-gfm-tables","old_version":"0.26.0","new_version":"0.30.0","repository_url":"https://github.com/commonmark/commonmark-java"},{"name":"com.azure:azure-storage-blob","old_version":"12.31.1","new_version":"12.35.1","repository_url":"https://github.com/Azure/azure-sdk-for-java"},{"name":"org.apache.poi:poi","old_version":"5.4.1","new_version":"5.5.1"},{"name":"org.apache.poi:poi-ooxml","old_version":"5.4.1","new_version":"5.5.1"},{"name":"org.apache.poi:poi-scratchpad","old_version":"5.4.1","new_version":"5.5.1"},{"name":"org.codehaus.mojo:buildnumber-maven-plugin","old_version":"3.0.0","new_version":"3.3.0","repository_url":"https://github.com/mojohaus/buildnumber-maven-plugin"},{"name":"io.swagger.core.v3:swagger-maven-plugin-jakarta","old_version":"2.2.30","new_version":"2.2.55"},{"name":"org.testcontainers:k3s","old_version":"1.20.3","new_version":"1.21.4","repository_url":"https://github.com/testcontainers/testcontainers-java"},{"name":"com.github.docker-java:docker-java-bom","old_version":"3.4.2","new_version":"3.7.1","repository_url":"https://github.com/docker-java/docker-java"},{"name":"com.microsoft.playwright:playwright","old_version":"1.49.0","new_version":"1.62.0","repository_url":"https://github.com/microsoft/playwright-java"},{"name":"org.eclipse.jetty:jetty-util","old_version":"12.1.10","new_version":"12.1.13"},{"name":"org.codehaus.mojo:rpm-maven-plugin","old_version":"2.2.0","new_version":"2.3.0","repository_url":"https://github.com/mojohaus/rpm-maven-plugin"},{"name":"io.github.openfeign:feign-core","old_version":"13.5","new_version":"13.14","repository_url":"https://github.com/openfeign/feign"},{"name":"io.github.openfeign:feign-jackson","old_version":"13.5","new_version":"13.14","repository_url":"https://github.com/openfeign/feign"},{"name":"io.github.openfeign:feign-slf4j","old_version":"13.5","new_version":"13.14","repository_url":"https://github.com/openfeign/feign"},{"name":"io.github.openfeign:feign-okhttp","old_version":"13.5","new_version":"13.14","repository_url":"https://github.com/openfeign/feign"},{"name":"org.openapitools:jackson-databind-nullable","old_version":"0.2.6","new_version":"0.2.11","repository_url":"https://github.com/OpenAPITools/jackson-databind-nullable"},{"name":"io.swagger.parser.v3:swagger-parser","old_version":"2.1.23","new_version":"2.1.48","repository_url":"https://github.com/swagger-api/swagger-parser"},{"name":"com.google.auth:google-auth-library-oauth2-http","old_version":"1.29.0","new_version":"1.51.0"},{"name":"com.nimbusds:oauth2-oidc-sdk","old_version":"11.38.1","new_version":"11.38.2"},{"name":"org.mozilla:rhino","old_version":"1.7.15.1","new_version":"1.9.1","repository_url":"https://github.com/mozilla/rhino"},{"name":"org.openapitools:openapi-generator-maven-plugin","old_version":"7.13.0","new_version":"7.25.0"}],"path":null,"ecosystem":"maven"},"body":"Bumps the maven-minor-patch group with 166 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [org.eclipse.jetty:jetty-bom](https://github.com/jetty/jetty.project) | `12.1.10` | `12.1.13` |\n| [org.eclipse.jetty.ee10:jetty-ee10-bom](https://github.com/jetty/jetty.project) | `12.1.10` | `12.1.13` |\n| org.eclipse.jetty:jetty-server | `12.1.10` | `12.1.13` |\n| org.eclipse.jetty.ee10:jetty-ee10-servlet | `12.1.10` | `12.1.13` |\n| org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jetty-server | `12.1.10` | `12.1.13` |\n| org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jakarta-server | `12.1.10` | `12.1.13` |\n| org.eclipse.jetty.ee10:jetty-ee10-servlets | `12.1.10` | `12.1.13` |\n| org.eclipse.jetty:jetty-io | `12.1.10` | `12.1.13` |\n| org.apache.commons:commons-lang3 | `3.18.0` | `3.20.0` |\n| [io.opentelemetry:opentelemetry-bom](https://github.com/open-telemetry/opentelemetry-java) | `1.62.0` | `1.65.0` |\n| [org.eclipse.angus:angus-mail](https://github.com/eclipse-ee4j/angus-mail) | `2.0.4` | `2.0.5` |\n| [com.fasterxml.jackson.core:jackson-annotations](https://github.com/FasterXML/jackson-annotations) | `2.18.10` | `2.22` |\n| com.fasterxml.jackson.core:jackson-core | `2.18.10` | `2.22` |\n| com.fasterxml.jackson.core:jackson-databind | `2.18.10` | `2.22` |\n| com.fasterxml.jackson.module:jackson-module-blackbird | `2.18.10` | `2.22` |\n| com.fasterxml.jackson.datatype:jackson-datatype-jsr353 | `2.18.10` | `2.22` |\n| com.fasterxml.jackson.datatype:jackson-datatype-jakarta-jsonp | `2.18.10` | `2.22` |\n| com.fasterxml.jackson.dataformat:jackson-dataformat-cbor | `2.18.10` | `2.22` |\n| com.fasterxml.jackson.dataformat:jackson-dataformat-yaml | `2.18.10` | `2.22` |\n| io.dropwizard:dropwizard-core | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-assets | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-http2 | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-client | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-testing | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-json-logging | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-metrics | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-jersey | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-views | `5.0.0` | `5.0.2` |\n| io.dropwizard:dropwizard-jetty | `5.0.0` | `5.0.2` |\n| [ch.qos.logback:logback-core](https://github.com/qos-ch/logback) | `1.5.36` | `1.6.3` |\n| [ch.qos.logback:logback-classic](https://github.com/qos-ch/logback) | `1.5.36` | `1.6.3` |\n| ch.qos.logback.access:logback-access-jetty12 | `2.0.7` | `2.0.15` |\n| ch.qos.logback.access:logback-access-common | `2.0.7` | `2.0.15` |\n| [org.awaitility:awaitility](https://github.com/awaitility/awaitility) | `4.2.0` | `4.3.0` |\n| io.dropwizard:dropwizard-jdbi3 | `5.0.0` | `5.0.2` |\n| [org.jdbi:jdbi3-core](https://github.com/jdbi/jdbi) | `3.37.1` | `3.54.0` |\n| [org.jdbi:jdbi3-sqlobject](https://github.com/jdbi/jdbi) | `3.37.1` | `3.54.0` |\n| [commons-cli:commons-cli](https://github.com/apache/commons-cli) | `1.9.0` | `1.11.0` |\n| commons-io:commons-io | `2.17.0` | `2.22.0` |\n| [org.postgresql:postgresql](https://github.com/pgjdbc/pgjdbc) | `42.7.12` | `42.7.13` |\n| [com.google.code.gson:gson](https://github.com/google/gson) | `2.13.1` | `2.14.0` |\n| [io.swagger.core.v3:swagger-core](https://github.com/swagger-api/swagger-core) | `2.2.25` | `2.2.55` |\n| io.swagger.core.v3:swagger-jaxrs2 | `2.2.25` | `2.2.55` |\n| io.swagger.core.v3:swagger-integration | `2.2.25` | `2.2.55` |\n| io.swagger.core.v3:swagger-annotations | `2.2.25` | `2.2.55` |\n| [jakarta.xml.bind:jakarta.xml.bind-api](https://github.com/jakartaee/jaxb-api) | `4.0.2` | `4.0.5` |\n| io.prometheus:prometheus-metrics-instrumentation-dropwizard | `1.4.3` | `1.8.0` |\n| [org.mockito:mockito-core](https://github.com/mockito/mockito) | `5.5.0` | `5.23.0` |\n| [org.mockito:mockito-junit-jupiter](https://github.com/mockito/mockito) | `5.23.0` | `5.23.0` |\n| [com.amazon.redshift:redshift-jdbc42](https://github.com/aws/amazon-redshift-jdbc-driver) | `2.2.2` | `2.2.8` |\n| org.slf4j:slf4j-api | `2.0.4` | `2.0.18` |\n| org.slf4j:slf4j-simple | `2.0.4` | `2.0.18` |\n| [org.projectlombok:lombok](https://github.com/projectlombok/lombok) | `1.18.30` | `1.18.48` |\n| org.apache.tomcat:tomcat-jdbc | `11.0.11` | `11.0.25` |\n| [com.zaxxer:HikariCP](https://github.com/brettwooldridge/HikariCP) | `7.0.2` | `7.1.0` |\n| [io.github.classgraph:classgraph](https://github.com/classgraph/classgraph) | `4.8.177` | `4.8.194` |\n| [org.reflections:reflections](https://github.com/ronmamo/reflections) | `0.9.11` | `0.10.2` |\n| org.apache.logging.log4j:log4j-core | `2.25.5` | `2.26.1` |\n| org.apache.logging.log4j:log4j-api | `2.25.5` | `2.26.1` |\n| [io.github.resilience4j:resilience4j-retry](https://github.com/resilience4j/resilience4j) | `2.3.0` | `2.4.0` |\n| [io.github.resilience4j:resilience4j-ratelimiter](https://github.com/resilience4j/resilience4j) | `2.3.0` | `2.4.0` |\n| [info.picocli:picocli](https://github.com/remkop/picocli) | `4.7.6` | `4.7.7` |\n| [com.github.erosb:everit-json-schema](https://github.com/erosb/everit-json-schema) | `1.14.4` | `1.14.6` |\n| [com.github.jknack:handlebars](https://github.com/jknack/handlebars.java) | `4.5.2` | `4.5.4` |\n| [com.microsoft.azure:msal4j](https://github.com/AzureAD/microsoft-authentication-library-for-java) | `1.17.2` | `1.26.0` |\n| [com.azure:azure-identity](https://github.com/Azure/azure-sdk-for-java) | `1.15.2` | `1.18.6` |\n| org.yaml:snakeyaml | `2.3` | `2.7` |\n| [org.apache.commons:commons-compress](https://github.com/apache/commons-compress) | `1.26.0` | `1.28.0` |\n| [org.bouncycastle:bcprov-jdk18on](https://github.com/bcgit/bc-java) | `1.85` | `1.85.2` |\n| [tools.jackson:jackson-bom](https://github.com/FasterXML/jackson-bom) | `3.1.6` | `3.2.2` |\n| software.amazon.awssdk:bom | `2.41.30` | `2.54.12` |\n| [org.jacoco:jacoco-maven-plugin](https://github.com/jacoco/jacoco) | `0.8.10` | `0.8.15` |\n| [org.apache.maven.plugins:maven-source-plugin](https://github.com/apache/maven-source-plugin) | `3.3.1` | `3.4.0` |\n| [org.apache.maven.plugins:maven-javadoc-plugin](https://github.com/apache/maven-javadoc-plugin) | `3.6.0` | `3.12.0` |\n| [org.apache.maven.plugins:maven-gpg-plugin](https://github.com/apache/maven-gpg-plugin) | `3.0.1` | `3.2.8` |\n| [org.apache.maven.plugins:maven-jxr-plugin](https://github.com/apache/maven-jxr) | `3.3.0` | `3.6.0` |\n| [org.apache.maven.plugins:maven-enforcer-plugin](https://github.com/apache/maven-enforcer) | `3.1.0` | `3.6.3` |\n| [org.apache.maven.plugins:maven-clean-plugin](https://github.com/apache/maven-clean-plugin) | `3.2.0` | `3.5.0` |\n| [org.apache.maven.plugins:maven-deploy-plugin](https://github.com/apache/maven-deploy-plugin) | `3.0.0` | `3.1.4` |\n| [org.apache.maven.plugins:maven-install-plugin](https://github.com/apache/maven-install-plugin) | `3.0.1` | `3.1.4` |\n| [org.apache.maven.plugins:maven-resources-plugin](https://github.com/apache/maven-resources-plugin) | `3.3.0` | `3.5.0` |\n| [org.apache.maven.plugins:maven-assembly-plugin](https://github.com/apache/maven-assembly-plugin) | `3.4.2` | `3.8.0` |\n| [org.apache.maven.plugins:maven-site-plugin](https://github.com/apache/maven-site-plugin) | `3.12.1` | `3.22.0` |\n| [org.apache.maven.plugins:maven-dependency-plugin](https://github.com/apache/maven-dependency-plugin) | `3.6.0` | `3.11.0` |\n| [org.apache.maven.plugins:maven-checkstyle-plugin](https://github.com/apache/maven-checkstyle-plugin) | `3.2.0` | `3.6.0` |\n| [org.apache.maven.plugins:maven-release-plugin](https://github.com/apache/maven-release) | `3.0.1` | `3.3.1` |\n| [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin) | `3.13.0` | `3.16.0` |\n| [org.apache.maven.plugins:maven-jar-plugin](https://github.com/apache/maven-jar-plugin) | `3.3.0` | `3.5.1` |\n| [org.apache.maven.plugins:maven-surefire-plugin](https://github.com/apache/maven-surefire) | `3.1.2` | `3.6.0` |\n| [org.apache.maven.plugins:maven-surefire-report-plugin](https://github.com/apache/maven-surefire) | `3.1.2` | `3.6.0` |\n| [org.codehaus.mojo:versions-maven-plugin](https://github.com/mojohaus/versions) | `2.13.0` | `2.21.0` |\n| [org.sonatype.central:central-publishing-maven-plugin](https://github.com/sonatype/central-publishing-maven-plugin) | `0.9.0` | `0.11.0` |\n| [org.jsonschema2pojo:jsonschema2pojo-maven-plugin](https://github.com/joelittlejohn/jsonschema2pojo) | `1.3.1` | `1.3.3` |\n| [org.jsonschema2pojo:jsonschema2pojo-core](https://github.com/joelittlejohn/jsonschema2pojo) | `1.3.1` | `1.3.3` |\n| [com.flipkart.zjsonpatch:zjsonpatch](https://github.com/flipkart-incubator/zjsonpatch) | `0.4.14` | `0.4.16` |\n| [io.socket:socket.io-client](https://github.com/socketio/socket.io-client-java) | `2.1.1` | `2.1.2` |\n| [com.auth0:java-jwt](https://github.com/auth0/java-jwt) | `4.4.0` | `4.6.0` |\n| [org.eclipse.parsson:parsson](https://github.com/eclipse-ee4j/parsson) | `1.1.8` | `1.1.9` |\n| [org.apache.maven.plugins:maven-failsafe-plugin](https://github.com/apache/maven-surefire) | `3.1.2` | `3.6.0` |\n| [commons-codec:commons-codec](https://github.com/apache/commons-codec) | `1.17.1` | `1.22.1` |\n| [co.elastic.clients:elasticsearch-java](https://github.com/elastic/elasticsearch-java) | `9.2.4` | `9.5.3` |\n| [org.apache.maven.plugins:maven-shade-plugin](https://github.com/apache/maven-shade-plugin) | `3.6.0` | `3.6.2` |\n| [org.codehaus.mojo:build-helper-maven-plugin](https://github.com/mojohaus/build-helper-maven-plugin) | `3.4.0` | `3.6.1` |\n| [org.opensearch.client:opensearch-java](https://github.com/opensearch-project/opensearch-java) | `3.4.0` | `3.10.0` |\n| [com.google.cloud:libraries-bom](https://github.com/googleapis/google-cloud-java) | `26.73.0` | `26.87.0` |\n| [org.pac4j:pac4j-core](https://github.com/pac4j/pac4j) | `6.5.6` | `6.5.7` |\n| [org.pac4j:pac4j-oidc](https://github.com/pac4j/pac4j) | `6.5.6` | `6.5.7` |\n| [jakarta.validation:jakarta.validation-api](https://github.com/jakartaee/validation) | `3.0.2` | `3.1.1` |\n| [com.nimbusds:nimbus-jose-jwt](https://bitbucket.org/connect2id/nimbus-jose-jwt) | `10.0.2` | `10.9.1` |\n| [net.minidev:json-smart](https://github.com/netplex/json-smart-v2) | `2.5.2` | `2.6.0` |\n| [com.google.api-client:google-api-client](https://github.com/googleapis/google-api-java-client) | `2.2.0` | `2.9.1` |\n| [com.google.oauth-client:google-oauth-client](https://github.com/googleapis/google-oauth-java-client) | `1.34.1` | `1.39.0` |\n| io.swagger.core.v3:swagger-core-jakarta | `2.2.30` | `2.2.55` |\n| io.swagger.core.v3:swagger-jaxrs2-jakarta | `2.2.30` | `2.2.55` |\n| [com.azure:azure-security-keyvault-secrets](https://github.com/Azure/azure-sdk-for-java) | `4.10.7` | `4.11.2` |\n| [com.azure:azure-identity-extensions](https://github.com/azure/azure-sdk-for-java) | `1.0.0` | `1.2.9` |\n| [jakarta.servlet:jakarta.servlet-api](https://github.com/eclipse-ee4j/servlet-api) | `6.0.0` | `6.1.0` |\n| [io.micrometer:micrometer-observation](https://github.com/micrometer-metrics/micrometer-commercial) | `1.16.7` | `1.17.1` |\n| [io.micrometer:micrometer-registry-prometheus](https://github.com/micrometer-metrics/micrometer-commercial) | `1.16.7` | `1.17.1` |\n| [io.micrometer:micrometer-core](https://github.com/micrometer-metrics/micrometer-commercial) | `1.16.7` | `1.17.1` |\n| [io.dropwizard.metrics:metrics-core](https://github.com/dropwizard/metrics) | `4.2.19` | `4.2.40` |\n| [ai.djl:api](https://github.com/deepjavalibrary/djl) | `0.34.0` | `0.36.0` |\n| [ai.djl.pytorch:pytorch-engine](https://github.com/deepjavalibrary/djl) | `0.34.0` | `0.36.0` |\n| [ai.djl.huggingface:tokenizers](https://github.com/deepjavalibrary/djl) | `0.34.0` | `0.36.0` |\n| [org.skyscreamer:jsonassert](https://github.com/skyscreamer/JSONassert) | `1.5.1` | `1.5.3` |\n| [io.jsonwebtoken:jjwt](https://github.com/jwtk/jjwt) | `0.9.1` | `0.13.0` |\n| [com.auth0:jwks-rsa](https://github.com/auth0/jwks-rsa-java) | `0.22.1` | `0.24.1` |\n| [io.socket:socket.io-server](https://github.com/trinopoty/socket.io-server-java) | `4.0.1` | `4.1.2` |\n| [io.socket:engine.io-server](https://github.com/socketio/engine.io-server-java) | `6.2.1` | `6.3.2` |\n| org.eclipse.jetty.websocket:jetty-websocket-jetty-api | `12.1.10` | `12.1.13` |\n| org.eclipse.jetty:jetty-http | `12.1.10` | `12.1.13` |\n| org.freemarker:freemarker | `2.3.33` | `2.3.35` |\n| [org.apache.commons:commons-csv](https://github.com/apache/commons-csv) | `1.12.0` | `1.14.1` |\n| com.opencsv:opencsv | `5.9` | `5.12.0` |\n| [org.quartz-scheduler:quartz](https://github.com/quartz-scheduler/quartz) | `2.5.0-rc2` | `2.5.2` |\n| [com.mchange:c3p0](https://github.com/swaldman/c3p0) | `0.14.1` | `0.14.2` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.4.8-jre` | `33.7.1-jre` |\n| [org.testcontainers:junit-jupiter](https://github.com/testcontainers/testcontainers-java) | `1.20.3` | `1.21.4` |\n| [com.slack.api:bolt-servlet](https://github.com/slackapi/java-slack-sdk) | `1.44.1` | `1.51.0` |\n| [com.slack.api:slack-api-client](https://github.com/slackapi/java-slack-sdk) | `1.44.1` | `1.51.0` |\n| [io.github.jamsesso:json-logic-java](https://github.com/jamsesso/json-logic-java) | `1.0.7` | `1.1.0` |\n| [org.commonmark:commonmark](https://github.com/commonmark/commonmark-java) | `0.26.0` | `0.30.0` |\n| [org.commonmark:commonmark-ext-gfm-strikethrough](https://github.com/commonmark/commonmark-java) | `0.26.0` | `0.30.0` |\n| [org.commonmark:commonmark-ext-autolink](https://github.com/commonmark/commonmark-java) | `0.26.0` | `0.30.0` |\n| [org.commonmark:commonmark-ext-gfm-tables](https://github.com/commonmark/commonmark-java) | `0.26.0` | `0.30.0` |\n| [com.azure:azure-storage-blob](https://github.com/Azure/azure-sdk-for-java) | `12.31.1` | `12.35.1` |\n| org.apache.poi:poi | `5.4.1` | `5.5.1` |\n| org.apache.poi:poi-ooxml | `5.4.1` | `5.5.1` |\n| org.apache.poi:poi-scratchpad | `5.4.1` | `5.5.1` |\n| [org.codehaus.mojo:buildnumber-maven-plugin](https://github.com/mojohaus/buildnumber-maven-plugin) | `3.0.0` | `3.3.0` |\n| io.swagger.core.v3:swagger-maven-plugin-jakarta | `2.2.30` | `2.2.55` |\n| [org.testcontainers:k3s](https://github.com/testcontainers/testcontainers-java) | `1.20.3` | `1.21.4` |\n| [com.github.docker-java:docker-java-bom](https://github.com/docker-java/docker-java) | `3.4.2` | `3.7.1` |\n| [com.microsoft.playwright:playwright](https://github.com/microsoft/playwright-java) | `1.49.0` | `1.62.0` |\n| org.eclipse.jetty:jetty-util | `12.1.10` | `12.1.13` |\n| [org.codehaus.mojo:rpm-maven-plugin](https://github.com/mojohaus/rpm-maven-plugin) | `2.2.0` | `2.3.0` |\n| [io.github.openfeign:feign-core](https://github.com/openfeign/feign) | `13.5` | `13.14` |\n| [io.github.openfeign:feign-jackson](https://github.com/openfeign/feign) | `13.5` | `13.14` |\n| [io.github.openfeign:feign-slf4j](https://github.com/openfeign/feign) | `13.5` | `13.14` |\n| [io.github.openfeign:feign-okhttp](https://github.com/openfeign/feign) | `13.5` | `13.14` |\n| [org.openapitools:jackson-databind-nullable](https://github.com/OpenAPITools/jackson-databind-nullable) | `0.2.6` | `0.2.11` |\n| [io.swagger.parser.v3:swagger-parser](https://github.com/swagger-api/swagger-parser) | `2.1.23` | `2.1.48` |\n| com.google.auth:google-auth-library-oauth2-http | `1.29.0` | `1.51.0` |\n| [com.nimbusds:oauth2-oidc-sdk](https://bitbucket.org/connect2id/oauth-2.0-sdk-with-openid-connect-extensions) | `11.38.1` | `11.38.2` |\n| [org.mozilla:rhino](https://github.com/mozilla/rhino) | `1.7.15.1` | `1.9.1` |\n| org.openapitools:openapi-generator-maven-plugin | `7.13.0` | `7.25.0` |\n\nUpdates `org.eclipse.jetty:jetty-bom` from 12.1.10 to 12.1.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jetty/jetty.project/releases\"\u003eorg.eclipse.jetty:jetty-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e12.1.13\u003c/h2\u003e\n\u003ch1\u003eSpecial Thanks to the following Eclipse Jetty community members\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e (DragonFSKY)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/kamilkrzywanski\"\u003e\u003ccode\u003e@​kamilkrzywanski\u003c/code\u003e\u003c/a\u003e (Kamil Krzywanski)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15548\"\u003e#15548\u003c/a\u003e - AbstractProxyServlet.filterServerResponseHeader returns existing value\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15504\"\u003e#15504\u003c/a\u003e - BouncyCastleClientALPNProcessor does not have a fallback for empty protocol string. (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15385\"\u003e#15385\u003c/a\u003e - Streamline dependencies for HTTP/3 Server with Quiche\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14930\"\u003e#14930\u003c/a\u003e - \u003ccode\u003eSymlinkAllowedResourceAliasChecker.check()\u003c/code\u003e fails with NPE (\u003ca href=\"https://github.com/kamilkrzywanski\"\u003e\u003ccode\u003e@​kamilkrzywanski\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14906\"\u003e#14906\u003c/a\u003e - Flaky test: RedispatchTests.testEe8FilterWithAwkwardRequestURI() — fails in 45% of CI builds (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14403\"\u003e#14403\u003c/a\u003e - \u003ccode\u003eRoundRobinConnectionPoolTest.testMultiplexWithMaxUsage()\u003c/code\u003e on FCGI is flaky (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.12\u003c/h2\u003e\n\u003ch1\u003eSpecial Thanks to the following Eclipse Jetty community members\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/zenios\"\u003e\u003ccode\u003e@​zenios\u003c/code\u003e\u003c/a\u003e (Dimitris Zenios)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15496\"\u003e#15496\u003c/a\u003e - mime-type filtering by IncludeExclude should always be case-insensitive\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15456\"\u003e#15456\u003c/a\u003e - Fragments in redirects not supported by default in standalone Jetty installation\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15453\"\u003e#15453\u003c/a\u003e - HttpServletResponse: setHeader(\u0026quot;Content-Length\u0026quot;, N) should be treated like setContentLengthLong(N)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/13970\"\u003e#13970\u003c/a\u003e - ForwardedRequestCustomizer uses connection port instead of proto default when host lacks port (\u003ca href=\"https://github.com/zenios\"\u003e\u003ccode\u003e@​zenios\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/577\"\u003e#577\u003c/a\u003e     - AbstractProxyServlet onServerResponseHeaders addHeader rather than setHeader\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.11\u003c/h2\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15345\"\u003e#15345\u003c/a\u003e - Move RateControl to jetty-io\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15308\"\u003e#15308\u003c/a\u003e - CachingWebAppClassLoader is not registering as parallel capable\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15267\"\u003e#15267\u003c/a\u003e - Introduce module for MinimumDataRateHandler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15234\"\u003e#15234\u003c/a\u003e - Review error response codes from EagerContentHandler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15232\"\u003e#15232\u003c/a\u003e - Jetty 12.1.x EE11 doesn't handle Session attributes properly\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15228\"\u003e#15228\u003c/a\u003e - Fix increased in memory usage between 12.1.8 and 12.1.10 caused by ZipFileSystems\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15226\"\u003e#15226\u003c/a\u003e - Server becomes inaccessible with thousands of qtp threads blocked in HttpChannelState.onIdleTimeout ReentrantLock\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15217\"\u003e#15217\u003c/a\u003e - jetty-quic-quiche-foreign fails on Windows due to eager resolution of Unix-only quiche_conn_set_keylog_fd\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15156\"\u003e#15156\u003c/a\u003e - Injecting authentication headers using request filters\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/e99386749a0a4888cd9b555ffc96a476fd48d94e\"\u003e\u003ccode\u003ee993867\u003c/code\u003e\u003c/a\u003e Updating to version 12.1.13\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/1fa2a1c33591cf35756c366f7cc87fd6a2d86216\"\u003e\u003ccode\u003e1fa2a1c\u003c/code\u003e\u003c/a\u003e [12.1.x EE9] Bump org.apache.maven.plugins:maven-compiler-plugin (\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15715\"\u003e#15715\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/c67d57d2e93bef68b9585493f0bf76f0e6e5af62\"\u003e\u003ccode\u003ec67d57d\u003c/code\u003e\u003c/a\u003e [12.1.x EE10] Bump jakarta.json.bind:jakarta.json.bind-api from 3.0.2 to 3.0....\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/3caa491da4662240caf318ddc14435692d2b7b28\"\u003e\u003ccode\u003e3caa491\u003c/code\u003e\u003c/a\u003e [12.1.x Root pom] Bump com.github.luben:zstd-jni from 1.5.7-15 to 1.5.7-16 in...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/1f8fafbb60640b72d9c3044ffa33df833f5b01c3\"\u003e\u003ccode\u003e1f8fafb\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14403\"\u003e#14403\u003c/a\u003e - Defer FCGI application dispatch until the parser returns (\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15648\"\u003e#15648\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/bc6e23aac5f886c0d5b614f09bc25933356da7c1\"\u003e\u003ccode\u003ebc6e23a\u003c/code\u003e\u003c/a\u003e [12.1.x EE9] Bump the dev-dependencies group across 1 directory with 3 update...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/42fd27319557e50b75261622c6d30edc5daa20b2\"\u003e\u003ccode\u003e42fd273\u003c/code\u003e\u003c/a\u003e Adding method Constraint test to improve test coverage\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/365b721cc3f08bba6a4ba3780fde8d2d4fcd50c4\"\u003e\u003ccode\u003e365b721\u003c/code\u003e\u003c/a\u003e Making CIDR pattern matching case insensitive\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/17c051c8cd4af3e2019cc1794db81e87464c1d64\"\u003e\u003ccode\u003e17c051c\u003c/code\u003e\u003c/a\u003e Fixes \u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14930\"\u003e#14930\u003c/a\u003e - Resolve base resource for SymlinkAllowedResourceAliasChecker (...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/8c18972ff79720d087d826c527732c465c7c3d1c\"\u003e\u003ccode\u003e8c18972\u003c/code\u003e\u003c/a\u003e [12.1.x Root pom] Bump the dev-dependencies group across 1 directory with 8 u...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/jetty/jetty.project/compare/jetty-12.1.10...jetty-12.1.13\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.eclipse.jetty.ee10:jetty-ee10-bom` from 12.1.10 to 12.1.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jetty/jetty.project/releases\"\u003eorg.eclipse.jetty.ee10:jetty-ee10-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e12.1.13\u003c/h2\u003e\n\u003ch1\u003eSpecial Thanks to the following Eclipse Jetty community members\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e (DragonFSKY)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/kamilkrzywanski\"\u003e\u003ccode\u003e@​kamilkrzywanski\u003c/code\u003e\u003c/a\u003e (Kamil Krzywanski)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15548\"\u003e#15548\u003c/a\u003e - AbstractProxyServlet.filterServerResponseHeader returns existing value\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15504\"\u003e#15504\u003c/a\u003e - BouncyCastleClientALPNProcessor does not have a fallback for empty protocol string. (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15385\"\u003e#15385\u003c/a\u003e - Streamline dependencies for HTTP/3 Server with Quiche\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14930\"\u003e#14930\u003c/a\u003e - \u003ccode\u003eSymlinkAllowedResourceAliasChecker.check()\u003c/code\u003e fails with NPE (\u003ca href=\"https://github.com/kamilkrzywanski\"\u003e\u003ccode\u003e@​kamilkrzywanski\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14906\"\u003e#14906\u003c/a\u003e - Flaky test: RedispatchTests.testEe8FilterWithAwkwardRequestURI() — fails in 45% of CI builds (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14403\"\u003e#14403\u003c/a\u003e - \u003ccode\u003eRoundRobinConnectionPoolTest.testMultiplexWithMaxUsage()\u003c/code\u003e on FCGI is flaky (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.12\u003c/h2\u003e\n\u003ch1\u003eSpecial Thanks to the following Eclipse Jetty community members\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/zenios\"\u003e\u003ccode\u003e@​zenios\u003c/code\u003e\u003c/a\u003e (Dimitris Zenios)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15496\"\u003e#15496\u003c/a\u003e - mime-type filtering by IncludeExclude should always be case-insensitive\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15456\"\u003e#15456\u003c/a\u003e - Fragments in redirects not supported by default in standalone Jetty installation\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15453\"\u003e#15453\u003c/a\u003e - HttpServletResponse: setHeader(\u0026quot;Content-Length\u0026quot;, N) should be treated like setContentLengthLong(N)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/13970\"\u003e#13970\u003c/a\u003e - ForwardedRequestCustomizer uses connection port instead of proto default when host lacks port (\u003ca href=\"https://github.com/zenios\"\u003e\u003ccode\u003e@​zenios\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/577\"\u003e#577\u003c/a\u003e     - AbstractProxyServlet onServerResponseHeaders addHeader rather than setHeader\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.11\u003c/h2\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15345\"\u003e#15345\u003c/a\u003e - Move RateControl to jetty-io\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15308\"\u003e#15308\u003c/a\u003e - CachingWebAppClassLoader is not registering as parallel capable\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15267\"\u003e#15267\u003c/a\u003e - Introduce module for MinimumDataRateHandler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15234\"\u003e#15234\u003c/a\u003e - Review error response codes from EagerContentHandler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15232\"\u003e#15232\u003c/a\u003e - Jetty 12.1.x EE11 doesn't handle Session attributes properly\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15228\"\u003e#15228\u003c/a\u003e - Fix increased in memory usage between 12.1.8 and 12.1.10 caused by ZipFileSystems\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15226\"\u003e#15226\u003c/a\u003e - Server becomes inaccessible with thousands of qtp threads blocked in HttpChannelState.onIdleTimeout ReentrantLock\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15217\"\u003e#15217\u003c/a\u003e - jetty-quic-quiche-foreign fails on Windows due to eager resolution of Unix-only quiche_conn_set_keylog_fd\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15156\"\u003e#15156\u003c/a\u003e - Injecting authentication headers using request filters\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/e99386749a0a4888cd9b555ffc96a476fd48d94e\"\u003e\u003ccode\u003ee993867\u003c/code\u003e\u003c/a\u003e Updating to version 12.1.13\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/1fa2a1c33591cf35756c366f7cc87fd6a2d86216\"\u003e\u003ccode\u003e1fa2a1c\u003c/code\u003e\u003c/a\u003e [12.1.x EE9] Bump org.apache.maven.plugins:maven-compiler-plugin (\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15715\"\u003e#15715\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/c67d57d2e93bef68b9585493f0bf76f0e6e5af62\"\u003e\u003ccode\u003ec67d57d\u003c/code\u003e\u003c/a\u003e [12.1.x EE10] Bump jakarta.json.bind:jakarta.json.bind-api from 3.0.2 to 3.0....\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/3caa491da4662240caf318ddc14435692d2b7b28\"\u003e\u003ccode\u003e3caa491\u003c/code\u003e\u003c/a\u003e [12.1.x Root pom] Bump com.github.luben:zstd-jni from 1.5.7-15 to 1.5.7-16 in...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/1f8fafbb60640b72d9c3044ffa33df833f5b01c3\"\u003e\u003ccode\u003e1f8fafb\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14403\"\u003e#14403\u003c/a\u003e - Defer FCGI application dispatch until the parser returns (\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15648\"\u003e#15648\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/bc6e23aac5f886c0d5b614f09bc25933356da7c1\"\u003e\u003ccode\u003ebc6e23a\u003c/code\u003e\u003c/a\u003e [12.1.x EE9] Bump the dev-dependencies group across 1 directory with 3 update...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/42fd27319557e50b75261622c6d30edc5daa20b2\"\u003e\u003ccode\u003e42fd273\u003c/code\u003e\u003c/a\u003e Adding method Constraint test to improve test coverage\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/365b721cc3f08bba6a4ba3780fde8d2d4fcd50c4\"\u003e\u003ccode\u003e365b721\u003c/code\u003e\u003c/a\u003e Making CIDR pattern matching case insensitive\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/17c051c8cd4af3e2019cc1794db81e87464c1d64\"\u003e\u003ccode\u003e17c051c\u003c/code\u003e\u003c/a\u003e Fixes \u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14930\"\u003e#14930\u003c/a\u003e - Resolve base resource for SymlinkAllowedResourceAliasChecker (...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/8c18972ff79720d087d826c527732c465c7c3d1c\"\u003e\u003ccode\u003e8c18972\u003c/code\u003e\u003c/a\u003e [12.1.x Root pom] Bump the dev-dependencies group across 1 directory with 8 u...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/jetty/jetty.project/compare/jetty-12.1.10...jetty-12.1.13\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.eclipse.jetty:jetty-server` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10:jetty-ee10-servlet` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jetty-server` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jakarta-server` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10:jetty-ee10-servlets` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty:jetty-io` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10:jetty-ee10-bom` from 12.1.10 to 12.1.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jetty/jetty.project/releases\"\u003eorg.eclipse.jetty.ee10:jetty-ee10-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e12.1.13\u003c/h2\u003e\n\u003ch1\u003eSpecial Thanks to the following Eclipse Jetty community members\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e (DragonFSKY)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/kamilkrzywanski\"\u003e\u003ccode\u003e@​kamilkrzywanski\u003c/code\u003e\u003c/a\u003e (Kamil Krzywanski)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15548\"\u003e#15548\u003c/a\u003e - AbstractProxyServlet.filterServerResponseHeader returns existing value\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15504\"\u003e#15504\u003c/a\u003e - BouncyCastleClientALPNProcessor does not have a fallback for empty protocol string. (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15385\"\u003e#15385\u003c/a\u003e - Streamline dependencies for HTTP/3 Server with Quiche\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14930\"\u003e#14930\u003c/a\u003e - \u003ccode\u003eSymlinkAllowedResourceAliasChecker.check()\u003c/code\u003e fails with NPE (\u003ca href=\"https://github.com/kamilkrzywanski\"\u003e\u003ccode\u003e@​kamilkrzywanski\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14906\"\u003e#14906\u003c/a\u003e - Flaky test: RedispatchTests.testEe8FilterWithAwkwardRequestURI() — fails in 45% of CI builds (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14403\"\u003e#14403\u003c/a\u003e - \u003ccode\u003eRoundRobinConnectionPoolTest.testMultiplexWithMaxUsage()\u003c/code\u003e on FCGI is flaky (\u003ca href=\"https://github.com/DragonFSKY\"\u003e\u003ccode\u003e@​DragonFSKY\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.12\u003c/h2\u003e\n\u003ch1\u003eSpecial Thanks to the following Eclipse Jetty community members\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/zenios\"\u003e\u003ccode\u003e@​zenios\u003c/code\u003e\u003c/a\u003e (Dimitris Zenios)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15496\"\u003e#15496\u003c/a\u003e - mime-type filtering by IncludeExclude should always be case-insensitive\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15456\"\u003e#15456\u003c/a\u003e - Fragments in redirects not supported by default in standalone Jetty installation\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15453\"\u003e#15453\u003c/a\u003e - HttpServletResponse: setHeader(\u0026quot;Content-Length\u0026quot;, N) should be treated like setContentLengthLong(N)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/13970\"\u003e#13970\u003c/a\u003e - ForwardedRequestCustomizer uses connection port instead of proto default when host lacks port (\u003ca href=\"https://github.com/zenios\"\u003e\u003ccode\u003e@​zenios\u003c/code\u003e\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/577\"\u003e#577\u003c/a\u003e     - AbstractProxyServlet onServerResponseHeaders addHeader rather than setHeader\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e12.1.11\u003c/h2\u003e\n\u003ch1\u003eChangelog\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15345\"\u003e#15345\u003c/a\u003e - Move RateControl to jetty-io\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15308\"\u003e#15308\u003c/a\u003e - CachingWebAppClassLoader is not registering as parallel capable\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15267\"\u003e#15267\u003c/a\u003e - Introduce module for MinimumDataRateHandler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15234\"\u003e#15234\u003c/a\u003e - Review error response codes from EagerContentHandler\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15232\"\u003e#15232\u003c/a\u003e - Jetty 12.1.x EE11 doesn't handle Session attributes properly\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15228\"\u003e#15228\u003c/a\u003e - Fix increased in memory usage between 12.1.8 and 12.1.10 caused by ZipFileSystems\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15226\"\u003e#15226\u003c/a\u003e - Server becomes inaccessible with thousands of qtp threads blocked in HttpChannelState.onIdleTimeout ReentrantLock\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15217\"\u003e#15217\u003c/a\u003e - jetty-quic-quiche-foreign fails on Windows due to eager resolution of Unix-only quiche_conn_set_keylog_fd\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15156\"\u003e#15156\u003c/a\u003e - Injecting authentication headers using request filters\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/e99386749a0a4888cd9b555ffc96a476fd48d94e\"\u003e\u003ccode\u003ee993867\u003c/code\u003e\u003c/a\u003e Updating to version 12.1.13\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/1fa2a1c33591cf35756c366f7cc87fd6a2d86216\"\u003e\u003ccode\u003e1fa2a1c\u003c/code\u003e\u003c/a\u003e [12.1.x EE9] Bump org.apache.maven.plugins:maven-compiler-plugin (\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15715\"\u003e#15715\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/c67d57d2e93bef68b9585493f0bf76f0e6e5af62\"\u003e\u003ccode\u003ec67d57d\u003c/code\u003e\u003c/a\u003e [12.1.x EE10] Bump jakarta.json.bind:jakarta.json.bind-api from 3.0.2 to 3.0....\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/3caa491da4662240caf318ddc14435692d2b7b28\"\u003e\u003ccode\u003e3caa491\u003c/code\u003e\u003c/a\u003e [12.1.x Root pom] Bump com.github.luben:zstd-jni from 1.5.7-15 to 1.5.7-16 in...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/1f8fafbb60640b72d9c3044ffa33df833f5b01c3\"\u003e\u003ccode\u003e1f8fafb\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14403\"\u003e#14403\u003c/a\u003e - Defer FCGI application dispatch until the parser returns (\u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/15648\"\u003e#15648\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/bc6e23aac5f886c0d5b614f09bc25933356da7c1\"\u003e\u003ccode\u003ebc6e23a\u003c/code\u003e\u003c/a\u003e [12.1.x EE9] Bump the dev-dependencies group across 1 directory with 3 update...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/42fd27319557e50b75261622c6d30edc5daa20b2\"\u003e\u003ccode\u003e42fd273\u003c/code\u003e\u003c/a\u003e Adding method Constraint test to improve test coverage\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/365b721cc3f08bba6a4ba3780fde8d2d4fcd50c4\"\u003e\u003ccode\u003e365b721\u003c/code\u003e\u003c/a\u003e Making CIDR pattern matching case insensitive\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/17c051c8cd4af3e2019cc1794db81e87464c1d64\"\u003e\u003ccode\u003e17c051c\u003c/code\u003e\u003c/a\u003e Fixes \u003ca href=\"https://redirect.github.com/jetty/jetty.project/issues/14930\"\u003e#14930\u003c/a\u003e - Resolve base resource for SymlinkAllowedResourceAliasChecker (...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jetty/jetty.project/commit/8c18972ff79720d087d826c527732c465c7c3d1c\"\u003e\u003ccode\u003e8c18972\u003c/code\u003e\u003c/a\u003e [12.1.x Root pom] Bump the dev-dependencies group across 1 directory with 8 u...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/jetty/jetty.project/compare/jetty-12.1.10...jetty-12.1.13\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.commons:commons-lang3` from 3.18.0 to 3.20.0\n\nUpdates `io.opentelemetry:opentelemetry-bom` from 1.62.0 to 1.65.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/releases\"\u003eio.opentelemetry:opentelemetry-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was deprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector exporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e, \u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e, \u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed tokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based on string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default \u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements it to stop its polling executor (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRecord \u003ccode\u003eerror.type\u003c/code\u003e on failed collections in \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8650\"\u003e#8650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTesting: Fix \u003ccode\u003eLongExemplarAssert.hasFilteredAttributesSatisfyingExactly\u003c/code\u003e to enforce exact attribute matching (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8518\"\u003e#8518\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eLogs\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eReadWriteLogRecord\u003c/code\u003e default \u003ccode\u003egetObservedTimestampEpochNanos\u003c/code\u003e returning the record timestamp (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8504\"\u003e#8504\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eProfiles\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix profiles data model attribute count parameter name and timestamp doc unit (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8514\"\u003e#8514\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExporters\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eWARNING\u003c/strong\u003e Zipkin: Delete \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e; the artifact is no longer published (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8677\"\u003e#8677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Use HTTP error response bodies in \u003ccode\u003eHttpExporter\u003c/code\u003e warning logs (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8428\"\u003e#8428\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e mTLS when using the platform default trust store (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8565\"\u003e#8565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix sign extension on \u003ccode\u003eLogRecord\u003c/code\u003e flags in the low-allocation log marshaler (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8493\"\u003e#8493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Standardize \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e, \u003ccode\u003eJdkHttpSender\u003c/code\u003e, and \u003ccode\u003eUpstreamGrpcSender\u003c/code\u003e shutdown to await executor/channel termination (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8495\"\u003e#8495\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8627\"\u003e#8627\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8624\"\u003e#8624\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Log the underlying except/ion when a gRPC response frame is invalid (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8626\"\u003e#8626\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/blob/main/CHANGELOG.md\"\u003eio.opentelemetry:opentelemetry-bom's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0 (2026-08-07)\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was\ndeprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector\nexporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed\ntokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based\non string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default\n\u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements\nit to stop its polling executor\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/7bc11edca518d4de168230c84a71484a66cbac40\"\u003e\u003ccode\u003e7bc11ed\u003c/code\u003e\u003c/a\u003e [release/v1.65.x] Prepare release 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8705\"\u003e#8705\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/60d7ecfe270354f8a329a0ecad42fca2650cc36e\"\u003e\u003ccode\u003e60d7ecf\u003c/code\u003e\u003c/a\u003e Prepare 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8700\"\u003e#8700\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/6d41aa40ed39eed5fb000e7595e1b1dd279fed91\"\u003e\u003ccode\u003e6d41aa4\u003c/code\u003e\u003c/a\u003e Bound jaeger-baggage parsing work by tokens rather than accepted entries (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/db1d6bee36537b4f356a6b7d616e587217938177\"\u003e\u003ccode\u003edb1d6be\u003c/code\u003e\u003c/a\u003e Enforce last-value-wins semantics in AttributesMap without performance regres...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/995cb3c4328f76a21f12e79b2667c684845899ca\"\u003e\u003ccode\u003e995cb3c\u003c/code\u003e\u003c/a\u003e Avoid unsafe string encoder on Android (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8637\"\u003e#8637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/48b0185d06a8d34d713d4fc24d6c70502b6f1531\"\u003e\u003ccode\u003e48b0185\u003c/code\u003e\u003c/a\u003e Do not overwrite existing baggage with empty baggage in JaegerPropagator (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/2009d5840f24251e65aac98c0f2da2f304e0bf7b\"\u003e\u003ccode\u003e2009d58\u003c/code\u003e\u003c/a\u003e Avoid exposing configuration values in errors (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8669\"\u003e#8669\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3cafbbb6206afc6cebb984d9b81e2339a506f148\"\u003e\u003ccode\u003e3cafbbb\u003c/code\u003e\u003c/a\u003e Deprecate OpenCensus shim public API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8674\"\u003e#8674\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/0e033e2ca8128ca470abd33f3ef1f2f684bcf610\"\u003e\u003ccode\u003e0e033e2\u003c/code\u003e\u003c/a\u003e Remove stray token from addLogRecordProcessorCustomizer Javadoc (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8641\"\u003e#8641\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3d1cce87bd4a78432cca4214a96586046a6e4590\"\u003e\u003ccode\u003e3d1cce8\u003c/code\u003e\u003c/a\u003e Fix ObfuscatedLoggerProvider Javadoc copy-paste example (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8639\"\u003e#8639\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/compare/v1.62.0...v1.65.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.eclipse.angus:angus-mail` from 2.0.4 to 2.0.5\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/releases\"\u003eorg.eclipse.angus:angus-mail's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eAngus Mail 2.0.5 Final Release\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eEe10 11 sync by \u003ca href=\"https://github.com/jbescos\"\u003e\u003ccode\u003e@​jbescos\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/pull/181\"\u003eeclipse-ee4j/angus-mail#181\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e2.0.4 release by \u003ca href=\"https://github.com/lukasj\"\u003e\u003ccode\u003e@​lukasj\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/pull/182\"\u003eeclipse-ee4j/angus-mail#182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eactivation api 2.1.4, mail api 2.1.5, angus activation 2.0.3 by \u003ca href=\"https://github.com/lukasj\"\u003e\u003ccode\u003e@​lukasj\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/pull/183\"\u003eeclipse-ee4j/angus-mail#183\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/compare/2.0.4...2.0.5\"\u003ehttps://github.com/eclipse-ee4j/angus-mail/compare/2.0.4...2.0.5\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/a7a4a37844717d3967418b1640456e49153a7e7c\"\u003e\u003ccode\u003ea7a4a37\u003c/code\u003e\u003c/a\u003e Prepare release org.eclipse.angus:all:2.0.5\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/a7d6745aaaa831c9c2140eac2ee5b8a7d275895e\"\u003e\u003ccode\u003ea7d6745\u003c/code\u003e\u003c/a\u003e activation api 2.1.4, mail api 2.1.5, angus activation 2.0.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/c93dde0d24ff8ad2d4cac38e9bd3da46a7f06e30\"\u003e\u003ccode\u003ec93dde0\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/issues/182\"\u003e#182\u003c/a\u003e from eclipse-ee4j/2.0.4-RELEASE\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/ddcc8e35198bc1f51511f84956b1d7610aad9175\"\u003e\u003ccode\u003eddcc8e3\u003c/code\u003e\u003c/a\u003e From-Address not parsed correctly \u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/issues/161\"\u003e#161\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/issues/174\"\u003e#174\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/c4e72d2a91c14f2b4d8bbaf5e6b747f1cc0de913\"\u003e\u003ccode\u003ec4e72d2\u003c/code\u003e\u003c/a\u003e Update github action versions\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/f1606338a49bb2588c0f6ecef4a2e6e18a1208bf\"\u003e\u003ccode\u003ef160633\u003c/code\u003e\u003c/a\u003e OAuth2.md: POP3 works with O365 with towlines\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/acbb015dfbadb1ae6fd3e682490ab442786a6dd2\"\u003e\u003ccode\u003eacbb015\u003c/code\u003e\u003c/a\u003e Update changes files, it was wrong (\u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/issues/177\"\u003e#177\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/b96c2c32a44e73933f877d4cd085b66027d44c2d\"\u003e\u003ccode\u003eb96c2c3\u003c/code\u003e\u003c/a\u003e Rename resource files so JakartaMail and JavaMail can co-exist (\u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/issues/171\"\u003e#171\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/8d4a8ce3d5cf0f7ac21fb042e8495b76b6b4462a\"\u003e\u003ccode\u003e8d4a8ce\u003c/code\u003e\u003c/a\u003e Update CHANGES.txt\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/commit/dbd22ec2c2bb7272e9b56ca367bee82a9015ea31\"\u003e\u003ccode\u003edbd22ec\u003c/code\u003e\u003c/a\u003e Remove this-escape compiler warnings \u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/issues/141\"\u003e#141\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/eclipse-ee4j/angus-mail/issues/142\"\u003e#142\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/eclipse-ee4j/angus-mail/compare/2.0.4...2.0.5\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.core:jackson-annotations` from 2.18.10 to 2.22\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/c638c81e78c0857d8d70edf7636066c2abe5a863\"\u003e\u003ccode\u003ec638c81\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-annotations-2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/625a693bbe178f79f18f2f58b3fb97423d3fe461\"\u003e\u003ccode\u003e625a693\u003c/code\u003e\u003c/a\u003e Prep for 2.22.0 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/5038777e7dd68ece572c85b14a389dd62426ba3a\"\u003e\u003ccode\u003e5038777\u003c/code\u003e\u003c/a\u003e docs:update README, SECURITY, and docs links to canonical URLs (\u003ca href=\"https://redirect.github.com/FasterXML/jackson-annotations/issues/348\"\u003e#348\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/dd18c40f01a8597ac4a643e1461196b5a3d73cf5\"\u003e\u003ccode\u003edd18c40\u003c/code\u003e\u003c/a\u003e Remove default value for \u003ca href=\"https://github.com/JsonApplyView\"\u003e\u003ccode\u003e@​JsonApplyView\u003c/code\u003e\u003c/a\u003e.value (\u003ca href=\"https://redirect.github.com/FasterXML/jackson-annotations/issues/347\"\u003e#347\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/85366adedaa535cfdc5cb40234fb3431be10874e\"\u003e\u003ccode\u003e85366ad\u003c/code\u003e\u003c/a\u003e PR for JsonApplyView (\u003ca href=\"https://redirect.github.com/FasterXML/jackson-annotations/issues/78\"\u003e#78\u003c/a\u003e) (\u003ca href=\"https://redirect.github.com/FasterXML/jackson-annotations/issues/338\"\u003e#338\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/bdf79ad667eef570978a75a7ca405fc203147a83\"\u003e\u003ccode\u003ebdf79ad\u003c/code\u003e\u003c/a\u003e Implement \u003ca href=\"https://redirect.github.com/FasterXML/jackson-annotations/issues/334\"\u003e#334\u003c/a\u003e: better \u003ccode\u003eLocale\u003c/code\u003e handling for \u003ca href=\"https://github.com/JsonFormat\"\u003e\u003ccode\u003e@​JsonFormat\u003c/code\u003e\u003c/a\u003e (via JsonFormat.Valu...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/d020e4a4efdd744ec543f7a89b0e05b79b8b4d16\"\u003e\u003ccode\u003ed020e4a\u003c/code\u003e\u003c/a\u003e Fix couple of minor bugs (\u003ca href=\"https://redirect.github.com/FasterXML/jackson-annotations/issues/343\"\u003e#343\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/5731cfe0f447beddb22fb47fb3f9d2434e00711d\"\u003e\u003ccode\u003e5731cfe\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003e@JsonTypeInfo.writeTypeIdForDefaultImpl\u003c/code\u003e to allow skipping writing of ty...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/fc9c6ab64ef30aa518be96bbbb0ed826433d33e7\"\u003e\u003ccode\u003efc9c6ab\u003c/code\u003e\u003c/a\u003e Javadoc improvement for \u003ccode\u003eJsonFormat.Feature.ACCEPT_CASE_INSENSITIVE_VALUES\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-annotations/commit/a5262541fc887f0fd5047744bcfdc7eaa0f03335\"\u003e\u003ccode\u003ea526254\u003c/code\u003e\u003c/a\u003e Fix \u003ca href=\"https://redirect.github.com/FasterXML/jackson-annotations/issues/339\"\u003e#339\u003c/a\u003e: Add \u003ccode\u003eOptBoolean\u003c/code\u003e valued property \u0026quot;order\u0026quot; in `@JsonIncludeProperties...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-annotations/compare/jackson-annotations-2.18.10...jackson-annotations-2.22\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.core:jackson-core` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.core:jackson-databind` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.module:jackson-module-blackbird` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.datatype:jackson-datatype-jsr353` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.datatype:jackson-datatype-jakarta-jsonp` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.dataformat:jackson-dataformat-cbor` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.dataformat:jackson-dataformat-yaml` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.core:jackson-core` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.core:jackson-databind` from 2.18.10 to 2.22\n\nUpdates `com.fasterxml.jackson.module:jackson-module-blackbird` from 2.18.10 to 2.22\n\nUpdates `io.dropwizard:dropwizard-core` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-assets` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-http2` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-client` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-testing` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-json-logging` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-metrics` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-jersey` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-views` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-jetty` from 5.0.0 to 5.0.2\n\nUpdates `org.eclipse.jetty:jetty-server` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10:jetty-ee10-servlet` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jetty-server` from 12.1.10 to 12.1.13\n\nUpdates `org.eclipse.jetty.ee10.websocket:jetty-ee10-websocket-jakarta-server` from 12.1.10 to 12.1.13\n\nUpdates `io.dropwizard:dropwizard-assets` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-http2` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-client` from 5.0.0 to 5.0.2\n\nUpdates `io.dropwizard:dropwizard-testing` from 5.0.0 to 5.0.2\n\nUpdates `ch.qos.logback:logback-core` from 1.5.36 to 1.6.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/qos-ch/logback/releases\"\u003ech.qos.logback:logback-core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eLogback 1.6.3\u003c/h2\u003e\n\u003ch1\u003e2026-08-14 Release of logback version 1.6.3\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eIn response \u003ca href=\"https://www.cve.org/cverecord?id=CVE-2026-19880\"\u003eCVE-2026-19880\u003c/a\u003e,  \u003ccode\u003eMDCBasedDiscriminator\u003c/code\u003e (used by \u003ccode\u003eSiftingAppender\u003c/code\u003e) now strips forward and  backward slashes (\u003ccode\u003e/\u003c/code\u003e, \u003ccode\u003e\\\u003c/code\u003e) from MDC values before they are used as  discriminating keys. This prevents path segments from escaping into  destinations controlled by an attacker. When sanitisation actually changes a  value, a warning is emitted; the warning is rate-limited (a small batch, then  a lull of about ten minutes).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eColour console support is split out into a dedicated  \u003ca href=\"https://logback.qos.ch/manual/appenders.html#JansiConsoleAppender\"\u003e\u003ccode\u003eJansiConsoleAppender\u003c/code\u003e\u003c/a\u003e. It wraps stdout or stderr with  Jansi so ANSI escape sequences (for example coloured patterns) render  correctly on terminals that need it, notably Windows. Prefer this class over  the older path described next. See the  \u003ca href=\"https://logback.qos.ch/manual/appenders.html#JansiConsoleAppender\"\u003eappenders documentation\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe \u003ccode\u003ewithJansi\u003c/code\u003e property on \u003ccode\u003eConsoleAppender\u003c/code\u003e is \u003cstrong\u003edeprecated\u003c/strong\u003e. Existing  configurations that still set \u003ccode\u003e\u0026lt;withJansi\u0026gt;true\u0026lt;/withJansi\u0026gt;\u003c/code\u003e continue to work  for compatibility, but new setups should use \u003ccode\u003eJansiConsoleAppender\u003c/code\u003e instead.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ccode\u003eConsoleAppender\u003c/code\u003e no longer treats the process console as an exclusive  resource: stopping it does not close \u003ccode\u003eSystem.out\u003c/code\u003e / \u003ccode\u003eSystem.err\u003c/code\u003e.  \u003ccode\u003eJansiConsoleAppender\u003c/code\u003e pairs each \u003ccode\u003eAnsiConsole.systemInstall()\u003c/code\u003e with  \u003ccode\u003esystemUninstall()\u003c/code\u003e on stop, so repeated start/stop cycles do not leave Jansi  installed or tear down streams shared with the rest of the JVM. Related  behavior is covered by tests for  \u003ca href=\"https://redirect.github.com/qos-ch/logback/issues/1063\"\u003eissues/1063\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eInvocation throttling helpers were reworked: \u003ccode\u003eSimpleInvocationGate\u003c/code\u003e is renamed  \u003ccode\u003eFixedIntervalInvocationGate\u003c/code\u003e, and \u003ccode\u003eBatchedFixedIntervalInvocationGate\u003c/code\u003e allows  a short burst of invocations before applying a fixed lull. The sanitisation\nwarning above uses the batched gate.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe JPMS \u003ccode\u003emodule-info\u003c/code\u003e for logback-core now exports the  \u003ccode\u003ech.qos.logback.core.property\u003c/code\u003e package, which had been missing from the module   descriptor.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA bit-wise identical binary of this version can be reproduced by building from  \u003ca href=\"https://github.com/qos-ch/logback\"\u003esource code\u003c/a\u003e at commit  \u003ccode\u003ee8e824dede022a6d7208b36cfa875b0d1b7772f3\u003c/code\u003e associated with the tag \u003ccode\u003ev_1.6.3\u003c/code\u003e.  The release was built using Java \u0026quot;21\u0026quot; 2023-10-17 LTS build 21.0.1.+12-LTS-29   under Linux Debian 11.6.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e--\nSponsoring SLF4J/logback/reload4j at \u003ca href=\"https://github.com/sponsors/qos-ch\"\u003ehttps://github.com/sponsors/qos-ch\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eLogback 1.6.2\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/user-attachments/assets/9ceaf157-b758-4188-815d-edfe4e1b4edd\"\u003ehttps://github.com/user-attachments/assets/9ceaf157-b758-4188-815d-edfe4e1b4edd\u003c/a\u003e\u003c/p\u003e\n\u003ch1\u003e2026-08-10 Release of logback version 1.6.2\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eConfiguration analysis now detects \u003cem\u003econtradictory caller-data inclusion instructions\u003c/em\u003e. For example, an \u003ccode\u003eAsyncAppender\u003c/code\u003e, \u003ccode\u003eSocketAppender\u003c/code\u003e or \u003ccode\u003eSMTPAppender\u003c/code\u003e with \u003ccode\u003eincludeCallerData\u003c/code\u003e left at the default \u003ccode\u003efalse\u003c/code\u003e is incompatible with a layout or encoder pattern that uses a caller-data converter such as \u003ccode\u003e%C\u003c/code\u003e, \u003ccode\u003e%M\u003c/code\u003e, \u003ccode\u003e%L\u003c/code\u003e, \u003ccode\u003e%F\u003c/code\u003e, \u003ccode\u003e%l\u003c/code\u003e or \u003ccode\u003e%caller\u003c/code\u003e. At runtime those converters would print question marks and still incur extraction cost on a worker thread. Logback now emits a configuration-time warning when such instructions disagree. See \u003ca href=\"https://logback.qos.ch/codes.html#callerContradiction\"\u003ecodes.html#callerContradiction\u003c/a\u003e for details. This issue was reported in \u003ca href=\"https://redirect.github.com/qos-ch/logback/issues/1059\"\u003eissues/1059\u003c/a\u003e by \u003ca href=\"https://github.com/leeychee\"\u003eleeychee\u003c/a\u003e. The initial analysis was contributed by \u003ca href=\"https://github.com/seonwooj0810\"\u003eseonwoo_jung\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eCaller-contradiction analysis can be turned off by setting the \u003ccode\u003elogback.skipCallerContradictionAnalysis\u003c/code\u003e variable to \u003ccode\u003etrue\u003c/code\u003e, either as a system property (\u003ccode\u003e-Dlogback.skipCallerContradictionAnalysis=true\u003c/code\u003e) or as a property in the configuration file:\u003c/p\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;property name=\u0026quot;logback.skipCallerContradictionAnalysis\u0026quot; value=\u0026quot;true\u0026quot;/\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ccode\u003eSimpleSocketServer\u003c/code\u003e and \u003ccode\u003eSimpleSSLSocketServer\u003c/code\u003e now require an explicit client IP whitelist. On the command line, pass one or more allowed addresses (single IPs or CIDR ranges) after the configuration file. An empty whitelist means no clients are accepted. When embedding the server programmatically, register allowed addresses with \u003ccode\u003eaddAllowedClientAddress(String)\u003c/code\u003e or \u003ccode\u003esetAllowedClientAddresses(Collection)\u003c/code\u003e before clients connect. See the documentation on \u003ca href=\"https://logback.qos.ch/manual/appenders.html#simpleSocketServerClientAccess\"\u003erestricting client access\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdded \u003ccode\u003eThrowableProxyVOBuilder\u003c/code\u003e for assembling a \u003ccode\u003eThrowableProxyVO\u003c/code\u003e field by field, with a corresponding \u003ccode\u003eThrowableProxyVO.builder()\u003c/code\u003e entry point.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDependency analysis handlers now run their \u003ccode\u003epostHandle\u003c/code\u003e method after child models have been processed, so checks that depend on nested appenders (such as caller-contradiction analysis) see a complete picture.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated several dependencies, including Angus Mail to 2.0.4 and Jetty (test) to 12.1.12.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA bit-wise identical binary of this version can be reproduced by building from \u003ca href=\"https://github.com/qos-ch/logback\"\u003esource code\u003c/a\u003e at commit e3d78330ad1ba024fd987fd00c3ffb9cfcdb07dc associated with the tag \u003ccode\u003ev_1.6.2\u003c/code\u003e. The release was built using Java \u0026quot;21\u0026quot; 2023-10-17 LTS build 21.0.1.+12-LTS-29 under Linux Debian 11.6.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eLogback 1.6.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003e2026-07-28 Release of logback version 1.6.1\u003c/strong\u003e\u003c/p\u003e\n\u003cp\u003e• In TimeBasedRollingPolicy, when the file option is set, the intermediate file renamed before asynchronous compression now receives the target archive name without the compression suffix (e.g. \u003ccode\u003e.gz\u003c/code\u003e, \u003ccode\u003e.zip\u003c/code\u003e, \u003ccode\u003e.xz\u003c/code\u003e). Previously it used a nanotime-based \u003ccode\u003e.tmp\u003c/code\u003e suffix. This makes the file easier to identify if compression fails during rollover. (See also the following paragraph.)\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/bloc...\n\n_Description has been truncated_","html_url":"https://github.com/open-metadata/OpenMetadata/pull/32843","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/open-metadata%2FOpenMetadata/issues/32843","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/32843/packages"}},{"old_version":"33.6.0-jre","new_version":"33.7.1-jre","update_type":"minor","path":null,"pr_created_at":"2026-09-06T18:24:26.000Z","version_change":"33.6.0-jre → 33.7.1-jre","issue":{"uuid":"5366824603","node_id":"PR_kwDOTN5Mws8AAAABCbGmOQ","number":64,"state":"open","title":"Bump the deps group across 1 directory with 11 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-06T18:24:26.000Z","updated_at":"2026-09-06T18:33:19.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"deps","update_count":11,"packages":[{"name":"com.diffplug.spotless","old_version":"8.9.0","new_version":"8.10.1"},{"name":"gradle-wrapper","old_version":"9.7.0","new_version":"9.7.1","repository_url":"https://github.com/gradle/gradle"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"com.squareup.okhttp3:okhttp","old_version":"5.4.0","new_version":"5.5.0","repository_url":"https://github.com/lysine-dev/okhttp"},{"name":"com.squareup.okhttp3:okhttp-jvm","old_version":"5.4.0","new_version":"5.5.0","repository_url":"https://github.com/lysine-dev/okhttp"},{"name":"net.bytebuddy:byte-buddy-agent","old_version":"1.18.11","new_version":"1.18.13","repository_url":"https://github.com/raphw/byte-buddy"},{"name":"org.checkerframework:checker-qual","old_version":"4.2.2","new_version":"4.2.3","repository_url":"https://github.com/typetools/checker-framework"},{"name":"org.javassist:javassist","old_version":"3.32.0-GA","new_version":"3.33.0-GA","repository_url":"https://github.com/jboss-javassist/javassist"},{"name":"org.projectlombok:lombok","old_version":"1.18.46","new_version":"1.18.48","repository_url":"https://github.com/projectlombok/lombok"},{"name":"org.yaml:snakeyaml","old_version":"2.6","new_version":"2.7"},{"name":"org.graalvm.buildtools.native","old_version":"1.1.9","new_version":"1.1.11","repository_url":"https://github.com/graalvm/native-build-tools"}],"path":null,"ecosystem":"maven"},"body":"Bumps the deps group with 11 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| com.diffplug.spotless | `8.9.0` | `8.10.1` |\n| [gradle-wrapper](https://github.com/gradle/gradle) | `9.7.0` | `9.7.1` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [com.squareup.okhttp3:okhttp](https://github.com/lysine-dev/okhttp) | `5.4.0` | `5.5.0` |\n| [com.squareup.okhttp3:okhttp-jvm](https://github.com/lysine-dev/okhttp) | `5.4.0` | `5.5.0` |\n| [net.bytebuddy:byte-buddy-agent](https://github.com/raphw/byte-buddy) | `1.18.11` | `1.18.13` |\n| [org.checkerframework:checker-qual](https://github.com/typetools/checker-framework) | `4.2.2` | `4.2.3` |\n| [org.javassist:javassist](https://github.com/jboss-javassist/javassist) | `3.32.0-GA` | `3.33.0-GA` |\n| [org.projectlombok:lombok](https://github.com/projectlombok/lombok) | `1.18.46` | `1.18.48` |\n| org.yaml:snakeyaml | `2.6` | `2.7` |\n| [org.graalvm.buildtools.native](https://github.com/graalvm/native-build-tools) | `1.1.9` | `1.1.11` |\n\n\nUpdates `com.diffplug.spotless` from 8.9.0 to 8.10.1\n\nUpdates `gradle-wrapper` from 9.7.0 to 9.7.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/gradle/gradle/releases\"\u003egradle-wrapper's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e9.7.1\u003c/h2\u003e\n\u003cp\u003eThe Gradle team is excited to announce Gradle 9.7.1.\u003c/p\u003e\n\u003cp\u003eThis is a patch release for 9.7.0. We recommend using 9.7.1 instead of 9.7.0.\u003c/p\u003e\n\u003cp\u003eHere are the highlights of 9.7.0 release:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIsolated Projects graduates to incubating\u003c/li\u003e\n\u003cli\u003eBroader Configuration Cache compatibility\u003c/li\u003e\n\u003cli\u003eResilient Sync helps you fix broken builds\u003c/li\u003e\n\u003cli\u003eMore source locations in problem reports\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003ca href=\"https://docs.gradle.org/9.7.1/release-notes.html\"\u003eRead the Release Notes\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eWe would like to thank the following community members for their contributions to this release of Gradle:\n\u003ca href=\"https://github.com/aSemy\"\u003eAdam\u003c/a\u003e,\n\u003ca href=\"https://github.com/Gautam-aman\"\u003eAman Gautam\u003c/a\u003e,\n\u003ca href=\"https://github.com/YukiCodepth\"\u003eAman Kumar\u003c/a\u003e,\n\u003ca href=\"https://github.com/adubrouski\"\u003eAnton Dubrouski\u003c/a\u003e,\n\u003ca href=\"https://github.com/liutikas\"\u003eAurimas\u003c/a\u003e,\n\u003ca href=\"https://github.com/gbhavya07\"\u003egbhavya07\u003c/a\u003e,\n\u003ca href=\"https://github.com/joshfriend\"\u003eJosh Friend\u003c/a\u003e,\n\u003ca href=\"https://github.com/nicklauslittle-gov\"\u003enicklauslittle-gov\u003c/a\u003e,\n\u003ca href=\"https://github.com/psoni674\"\u003ePragati\u003c/a\u003e,\n\u003ca href=\"https://github.com/Project516\"\u003eproject516\u003c/a\u003e,\n\u003ca href=\"https://github.com/Uomocapra\"\u003eQin Mi\u003c/a\u003e,\n\u003ca href=\"https://github.com/rkdfx\"\u003eRavi\u003c/a\u003e,\n\u003ca href=\"https://github.com/sk-reddy17\"\u003esk-reddy17\u003c/a\u003e,\n\u003ca href=\"https://github.com/Suvrat1629\"\u003eSuvrat Acharya\u003c/a\u003e,\n\u003ca href=\"https://github.com/ShreckYe\"\u003eYongshun Ye\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eUpgrade instructions\u003c/h2\u003e\n\u003cp\u003eSwitch your build to use Gradle 9.7.1 by updating your wrapper:\u003c/p\u003e\n\u003cpre\u003e\u003ccode\u003e./gradlew :wrapper --gradle-version=9.7.1 \u0026amp;\u0026amp; ./gradlew :wrapper\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003cp\u003eSee the Gradle \u003ca href=\"https://docs.gradle.org/9.7.1/userguide/upgrading_version_9.html\"\u003e9.x upgrade guide\u003c/a\u003e to learn about deprecations, breaking changes and other considerations when upgrading.\u003c/p\u003e\n\u003cp\u003eFor Java, Groovy, Kotlin and Android compatibility, see the \u003ca href=\"https://docs.gradle.org/9.7.1/userguide/compatibility.html\"\u003efull compatibility notes\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eReporting problems\u003c/h2\u003e\n\u003cp\u003eIf you find a problem with this release, please file a bug on \u003ca href=\"https://github.com/gradle/gradle/issues\"\u003eGitHub Issues\u003c/a\u003e adhering to our issue guidelines.\nIf you're not sure you're encountering a bug, please use the \u003ca href=\"https://discuss.gradle.org/c/help-discuss\"\u003eforum\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003eWe hope you will build happiness with Gradle, and we look forward to your feedback via \u003ca href=\"https://twitter.com/gradle\"\u003eTwitter\u003c/a\u003e or on \u003ca href=\"https://github.com/gradle\"\u003eGitHub\u003c/a\u003e.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/92f0512e7f06d84621afba191f75e265363890cf\"\u003e\u003ccode\u003e92f0512\u003c/code\u003e\u003c/a\u003e update fixed issues for 9.7.1 (\u003ca href=\"https://redirect.github.com/gradle/gradle/issues/38892\"\u003e#38892\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/820ee75a99a179bbffa41bcedc6477b685fabb9f\"\u003e\u003ccode\u003e820ee75\u003c/code\u003e\u003c/a\u003e update fixed issues for 9.7.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/82c23f9bd2a89b4cc644e1f90a28a8668feb3dee\"\u003e\u003ccode\u003e82c23f9\u003c/code\u003e\u003c/a\u003e Fix annotation parameter ordering problem in KTS (\u003ca href=\"https://redirect.github.com/gradle/gradle/issues/38878\"\u003e#38878\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/ef11a7268fe8cc8d6ab849ec911aa11220180553\"\u003e\u003ccode\u003eef11a72\u003c/code\u003e\u003c/a\u003e Fix annotation parameter ordering issue\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/bb0d8a974a71b1003efea41e4046e98855cd5ff8\"\u003e\u003ccode\u003ebb0d8a9\u003c/code\u003e\u003c/a\u003e Make relevant tests polyglot (run for multiple DSLs)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/336e129d7f95c03486acafc97abf59734acfed48\"\u003e\u003ccode\u003e336e129\u003c/code\u003e\u003c/a\u003e Update signing configuration (\u003ca href=\"https://redirect.github.com/gradle/gradle/issues/38874\"\u003e#38874\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/4bdf0da2dad9884d089a6062a45ea7183e7d735d\"\u003e\u003ccode\u003e4bdf0da\u003c/code\u003e\u003c/a\u003e Update signing configuration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/cd9b92c1b82856248cf1dc58b50378238bec7b52\"\u003e\u003ccode\u003ecd9b92c\u003c/code\u003e\u003c/a\u003e List issues resolved in 9.7.1 (\u003ca href=\"https://redirect.github.com/gradle/gradle/issues/38839\"\u003e#38839\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/5f4e381964897ad8d6b99e5a7c77f26dba3259fb\"\u003e\u003ccode\u003e5f4e381\u003c/code\u003e\u003c/a\u003e List issues resolved in 9.7.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/gradle/gradle/commit/1e08ab551367aeb5fb48b26e72807e1d2b27c939\"\u003e\u003ccode\u003e1e08ab5\u003c/code\u003e\u003c/a\u003e Keep type-use annotations in extracted ABI classes (\u003ca href=\"https://redirect.github.com/gradle/gradle/issues/38810\"\u003e#38810\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/gradle/gradle/compare/v9.7.0...v9.7.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.squareup.okhttp3:okhttp` from 5.4.0 to 5.5.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/lysine-dev/okhttp/blob/main/CHANGELOG.md\"\u003ecom.squareup.okhttp3:okhttp's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 5.5.0\u003c/h2\u003e\n\u003cp\u003e\u003cem\u003e2026-08-16\u003c/em\u003e\u003c/p\u003e\n\u003cp\u003eThis release introduces \u003cstrong\u003eopt-in\u003c/strong\u003e support for [Encrypted Client Hello (ECH)]. This new feature\nimproves user privacy by encrypting domain names in transit. With regular TLS, your coffee shop’s\nWi-Fi router can see that you’re visiting \u003cem\u003ewikipedia.com\u003c/em\u003e, but it cannot see which page you’re\nlooking at. With ECH, the router observes only the IP address. This additional privacy is most\neffective on sites hosted by big CDNs because the IP address doesn’t imply a particular website.\u003c/p\u003e\n\u003cp\u003eThis requires ECH support in the platform’s TLS stack. Today this is only Android 17 (API 37,\nreleased June 2026). When other TLS stacks add ECH support, we'll integrate them.\u003c/p\u003e\n\u003cp\u003eECH took a lot of work to implement because the encryption keys are published over DNS in the\n[HTTPS resource record], and we needed to write new code to fetch these records. This release\nincludes a major update to OkHttp’s DNS API: it now supports multiple resource record types (not\njust IP addresses!), asynchronous streaming results, and in-memory caching.\u003c/p\u003e\n\u003cp\u003eTo opt in, you can use \u003ccode\u003eDnsOverHttps\u003c/code\u003e:\u003c/p\u003e\n\u003cpre lang=\"kotlin\"\u003e\u003ccode\u003e// DnsOverHttps itself uses OkHttpClient. Build both clients upon the\n// same bootstrap client so they share a connection pool and dispatcher.\nval bootstrapClient = OkHttpClient()\n\u003cp\u003e// This sample uses Cloudflare's 1.1.1.1 DnsOverHttps service.\nval client = bootstrapClient.newBuilder()\n.dns(DnsOverHttps.Builder()\n.client(bootstrapClient)\n.url(\u0026quot;\u003ca href=\"https://1.1.1.1/dns-query\u0026amp;quot;.toHttpUrl()\"\u003ehttps://1.1.1.1/dns-query\u0026amp;quot;.toHttpUrl()\u003c/a\u003e)\n.build())\n.build()\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003cp\u003eYou could also opt in with our new \u003ccode\u003eAndroidDns\u003c/code\u003e API. Unfortunately, the privacy benefits of ECH are\nthwarted because its DNS queries are not encrypted by default.\u003c/p\u003e\n\u003cpre lang=\"kotlin\"\u003e\u003ccode\u003e// AndroidDns fetches the HTTPS DNS resource records necessary for ECH.\nval client = OkHttpClient.Builder()\n  .dns(AndroidDns())\n  .build()\n\u003c/code\u003e\u003c/pre\u003e\n\u003cul\u003e\n\u003cli\u003eNew: OkHttp artifacts are now signed with our [new signing key]. This project and three sibling\nprojects ([Retrofit], [Okio], and [SQLDelight]) recently joined [the Commonhaus Foundation].\u003c/li\u003e\n\u003cli\u003eFix: MockWebServer’s \u003ccode\u003e@StartStop\u003c/code\u003e annotation now supports \u003ccode\u003e@Nested\u003c/code\u003e JUnit 5 tests.\u003c/li\u003e\n\u003cli\u003eFix: Our default TLS hostname verifier now reject hosts that fail IP canonicalization.\u003c/li\u003e\n\u003cli\u003eFix: Closing a multipart part's sink no longer closes the entire request body.\u003c/li\u003e\n\u003cli\u003eFix: Flush HTTP/1 request bodies before detaching the timeout. We had a bug where timeouts\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/a94bdf152084d11acecd44dcd09ffef203f4f0aa\"\u003e\u003ccode\u003ea94bdf1\u003c/code\u003e\u003c/a\u003e Prepare for release 5.5.0.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/ecc3b05adfe6b2607b8ec251562c2cccf7c1923a\"\u003e\u003ccode\u003eecc3b05\u003c/code\u003e\u003c/a\u003e Use a fixed size for DoH request body (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9687\"\u003e#9687\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/9926082660dfa6f1cc848c6f465cf5ccb998e415\"\u003e\u003ccode\u003e9926082\u003c/code\u003e\u003c/a\u003e Revert \u0026quot;Use a fixed size for DoH request body\u0026quot; (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9686\"\u003e#9686\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/0070c2e7b4c162ee03abf1c88fd94083e94697f4\"\u003e\u003ccode\u003e0070c2e\u003c/code\u003e\u003c/a\u003e Use a fixed size for DoH request body\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/15764539c69842dad607462f102a2507223dbfe7\"\u003e\u003ccode\u003e1576453\u003c/code\u003e\u003c/a\u003e Order ServiceMetadata records per the spec (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9683\"\u003e#9683\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/fb582e976a9a82d691342a4d57b3c72208ce416c\"\u003e\u003ccode\u003efb582e9\u003c/code\u003e\u003c/a\u003e Flip wiring of Dns.SYSTEM (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9682\"\u003e#9682\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/4e884abb1a207c321acffb070c476acb4b89fa3f\"\u003e\u003ccode\u003e4e884ab\u003c/code\u003e\u003c/a\u003e retryOnConnectionFailure doesn't impact ECH retries (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9681\"\u003e#9681\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/0433cee8131b63fa2c0634fa2f9b3a01f9a8b1f3\"\u003e\u003ccode\u003e0433cee\u003c/code\u003e\u003c/a\u003e Only one contributing.md doc (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9678\"\u003e#9678\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/a2cf5aa9f8711dabe514871e9dc4a9336a0e403f\"\u003e\u003ccode\u003ea2cf5aa\u003c/code\u003e\u003c/a\u003e Don't recover after an ECH public_name fails to verify (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9680\"\u003e#9680\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/5410de9760bce8719129c3d08eb19e5bace75f6e\"\u003e\u003ccode\u003e5410de9\u003c/code\u003e\u003c/a\u003e Test ECH + HTTP proxy (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9671\"\u003e#9671\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/lysine-dev/okhttp/compare/parent-5.4.0...parent-5.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.squareup.okhttp3:okhttp-jvm` from 5.4.0 to 5.5.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/lysine-dev/okhttp/blob/main/CHANGELOG.md\"\u003ecom.squareup.okhttp3:okhttp-jvm's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 5.5.0\u003c/h2\u003e\n\u003cp\u003e\u003cem\u003e2026-08-16\u003c/em\u003e\u003c/p\u003e\n\u003cp\u003eThis release introduces \u003cstrong\u003eopt-in\u003c/strong\u003e support for [Encrypted Client Hello (ECH)]. This new feature\nimproves user privacy by encrypting domain names in transit. With regular TLS, your coffee shop’s\nWi-Fi router can see that you’re visiting \u003cem\u003ewikipedia.com\u003c/em\u003e, but it cannot see which page you’re\nlooking at. With ECH, the router observes only the IP address. This additional privacy is most\neffective on sites hosted by big CDNs because the IP address doesn’t imply a particular website.\u003c/p\u003e\n\u003cp\u003eThis requires ECH support in the platform’s TLS stack. Today this is only Android 17 (API 37,\nreleased June 2026). When other TLS stacks add ECH support, we'll integrate them.\u003c/p\u003e\n\u003cp\u003eECH took a lot of work to implement because the encryption keys are published over DNS in the\n[HTTPS resource record], and we needed to write new code to fetch these records. This release\nincludes a major update to OkHttp’s DNS API: it now supports multiple resource record types (not\njust IP addresses!), asynchronous streaming results, and in-memory caching.\u003c/p\u003e\n\u003cp\u003eTo opt in, you can use \u003ccode\u003eDnsOverHttps\u003c/code\u003e:\u003c/p\u003e\n\u003cpre lang=\"kotlin\"\u003e\u003ccode\u003e// DnsOverHttps itself uses OkHttpClient. Build both clients upon the\n// same bootstrap client so they share a connection pool and dispatcher.\nval bootstrapClient = OkHttpClient()\n\u003cp\u003e// This sample uses Cloudflare's 1.1.1.1 DnsOverHttps service.\nval client = bootstrapClient.newBuilder()\n.dns(DnsOverHttps.Builder()\n.client(bootstrapClient)\n.url(\u0026quot;\u003ca href=\"https://1.1.1.1/dns-query\u0026amp;quot;.toHttpUrl()\"\u003ehttps://1.1.1.1/dns-query\u0026amp;quot;.toHttpUrl()\u003c/a\u003e)\n.build())\n.build()\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003cp\u003eYou could also opt in with our new \u003ccode\u003eAndroidDns\u003c/code\u003e API. Unfortunately, the privacy benefits of ECH are\nthwarted because its DNS queries are not encrypted by default.\u003c/p\u003e\n\u003cpre lang=\"kotlin\"\u003e\u003ccode\u003e// AndroidDns fetches the HTTPS DNS resource records necessary for ECH.\nval client = OkHttpClient.Builder()\n  .dns(AndroidDns())\n  .build()\n\u003c/code\u003e\u003c/pre\u003e\n\u003cul\u003e\n\u003cli\u003eNew: OkHttp artifacts are now signed with our [new signing key]. This project and three sibling\nprojects ([Retrofit], [Okio], and [SQLDelight]) recently joined [the Commonhaus Foundation].\u003c/li\u003e\n\u003cli\u003eFix: MockWebServer’s \u003ccode\u003e@StartStop\u003c/code\u003e annotation now supports \u003ccode\u003e@Nested\u003c/code\u003e JUnit 5 tests.\u003c/li\u003e\n\u003cli\u003eFix: Our default TLS hostname verifier now reject hosts that fail IP canonicalization.\u003c/li\u003e\n\u003cli\u003eFix: Closing a multipart part's sink no longer closes the entire request body.\u003c/li\u003e\n\u003cli\u003eFix: Flush HTTP/1 request bodies before detaching the timeout. We had a bug where timeouts\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/a94bdf152084d11acecd44dcd09ffef203f4f0aa\"\u003e\u003ccode\u003ea94bdf1\u003c/code\u003e\u003c/a\u003e Prepare for release 5.5.0.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/ecc3b05adfe6b2607b8ec251562c2cccf7c1923a\"\u003e\u003ccode\u003eecc3b05\u003c/code\u003e\u003c/a\u003e Use a fixed size for DoH request body (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9687\"\u003e#9687\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/9926082660dfa6f1cc848c6f465cf5ccb998e415\"\u003e\u003ccode\u003e9926082\u003c/code\u003e\u003c/a\u003e Revert \u0026quot;Use a fixed size for DoH request body\u0026quot; (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9686\"\u003e#9686\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/0070c2e7b4c162ee03abf1c88fd94083e94697f4\"\u003e\u003ccode\u003e0070c2e\u003c/code\u003e\u003c/a\u003e Use a fixed size for DoH request body\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/15764539c69842dad607462f102a2507223dbfe7\"\u003e\u003ccode\u003e1576453\u003c/code\u003e\u003c/a\u003e Order ServiceMetadata records per the spec (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9683\"\u003e#9683\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/fb582e976a9a82d691342a4d57b3c72208ce416c\"\u003e\u003ccode\u003efb582e9\u003c/code\u003e\u003c/a\u003e Flip wiring of Dns.SYSTEM (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9682\"\u003e#9682\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/4e884abb1a207c321acffb070c476acb4b89fa3f\"\u003e\u003ccode\u003e4e884ab\u003c/code\u003e\u003c/a\u003e retryOnConnectionFailure doesn't impact ECH retries (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9681\"\u003e#9681\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/0433cee8131b63fa2c0634fa2f9b3a01f9a8b1f3\"\u003e\u003ccode\u003e0433cee\u003c/code\u003e\u003c/a\u003e Only one contributing.md doc (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9678\"\u003e#9678\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/a2cf5aa9f8711dabe514871e9dc4a9336a0e403f\"\u003e\u003ccode\u003ea2cf5aa\u003c/code\u003e\u003c/a\u003e Don't recover after an ECH public_name fails to verify (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9680\"\u003e#9680\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/5410de9760bce8719129c3d08eb19e5bace75f6e\"\u003e\u003ccode\u003e5410de9\u003c/code\u003e\u003c/a\u003e Test ECH + HTTP proxy (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9671\"\u003e#9671\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/lysine-dev/okhttp/compare/parent-5.4.0...parent-5.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `net.bytebuddy:byte-buddy-agent` from 1.18.11 to 1.18.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/releases\"\u003enet.bytebuddy:byte-buddy-agent's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eByte Buddy 1.18.13\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eByte Buddy 1.18.12\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eAdd support for native attach on Windows for ARM64.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/raphw/byte-buddy/blob/master/release-notes.md\"\u003enet.bytebuddy:byte-buddy-agent's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003e2. September 2026: version 1.18.13\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eActually include the SBOM within the published artifacts.\u003c/li\u003e\n\u003cli\u003eAvoid propagation of path traversals that are contained in jar files which are copied without transformation.\u003c/li\u003e\n\u003cli\u003eAvoid repeated traversal of previously visited type hierarchies to improve performance.\u003c/li\u003e\n\u003cli\u003eCorrect Kotlin support of the Gradle plugin to redirect the classes directory of a source set while retaining support for legacy Gradle versions.\u003c/li\u003e\n\u003cli\u003eCreate Gradle tasks using Gradle's task registration API if available.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003e17. July 2026: version 1.18.12\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eAutomatically support Kotlin in Gradle plugin.\u003c/li\u003e\n\u003cli\u003eCorrect JNA injector which accidentally created on based on Unsafe.\u003c/li\u003e\n\u003cli\u003eSupport dynamic attach on Windows ARM64 by shipping a native \u003ccode\u003eattach_hotspot_windows\u003c/code\u003e library for \u003ccode\u003ewin32-aarch64\u003c/code\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/d4da51578490c841b56b38c9c8fc9d3e8815f046\"\u003e\u003ccode\u003ed4da515\u003c/code\u003e\u003c/a\u003e [publish] Releasing Byte Buddy 1.18.13\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/bb914e33837267c05704f167179ba31abe3bf787\"\u003e\u003ccode\u003ebb914e3\u003c/code\u003e\u003c/a\u003e [release] Release new version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/af2034b8c55c2596f6430e63152586e02d06fd0e\"\u003e\u003ccode\u003eaf2034b\u003c/code\u003e\u003c/a\u003e Create Gradle tasks via the task registration API if available to avoid the u...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/30aca5581534d52570a60ffd524109adb3671759\"\u003e\u003ccode\u003e30aca55\u003c/code\u003e\u003c/a\u003e Shortcut traversal of previously visited type hierarchies and harden 1-1 tran...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/debd527b31bb095c26ff6943545cfe01a9045f32\"\u003e\u003ccode\u003edebd527\u003c/code\u003e\u003c/a\u003e Bump actions/checkout from 6.0.2 to 7.0.1 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1910\"\u003e#1910\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/8315af6acb72b5e0d913ad65c4112e828f01d735\"\u003e\u003ccode\u003e8315af6\u003c/code\u003e\u003c/a\u003e Bump step-security/harden-runner from 2.16.1 to 2.19.4 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1909\"\u003e#1909\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/e30e24f4106f6be28b97a34c81bf6d5dccfa34bb\"\u003e\u003ccode\u003ee30e24f\u003c/code\u003e\u003c/a\u003e Bump actions/cache from 5.0.3 to 5.0.5 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1914\"\u003e#1914\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/1885f2a1e77d70d3cc57ff935e2b5a4b675cde85\"\u003e\u003ccode\u003e1885f2a\u003c/code\u003e\u003c/a\u003e Bump github/codeql-action from 3.27.6 to 4.36.2 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1916\"\u003e#1916\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/de4ed85e1e4e1e83dcfd90fc791684e3607459fa\"\u003e\u003ccode\u003ede4ed85\u003c/code\u003e\u003c/a\u003e Correct Javadoc of Gradle plugin to avoid errors and warnings during generation.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/raphw/byte-buddy/commit/5d3a3129ceb66ec0c168c9648757cbffccf18aec\"\u003e\u003ccode\u003e5d3a312\u003c/code\u003e\u003c/a\u003e Bump actions/setup-java from 5.2.0 to 5.4.0 (\u003ca href=\"https://redirect.github.com/raphw/byte-buddy/issues/1918\"\u003e#1918\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/raphw/byte-buddy/compare/byte-buddy-1.18.11...byte-buddy-1.18.13\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.checkerframework:checker-qual` from 4.2.2 to 4.2.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typetools/checker-framework/releases\"\u003eorg.checkerframework:checker-qual's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eChecker Framework 4.2.3\u003c/h2\u003e\n\u003ch2\u003eVersion 4.2.3 (2026-09-01)\u003c/h2\u003e\n\u003ch3\u003eUser-visible changes\u003c/h3\u003e\n\u003cp\u003eThe \u003ccode\u003e-AsuggestPureMethods\u003c/code\u003e command-line option and the \u003ccode\u003epurity.effectively.pure\u003c/code\u003e warning no longer require \u003ccode\u003e-AcheckPurityAnnotations\u003c/code\u003e to also be supplied.\u003c/p\u003e\n\u003ch3\u003eImplementation details\u003c/h3\u003e\n\u003cp\u003eMade the field \u003ccode\u003eJava8InferenceContext.pathToExpression\u003c/code\u003e private; use \u003ccode\u003egetPathToExpression()\u003c/code\u003e and \u003ccode\u003esetPathToExpression()\u003c/code\u003e instead.\u003c/p\u003e\n\u003cp\u003eRenamed \u003ccode\u003eTreeUtils.isLikeDiamondMemberReference()\u003c/code\u003e to \u003ccode\u003eisRawTypedMemberReference()\u003c/code\u003e.\u003c/p\u003e\n\u003ch3\u003eClosed issues\u003c/h3\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/2816\"\u003e#2816\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7677\"\u003e#7677\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7678\"\u003e#7678\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7681\"\u003e#7681\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7682\"\u003e#7682\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7684\"\u003e#7684\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7693\"\u003e#7693\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7694\"\u003e#7694\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7696\"\u003e#7696\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7698\"\u003e#7698\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7701\"\u003e#7701\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7702\"\u003e#7702\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7875\"\u003e#7875\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8046\"\u003e#8046\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8047\"\u003e#8047\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8048\"\u003e#8048\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8050\"\u003e#8050\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8052\"\u003e#8052\u003c/a\u003e.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/typetools/checker-framework/blob/master/docs/CHANGELOG.md\"\u003eorg.checkerframework:checker-qual's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 4.2.3 (2026-09-01)\u003c/h2\u003e\n\u003ch3\u003eUser-visible changes\u003c/h3\u003e\n\u003cp\u003eThe \u003ccode\u003e-AsuggestPureMethods\u003c/code\u003e command-line option and the \u003ccode\u003epurity.effectively.pure\u003c/code\u003e\nwarning no longer require \u003ccode\u003e-AcheckPurityAnnotations\u003c/code\u003e to also be supplied.\u003c/p\u003e\n\u003ch3\u003eChanges for type system implementers\u003c/h3\u003e\n\u003cp\u003eMade the field \u003ccode\u003eJava8InferenceContext.pathToExpression\u003c/code\u003e private; use\n\u003ccode\u003egetPathToExpression()\u003c/code\u003e and \u003ccode\u003esetPathToExpression()\u003c/code\u003e instead.\u003c/p\u003e\n\u003cp\u003eRenamed \u003ccode\u003eTreeUtils.isLikeDiamondMemberReference()\u003c/code\u003e to \u003ccode\u003eisRawTypedMemberReference()\u003c/code\u003e.\u003c/p\u003e\n\u003ch3\u003eClosed issues\u003c/h3\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/2816\"\u003e#2816\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7677\"\u003e#7677\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7678\"\u003e#7678\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7681\"\u003e#7681\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7682\"\u003e#7682\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7684\"\u003e#7684\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7693\"\u003e#7693\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7694\"\u003e#7694\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7696\"\u003e#7696\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7698\"\u003e#7698\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7701\"\u003e#7701\u003c/a\u003e,\n\u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7702\"\u003e#7702\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7875\"\u003e#7875\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8046\"\u003e#8046\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8047\"\u003e#8047\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8048\"\u003e#8048\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8050\"\u003e#8050\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8052\"\u003e#8052\u003c/a\u003e.\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/ddd330dfec46e29c075f923ac89556379566ccd2\"\u003e\u003ccode\u003eddd330d\u003c/code\u003e\u003c/a\u003e new release 4.2.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/d44c55a525c9aa3ce427741379021712c12f296b\"\u003e\u003ccode\u003ed44c55a\u003c/code\u003e\u003c/a\u003e Increase the timeout.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/d07e6cedd79c813b4d56931665e88b7d91395d52\"\u003e\u003ccode\u003ed07e6ce\u003c/code\u003e\u003c/a\u003e Fix links.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/0af4fa25558a87b1bdd74792341c1b1714ff7b71\"\u003e\u003ccode\u003e0af4fa2\u003c/code\u003e\u003c/a\u003e Prep for release.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/455d690ae45a70d433954346a14f4bd22386cf58\"\u003e\u003ccode\u003e455d690\u003c/code\u003e\u003c/a\u003e Infer the type arguments of \u003ccode\u003eReferenceType::Identifier\u003c/code\u003e where \u003ccode\u003eReferenceType\u003c/code\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/81173f8df325810f7fa1b420ae8eeb130f3ea784\"\u003e\u003ccode\u003e81173f8\u003c/code\u003e\u003c/a\u003e Add javac equivalent class for AnnotationEqualityVisitor (\u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/7692\"\u003e#7692\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/81b9930f6c164d761535d520997f8993bd1b1050\"\u003e\u003ccode\u003e81b9930\u003c/code\u003e\u003c/a\u003e AFU Javadoc\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/ac24b72c34b0d590e738393e01e988205f0fe111\"\u003e\u003ccode\u003eac24b72\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003eci_info\u003c/code\u003e jobs, simplify misc jobs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/d27d6b4322db4512b9dc67b1e25aa09b51561daa\"\u003e\u003ccode\u003ed27d6b4\u003c/code\u003e\u003c/a\u003e Clear SubtypeVisitHistory after each outermost isSubtype call  (\u003ca href=\"https://redirect.github.com/typetools/checker-framework/issues/8064\"\u003e#8064\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/typetools/checker-framework/commit/3180cc2fd296b62031e16baabd61abc4ce1ab80c\"\u003e\u003ccode\u003e3180cc2\u003c/code\u003e\u003c/a\u003e Update actions/setup-java action to v6\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/typetools/checker-framework/compare/checker-framework-4.2.2...checker-framework-4.2.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.javassist:javassist` from 3.32.0-GA to 3.33.0-GA\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jboss-javassist/javassist/releases\"\u003eorg.javassist:javassist's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eJavassist-3.33.0-GA\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix SerialVersionUID for static nested classes by \u003ca href=\"https://github.com/arimu1\"\u003e\u003ccode\u003e@​arimu1\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/pull/523\"\u003ejboss-javassist/javassist#523\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/jboss-javassist/javassist/compare/rel_3_32_0_ga...rel_3_33_0_ga\"\u003ehttps://github.com/jboss-javassist/javassist/compare/rel_3_32_0_ga...rel_3_33_0_ga\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jboss-javassist/javassist/blob/master/Changes.md\"\u003eorg.javassist:javassist's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003eChanges\u003c/h3\u003e\n\u003ch3\u003eversion 3.34\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eGitHub PR \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/524\"\u003e#524\u003c/a\u003e (Issue \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/443\"\u003e#443\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eversion 3.33 on August 23, 2026\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eAPI changes suggested by \u003ccode\u003e@waydeshi\u003c/code\u003e and \u003ccode\u003e@lucianjohnhouse\u003c/code\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eGitHub PR \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/523\"\u003e#523\u003c/a\u003e\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eversion 3.32 on June 21, 2026\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eAPI change suggested by Wayde Shi (GitHub: \u003ccode\u003e@waydeshi\u003c/code\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eExcludes javassist.tools.{reflect,rmi,web}.  They are now included in ./examples/src/main.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDisables javassist.runtime.Desc.useContextClassLoader\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eversion 3.31.0 on April 20, 2026\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eGitHub PR \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/480\"\u003e#480\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/484\"\u003e#484\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/486\"\u003e#486\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/491\"\u003e#491\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/492\"\u003e#492\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/495\"\u003e#495\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/506\"\u003e#506\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eversion 3.30.2 on December 25, 2023\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eGitHub PR \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/473\"\u003e#473\u003c/a\u003e, 475, 476\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eversion 3.30.1 on December 17, 2023\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGitHub Issue \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/471\"\u003e#471\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eversion 3.30 on December 17, 2023\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGitHub PR \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/434\"\u003e#434\u003c/a\u003e, 448, 463 (Issue \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/462\"\u003e#462\u003c/a\u003e), 466, 467, 468, 469, 470,\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eversion 3.29.2 on September 14, 2022\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGitHub Issue \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/427\"\u003e#427\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eversion 3.29.1 on August 11, 2022\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eGitHub Issue \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/423\"\u003e#423\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ccode\u003eReadme.html\u003c/code\u003e was deleted (GitHub Issue \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/414\"\u003e#414\u003c/a\u003e).\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eversion 3.29 on May 13, 2022\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGitHub Issue \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/378\"\u003e#378\u003c/a\u003e, PR \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/278\"\u003e#278\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/299\"\u003e#299\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/382\"\u003e#382\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/383\"\u003e#383\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/390\"\u003e#390\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/391\"\u003e#391\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/395\"\u003e#395\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/399\"\u003e#399\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/jboss-javassist/javassist/issues/409\"\u003e#409\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/jboss-javassist/javassist/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.projectlombok:lombok` from 1.18.46 to 1.18.48\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/projectlombok/lombok/blob/master/doc/changelog.markdown\"\u003eorg.projectlombok:lombok's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003ev1.18.48 (September 1st, 2026)\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBREAKING CHANGE/BUGFIX: \u003ccode\u003e@Builder(builderClassName = \u0026quot;Builder\u0026quot;)\u003c/code\u003e now generates an error, because the type names collide. \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/3857\"\u003e#3857\u003c/a\u003e  (found after release)\u003c/li\u003e\n\u003cli\u003ePLATFORM: JDK27 support added \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/4072\"\u003e#4072\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eBUGFIX: \u003ccode\u003e@SneakyThrows\u003c/code\u003e usage on JDK26 no longer results in class files that require \u003ccode\u003elombok.jar\u003c/code\u003e to be on the runtime classpath (which should not be neccessary). \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/4040\"\u003e#4040\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eFEATURE: New \u003ca href=\"https://projectlombok.org/features/configuration\"\u003econfig key\u003c/a\u003e \u003ccode\u003elombok.checkReturnValueAnnotation\u003c/code\u003e (values: \u003ccode\u003enone\u003c/code\u003e, \u003ccode\u003elombok\u003c/code\u003e; default: \u003ccode\u003enone\u003c/code\u003e) lets lombok generate \u003ccode\u003e@lombok.CheckReturnValue\u003c/code\u003e on generated methods where the return value should not be ignored, such as \u003ccode\u003e@With\u003c/code\u003e methods and \u003ccode\u003e@Builder.build()\u003c/code\u003e. A future lombok release may flip the default to \u003ccode\u003elombok\u003c/code\u003e. \u003ca href=\"https://redirect.github.com/projectlombok/lombok/pull/4013\"\u003e#4013\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003ePROMOTION: \u003ccode\u003e@SuperBuilder\u003c/code\u003e has been promoted to the main package. Otherwise, no changes have been made to the annotation. The old experimental annotation will remain for a few versions, at which point it will be marked as a deprecated annotation. Eventually it'll be removed. If you had \u003ccode\u003elombok.config\u003c/code\u003e configuration for this annotation, the configuration keys for this feature have been renamed. \u003ca href=\"https://redirect.github.com/projectlombok/lombok/issues/2209\"\u003e#2209\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eOLD-CRUFT: \u003ccode\u003elombok.experimental.Wither\u003c/code\u003e and \u003ccode\u003elombok.Delegate\u003c/code\u003e are deprecated remnants; these features were moved (to respectively \u003ccode\u003elombok.With\u003c/code\u003e and \u003ccode\u003elombok.experimental.Delegate\u003c/code\u003e over 5 years ago. They are now removed entirely. If your project is dependent on an older version of lombok which still has those; fret not, lombok still processes these annotations. It just no longer includes them in the jar.\u003c/li\u003e\n\u003cli\u003eFEATURE: CheckerFramework: Lombok now adds \u003ccode\u003e@SideEffectFree\u003c/code\u003e to constructors it makes if you have enabled checker framework via \u003ccode\u003elombok.config\u003c/code\u003e.\u003c/li\u003e\n\u003cli\u003eBUGFIX: CheckerFramework: Lombok would add \u003ccode\u003e@SideEffectFree\u003c/code\u003e to the \u003ccode\u003ebuild()\u003c/code\u003e method of any generated builder, even if it is a builder for invoking a method; in that case, the side-effect-free nature of \u003ccode\u003ebuild()\u003c/code\u003e mirrors the side-effect-free nature of the method invocation you've built. Lombok now checks if the method it generated a builder for is side effect free / 'check return type'.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/b48657c83ce44d027984f539bd36048293ce5e8e\"\u003e\u003ccode\u003eb48657c\u003c/code\u003e\u003c/a\u003e [version] pre-release version bump v1.18.48\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/d1d003945f864d32bb3115cf81fa363e1c7bc6bb\"\u003e\u003ccode\u003ed1d0039\u003c/code\u003e\u003c/a\u003e Merge branch 'jdk27'\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/1a23dad52c01e7b18892573549841e36d6e4abde\"\u003e\u003ccode\u003e1a23dad\u003c/code\u003e\u003c/a\u003e [review][refactor] No meaningful changes: Improved comments, javadoc, and cle...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/40cdde815038a4bddc2bc31afce80c4c62e75e67\"\u003e\u003ccode\u003e40cdde8\u003c/code\u003e\u003c/a\u003e [changelog] JDK27 support\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/25eae29093410cba53e3f91e2da4ba1fbf1953f4\"\u003e\u003ccode\u003e25eae29\u003c/code\u003e\u003c/a\u003e Add Danish Nawab to AUTHORS\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/10ab92b5d9eb852ccac7295d8017203e7efd7449\"\u003e\u003ccode\u003e10ab92b\u003c/code\u003e\u003c/a\u003e Support JDK27: end positions moved from EndPosTable to JCTree.endpos\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/af01b7a27b469b723e88de508480186113569185\"\u003e\u003ccode\u003eaf01b7a\u003c/code\u003e\u003c/a\u003e Document the new configuration syntax for listy things\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/1be3857dfef96cde703012a43ec649a4c3f7eea9\"\u003e\u003ccode\u003e1be3857\u003c/code\u003e\u003c/a\u003e There is no more HtAccess\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/405985dd2512786439448e43f390c359e7595269\"\u003e\u003ccode\u003e405985d\u003c/code\u003e\u003c/a\u003e Semantic sections for website\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/projectlombok/lombok/commit/04b73406d04a279401b43a74314aa1dcbadbc143\"\u003e\u003ccode\u003e04b7340\u003c/code\u003e\u003c/a\u003e [trivial] fixing some outdated tests (tests were broken, not lombok).\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/projectlombok/lombok/compare/v1.18.46...v1.18.48\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.yaml:snakeyaml` from 2.6 to 2.7\n\nUpdates `org.graalvm.buildtools.native` from 1.1.9 to 1.1.11\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/graalvm/native-build-tools/releases\"\u003eorg.graalvm.buildtools.native's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.1.11\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRelease 1.1.9 by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1022\"\u003egraalvm/native-build-tools#1022\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump version to 1.1.10-SNAPSHOT by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1023\"\u003egraalvm/native-build-tools#1023\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate reachability metadata to 1.0.11 by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1028\"\u003egraalvm/native-build-tools#1028\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake NativeImageLayerRuntimeTest platform-independent by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1024\"\u003egraalvm/native-build-tools#1024\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRelease 1.1.10 by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1030\"\u003egraalvm/native-build-tools#1030\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMove grund.toml to the project roots by \u003ca href=\"https://github.com/vjovanov\"\u003e\u003ccode\u003e@​vjovanov\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1026\"\u003egraalvm/native-build-tools#1026\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump version to 1.1.11-SNAPSHOT by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1035\"\u003egraalvm/native-build-tools#1035\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate reachability metadata to 1.0.12 by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1036\"\u003egraalvm/native-build-tools#1036\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eLayers DSL follow-up: configuration-cache and test cleanup by \u003ca href=\"https://github.com/jormundur00\"\u003e\u003ccode\u003e@​jormundur00\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1034\"\u003egraalvm/native-build-tools#1034\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix Maven metadata copy across reactor modules by \u003ca href=\"https://github.com/jormundur00\"\u003e\u003ccode\u003e@​jormundur00\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1020\"\u003egraalvm/native-build-tools#1020\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake embedded Maven output concise and reproducible by \u003ca href=\"https://github.com/jormundur00\"\u003e\u003ccode\u003e@​jormundur00\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1019\"\u003egraalvm/native-build-tools#1019\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix additive reachability metadata requires selection by \u003ca href=\"https://github.com/jormundur00\"\u003e\u003ccode\u003e@​jormundur00\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1018\"\u003egraalvm/native-build-tools#1018\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1024\"\u003egraalvm/native-build-tools#1024\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/graalvm/native-build-tools/compare/1.1.9...1.1.11\"\u003ehttps://github.com/graalvm/native-build-tools/compare/1.1.9...1.1.11\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e1.1.10\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRelease 1.1.9 by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1022\"\u003egraalvm/native-build-tools#1022\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump version to 1.1.10-SNAPSHOT by \u003ca href=\"https://github.com/graalvmbot\"\u003e\u003ccode\u003e@​graalvmbot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/pull/1023\"\u003egraalvm/native-build-tools#1023\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/graalvm/native-build-tools/compare/1.1.9...1.1.10\"\u003ehttps://github.com/graalvm/native-build-tools/compare/1.1.9...1.1.10\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/6cf521ced462995abf332b61b87b12a219d619cb\"\u003e\u003ccode\u003e6cf521c\u003c/code\u003e\u003c/a\u003e Release 1.1.11\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/37fab88f408e2d19f6ff50427bd87d29522b5824\"\u003e\u003ccode\u003e37fab88\u003c/code\u003e\u003c/a\u003e Fix additive reachability metadata requires selection (\u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1018\"\u003e#1018\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/c300d9fa5b2e062d89d719730652938b08d6ebab\"\u003e\u003ccode\u003ec300d9f\u003c/code\u003e\u003c/a\u003e Make embedded Maven output concise and reproducible (\u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1019\"\u003e#1019\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/1987e3cfb35b6009af95aec5a66e04bc1df922e4\"\u003e\u003ccode\u003e1987e3c\u003c/code\u003e\u003c/a\u003e Fix Maven metadata copy across reactor modules (\u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1020\"\u003e#1020\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/f328d3ac8a4957a0bfbbb9a3df35f5db535a38cb\"\u003e\u003ccode\u003ef328d3a\u003c/code\u003e\u003c/a\u003e Layers DSL follow-up: configuration-cache and test cleanup (\u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1034\"\u003e#1034\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/8ae8060611273e7e8375f2392372f5489f6648e5\"\u003e\u003ccode\u003e8ae8060\u003c/code\u003e\u003c/a\u003e Update reachability metadata to 1.0.12 (\u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1036\"\u003e#1036\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/6a60e3be96dc82fe4a08827a24e28f02ce3d9534\"\u003e\u003ccode\u003e6a60e3b\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1035\"\u003e#1035\u003c/a\u003e from graalvm/bump-version-to-1.1.11-SNAPSHOT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/0eac49e1a5531112a319f9c8104b57b6d455d953\"\u003e\u003ccode\u003e0eac49e\u003c/code\u003e\u003c/a\u003e Bump version to 1.1.11-SNAPSHOT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/f2d657c1c643d462e03e7253f2533477cd569454\"\u003e\u003ccode\u003ef2d657c\u003c/code\u003e\u003c/a\u003e Move grund.toml to the project roots (\u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1026\"\u003e#1026\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/graalvm/native-build-tools/commit/395d3864208f7902eebeec106f27ef84bbe5a5d6\"\u003e\u003ccode\u003e395d386\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/graalvm/native-build-tools/issues/1030\"\u003e#1030\u003c/a\u003e from graalvm/release/1.1.10\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/graalvm/native-build-tools/compare/1.1.9...1.1.11\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n\u003c/details\u003e","html_url":"https://github.com/jmltoolkit/jmltk/pull/64","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/jmltoolkit%2Fjmltk/issues/64","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/64/packages"}},{"old_version":"33.6.0-jre","new_version":"33.7.1-jre","update_type":"minor","path":null,"pr_created_at":"2026-09-05T00:32:22.000Z","version_change":"33.6.0-jre → 33.7.1-jre","issue":{"uuid":"5354449347","node_id":"PR_kwDOTN-QB88AAAABCRw37Q","number":34,"state":"closed","title":"[12.1.x EE9] Bump the dev-dependencies group across 1 directory with 43 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-12T00:27:22.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-05T00:32:22.000Z","updated_at":"2026-09-12T00:27:24.000Z","time_to_close":604500,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"[12.1.x EE9] Bump","group_name":"dev-dependencies","update_count":43,"packages":[{"name":"org.glassfish.jersey.containers:jersey-container-servlet","old_version":"3.0.17","new_version":"3.1.0"},{"name":"org.glassfish.jersey.inject:jersey-hk2","old_version":"3.0.17","new_version":"3.1.0"},{"name":"org.glassfish.jersey.media:jersey-media-json-binding","old_version":"3.0.17","new_version":"3.1.0"},{"name":"org.ow2.asm:asm","old_version":"9.10","new_version":"9.10.1"},{"name":"org.ow2.asm:asm-commons","old_version":"9.10","new_version":"9.10.1"},{"name":"org.ow2.asm:asm-bom","old_version":"9.10","new_version":"9.10.1"},{"name":"org.codehaus.plexus:plexus-utils","old_version":"4.0.3","new_version":"4.1.0","repository_url":"https://github.com/codehaus-plexus/plexus-utils"},{"name":"org.codehaus.plexus:plexus-xml","old_version":"4.1.1","new_version":"4.2.0","repository_url":"https://github.com/codehaus-plexus/plexus-xml"},{"name":"commons-codec:commons-codec","old_version":"1.22.0","new_version":"1.22.1","repository_url":"https://github.com/apache/commons-codec"},{"name":"net.java.dev.jna:jna","old_version":"5.18.1","new_version":"5.19.1","repository_url":"https://github.com/java-native-access/jna"},{"name":"net.java.dev.jna:jna-jpms","old_version":"5.18.1","new_version":"5.19.1","repository_url":"https://github.com/java-native-access/jna"},{"name":"org.mariadb.jdbc:mariadb-java-client","old_version":"3.5.8","new_version":"3.5.10","repository_url":"https://github.com/mariadb-corporation/mariadb-connector-j"},{"name":"org.apache.openwebbeans:openwebbeans-jetty9","old_version":"2.0.27","new_version":"2.0.28","repository_url":"https://github.com/apache/openwebbeans"},{"name":"org.apache.openwebbeans:openwebbeans-web","old_version":"2.0.27","new_version":"2.0.28","repository_url":"https://github.com/apache/openwebbeans"},{"name":"com.fasterxml.jackson:jackson-bom","old_version":"2.21.3","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-bom"},{"name":"io.netty:netty-bom","old_version":"4.2.13.Final","new_version":"4.2.17.Final","repository_url":"https://github.com/netty/netty"},{"name":"org.hibernate.search:hibernate-search-bom","old_version":"8.3.1.Final","new_version":"8.4.0.Final","repository_url":"https://github.com/hibernate/hibernate-search"},{"name":"org.junit:junit-bom","old_version":"6.0.3","new_version":"6.1.3","repository_url":"https://github.com/junit-team/junit-framework"},{"name":"ch.qos.logback:logback-core","old_version":"1.5.32","new_version":"1.6.3","repository_url":"https://github.com/qos-ch/logback"},{"name":"com.github.jnr:jffi","old_version":"1.3.15","new_version":"1.4.0","repository_url":"https://github.com/jnr/jffi"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"io.grpc:grpc-core","old_version":"1.81.0","new_version":"1.84.0","repository_url":"https://github.com/grpc/grpc-java"},{"name":"io.grpc:grpc-netty-shaded","old_version":"1.81.0","new_version":"1.84.0","repository_url":"https://github.com/grpc/grpc-java"},{"name":"io.smallrye.common:smallrye-common-annotation","old_version":"2.18.1","new_version":"2.20.0","repository_url":"https://github.com/smallrye/smallrye-common"},{"name":"io.smallrye.common:smallrye-common-cpu","old_version":"2.18.1","new_version":"2.20.0","repository_url":"https://github.com/smallrye/smallrye-common"},{"name":"org.apache.kerby:kerb-simplekdc","old_version":"2.1.1","new_version":"2.1.2"},{"name":"org.apache.logging.log4j:log4j-api","old_version":"2.26.0","new_version":"2.26.1"},{"name":"org.bouncycastle:bcpkix-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.bouncycastle:bcprov-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.bouncycastle:bctls-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.bouncycastle:bcutil-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.codehaus.plexus:plexus-classworlds","old_version":"2.11.0","new_version":"2.12.1","repository_url":"https://github.com/codehaus-plexus/plexus-classworlds"},{"name":"org.conscrypt:conscrypt-openjdk-uber","old_version":"2.5.2","new_version":"2.7.0","repository_url":"https://github.com/google/conscrypt"},{"name":"org.eclipse.jdt:ecj","old_version":"3.45.0","new_version":"3.46.0","repository_url":"https://github.com/eclipse-jdt/eclipse.jdt.core"},{"name":"org.hibernate.models:hibernate-models","old_version":"1.1.1","new_version":"1.3.0","repository_url":"https://github.com/hibernate/hibernate-models"},{"name":"org.jboss.threads:jboss-threads","old_version":"3.9.2","new_version":"3.10.1","repository_url":"https://github.com/jbossas/jboss-threads"},{"name":"org.mortbay.jetty.quiche:jetty-quiche-native","old_version":"0.29.2","new_version":"0.29.3","repository_url":"https://github.com/jetty-project/jetty-quiche-native"},{"name":"org.eclipse.jetty.toolchain:jetty-build-support","old_version":"1.5","new_version":"1.6"},{"name":"eu.maveniverse.maven.njord:extension3","old_version":"0.9.6","new_version":"0.9.10","repository_url":"https://github.com/maveniverse/njord"},{"name":"eu.maveniverse.maven.plugins:njord","old_version":"0.9.6","new_version":"0.9.10","repository_url":"https://github.com/maveniverse/njord"},{"name":"org.apache.maven.extensions:maven-build-cache-extension","old_version":"1.2.2","new_version":"1.3.0","repository_url":"https://github.com/apache/maven-build-cache-extension"},{"name":"org.cyclonedx:cyclonedx-maven-plugin","old_version":"2.9.1","new_version":"2.9.3","repository_url":"https://github.com/CycloneDX/cyclonedx-maven-plugin"}],"path":null,"ecosystem":"maven"},"body":"Bumps the dev-dependencies group with 42 updates in the /jetty-ee9 directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| org.glassfish.jersey.containers:jersey-container-servlet | `3.0.17` | `3.1.0` |\n| org.glassfish.jersey.inject:jersey-hk2 | `3.0.17` | `3.1.0` |\n| org.glassfish.jersey.media:jersey-media-json-binding | `3.0.17` | `3.1.0` |\n| org.ow2.asm:asm | `9.10` | `9.10.1` |\n| org.ow2.asm:asm-commons | `9.10` | `9.10.1` |\n| org.ow2.asm:asm-bom | `9.10` | `9.10.1` |\n| [org.codehaus.plexus:plexus-utils](https://github.com/codehaus-plexus/plexus-utils) | `4.0.3` | `4.1.0` |\n| [org.codehaus.plexus:plexus-xml](https://github.com/codehaus-plexus/plexus-xml) | `4.1.1` | `4.2.0` |\n| [commons-codec:commons-codec](https://github.com/apache/commons-codec) | `1.22.0` | `1.22.1` |\n| [net.java.dev.jna:jna](https://github.com/java-native-access/jna) | `5.18.1` | `5.19.1` |\n| [net.java.dev.jna:jna-jpms](https://github.com/java-native-access/jna) | `5.18.1` | `5.19.1` |\n| [org.mariadb.jdbc:mariadb-java-client](https://github.com/mariadb-corporation/mariadb-connector-j) | `3.5.8` | `3.5.10` |\n| [org.apache.openwebbeans:openwebbeans-jetty9](https://github.com/apache/openwebbeans) | `2.0.27` | `2.0.28` |\n| [org.apache.openwebbeans:openwebbeans-web](https://github.com/apache/openwebbeans) | `2.0.27` | `2.0.28` |\n| [com.fasterxml.jackson:jackson-bom](https://github.com/FasterXML/jackson-bom) | `2.21.3` | `2.22.2` |\n| [io.netty:netty-bom](https://github.com/netty/netty) | `4.2.13.Final` | `4.2.17.Final` |\n| [org.hibernate.search:hibernate-search-bom](https://github.com/hibernate/hibernate-search) | `8.3.1.Final` | `8.4.0.Final` |\n| [org.junit:junit-bom](https://github.com/junit-team/junit-framework) | `6.0.3` | `6.1.3` |\n| [ch.qos.logback:logback-core](https://github.com/qos-ch/logback) | `1.5.32` | `1.6.3` |\n| [com.github.jnr:jffi](https://github.com/jnr/jffi) | `1.3.15` | `1.4.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [io.grpc:grpc-core](https://github.com/grpc/grpc-java) | `1.81.0` | `1.84.0` |\n| [io.grpc:grpc-netty-shaded](https://github.com/grpc/grpc-java) | `1.81.0` | `1.84.0` |\n| [io.smallrye.common:smallrye-common-annotation](https://github.com/smallrye/smallrye-common) | `2.18.1` | `2.20.0` |\n| [io.smallrye.common:smallrye-common-cpu](https://github.com/smallrye/smallrye-common) | `2.18.1` | `2.20.0` |\n| org.apache.kerby:kerb-simplekdc | `2.1.1` | `2.1.2` |\n| org.apache.logging.log4j:log4j-api | `2.26.0` | `2.26.1` |\n| [org.bouncycastle:bcpkix-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.bouncycastle:bcprov-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.bouncycastle:bctls-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.bouncycastle:bcutil-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.codehaus.plexus:plexus-classworlds](https://github.com/codehaus-plexus/plexus-classworlds) | `2.11.0` | `2.12.1` |\n| [org.conscrypt:conscrypt-openjdk-uber](https://github.com/google/conscrypt) | `2.5.2` | `2.7.0` |\n| [org.eclipse.jdt:ecj](https://github.com/eclipse-jdt/eclipse.jdt.core) | `3.45.0` | `3.46.0` |\n| [org.hibernate.models:hibernate-models](https://github.com/hibernate/hibernate-models) | `1.1.1` | `1.3.0` |\n| [org.jboss.threads:jboss-threads](https://github.com/jbossas/jboss-threads) | `3.9.2` | `3.10.1` |\n| [org.mortbay.jetty.quiche:jetty-quiche-native](https://github.com/jetty-project/jetty-quiche-native) | `0.29.2` | `0.29.3` |\n| org.eclipse.jetty.toolchain:jetty-build-support | `1.5` | `1.6` |\n| [eu.maveniverse.maven.njord:extension3](https://github.com/maveniverse/njord) | `0.9.6` | `0.9.10` |\n| [eu.maveniverse.maven.plugins:njord](https://github.com/maveniverse/njord) | `0.9.6` | `0.9.10` |\n| [org.apache.maven.extensions:maven-build-cache-extension](https://github.com/apache/maven-build-cache-extension) | `1.2.2` | `1.3.0` |\n| [org.cyclonedx:cyclonedx-maven-plugin](https://github.com/CycloneDX/cyclonedx-maven-plugin) | `2.9.1` | `2.9.3` |\n\n\nUpdates `org.glassfish.jersey.containers:jersey-container-servlet` from 3.0.17 to 3.1.0\n\nUpdates `org.glassfish.jersey.inject:jersey-hk2` from 3.0.17 to 3.1.0\n\nUpdates `org.glassfish.jersey.media:jersey-media-json-binding` from 3.0.17 to 3.1.0\n\nUpdates `org.glassfish.jersey.inject:jersey-hk2` from 3.0.17 to 3.1.0\n\nUpdates `org.glassfish.jersey.media:jersey-media-json-binding` from 3.0.17 to 3.1.0\n\nUpdates `org.ow2.asm:asm` from 9.10 to 9.10.1\n\nUpdates `org.ow2.asm:asm-commons` from 9.10 to 9.10.1\n\nUpdates `org.ow2.asm:asm-bom` from 9.10 to 9.10.1\n\nUpdates `org.ow2.asm:asm-commons` from 9.10 to 9.10.1\n\nUpdates `org.codehaus.plexus:plexus-utils` from 4.0.3 to 4.1.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/releases\"\u003eorg.codehaus.plexus:plexus-utils's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.1.0\u003c/h2\u003e\n\u003cp\u003e\u003ccode\u003eDirectoryScanner\u003c/code\u003e no longer excludes \u003ccode\u003e.gitignore\u003c/code\u003e and \u003ccode\u003e.cvsignore\u003c/code\u003e by default. Code that relied on\nthe old defaults has to add the two patterns explicitly. That change is what makes this a minor\nrelease rather than 4.0.4.\u003c/p\u003e\n\u003ch2\u003e:boom: Breaking changes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDo not exclude \u0026quot;.gitignore\u0026quot; and \u0026quot;.cvsignore\u0026quot; by default (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/326\"\u003e#326\u003c/a\u003e) \u003ca href=\"https://github.com/kwin\"\u003e\u003ccode\u003e@​kwin\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRewrite README with usage, status and version guidance (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/332\"\u003e#332\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Build\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate parent to plexus 27 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/338\"\u003e#338\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDrop the Publish Site workflow (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/337\"\u003e#337\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd the Publish Site workflow (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/334\"\u003e#334\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse the shared release-drafter config instead of a local copy (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/333\"\u003e#333\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump the plexus dependencies released today (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/340\"\u003e#340\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus from 25 to 26 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/335\"\u003e#335\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7.6.0 to 7.7.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/331\"\u003e#331\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7 to 7.6.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/330\"\u003e#330\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/572ce90d98d71bfe29078b680fc14d3088f43a14\"\u003e\u003ccode\u003e572ce90\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release plexus-utils-4.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/077e8010c109576715077f4a70094623295d5ce9\"\u003e\u003ccode\u003e077e801\u003c/code\u003e\u003c/a\u003e Bump the plexus dependencies released today\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/840a1b49b3b7bdc3f883ef0c698566988c7e21ec\"\u003e\u003ccode\u003e840a1b4\u003c/code\u003e\u003c/a\u003e Update parent to plexus 27\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/9c560fa3ea573e48d7d528c86eca4690ff1a6bc0\"\u003e\u003ccode\u003e9c560fa\u003c/code\u003e\u003c/a\u003e Drop the Publish Site workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/5f96b03fefa9e3f9d7c47b88bebc400a44c88795\"\u003e\u003ccode\u003e5f96b03\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus from 25 to 26\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/4846c05a48b35bb12dc3fb5254b3b77b93784730\"\u003e\u003ccode\u003e4846c05\u003c/code\u003e\u003c/a\u003e Add the Publish Site workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/4df3a8663601eaeb0fd5c71fd6bcc2b2ecc2234d\"\u003e\u003ccode\u003e4df3a86\u003c/code\u003e\u003c/a\u003e Use the shared release-drafter config instead of a local copy\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/9eb5fc61fe732c5e16737490f11b1898634252fe\"\u003e\u003ccode\u003e9eb5fc6\u003c/code\u003e\u003c/a\u003e Apply spotless formatting to README\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/f2856f90460216275047fa6c5b4c333726ee3f80\"\u003e\u003ccode\u003ef2856f9\u003c/code\u003e\u003c/a\u003e Rewrite README with usage, status and version guidance\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/62fe2fa47a81245ca0588a110c35a918a8f4402e\"\u003e\u003ccode\u003e62fe2fa\u003c/code\u003e\u003c/a\u003e Bump release-drafter/release-drafter from 7.6.0 to 7.7.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/compare/plexus-utils-4.0.3...plexus-utils-4.1.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.codehaus.plexus:plexus-xml` from 4.1.1 to 4.2.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/releases\"\u003eorg.codehaus.plexus:plexus-xml's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.2.0\u003c/h2\u003e\n\u003cp\u003eThe 4.x line no longer builds its DOM through Maven's deprecated \u003ccode\u003eXmlNodeBuilder\u003c/code\u003e: \u003ccode\u003eXpp3DomBuilder\u003c/code\u003e uses a pull builder of its own, so a future Maven can delete that class without breaking this one. The artifact also carries \u003ccode\u003eAutomatic-Module-Name: org.codehaus.plexus.util.xml\u003c/code\u003e, which anyone on the module path sees.\u003c/p\u003e\n\u003cp\u003eThe Maven dependency is split: \u003ccode\u003emaven-api-xml\u003c/code\u003e at compile, \u003ccode\u003emaven-xml\u003c/code\u003e at runtime, since \u003ccode\u003eXmlService\u003c/code\u003e resolves its implementation through \u003ccode\u003eServiceLoader\u003c/code\u003e. Consumers keep the API transitively and lose \u003ccode\u003eorg.apache.maven.internal.*\u003c/code\u003e along with woodstox-core and stax2-api.\u003c/p\u003e\n\u003cp\u003eRequires Java 17 and Maven 4. On Maven 3, use the 3.x line.\u003c/p\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eEstablish an automatic module name (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/92\"\u003e#92\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBuild the DOM with a local pull builder instead of Maven's deprecated XmlNodeBuilder (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/94\"\u003e#94\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📝 Documentation updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRewrite README with usage, status and version guidance (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/88\"\u003e#88\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSet the next development version to 4.2.0-SNAPSHOT (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/97\"\u003e#97\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBuild against maven-xml 4.0.0-rc-6 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/87\"\u003e#87\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove deprecated XmlNode references (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/81\"\u003e#81\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Build\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate parent to plexus 27 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/99\"\u003e#99\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDepend on maven-api-xml at compile and maven-xml at runtime (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/96\"\u003e#96\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus from 25 to 26 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/90\"\u003e#90\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7.6.0 to 7.7.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/86\"\u003e#86\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7 to 7.6.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/84\"\u003e#84\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 6 to 7 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/79\"\u003e#79\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/215f435589f545e3c6bb840513f45a952709fb5a\"\u003e\u003ccode\u003e215f435\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release plexus-xml-4.2.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/ce5d0624363998ebfc398f55672921552d7578ae\"\u003e\u003ccode\u003ece5d062\u003c/code\u003e\u003c/a\u003e Update parent to plexus 27\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/38c200b943a3109066ea3a18001ab8f1e11d4ee3\"\u003e\u003ccode\u003e38c200b\u003c/code\u003e\u003c/a\u003e Depend on maven-api-xml at compile and maven-xml at runtime\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/ae27358905fc4eb0fb28a6b10ea2a0cbb566c966\"\u003e\u003ccode\u003eae27358\u003c/code\u003e\u003c/a\u003e Set the next development version to 4.2.0-SNAPSHOT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/d1c51ce927244d359ed7aeb86ef809c0e77205cb\"\u003e\u003ccode\u003ed1c51ce\u003c/code\u003e\u003c/a\u003e Establish an automatic module name\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/d0f198be29880b2124560a72f4a7684ceb5d24f8\"\u003e\u003ccode\u003ed0f198b\u003c/code\u003e\u003c/a\u003e Build the DOM with a local pull builder, not Maven's XmlNodeBuilder\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/470396adc7ca98a41b00b45ea908d6941ebe6ae3\"\u003e\u003ccode\u003e470396a\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus from 25 to 26\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/51d60d59faff0fde7d6fe75986909819fb45f0e3\"\u003e\u003ccode\u003e51d60d5\u003c/code\u003e\u003c/a\u003e Rewrite README with usage, status and version guidance\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/e91d180a097e8777450d6cfba5cc0c4c3fd3226c\"\u003e\u003ccode\u003ee91d180\u003c/code\u003e\u003c/a\u003e Bump release-drafter/release-drafter from 7.6.0 to 7.7.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/b628bf3a4e89d939808f90eb1fd431f039ef5d18\"\u003e\u003ccode\u003eb628bf3\u003c/code\u003e\u003c/a\u003e Build against maven-xml 4.0.0-rc-6\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/compare/plexus-xml-4.1.1...plexus-xml-4.2.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `commons-codec:commons-codec` from 1.22.0 to 1.22.1\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/commons-codec/blob/master/RELEASE-NOTES.txt\"\u003ecommons-codec:commons-codec's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eApache Commons Codec 1.22.1 Release Notes\u003c/h2\u003e\n\u003cp\u003eThe Apache Commons Codec team is pleased to announce the release of Apache Commons Codec 1.22.1.\u003c/p\u003e\n\u003cp\u003eThe Apache Commons Codec component contains encoders and decoders for\nformats such as Base16, Base32, Base64, digest, and Hexadecimal. In addition to these\nwidely used encoders and decoders, the codec package also maintains a\ncollection of phonetic encoding utilities.\u003c/p\u003e\n\u003cp\u003eThis is a feature and maintenance release. Java 8 or later is required.\u003c/p\u003e\n\u003ch2\u003eFixed Bugs\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eCODEC-344:  Base64.Builder.setEncodeTable(byte...) accepts invalid custom alphabets. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-340:  Base58.Builder.setEncodeTable(byte...) is ignored when encoding and decoding. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-342:  Base32.Builder.setEncodeTable(byte...) can create a codec that cannot decode its own output. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-343:  Base32.Builder.setHexDecodeTable(boolean) sets the encode table to a decode lookup table. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-341:  Base16.Builder.setEncodeTable(byte...) can create a codec that cannot decode its own output. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-339:  URLCodec.encodeUrl(BitSet, byte[]) allows custom safe sets to emit URL encoding control characters. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-338:  PercentCodec loses literal '+' when plusForSpace is enabled. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-337:  Digest ALL reuses System.in, so only the first algorithm sees the real input (\u003ca href=\"https://redirect.github.com/apache/commons-codec/issues/431\"\u003e#431\u003c/a\u003e). Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Fix Base64.toIntegerBytes(BigInteger) for zero edge case ([#441](https://github.com/apache/commons-codec/issues/441)). Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Add messages when throwing NullPointerException. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Add messages when throwing NullPointerException. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        StringEncoderComparator.StringEncoderComparator(StringEncoder) now fails fast on null input. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eChanges\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Bump org.apache.commons:commons-parent from 98 to 103. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Bump commons-io:commons-io from 2.21.0 to 2.22.0. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eFor complete information on Apache Commons Codec, including instructions on how to submit bug reports,\npatches, or suggestions for improvement, see the Apache Commons Codec website:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://commons.apache.org/proper/commons-codec/\"\u003ehttps://commons.apache.org/proper/commons-codec/\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eDownload page: \u003ca href=\"https://commons.apache.org/proper/commons-codec/download_codec.cgi\"\u003ehttps://commons.apache.org/proper/commons-codec/download_codec.cgi\u003c/a\u003e\u003c/p\u003e\n\u003chr /\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/dc8f6c832a30f524bf12a5ae7ab013e4ad7c088f\"\u003e\u003ccode\u003edc8f6c8\u003c/code\u003e\u003c/a\u003e Prepare for the release candidate 1.22.1 RC1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/8203c1c5bb4342e2fbf258556cac4826eae7ca11\"\u003e\u003ccode\u003e8203c1c\u003c/code\u003e\u003c/a\u003e Prepare for the next release candidate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/5647fe2a66b3e74f044f414ad10d92407ede9396\"\u003e\u003ccode\u003e5647fe2\u003c/code\u003e\u003c/a\u003e StringEncoderComparator.StringEncoderComparator(StringEncoder) now fails\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/00c27a9c0636f15a0ba1d0bdc1f00fb8d9cee0fd\"\u003e\u003ccode\u003e00c27a9\u003c/code\u003e\u003c/a\u003e Reduce vertical whitespace\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/568f2d7d7cf24ff0074eec29e21868ce9fe24236\"\u003e\u003ccode\u003e568f2d7\u003c/code\u003e\u003c/a\u003e Remove unused method\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/316fb15f3aa1e810a27fcc858d7c0e7ba0a4d724\"\u003e\u003ccode\u003e316fb15\u003c/code\u003e\u003c/a\u003e Remove unused method\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/bf6b543c1d49bf36d9ee10de1a1472dc5d677b10\"\u003e\u003ccode\u003ebf6b543\u003c/code\u003e\u003c/a\u003e Bump actions/checkout from 7.0.0 to 7.0.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/e14cdfe55f4837b63daca367374ce996ad87fc5a\"\u003e\u003ccode\u003ee14cdfe\u003c/code\u003e\u003c/a\u003e Extract redundant code.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/3351e63155fa41fbfcb0744efa960adce1529798\"\u003e\u003ccode\u003e3351e63\u003c/code\u003e\u003c/a\u003e Add messages when throwing NullPointerException.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/commons-codec/commit/f22dab7ea52e8bd07dfa84a6f37ce915d1536b1c\"\u003e\u003ccode\u003ef22dab7\u003c/code\u003e\u003c/a\u003e Update SCM tag\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/commons-codec/compare/rel/commons-codec-1.22.0...rel/commons-codec-1.22.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `net.java.dev.jna:jna` from 5.18.1 to 5.19.1\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/java-native-access/jna/blob/master/CHANGES.md\"\u003enet.java.dev.jna:jna's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eRelease 5.19.1\u003c/h1\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1730\"\u003e#1730\u003c/a\u003e: Replace usage of \u003ccode\u003eMethodHandle\u003c/code\u003e with reflection to restore support for older Android releases - \u003ca href=\"https://github.com/matthiasblaesing\"\u003e\u003ccode\u003e@​matthiasblaesing\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eRelease 5.19.0\u003c/h1\u003e\n\u003ch2\u003eFeatures\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1696\"\u003e#1696\u003c/a\u003e: Add \u003ccode\u003eLARGE_INTEGER.ByValue\u003c/code\u003e to \u003ccode\u003eLARGE_INTEGER\u003c/code\u003e in \u003ccode\u003eWinNT.java\u003c/code\u003e - \u003ca href=\"https://github.com/baier233\"\u003e\u003ccode\u003e@​baier233\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1697\"\u003e#1697\u003c/a\u003e: Add WlanApi module - \u003ca href=\"https://github.com/eranl\"\u003e\u003ccode\u003e@​eranl\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1718\"\u003e#1718\u003c/a\u003e: Add \u003ccode\u003eCups\u003c/code\u003e to \u003ccode\u003ec.s.j.p.unix\u003c/code\u003e providing CUPS printing system bindings for destinations, jobs, options, and server configuration - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1720\"\u003e#1720\u003c/a\u003e: Add \u003ccode\u003egroupCount\u003c/code\u003e and \u003ccode\u003egroupMasks\u003c/code\u003e fields to \u003ccode\u003eCACHE_RELATIONSHIP\u003c/code\u003e in \u003ccode\u003ec.s.j.p.win32.WinNT\u003c/code\u003e, matching the updated Windows struct layout - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1719\"\u003e#1719\u003c/a\u003e: Add \u003ccode\u003eCoreGraphics\u003c/code\u003e to \u003ccode\u003ec.s.j.p.mac\u003c/code\u003e with Quartz Window Services and Display Services bindings; implement \u003ccode\u003egetAllWindows()\u003c/code\u003e in \u003ccode\u003eMacWindowUtils\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1723\"\u003e#1723\u003c/a\u003e: Add \u003ccode\u003eProcFdInfo\u003c/code\u003e, \u003ccode\u003eInSockInfo\u003c/code\u003e, \u003ccode\u003eTcpSockInfo\u003c/code\u003e, \u003ccode\u003eproc_pidfdinfo\u003c/code\u003e, \u003ccode\u003estatfs64\u003c/code\u003e, and \u003ccode\u003evm_deallocate\u003c/code\u003e to \u003ccode\u003ec.s.j.p.mac.SystemB\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1725\"\u003e#1725\u003c/a\u003e: Add \u003ccode\u003eBluetoothApis\u003c/code\u003e to \u003ccode\u003ec.s.j.p.win32\u003c/code\u003e providing Bluetooth device and radio enumeration via \u003ccode\u003eBluetoothFindFirstRadio\u003c/code\u003e, \u003ccode\u003eBluetoothFindFirstDevice\u003c/code\u003e, and related functions - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1644\"\u003e#1644\u003c/a\u003e: Fix bug in VARDESC and TYPEDESC causing an illegal memory access - \u003ca href=\"https://github.com/lwahonen\"\u003e\u003ccode\u003e@​lwahonen\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1715\"\u003e#1715\u003c/a\u003e: Fix \u003ccode\u003eUdevDevice.getSysname()\u003c/code\u003e calling \u003ccode\u003eudev_device_get_syspath\u003c/code\u003e instead of \u003ccode\u003eudev_device_get_sysname\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1721\"\u003e#1721\u003c/a\u003e: Fix switched \u003ccode\u003eserverName\u003c/code\u003e/\u003ccode\u003edomainName\u003c/code\u003e arguments in \u003ccode\u003eNetapi32Util#getDCName\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1722\"\u003e#1722\u003c/a\u003e: Fix \u003ccode\u003eAdvapi32#RegisterServiceCtrlHandler\u003c/code\u003e using wrong \u003ccode\u003eHandler\u003c/code\u003e type - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1636\"\u003e#1636\u003c/a\u003e: Drop hard dependency on java.lang.SecurityManager/java.security.AccessController - \u003ca href=\"https://github.com/matthiasblaesing\"\u003e\u003ccode\u003e@​matthiasblaesing\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1724\"\u003e#1724\u003c/a\u003e: Fix \u003ccode\u003ehost_page_size\u003c/code\u003e in \u003ccode\u003ec.s.j.p.mac.SystemB\u003c/code\u003e and \u003ccode\u003egetxattr\u003c/code\u003e/\u003ccode\u003esetxattr\u003c/code\u003e/\u003ccode\u003elistxattr\u003c/code\u003e in \u003ccode\u003ec.s.j.p.mac.XAttr\u003c/code\u003e using \u003ccode\u003elong\u003c/code\u003e instead of pointer-sized types for \u003ccode\u003esize_t\u003c/code\u003e/\u003ccode\u003essize_t\u003c/code\u003e parameters - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1727\"\u003e#1727\u003c/a\u003e: Include DragonFlyBSD in \u003ccode\u003eNativeLibrary\u003c/code\u003e versioned library resolution, libc special-case loading, and 64-bit search paths - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1709\"\u003e#1709\u003c/a\u003e: Rebuild native library for OpenBSD 7.9 x86-64, drop OpenBSD x86 - \u003ca href=\"https://github.com/matthiasblaesing\"\u003e\u003ccode\u003e@​matthiasblaesing\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/1a91122853f6ab6f1fb2a4a284a6cf2ed8af0a4d\"\u003e\u003ccode\u003e1a91122\u003c/code\u003e\u003c/a\u003e Release 5.19.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/cbfcb4add73065d8006869acd3da72b579cfb52c\"\u003e\u003ccode\u003ecbfcb4a\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1731\"\u003e#1731\u003c/a\u003e from matthiasblaesing/ancient_android\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/4ba086b3eca0b937b6e73640b0b8a9f20ffd9fe2\"\u003e\u003ccode\u003e4ba086b\u003c/code\u003e\u003c/a\u003e Restore support for Android versions not supporting MethodHandles\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/699935fc29d624abe73b4ae258897bd5a1380abc\"\u003e\u003ccode\u003e699935f\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1729\"\u003e#1729\u003c/a\u003e from thesamesam/parallel-fix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/3fe4cb5fdc035e14d19d85b19a27711d1eebc356\"\u003e\u003ccode\u003e3fe4cb5\u003c/code\u003e\u003c/a\u003e native: fix parallel build issue\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/01c7807fe7b66ff9cfcd04d283ebfeb0ad7d7c16\"\u003e\u003ccode\u003e01c7807\u003c/code\u003e\u003c/a\u003e Prepare next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/9ff138107f4b258423229166a49f92c83d980b2f\"\u003e\u003ccode\u003e9ff1381\u003c/code\u003e\u003c/a\u003e Release 5.19.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/2d038ef24c547abc82ddf39e17a5ce26b2781519\"\u003e\u003ccode\u003e2d038ef\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1726\"\u003e#1726\u003c/a\u003e from matthiasblaesing/openbsd\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/eecab35757229a73db4bdd2dbbbcfad034782ad1\"\u003e\u003ccode\u003eeecab35\u003c/code\u003e\u003c/a\u003e Update native built for OpenBSD 7.9 (x86-64 only)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/f6708688b61d1ed10194086c5bd65bbc9bee6985\"\u003e\u003ccode\u003ef670868\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1727\"\u003e#1727\u003c/a\u003e from dbwiddis/fix/dragonflybsd-library-loading\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/java-native-access/jna/compare/5.18.1...5.19.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `net.java.dev.jna:jna-jpms` from 5.18.1 to 5.19.1\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/java-native-access/jna/blob/master/CHANGES.md\"\u003enet.java.dev.jna:jna-jpms's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003eRelease 5.19.1\u003c/h1\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1730\"\u003e#1730\u003c/a\u003e: Replace usage of \u003ccode\u003eMethodHandle\u003c/code\u003e with reflection to restore support for older Android releases - \u003ca href=\"https://github.com/matthiasblaesing\"\u003e\u003ccode\u003e@​matthiasblaesing\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003eRelease 5.19.0\u003c/h1\u003e\n\u003ch2\u003eFeatures\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1696\"\u003e#1696\u003c/a\u003e: Add \u003ccode\u003eLARGE_INTEGER.ByValue\u003c/code\u003e to \u003ccode\u003eLARGE_INTEGER\u003c/code\u003e in \u003ccode\u003eWinNT.java\u003c/code\u003e - \u003ca href=\"https://github.com/baier233\"\u003e\u003ccode\u003e@​baier233\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1697\"\u003e#1697\u003c/a\u003e: Add WlanApi module - \u003ca href=\"https://github.com/eranl\"\u003e\u003ccode\u003e@​eranl\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1718\"\u003e#1718\u003c/a\u003e: Add \u003ccode\u003eCups\u003c/code\u003e to \u003ccode\u003ec.s.j.p.unix\u003c/code\u003e providing CUPS printing system bindings for destinations, jobs, options, and server configuration - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1720\"\u003e#1720\u003c/a\u003e: Add \u003ccode\u003egroupCount\u003c/code\u003e and \u003ccode\u003egroupMasks\u003c/code\u003e fields to \u003ccode\u003eCACHE_RELATIONSHIP\u003c/code\u003e in \u003ccode\u003ec.s.j.p.win32.WinNT\u003c/code\u003e, matching the updated Windows struct layout - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1719\"\u003e#1719\u003c/a\u003e: Add \u003ccode\u003eCoreGraphics\u003c/code\u003e to \u003ccode\u003ec.s.j.p.mac\u003c/code\u003e with Quartz Window Services and Display Services bindings; implement \u003ccode\u003egetAllWindows()\u003c/code\u003e in \u003ccode\u003eMacWindowUtils\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1723\"\u003e#1723\u003c/a\u003e: Add \u003ccode\u003eProcFdInfo\u003c/code\u003e, \u003ccode\u003eInSockInfo\u003c/code\u003e, \u003ccode\u003eTcpSockInfo\u003c/code\u003e, \u003ccode\u003eproc_pidfdinfo\u003c/code\u003e, \u003ccode\u003estatfs64\u003c/code\u003e, and \u003ccode\u003evm_deallocate\u003c/code\u003e to \u003ccode\u003ec.s.j.p.mac.SystemB\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1725\"\u003e#1725\u003c/a\u003e: Add \u003ccode\u003eBluetoothApis\u003c/code\u003e to \u003ccode\u003ec.s.j.p.win32\u003c/code\u003e providing Bluetooth device and radio enumeration via \u003ccode\u003eBluetoothFindFirstRadio\u003c/code\u003e, \u003ccode\u003eBluetoothFindFirstDevice\u003c/code\u003e, and related functions - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1644\"\u003e#1644\u003c/a\u003e: Fix bug in VARDESC and TYPEDESC causing an illegal memory access - \u003ca href=\"https://github.com/lwahonen\"\u003e\u003ccode\u003e@​lwahonen\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1715\"\u003e#1715\u003c/a\u003e: Fix \u003ccode\u003eUdevDevice.getSysname()\u003c/code\u003e calling \u003ccode\u003eudev_device_get_syspath\u003c/code\u003e instead of \u003ccode\u003eudev_device_get_sysname\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1721\"\u003e#1721\u003c/a\u003e: Fix switched \u003ccode\u003eserverName\u003c/code\u003e/\u003ccode\u003edomainName\u003c/code\u003e arguments in \u003ccode\u003eNetapi32Util#getDCName\u003c/code\u003e - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1722\"\u003e#1722\u003c/a\u003e: Fix \u003ccode\u003eAdvapi32#RegisterServiceCtrlHandler\u003c/code\u003e using wrong \u003ccode\u003eHandler\u003c/code\u003e type - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1636\"\u003e#1636\u003c/a\u003e: Drop hard dependency on java.lang.SecurityManager/java.security.AccessController - \u003ca href=\"https://github.com/matthiasblaesing\"\u003e\u003ccode\u003e@​matthiasblaesing\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1724\"\u003e#1724\u003c/a\u003e: Fix \u003ccode\u003ehost_page_size\u003c/code\u003e in \u003ccode\u003ec.s.j.p.mac.SystemB\u003c/code\u003e and \u003ccode\u003egetxattr\u003c/code\u003e/\u003ccode\u003esetxattr\u003c/code\u003e/\u003ccode\u003elistxattr\u003c/code\u003e in \u003ccode\u003ec.s.j.p.mac.XAttr\u003c/code\u003e using \u003ccode\u003elong\u003c/code\u003e instead of pointer-sized types for \u003ccode\u003esize_t\u003c/code\u003e/\u003ccode\u003essize_t\u003c/code\u003e parameters - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/pull/1727\"\u003e#1727\u003c/a\u003e: Include DragonFlyBSD in \u003ccode\u003eNativeLibrary\u003c/code\u003e versioned library resolution, libc special-case loading, and 64-bit search paths - \u003ca href=\"https://github.com/dbwiddis\"\u003e\u003ccode\u003e@​dbwiddis\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1709\"\u003e#1709\u003c/a\u003e: Rebuild native library for OpenBSD 7.9 x86-64, drop OpenBSD x86 - \u003ca href=\"https://github.com/matthiasblaesing\"\u003e\u003ccode\u003e@​matthiasblaesing\u003c/code\u003e\u003c/a\u003e.\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/1a91122853f6ab6f1fb2a4a284a6cf2ed8af0a4d\"\u003e\u003ccode\u003e1a91122\u003c/code\u003e\u003c/a\u003e Release 5.19.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/cbfcb4add73065d8006869acd3da72b579cfb52c\"\u003e\u003ccode\u003ecbfcb4a\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1731\"\u003e#1731\u003c/a\u003e from matthiasblaesing/ancient_android\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/4ba086b3eca0b937b6e73640b0b8a9f20ffd9fe2\"\u003e\u003ccode\u003e4ba086b\u003c/code\u003e\u003c/a\u003e Restore support for Android versions not supporting MethodHandles\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/699935fc29d624abe73b4ae258897bd5a1380abc\"\u003e\u003ccode\u003e699935f\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1729\"\u003e#1729\u003c/a\u003e from thesamesam/parallel-fix\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/3fe4cb5fdc035e14d19d85b19a27711d1eebc356\"\u003e\u003ccode\u003e3fe4cb5\u003c/code\u003e\u003c/a\u003e native: fix parallel build issue\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/01c7807fe7b66ff9cfcd04d283ebfeb0ad7d7c16\"\u003e\u003ccode\u003e01c7807\u003c/code\u003e\u003c/a\u003e Prepare next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/9ff138107f4b258423229166a49f92c83d980b2f\"\u003e\u003ccode\u003e9ff1381\u003c/code\u003e\u003c/a\u003e Release 5.19.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/2d038ef24c547abc82ddf39e17a5ce26b2781519\"\u003e\u003ccode\u003e2d038ef\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1726\"\u003e#1726\u003c/a\u003e from matthiasblaesing/openbsd\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/eecab35757229a73db4bdd2dbbbcfad034782ad1\"\u003e\u003ccode\u003eeecab35\u003c/code\u003e\u003c/a\u003e Update native built for OpenBSD 7.9 (x86-64 only)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/java-native-access/jna/commit/f6708688b61d1ed10194086c5bd65bbc9bee6985\"\u003e\u003ccode\u003ef670868\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/java-native-access/jna/issues/1727\"\u003e#1727\u003c/a\u003e from dbwiddis/fix/dragonflybsd-library-loading\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/java-native-access/jna/compare/5.18.1...5.19.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.mariadb.jdbc:mariadb-java-client` from 3.5.8 to 3.5.10\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/releases\"\u003eorg.mariadb.jdbc:mariadb-java-client's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eMariaDB Connector/Java 3.5.10\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/tree/3.5.10\"\u003e3.5.10\u003c/a\u003e (Jul 2026)\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/compare/3.5.9...3.5.10\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eKey Enhancements\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1333 - Add maxAllowedPacket connection option (send/receive limit)\u003c/li\u003e\n\u003cli\u003eCONJ-1339 - Add maxAllowedColumns option to bound server-announced column count (report by fg0x0)\u003c/li\u003e\n\u003cli\u003eCONJ-1330 - add infer test to CI\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIssues Resolved\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1332 - Reject multipart (\u0026gt;16 MB) packets before authentication to prevent pre-auth OOM from a rogue server\u003c/li\u003e\n\u003cli\u003eCONJ-1342 - socketFactory option allows loading arbitrary bytecode via jar: URL, enabling RCE when JDBC URL is\nattacker-controlled (report by Qing Xu)\u003c/li\u003e\n\u003cli\u003eCONJ-1307 - Connection.setReadOnly(true) still allows DML statements to execute\u003c/li\u003e\n\u003cli\u003eCONJ-1326 - Unsafe escaping in enquoteLiteral()/enquoteNCharLiteral() (thanks to jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1327 - Align SSL hostname verification with TLS libraries (thanks to jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1329 - LOAD DATA LOCAL INFILE validation fails open when a bound parameter can't be rendered (thanks to\njmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1331 - trustStore-configured TLS connections defer certificate-chain/identity validation instead of validating\nup front (thanks to jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1340 - SQL injection via unescaped identifiers in updatable ResultSet generated statements (thanks to\njmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1341 - MariaDbPoolDataSource.getConnection(user, password) ignores the user argument when the pool's own\npassword is supplied (report by fg0x0)\u003c/li\u003e\n\u003cli\u003eCONJ-1328 - restrictedAuth allowlist is matched with substring contains() instead of equality (thanks to\njmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1338 - Validate length-encoded integers fit a non-negative int before use as a length (report by fg0x0)\u003c/li\u003e\n\u003cli\u003eCONJ-1336 - CONJ-1282 regression: TLS connection fails when JDBC hostname is an absolute FQDN ending with a trailing\ndot (report by Shaswata, thanks to Pepo48 for PR)\u003c/li\u003e\n\u003cli\u003eCONJ-1335 - getGeneratedKeys() throws \u0026quot;integer overflow\u0026quot; after a batch insert when the auto-increment value exceeds\nInteger.MAX_VALUE, and returns bulk generated keys out of batch order\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eMariaDB Connector/Java 3.5.9\u003c/h2\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/tree/3.5.9\"\u003e3.5.9\u003c/a\u003e (Jun 2026)\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/compare/3.5.8...3.5.9\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eKey Enhancements\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1223 - cache TLS trust/key managers across connections to reduce SSL connection cost\u003c/li\u003e\n\u003cli\u003eCONJ-1314 - add SPI for interactive dialog (PAM) authentication callback\u003c/li\u003e\n\u003cli\u003eCONJ-1311 - add dedicated option \u003ccode\u003euseIpForKillQuery\u003c/code\u003e for query cancellation\u003c/li\u003e\n\u003cli\u003eCONJ-1310 - Add full native image support and CI coverage\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIssues Resolved\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1320 - PAM (dialog) authentication must require a secure connection (report by fg0x0)\u003c/li\u003e\n\u003cli\u003eCONJ-1319 - Use constant-time comparison when validating the server certificate fingerprint (report by jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1318 - enforce \u003ccode\u003eallowLocalInfile=false\u003c/code\u003e on the server's local-infile request, so a malicious server cannot read a client file despite the option being disabled\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/blob/main/CHANGELOG.md\"\u003eorg.mariadb.jdbc:mariadb-java-client's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/tree/3.5.10\"\u003e3.5.10\u003c/a\u003e (Jul 2026)\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/compare/3.5.9...3.5.10\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch4\u003eKey Enhancements\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1333 - Add maxAllowedPacket connection option (send/receive limit)\u003c/li\u003e\n\u003cli\u003eCONJ-1339 - Add maxAllowedColumns option to bound server-announced column count (report by fg0x0)\u003c/li\u003e\n\u003cli\u003eCONJ-1330 - add infer test to CI\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIssues Resolved\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1332 - Reject multipart (\u0026gt;16 MB) packets before authentication to prevent pre-auth OOM from a rogue server\u003c/li\u003e\n\u003cli\u003eCONJ-1342 - socketFactory option allows loading arbitrary bytecode via jar: URL, enabling RCE when JDBC URL is\nattacker-controlled (report by Qing Xu)\u003c/li\u003e\n\u003cli\u003eCONJ-1307 - Connection.setReadOnly(true) still allows DML statements to execute\u003c/li\u003e\n\u003cli\u003eCONJ-1326 - Unsafe escaping in enquoteLiteral()/enquoteNCharLiteral() (thanks to jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1327 - Align SSL hostname verification with TLS libraries (thanks to jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1329 - LOAD DATA LOCAL INFILE validation fails open when a bound parameter can't be rendered (thanks to\njmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1331 - trustStore-configured TLS connections defer certificate-chain/identity validation instead of validating\nup front (thanks to jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1340 - SQL injection via unescaped identifiers in updatable ResultSet generated statements (thanks to\njmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1341 - MariaDbPoolDataSource.getConnection(user, password) ignores the user argument when the pool's own\npassword is supplied (report by fg0x0)\u003c/li\u003e\n\u003cli\u003eCONJ-1328 - restrictedAuth allowlist is matched with substring contains() instead of equality (thanks to\njmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1338 - Validate length-encoded integers fit a non-negative int before use as a length (report by fg0x0)\u003c/li\u003e\n\u003cli\u003eCONJ-1336 - CONJ-1282 regression: TLS connection fails when JDBC hostname is an absolute FQDN ending with a trailing\ndot (report by Shaswata, thanks to Pepo48 for PR)\u003c/li\u003e\n\u003cli\u003eCONJ-1335 - getGeneratedKeys() throws \u0026quot;integer overflow\u0026quot; after a batch insert when the auto-increment value exceeds\nInteger.MAX_VALUE, and returns bulk generated keys out of batch order\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/tree/3.4.4\"\u003e3.4.4\u003c/a\u003e (Jul 2026)\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/compare/3.4.3...3.4.4\"\u003eFull Changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch5\u003eNotable Changes\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1339 - Add maxAllowedColumns option to bound server-announced column count (report by fg0x0)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch5\u003eBugs Fixed\u003c/h5\u003e\n\u003cul\u003e\n\u003cli\u003eCONJ-1332 - Reject multipart (\u0026gt;16 MB) packets before authentication to prevent pre-auth OOM from a rogue server\u003c/li\u003e\n\u003cli\u003eCONJ-1342 - socketFactory option allows loading arbitrary bytecode via jar: URL, enabling RCE when JDBC URL is\nattacker-controlled (report by Qing Xu)\u003c/li\u003e\n\u003cli\u003eCONJ-1326 - Unsafe escaping in enquoteLiteral()/enquoteNCharLiteral() (thanks to jmestwa-coder)\u003c/li\u003e\n\u003cli\u003eCONJ-1329 - LOAD DATA LOCAL INFILE validation fails open when a bound parameter can't be rendered (thanks to\njmestwa-coder)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/6164678e83aa9d203939d5bec73bd4571cbec8a2\"\u003e\u003ccode\u003e6164678\u003c/code\u003e\u003c/a\u003e [misc] update changelog\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/6f58858707c3d59881b171c40ec5ddd2773b0642\"\u003e\u003ccode\u003e6f58858\u003c/code\u003e\u003c/a\u003e [CONJ-1335] getGeneratedKeys() throws SQLDataException \u0026quot;integer overflow\u0026quot; aft...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/9f06db76c8502fa952dcd4de6ebe46cfe3f6ead9\"\u003e\u003ccode\u003e9f06db7\u003c/code\u003e\u003c/a\u003e [misc] CI stability improvement\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/99aa9e2e7b84ecf4edec20beeac37752066599c8\"\u003e\u003ccode\u003e99aa9e2\u003c/code\u003e\u003c/a\u003e [CONJ-1336] correction follow up\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/28a1550357fd3773a1cda68d545e79573c26bc8a\"\u003e\u003ccode\u003e28a1550\u003c/code\u003e\u003c/a\u003e [CONJ-1336] strip trailing dot from hostname before SNI and hostname verifica...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/b2b3f1beb8a5cb83f48e68ed7b912c637da0634e\"\u003e\u003ccode\u003eb2b3f1b\u003c/code\u003e\u003c/a\u003e [misc] limit authentication switch requests to 10 per connection\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/26ca60ab4a6d58905d8beef98428bf04d6cd4a5f\"\u003e\u003ccode\u003e26ca60a\u003c/code\u003e\u003c/a\u003e [misc] bound the whole connection phase by connectTimeout\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/15e08ff54fd0247a5491fe2695562d36b8e7f7c2\"\u003e\u003ccode\u003e15e08ff\u003c/code\u003e\u003c/a\u003e [CONJ-1337] Limit parsec authentication PBKDF2 iteration factor to the connec...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/d3c4a726d7cfcc0fa10ee4cdcca423a7d88c67ab\"\u003e\u003ccode\u003ed3c4a72\u003c/code\u003e\u003c/a\u003e bump 3.5.10 version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/commit/d85e05f4dc010ce40df548cf908da6bbc2640903\"\u003e\u003ccode\u003ed85e05f\u003c/code\u003e\u003c/a\u003e [CONJ-1342] socketFactory option allows loading arbitrary bytecode via jar: U...\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/mariadb-corporation/mariadb-connector-j/compare/3.5.8...3.5.10\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.openwebbeans:openwebbeans-jetty9` from 2.0.27 to 2.0.28\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/09181d5e2f6c3d357db079d9038c78435be3119c\"\u003e\u003ccode\u003e09181d5\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release openwebbeans-2.0.28\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/ab45ce695d8e87191132db0a6f2f4d60e5abb7e1\"\u003e\u003ccode\u003eab45ce6\u003c/code\u003e\u003c/a\u003e fix(#OWB-1450): Interceptor proxy memory leak. Add caching at an higher level\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/f93bfea822251c851f0220169ebf65279729ac51\"\u003e\u003ccode\u003ef93bfea\u003c/code\u003e\u003c/a\u003e fix(#OWB-1450): remove non working cache on proxies per AT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/cdc9a57938125e47cf586c5978b0d0aff0f171c5\"\u003e\u003ccode\u003ecdc9a57\u003c/code\u003e\u003c/a\u003e fix: maven dependency to Gradle not found and NPE in previous plugin version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/3feacc6625d3e7d36dc2ef15051b8a8c080ef9da\"\u003e\u003ccode\u003e3feacc6\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/apache/openwebbeans/issues/127\"\u003e#127\u003c/a\u003e from jgallimore/owb_2.0.x-owb-cdi-junit\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/129a53845e7281e4e26b6a85c15b2d65f7f8f5e5\"\u003e\u003ccode\u003e129a538\u003c/code\u003e\u003c/a\u003e OWB-1448 remove wildcard import\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/9bbd3f72abe5107d76ee3b01018211a11605922a\"\u003e\u003ccode\u003e9bbd3f7\u003c/code\u003e\u003c/a\u003e OWB-1448 rework following feedback\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/eb4b4c60739954aa5a8132db63d299ec856ce135\"\u003e\u003ccode\u003eeb4b4c6\u003c/code\u003e\u003c/a\u003e OWB-1448 removing left over e.printStackTrace()\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/41a55968edb831142395fb5a817dfe169c229e62\"\u003e\u003ccode\u003e41a5596\u003c/code\u003e\u003c/a\u003e OWB-1448 Fix Issue with Cdi annotation and alternatives\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/0376bd705f7373336667a47ed05f9614ebb31f91\"\u003e\u003ccode\u003e0376bd7\u003c/code\u003e\u003c/a\u003e upgrade to apache-parent 29\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/openwebbeans/compare/openwebbeans-2.0.27...openwebbeans-2.0.28\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.openwebbeans:openwebbeans-web` from 2.0.27 to 2.0.28\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/09181d5e2f6c3d357db079d9038c78435be3119c\"\u003e\u003ccode\u003e09181d5\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release openwebbeans-2.0.28\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/ab45ce695d8e87191132db0a6f2f4d60e5abb7e1\"\u003e\u003ccode\u003eab45ce6\u003c/code\u003e\u003c/a\u003e fix(#OWB-1450): Interceptor proxy memory leak. Add caching at an higher level\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/f93bfea822251c851f0220169ebf65279729ac51\"\u003e\u003ccode\u003ef93bfea\u003c/code\u003e\u003c/a\u003e fix(#OWB-1450): remove non working cache on proxies per AT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/cdc9a57938125e47cf586c5978b0d0aff0f171c5\"\u003e\u003ccode\u003ecdc9a57\u003c/code\u003e\u003c/a\u003e fix: maven dependency to Gradle not found and NPE in previous plugin version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/3feacc6625d3e7d36dc2ef15051b8a8c080ef9da\"\u003e\u003ccode\u003e3feacc6\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/apache/openwebbeans/issues/127\"\u003e#127\u003c/a\u003e from jgallimore/owb_2.0.x-owb-cdi-junit\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/129a53845e7281e4e26b6a85c15b2d65f7f8f5e5\"\u003e\u003ccode\u003e129a538\u003c/code\u003e\u003c/a\u003e OWB-1448 remove wildcard import\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/9bbd3f72abe5107d76ee3b01018211a11605922a\"\u003e\u003ccode\u003e9bbd3f7\u003c/code\u003e\u003c/a\u003e OWB-1448 rework following feedback\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/eb4b4c60739954aa5a8132db63d299ec856ce135\"\u003e\u003ccode\u003eeb4b4c6\u003c/code\u003e\u003c/a\u003e OWB-1448 removing left over e.printStackTrace()\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/41a55968edb831142395fb5a817dfe169c229e62\"\u003e\u003ccode\u003e41a5596\u003c/code\u003e\u003c/a\u003e OWB-1448 Fix Issue with Cdi annotation and alternatives\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/0376bd705f7373336667a47ed05f9614ebb31f91\"\u003e\u003ccode\u003e0376bd7\u003c/code\u003e\u003c/a\u003e upgrade to apache-parent 29\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/openwebbeans/compare/openwebbeans-2.0.27...openwebbeans-2.0.28\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.openwebbeans:openwebbeans-web` from 2.0.27 to 2.0.28\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/09181d5e2f6c3d357db079d9038c78435be3119c\"\u003e\u003ccode\u003e09181d5\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release openwebbeans-2.0.28\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/ab45ce695d8e87191132db0a6f2f4d60e5abb7e1\"\u003e\u003ccode\u003eab45ce6\u003c/code\u003e\u003c/a\u003e fix(#OWB-1450): Interceptor proxy memory leak. Add caching at an higher level\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/f93bfea822251c851f0220169ebf65279729ac51\"\u003e\u003ccode\u003ef93bfea\u003c/code\u003e\u003c/a\u003e fix(#OWB-1450): remove non working cache on proxies per AT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/cdc9a57938125e47cf586c5978b0d0aff0f171c5\"\u003e\u003ccode\u003ecdc9a57\u003c/code\u003e\u003c/a\u003e fix: maven dependency to Gradle not found and NPE in previous plugin version\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/3feacc6625d3e7d36dc2ef15051b8a8c080ef9da\"\u003e\u003ccode\u003e3feacc6\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/apache/openwebbeans/issues/127\"\u003e#127\u003c/a\u003e from jgallimore/owb_2.0.x-owb-cdi-junit\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/129a53845e7281e4e26b6a85c15b2d65f7f8f5e5\"\u003e\u003ccode\u003e129a538\u003c/code\u003e\u003c/a\u003e OWB-1448 remove wildcard import\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/9bbd3f72abe5107d76ee3b01018211a11605922a\"\u003e\u003ccode\u003e9bbd3f7\u003c/code\u003e\u003c/a\u003e OWB-1448 rework following feedback\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/eb4b4c60739954aa5a8132db63d299ec856ce135\"\u003e\u003ccode\u003eeb4b4c6\u003c/code\u003e\u003c/a\u003e OWB-1448 removing left over e.printStackTrace()\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/41a55968edb831142395fb5a817dfe169c229e62\"\u003e\u003ccode\u003e41a5596\u003c/code\u003e\u003c/a\u003e OWB-1448 Fix Issue with Cdi annotation and alternatives\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/openwebbeans/commit/0376bd705f7373336667a47ed05f9614ebb31f91\"\u003e\u003ccode\u003e0376bd7\u003c/code\u003e\u003c/a\u003e upgrade to apache-parent 29\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/openwebbeans/compare/openwebbeans-2.0.27...openwebbeans-2.0.28\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson:jackson-bom` from 2.21.3 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/062d76d67a3619238e00d4d62f9bdb51cfe6cd52\"\u003e\u003ccode\u003e062d76d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-bom-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/dcf18f79fa8a9b935d880b3906291d8ed8cb1d0d\"\u003e\u003ccode\u003edcf18f7\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/9688c7b1dfc9072fdec7c9770653072d0a728fd1\"\u003e\u003ccode\u003e9688c7b\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/7796a7ddb240ce41c1b6c6a3a435b29948a6a727\"\u003e\u003ccode\u003e7796a7d\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/d3cd7fc1794f6d1a9f0a4dee41d8d46a310741d7\"\u003e\u003ccode\u003ed3cd7fc\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/7a28068902087b3c407d2dcabd875d7593127d97\"\u003e\u003ccode\u003e7a28068\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/51eb4657b141f598bb285763ac42492bd23a1da3\"\u003e\u003ccode\u003e51eb465\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/34ff5e8c68b0712086794b8287d0ad643a0a1993\"\u003e\u003ccode\u003e34ff5e8\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/0b44a458b999c5ac5568e2a4b1190a7d1080038e\"\u003e\u003ccode\u003e0b44a45\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-bom-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/691ec93ce7c1fcc582a2a44348e82e91ca424098\"\u003e\u003ccode\u003e691ec93\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-bom/compare/jackson-bom-2.21.3...jackson-bom-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.netty:netty-bom` from 4.2.13.Final to 4.2.17.Final\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/netty/netty/releases\"\u003eio.netty:netty-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003enetty-4.2.17.Final\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAsciiString.cached(String) should sanitize the provided String (\u003ca href=\"https://redirect.github.com/netty/netty/issues/13749\"\u003e#13749\u003c/a\u003e) by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix deploy workflow by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17071\"\u003enetty/netty#17071\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AsciiString.cached(String) performance regression by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17074\"\u003enetty/netty#17074\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSslHandler: Fix possible buffer leak when an OOME is thrown during allocation by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17059\"\u003enetty/netty#17059\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid leak presence detector in leak profile by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17073\"\u003enetty/netty#17073\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd HttpContentCompressor constructor with ability to specify desired maxPipelineDepth by \u003ca href=\"https://github.com/reta\"\u003e\u003ccode\u003e@​reta\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17068\"\u003enetty/netty#17068\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: preserve readPending when rescheduling cancelled reads by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17087\"\u003enetty/netty#17087\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReject negative maxOrder in PooledByteBufAllocator by \u003ca href=\"https://github.com/coderbruis\"\u003e\u003ccode\u003e@​coderbruis\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17093\"\u003enetty/netty#17093\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AdaptiveByteBuf._setLongLE calling checked setLongLE by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17098\"\u003enetty/netty#17098\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSnappy: Guard decoder against invalid chunk lengths by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17099\"\u003enetty/netty#17099\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix OCSP Tests by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17114\"\u003enetty/netty#17114\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate to latest netty-tcnative release by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17056\"\u003enetty/netty#17056\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse safe decompressor in Lz4FrameDecoder by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17118\"\u003enetty/netty#17118\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eConfigure TestLens for the PR builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17129\"\u003enetty/netty#17129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: add SO_INQ support for Unix domain sockets by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17127\"\u003enetty/netty#17127\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(mqtt): drop UNSUBACK reason codes for MQTT 3.x encoding by \u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropagate the CI envionment variables through to the docker builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17138\"\u003enetty/netty#17138\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add decompressor API by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/16745\"\u003enetty/netty#16745\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix silent failures and optimize error short-circuit in multi-threaded tests by \u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Bzip2Decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17145\"\u003enetty/netty#17145\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix buddy cache evicting chunks with live buffers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17154\"\u003enetty/netty#17154\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Snappy frame decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17153\"\u003enetty/netty#17153\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add zlib decompressors by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17155\"\u003enetty/netty#17155\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Zstd decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17152\"\u003enetty/netty#17152\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add LZF decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17147\"\u003enetty/netty#17147\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add BrotliDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17146\"\u003enetty/netty#17146\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Lz4FrameDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17148\"\u003enetty/netty#17148\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpObjectEncoder\u003c/code\u003e / \u003ccode\u003eDefaultHttp2FrameWriter\u003c/code\u003e: fix buffer leak when a \u003ccode\u003eThrowable\u003c/code\u003e is thrown during header encoding by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17089\"\u003enetty/netty#17089\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix direct memory OOM on low-core containers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17166\"\u003enetty/netty#17166\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: Fix the recvmmsg emulation by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17187\"\u003enetty/netty#17187\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid classloader leak via GlobalEventExecutor terminationFuture failure by \u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBrotliEncoder: Prevent duplicate close scheduling by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17175\"\u003enetty/netty#17175\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix JdkZlibDecompressor losing the tail of highly compressible streams by \u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate compress-lzf to 1.2.1 by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17194\"\u003enetty/netty#17194\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDo not write WebSocket handshake response to the tail of the pipeline by \u003ca href=\"https://github.com/el-psy-kongroo-d\"\u003e\u003ccode\u003e@​el-psy-kongroo-d\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17192\"\u003enetty/netty#17192\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpServerCodec\u003c/code\u003e: do not consume the method queue for 1xx interim responses by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17182\"\u003enetty/netty#17182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWeakly reference engines from the OpenSSL engine map by \u003ca href=\"https://github.com/bryce-anderson\"\u003e\u003ccode\u003e@​bryce-anderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17199\"\u003enetty/netty#17199\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eOpenSSL: Allow to obtain used named group via OpenSslSession by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17058\"\u003enetty/netty#17058\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17052\"\u003enetty/netty#17052\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate surefire plugin to latest version by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17210\"\u003enetty/netty#17210\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMerge changes from forks by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17213\"\u003enetty/netty#17213\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/e0789d32c72f46fd2e7c99b6fdbbf7e2f4409e44\"\u003e\u003ccode\u003ee0789d3\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release netty-4.2.17.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/1b5abc6443b63726c72cdd285af2feb7ddbb8ff7\"\u003e\u003ccode\u003e1b5abc6\u003c/code\u003e\u003c/a\u003e Merge changes from forks (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17213\"\u003e#17213\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/36fbf5788c73e7040e6f18fed841a2cdfcae1452\"\u003e\u003ccode\u003e36fbf57\u003c/code\u003e\u003c/a\u003e Update surefire plugin to latest version (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17210\"\u003e#17210\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/a96226cb54e87e963e1e341cd7121f2217fc7c2e\"\u003e\u003ccode\u003ea96226c\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17052\"\u003e#17052\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/14a4e6ad865a187c3f1bf0da18d9146472e18192\"\u003e\u003ccode\u003e14a4e6a\u003c/code\u003e\u003c/a\u003e OpenSSL: Allow to obtain used ...\n\n_Description has been truncated_","html_url":"https://github.com/finos-osera/patch-jetty/pull/34","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/finos-osera%2Fpatch-jetty/issues/34","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/34/packages"}},{"old_version":"33.6.0-jre","new_version":"33.7.1-jre","update_type":"minor","path":null,"pr_created_at":"2026-09-04T08:54:53.000Z","version_change":"33.6.0-jre → 33.7.1-jre","issue":{"uuid":"5346183280","node_id":"PR_kwDOTPX2l88AAAABCLHctA","number":125,"state":"open","title":"build(deps): bump the maven-dependencies group across 1 directory with 12 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":["lewandowski-anthony"],"locked":false,"comments_count":5,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-09-04T08:54:53.000Z","updated_at":"2026-09-07T10:02:39.187Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps): bump","group_name":"maven-dependencies","update_count":12,"packages":[{"name":"io.netty:netty-bom","old_version":"4.2.16.Final","new_version":"4.2.17.Final","repository_url":"https://github.com/netty/netty"},{"name":"org.springframework.boot:spring-boot-dependencies","old_version":"4.1.0","new_version":"4.1.1","repository_url":"https://github.com/spring-projects/spring-boot"},{"name":"org.springframework.boot:spring-boot-maven-plugin","old_version":"4.1.0","new_version":"4.1.1","repository_url":"https://github.com/spring-projects/spring-boot"},{"name":"org.springframework.ai:spring-ai-bom","old_version":"2.0.0","new_version":"2.0.1","repository_url":"https://github.com/spring-projects/spring-ai"},{"name":"org.apache.commons:commons-collections4","old_version":"4.5.0","new_version":"4.6.0"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"org.springdoc:springdoc-openapi-starter-webmvc-ui","old_version":"3.0.3","new_version":"3.1.0","repository_url":"https://github.com/springdoc/springdoc-openapi"},{"name":"io.cucumber:cucumber-java","old_version":"7.34.6","new_version":"7.34.7","repository_url":"https://github.com/cucumber/cucumber-jvm"},{"name":"io.cucumber:cucumber-spring","old_version":"7.34.6","new_version":"7.34.7","repository_url":"https://github.com/cucumber/cucumber-jvm"},{"name":"io.cucumber:cucumber-junit-platform-engine","old_version":"7.34.6","new_version":"7.34.7","repository_url":"https://github.com/cucumber/cucumber-jvm"},{"name":"org.apache.maven.plugins:maven-compiler-plugin","old_version":"3.15.0","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-compiler-plugin"},{"name":"org.apache.maven.plugins:maven-surefire-plugin","old_version":"3.5.6","new_version":"3.6.0","repository_url":"https://github.com/apache/maven-surefire"}],"path":null,"ecosystem":"maven"},"body":"Bumps the maven-dependencies group with 12 updates in the /back-end directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [io.netty:netty-bom](https://github.com/netty/netty) | `4.2.16.Final` | `4.2.17.Final` |\n| [org.springframework.boot:spring-boot-dependencies](https://github.com/spring-projects/spring-boot) | `4.1.0` | `4.1.1` |\n| [org.springframework.boot:spring-boot-maven-plugin](https://github.com/spring-projects/spring-boot) | `4.1.0` | `4.1.1` |\n| [org.springframework.ai:spring-ai-bom](https://github.com/spring-projects/spring-ai) | `2.0.0` | `2.0.1` |\n| org.apache.commons:commons-collections4 | `4.5.0` | `4.6.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [org.springdoc:springdoc-openapi-starter-webmvc-ui](https://github.com/springdoc/springdoc-openapi) | `3.0.3` | `3.1.0` |\n| [io.cucumber:cucumber-java](https://github.com/cucumber/cucumber-jvm) | `7.34.6` | `7.34.7` |\n| [io.cucumber:cucumber-spring](https://github.com/cucumber/cucumber-jvm) | `7.34.6` | `7.34.7` |\n| [io.cucumber:cucumber-junit-platform-engine](https://github.com/cucumber/cucumber-jvm) | `7.34.6` | `7.34.7` |\n| [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin) | `3.15.0` | `3.16.0` |\n| [org.apache.maven.plugins:maven-surefire-plugin](https://github.com/apache/maven-surefire) | `3.5.6` | `3.6.0` |\n\n\nUpdates `io.netty:netty-bom` from 4.2.16.Final to 4.2.17.Final\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/netty/netty/releases\"\u003eio.netty:netty-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003enetty-4.2.17.Final\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAsciiString.cached(String) should sanitize the provided String (\u003ca href=\"https://redirect.github.com/netty/netty/issues/13749\"\u003e#13749\u003c/a\u003e) by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix deploy workflow by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17071\"\u003enetty/netty#17071\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AsciiString.cached(String) performance regression by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17074\"\u003enetty/netty#17074\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSslHandler: Fix possible buffer leak when an OOME is thrown during allocation by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17059\"\u003enetty/netty#17059\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid leak presence detector in leak profile by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17073\"\u003enetty/netty#17073\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd HttpContentCompressor constructor with ability to specify desired maxPipelineDepth by \u003ca href=\"https://github.com/reta\"\u003e\u003ccode\u003e@​reta\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17068\"\u003enetty/netty#17068\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: preserve readPending when rescheduling cancelled reads by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17087\"\u003enetty/netty#17087\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReject negative maxOrder in PooledByteBufAllocator by \u003ca href=\"https://github.com/coderbruis\"\u003e\u003ccode\u003e@​coderbruis\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17093\"\u003enetty/netty#17093\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AdaptiveByteBuf._setLongLE calling checked setLongLE by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17098\"\u003enetty/netty#17098\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSnappy: Guard decoder against invalid chunk lengths by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17099\"\u003enetty/netty#17099\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix OCSP Tests by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17114\"\u003enetty/netty#17114\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate to latest netty-tcnative release by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17056\"\u003enetty/netty#17056\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse safe decompressor in Lz4FrameDecoder by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17118\"\u003enetty/netty#17118\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eConfigure TestLens for the PR builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17129\"\u003enetty/netty#17129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: add SO_INQ support for Unix domain sockets by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17127\"\u003enetty/netty#17127\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(mqtt): drop UNSUBACK reason codes for MQTT 3.x encoding by \u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropagate the CI envionment variables through to the docker builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17138\"\u003enetty/netty#17138\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add decompressor API by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/16745\"\u003enetty/netty#16745\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix silent failures and optimize error short-circuit in multi-threaded tests by \u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Bzip2Decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17145\"\u003enetty/netty#17145\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix buddy cache evicting chunks with live buffers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17154\"\u003enetty/netty#17154\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Snappy frame decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17153\"\u003enetty/netty#17153\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add zlib decompressors by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17155\"\u003enetty/netty#17155\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Zstd decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17152\"\u003enetty/netty#17152\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add LZF decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17147\"\u003enetty/netty#17147\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add BrotliDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17146\"\u003enetty/netty#17146\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Lz4FrameDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17148\"\u003enetty/netty#17148\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpObjectEncoder\u003c/code\u003e / \u003ccode\u003eDefaultHttp2FrameWriter\u003c/code\u003e: fix buffer leak when a \u003ccode\u003eThrowable\u003c/code\u003e is thrown during header encoding by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17089\"\u003enetty/netty#17089\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix direct memory OOM on low-core containers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17166\"\u003enetty/netty#17166\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: Fix the recvmmsg emulation by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17187\"\u003enetty/netty#17187\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid classloader leak via GlobalEventExecutor terminationFuture failure by \u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBrotliEncoder: Prevent duplicate close scheduling by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17175\"\u003enetty/netty#17175\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix JdkZlibDecompressor losing the tail of highly compressible streams by \u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate compress-lzf to 1.2.1 by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17194\"\u003enetty/netty#17194\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDo not write WebSocket handshake response to the tail of the pipeline by \u003ca href=\"https://github.com/el-psy-kongroo-d\"\u003e\u003ccode\u003e@​el-psy-kongroo-d\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17192\"\u003enetty/netty#17192\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpServerCodec\u003c/code\u003e: do not consume the method queue for 1xx interim responses by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17182\"\u003enetty/netty#17182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWeakly reference engines from the OpenSSL engine map by \u003ca href=\"https://github.com/bryce-anderson\"\u003e\u003ccode\u003e@​bryce-anderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17199\"\u003enetty/netty#17199\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eOpenSSL: Allow to obtain used named group via OpenSslSession by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17058\"\u003enetty/netty#17058\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17052\"\u003enetty/netty#17052\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate surefire plugin to latest version by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17210\"\u003enetty/netty#17210\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMerge changes from forks by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17213\"\u003enetty/netty#17213\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/e0789d32c72f46fd2e7c99b6fdbbf7e2f4409e44\"\u003e\u003ccode\u003ee0789d3\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release netty-4.2.17.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/1b5abc6443b63726c72cdd285af2feb7ddbb8ff7\"\u003e\u003ccode\u003e1b5abc6\u003c/code\u003e\u003c/a\u003e Merge changes from forks (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17213\"\u003e#17213\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/36fbf5788c73e7040e6f18fed841a2cdfcae1452\"\u003e\u003ccode\u003e36fbf57\u003c/code\u003e\u003c/a\u003e Update surefire plugin to latest version (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17210\"\u003e#17210\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/a96226cb54e87e963e1e341cd7121f2217fc7c2e\"\u003e\u003ccode\u003ea96226c\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17052\"\u003e#17052\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/14a4e6ad865a187c3f1bf0da18d9146472e18192\"\u003e\u003ccode\u003e14a4e6a\u003c/code\u003e\u003c/a\u003e OpenSSL: Allow to obtain used named group via OpenSslSession (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17058\"\u003e#17058\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/26255b123f7c699cd88cbdb42f6ecc6ed5cb7843\"\u003e\u003ccode\u003e26255b1\u003c/code\u003e\u003c/a\u003e Weakly reference engines from the OpenSSL engine map (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17199\"\u003e#17199\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/ae414179e3a030e0747fb68648ff2433fa4539e1\"\u003e\u003ccode\u003eae41417\u003c/code\u003e\u003c/a\u003e \u003ccode\u003eHttpServerCodec\u003c/code\u003e: do not consume the method queue for 1xx interim responses ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/41f1db523d3657954e9ad12250004cbdfde2a97d\"\u003e\u003ccode\u003e41f1db5\u003c/code\u003e\u003c/a\u003e Do not write WebSocket handshake response to the tail of the pipeline (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17192\"\u003e#17192\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/035d76e3f43fa462e101c1e03b59a69984c5ebf3\"\u003e\u003ccode\u003e035d76e\u003c/code\u003e\u003c/a\u003e Update compress-lzf to 1.2.1 (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17194\"\u003e#17194\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/7681affcf120fca1de8554095216ddea20b408c5\"\u003e\u003ccode\u003e7681aff\u003c/code\u003e\u003c/a\u003e Fix JdkZlibDecompressor losing the tail of highly compressible streams (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17191\"\u003e#17191\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/netty/netty/compare/netty-4.2.16.Final...netty-4.2.17.Final\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.springframework.boot:spring-boot-dependencies` from 4.1.0 to 4.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/spring-projects/spring-boot/releases\"\u003eorg.springframework.boot:spring-boot-dependencies's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.1.1\u003c/h2\u003e\n\u003ch2\u003e:warning: Attention Required\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSpring Boot's Gradle plugin no longer automatically configures gRPC when the Protobuf plugin is applied. This behavior caused problems for those using Protobuf without gRPC. To opt in to the configuration of gRPC, configure the \u003ccode\u003eprotobuf\u003c/code\u003e extension with the \u003ccode\u003egrpc\u003c/code\u003e plugin using an empty block. The Spring Boot Gradle plugin will then automatically configure the use of \u003ccode\u003eprotoc-gen-grpc-java\u003c/code\u003e as before. \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50822\"\u003e#50822\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:lady_beetle: Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eKafka consumer-specific security protocol is not taken into account \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51369\"\u003e#51369\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eStructured logging: a failed JSON encode corrupts the next log event written on the same thread \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51156\"\u003e#51156\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMicrometer registries pin the application context \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51135\"\u003e#51135\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eTemporary file is not deleted when ExportedImageTar construction fails \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51132\"\u003e#51132\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadata annotation processor ignores getter-level \u003ccode\u003e@NestedConfigurationProperty\u003c/code\u003e for records \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51098\"\u003e#51098\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring-boot-h2-console pulls servlet-api as transitive dependency \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51095\"\u003e#51095\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropertiesLauncher does not log nested archive paths \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51089\"\u003e#51089\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMethods that return the result of Map#remove are not declared with a \u003ccode\u003e@Nullable\u003c/code\u003e return type \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51087\"\u003e#51087\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eNativeImageResourceProvider flattens Flyway migration paths in subdirectories \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50964\"\u003e#50964\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix ordering of Kotlinx Serialization CodecCustomizer \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50961\"\u003e#50961\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJarFile is not closed when finding main class from archive \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50959\"\u003e#50959\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eApplication-managed JUL bridge handler should only be removed if installed \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50950\"\u003e#50950\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCloudFoundry reactive auto-configuration should not require a WebClient.Builder bean to be defined \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50944\"\u003e#50944\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails on reactive Cloud Foundry when using Actuator without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50942\"\u003e#50942\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eResources are not cleaned up when resolving an image that is not yet present in the builder \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50941\"\u003e#50941\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eGraphQlWebMvcAutoConfiguration should apply customizers in order \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50914\"\u003e#50914\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAuto-configured RedisMessageListenerContainer does not use virtual threads when spring.threads.virtual.enabled is true \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50884\"\u003e#50884\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails when using Actuator on Jersey without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50872\"\u003e#50872\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails on Cloud Foundry when using Actuator without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50871\"\u003e#50871\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIllegalStateException when binding properties to a \u003ccode\u003e@Validated\u003c/code\u003e class that contains a map whose value type is a wildcard \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50856\"\u003e#50856\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHigh number of connections due to Mongo health indicator \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50852\"\u003e#50852\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eInconsistent handling of empty string values of spring.security.oauth2.resourceserver.jwt issuer-uri and jwk-set-uri \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50849\"\u003e#50849\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReturn type nullability of ApplicationContextAssert's getBean methods does not indicate that bean may be null \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50845\"\u003e#50845\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropertiesWebClientHttpServiceGroupConfigurer has highest precedence, preventing other configurers from being ordered ahead of it \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50843\"\u003e#50843\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eExposing gRPC test server port should backoff if gRPC is not present \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50825\"\u003e#50825\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJpaBaseConfiguration#entityManagerConfiguration can cause a dependency loop on beans declaring AsyncTaskExecutor \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50801\"\u003e#50801\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring.grpc.server.health.include-overall-health is not taken into account \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50799\"\u003e#50799\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSetting 'server.servlet.session.cookie.partitioned' to false still emits the 'Partitioned' cookie attribute \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50790\"\u003e#50790\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eManaged version of Prometheus Client is not aligned with Micrometer's micrometer-registry-prometheus \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50780\"\u003e#50780\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMap properties bound from empty strings fail with ConverterNotFoundException \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50773\"\u003e#50773\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eProtobuf Common Protos should not be a managed dependency \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50772\"\u003e#50772\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAn application that depends on spring-boot-security-oauth2-resource-server may fail to start with a ClassNotFoundException when Reactor is on the classpath but WebFlux is not \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50764\"\u003e#50764\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eW3CHeaderParser's decoding is not compliant with RFC 3986 \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50650\"\u003e#50650\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:notebook_with_decorative_cover: Documentation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDescription of spring.graphql.websocket.connection-init-timeout does not render correctly in the reference guide \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51348\"\u003e#51348\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring.profiles.group should have a 'spring-profile-name' hint provider \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51284\"\u003e#51284\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove reference to removed InfluxDB auto-configuration \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51176\"\u003e#51176\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse JacksonJsonSerde in Kafka Streams documentation \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51161\"\u003e#51161\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDocument alternatives to HttpMessageConverters \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51129\"\u003e#51129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix stale type reference for OTLP logging transport metadata \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51119\"\u003e#51119\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadata for spring.test.mockmvc.htmlunit.url declares the wrong type \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51115\"\u003e#51115\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/6fdf67ea1552691e932604d4bf67a5e08ff0b0ea\"\u003e\u003ccode\u003e6fdf67e\u003c/code\u003e\u003c/a\u003e Release 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/fde599b28b40932e4ea6194399d89245923a01e7\"\u003e\u003ccode\u003efde599b\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Pulsar 2.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/9daa58f7d98b82bf16febcb91943ce267c220a50\"\u003e\u003ccode\u003e9daa58f\u003c/code\u003e\u003c/a\u003e Upgrade to Spring HATEOAS 3.1.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/353993ebc1d7b1ceccbb981b0439a42ba122a816\"\u003e\u003ccode\u003e353993e\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Data Bom 2026.0.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/24ba596bc4fa000614834016452435c834fdeda2\"\u003e\u003ccode\u003e24ba596\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Session 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/5cb5c294d1f4780e78d010a964049e47c074e4d6\"\u003e\u003ccode\u003e5cb5c29\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Security 7.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/4adc8eb130c4e0c688ed85316f385f4e04d47679\"\u003e\u003ccode\u003e4adc8eb\u003c/code\u003e\u003c/a\u003e Upgrade to Spring LDAP 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/4d9c19cbc0589f57a7265052b507bf4b961082ac\"\u003e\u003ccode\u003e4d9c19c\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Kafka 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/f30f6120c4f6f8f873ac56cba478ae1f011c276c\"\u003e\u003ccode\u003ef30f612\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Integration 7.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/b930283d97e92eb24da1de3721cdd41625266dea\"\u003e\u003ccode\u003eb930283\u003c/code\u003e\u003c/a\u003e Upgrade to Spring gRPC 1.1.1\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/spring-projects/spring-boot/compare/v4.1.0...v4.1.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.springframework.boot:spring-boot-maven-plugin` from 4.1.0 to 4.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/spring-projects/spring-boot/releases\"\u003eorg.springframework.boot:spring-boot-maven-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.1.1\u003c/h2\u003e\n\u003ch2\u003e:warning: Attention Required\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSpring Boot's Gradle plugin no longer automatically configures gRPC when the Protobuf plugin is applied. This behavior caused problems for those using Protobuf without gRPC. To opt in to the configuration of gRPC, configure the \u003ccode\u003eprotobuf\u003c/code\u003e extension with the \u003ccode\u003egrpc\u003c/code\u003e plugin using an empty block. The Spring Boot Gradle plugin will then automatically configure the use of \u003ccode\u003eprotoc-gen-grpc-java\u003c/code\u003e as before. \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50822\"\u003e#50822\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:lady_beetle: Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eKafka consumer-specific security protocol is not taken into account \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51369\"\u003e#51369\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eStructured logging: a failed JSON encode corrupts the next log event written on the same thread \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51156\"\u003e#51156\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMicrometer registries pin the application context \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51135\"\u003e#51135\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eTemporary file is not deleted when ExportedImageTar construction fails \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51132\"\u003e#51132\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadata annotation processor ignores getter-level \u003ccode\u003e@NestedConfigurationProperty\u003c/code\u003e for records \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51098\"\u003e#51098\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring-boot-h2-console pulls servlet-api as transitive dependency \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51095\"\u003e#51095\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropertiesLauncher does not log nested archive paths \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51089\"\u003e#51089\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMethods that return the result of Map#remove are not declared with a \u003ccode\u003e@Nullable\u003c/code\u003e return type \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51087\"\u003e#51087\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eNativeImageResourceProvider flattens Flyway migration paths in subdirectories \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50964\"\u003e#50964\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix ordering of Kotlinx Serialization CodecCustomizer \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50961\"\u003e#50961\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJarFile is not closed when finding main class from archive \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50959\"\u003e#50959\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eApplication-managed JUL bridge handler should only be removed if installed \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50950\"\u003e#50950\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCloudFoundry reactive auto-configuration should not require a WebClient.Builder bean to be defined \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50944\"\u003e#50944\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails on reactive Cloud Foundry when using Actuator without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50942\"\u003e#50942\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eResources are not cleaned up when resolving an image that is not yet present in the builder \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50941\"\u003e#50941\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eGraphQlWebMvcAutoConfiguration should apply customizers in order \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50914\"\u003e#50914\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAuto-configured RedisMessageListenerContainer does not use virtual threads when spring.threads.virtual.enabled is true \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50884\"\u003e#50884\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails when using Actuator on Jersey without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50872\"\u003e#50872\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eContext refresh fails on Cloud Foundry when using Actuator without spring-boot-health \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50871\"\u003e#50871\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIllegalStateException when binding properties to a \u003ccode\u003e@Validated\u003c/code\u003e class that contains a map whose value type is a wildcard \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50856\"\u003e#50856\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHigh number of connections due to Mongo health indicator \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50852\"\u003e#50852\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eInconsistent handling of empty string values of spring.security.oauth2.resourceserver.jwt issuer-uri and jwk-set-uri \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50849\"\u003e#50849\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReturn type nullability of ApplicationContextAssert's getBean methods does not indicate that bean may be null \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50845\"\u003e#50845\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropertiesWebClientHttpServiceGroupConfigurer has highest precedence, preventing other configurers from being ordered ahead of it \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50843\"\u003e#50843\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eExposing gRPC test server port should backoff if gRPC is not present \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50825\"\u003e#50825\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eJpaBaseConfiguration#entityManagerConfiguration can cause a dependency loop on beans declaring AsyncTaskExecutor \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50801\"\u003e#50801\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring.grpc.server.health.include-overall-health is not taken into account \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50799\"\u003e#50799\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSetting 'server.servlet.session.cookie.partitioned' to false still emits the 'Partitioned' cookie attribute \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50790\"\u003e#50790\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eManaged version of Prometheus Client is not aligned with Micrometer's micrometer-registry-prometheus \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50780\"\u003e#50780\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMap properties bound from empty strings fail with ConverterNotFoundException \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50773\"\u003e#50773\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eProtobuf Common Protos should not be a managed dependency \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50772\"\u003e#50772\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAn application that depends on spring-boot-security-oauth2-resource-server may fail to start with a ClassNotFoundException when Reactor is on the classpath but WebFlux is not \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50764\"\u003e#50764\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eW3CHeaderParser's decoding is not compliant with RFC 3986 \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/50650\"\u003e#50650\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:notebook_with_decorative_cover: Documentation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDescription of spring.graphql.websocket.connection-init-timeout does not render correctly in the reference guide \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51348\"\u003e#51348\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003espring.profiles.group should have a 'spring-profile-name' hint provider \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51284\"\u003e#51284\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove reference to removed InfluxDB auto-configuration \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51176\"\u003e#51176\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse JacksonJsonSerde in Kafka Streams documentation \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51161\"\u003e#51161\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDocument alternatives to HttpMessageConverters \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51129\"\u003e#51129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix stale type reference for OTLP logging transport metadata \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51119\"\u003e#51119\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadata for spring.test.mockmvc.htmlunit.url declares the wrong type \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51115\"\u003e#51115\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/6fdf67ea1552691e932604d4bf67a5e08ff0b0ea\"\u003e\u003ccode\u003e6fdf67e\u003c/code\u003e\u003c/a\u003e Release 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/fde599b28b40932e4ea6194399d89245923a01e7\"\u003e\u003ccode\u003efde599b\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Pulsar 2.0.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/9daa58f7d98b82bf16febcb91943ce267c220a50\"\u003e\u003ccode\u003e9daa58f\u003c/code\u003e\u003c/a\u003e Upgrade to Spring HATEOAS 3.1.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/353993ebc1d7b1ceccbb981b0439a42ba122a816\"\u003e\u003ccode\u003e353993e\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Data Bom 2026.0.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/24ba596bc4fa000614834016452435c834fdeda2\"\u003e\u003ccode\u003e24ba596\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Session 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/5cb5c294d1f4780e78d010a964049e47c074e4d6\"\u003e\u003ccode\u003e5cb5c29\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Security 7.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/4adc8eb130c4e0c688ed85316f385f4e04d47679\"\u003e\u003ccode\u003e4adc8eb\u003c/code\u003e\u003c/a\u003e Upgrade to Spring LDAP 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/4d9c19cbc0589f57a7265052b507bf4b961082ac\"\u003e\u003ccode\u003e4d9c19c\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Kafka 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/f30f6120c4f6f8f873ac56cba478ae1f011c276c\"\u003e\u003ccode\u003ef30f612\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Integration 7.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-boot/commit/b930283d97e92eb24da1de3721cdd41625266dea\"\u003e\u003ccode\u003eb930283\u003c/code\u003e\u003c/a\u003e Upgrade to Spring gRPC 1.1.1\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/spring-projects/spring-boot/compare/v4.1.0...v4.1.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.springframework.ai:spring-ai-bom` from 2.0.0 to 2.0.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/spring-projects/spring-ai/releases\"\u003eorg.springframework.ai:spring-ai-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eSpring AI 2.0.1\u003c/h2\u003e\n\u003cp\u003eFor upgrading from 2.0.0 to 2.0.1, please refer to the upgrade notes \u003ca href=\"https://docs.spring.io/spring-ai/reference/upgrade-notes.html#upgrading-to-2-0-1\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003eFor the detailed reference documentation on 2.0.1, please refer \u003ca href=\"https://docs.spring.io/spring-ai/reference/index.html\"\u003ehere\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003e:star: New Features\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eHarden Ollama integration tests against flakiness \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6776\"\u003e#6776\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRetire deprecated Mistral AI chat models \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6772\"\u003e#6772\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDocument additional 2.0.1 breaking changes \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6771\"\u003e#6771\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSupport audio streaming in OpenAiAudioSpeechModel \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6733\"\u003e#6733\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd configurable tool call limits \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6726\"\u003e#6726\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEnrich OpenAI transcription options and responses \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6697\"\u003e#6697\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate Couchbase vector store to use Spring Boot-managed client \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6583\"\u003e#6583\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove explicit \u003ccode\u003eprotobuf-java\u003c/code\u003e version properties \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6552\"\u003e#6552\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd ToolChoice support for Google GenAI chat model \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6531\"\u003e#6531\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove fastjson2 dependency from \u003ccode\u003espring-ai-azure-store\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6508\"\u003e#6508\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor \u003ccode\u003eMedia\u003c/code\u003e builder to use typed \u003ccode\u003edata\u003c/code\u003e overloads \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6481\"\u003e#6481\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eValidate \u003ccode\u003eTokenTextSplitter\u003c/code\u003e builder arguments \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6452\"\u003e#6452\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSupport page ranges in \u003ccode\u003ePagePdfDocumentReader\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6445\"\u003e#6445\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRevise DeepSeekApi \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6428\"\u003e#6428\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eGraalVM for mcp annotations doesn't work in Spring AI 2.0.0 \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6427\"\u003e#6427\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRename \u003ccode\u003espring-ai-autoconfigure-model-chat-memory-redis\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6416\"\u003e#6416\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRestore PDF media mapping in \u003ccode\u003eOpenAiChatModel\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6410\"\u003e#6410\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eGoogle Image generation support \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6408\"\u003e#6408\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove unused field \u003ccode\u003emaxResults\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6344\"\u003e#6344\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eConfusing WARN log while AWS region resolving \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/5108\"\u003e#5108\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSpringAI does not follow the AWS SDK's default region resolution rules \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/823\"\u003e#823\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:lady_beetle: Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReserve Redis chat memory timestamps atomically \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6784\"\u003e#6784\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix RedisChatMemoryRepository clear() \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6783\"\u003e#6783\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEscape metadata values in Redis chat memory queries \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6765\"\u003e#6765\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eValidate resolved resource path \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6764\"\u003e#6764\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIntroduce maxSessions and sessionIdleTimeout \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6760\"\u003e#6760\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eOpenAiAudioTranscriptionModel\u003c/code\u003e leaking the stream on cancellation \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6759\"\u003e#6759\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMerge java-compile compilerArgs instead of overriding \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6756\"\u003e#6756\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDefault OpenAI tool-calling strict mode to false \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6755\"\u003e#6755\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse temporary directory for cache \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6754\"\u003e#6754\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHandle malformed pdf in PdfDocumentReader \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6753\"\u003e#6753\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake tool resolution fallback configurable \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6751\"\u003e#6751\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse full length hash \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/issues/6746\"\u003e#6746\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCorrect \u003ccode\u003eToolContext\u003c/code\u003e parameter detection \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6744\"\u003e#6744\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReturn a single Generation on ToolCallLimitExceededException \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6742\"\u003e#6742\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix ToolCallingAdvisor streaming loop dropping doBeforeStream mutations \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6737\"\u003e#6737\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd instructions option to OpenAiAudioSpeechModel \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6731\"\u003e#6731\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eApply MCP HTTP client request customizer beans \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6716\"\u003e#6716\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eClose OpenAI stream response on cancellation \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6656\"\u003e#6656\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eValidate text length to prevent \u003ccode\u003eStringIndexOutOfBoundsException\u003c/code\u003e for \u003ccode\u003eMarkdownCodeBlockCleaner\u003c/code\u003e \u003ca href=\"https://redirect.github.com/spring-projects/spring-ai/pull/6645\"\u003e#6645\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/c9107fdac0a6c88489c08bb88abcee74c146981d\"\u003e\u003ccode\u003ec9107fd\u003c/code\u003e\u003c/a\u003e Release 2.0.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/92a211954343cc46355abb723cd9f40cf581c1de\"\u003e\u003ccode\u003e92a2119\u003c/code\u003e\u003c/a\u003e Upgrade to Spring Boot 4.1.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/0e7b5f62c3882202e76e7653990e57f56080bad7\"\u003e\u003ccode\u003e0e7b5f6\u003c/code\u003e\u003c/a\u003e Escape metadata values in Redis chat memory queries\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/2d2b45503618c17df52aac339d4511fb717e7af7\"\u003e\u003ccode\u003e2d2b455\u003c/code\u003e\u003c/a\u003e Validate resolved resource path stays within the cache directory\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/023867c80be379f53296fbb0002ac522d0d44449\"\u003e\u003ccode\u003e023867c\u003c/code\u003e\u003c/a\u003e Introduce maxSessions and sessionIdleTimeout\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/8a1fd8ed79011f63c1d9c02fec52778416a3d2d2\"\u003e\u003ccode\u003e8a1fd8e\u003c/code\u003e\u003c/a\u003e Handle malformed pdf in PdfDocumentReader\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/369a92670e7de1074a6f35b7a68071a789697932\"\u003e\u003ccode\u003e369a926\u003c/code\u003e\u003c/a\u003e Use a new temporary directory for cache\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/096f140bfee26e3fe7867f14f96d95a86fcb2b34\"\u003e\u003ccode\u003e096f140\u003c/code\u003e\u003c/a\u003e Make tool resolution fallback configurable\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/d89e4a4b4afc22ea8183ad1912fe0e98833f4a4b\"\u003e\u003ccode\u003ed89e4a4\u003c/code\u003e\u003c/a\u003e Use full length SHA256 hash for contextHash\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/spring-projects/spring-ai/commit/3fc390f38a26f725e215c6ea3535b4082fbd6d65\"\u003e\u003ccode\u003e3fc390f\u003c/code\u003e\u003c/a\u003e Prepare 2.0.x-internal branch\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/spring-projects/spring-ai/compare/v2.0.0...v2.0.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.commons:commons-collections4` from 4.5.0 to 4.6.0\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.springdoc:springdoc-openapi-starter-webmvc-ui` from 3.0.3 to 3.1.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/springdoc/springdoc-openapi/releases\"\u003eorg.springdoc:springdoc-openapi-starter-webmvc-ui's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003espringdoc-openapi v3,1,0 released!\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix request-specific Swagger UI index transformations by \u003ca href=\"https://github.com/limehee\"\u003e\u003ccode\u003e@​limehee\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/pull/3279\"\u003espringdoc/springdoc-openapi#3279\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix \u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3282\"\u003e#3282\u003c/a\u003e: preserve nest() version predicate across all routes in nest by \u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/pull/3296\"\u003espringdoc/springdoc-openapi#3296\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade Spring Boot to version \u003cstrong\u003e4.1.0\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade Spring AI to version \u003cstrong\u003e2.0.0\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade swagger-core to version \u003cstrong\u003e2.2.52\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade swagger-ui to version \u003cstrong\u003e5.32.11\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3307\"\u003e#3307\u003c/a\u003e – Act upon SonarQube warnings\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3306\"\u003e#3306\u003c/a\u003e – Act upon SonarQube warnings\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eAdded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3269\"\u003e#3269\u003c/a\u003e – Add mechanism to disable \u003ccode\u003enullable\u003c/code\u003e for Kotlin properties\u003c/li\u003e\n\u003cli\u003eAllow request-specific Swagger UI index transformation\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3304\"\u003e#3304\u003c/a\u003e – Kotlin parent class's field is not properly marked as nullable\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3294\"\u003e#3294\u003c/a\u003e – Duplicated path getting \u003ccode\u003eswagger-config\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3293\"\u003e#3293\u003c/a\u003e – Inconsistent OpenAPI schema naming with \u003ccode\u003eSNAKE_CASE\u003c/code\u003e: some Java record fields remain camelCase\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3292\"\u003e#3292\u003c/a\u003e – Make \u003ccode\u003eWebProperties\u003c/code\u003e and \u003ccode\u003eWebMvcProperties\u003c/code\u003e optional in \u003ccode\u003eSwaggerConfig\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3284\"\u003e#3284\u003c/a\u003e – Upgrade swagger-core from version 2.2.48 to 2.2.49\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3282\"\u003e#3282\u003c/a\u003e – Preserve version from \u003ccode\u003enest()\u003c/code\u003e predicate across all routes in \u003ccode\u003enest\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3281\"\u003e#3281\u003c/a\u003e – Stabilize Spring Data \u003ccode\u003ePage\u003c/code\u003e schema property order\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3274\"\u003e#3274\u003c/a\u003e – Description disappears from the generated json after upgrade to 3.0.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3270\"\u003e#3270\u003c/a\u003e – Validation annotation of \u003ccode\u003eParameterObject\u003c/code\u003e property applied to \u003ccode\u003ePathVariable\u003c/code\u003e with the same name, even in unrelated endpoints\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3266\"\u003e#3266\u003c/a\u003e – Upgrade swagger-core from version 2.2.47 to 2.2.48\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3263\"\u003e#3263\u003c/a\u003e – Null key for a \u003ccode\u003eMap\u003c/code\u003e not allowed in JSON\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/springdoc/springdoc-openapi/compare/v3.0.3...v3.1.0\"\u003ehttps://github.com/springdoc/springdoc-openapi/compare/v3.0.3...v3.1.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/springdoc/springdoc-openapi/blob/main/CHANGELOG.md\"\u003eorg.springdoc:springdoc-openapi-starter-webmvc-ui's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[3.1.0] - 2026-07-31\u003c/h2\u003e\n\u003ch3\u003eAdded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3269\"\u003e#3269\u003c/a\u003e – Add mechanism to disable \u003ccode\u003enullable\u003c/code\u003e for Kotlin properties\u003c/li\u003e\n\u003cli\u003eAllow request-specific Swagger UI index transformation\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade Spring Boot to version \u003cstrong\u003e4.1.0\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade Spring AI to version \u003cstrong\u003e2.0.0\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade swagger-core to version \u003cstrong\u003e2.2.52\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003eUpgrade swagger-ui to version \u003cstrong\u003e5.32.11\u003c/strong\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3307\"\u003e#3307\u003c/a\u003e – Act upon SonarQube warnings\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3306\"\u003e#3306\u003c/a\u003e – Act upon SonarQube warnings\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3304\"\u003e#3304\u003c/a\u003e – Kotlin parent class's field is not properly marked as nullable\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3294\"\u003e#3294\u003c/a\u003e – Duplicated path getting \u003ccode\u003eswagger-config\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3293\"\u003e#3293\u003c/a\u003e – Inconsistent OpenAPI schema naming with \u003ccode\u003eSNAKE_CASE\u003c/code\u003e: some Java record fields remain camelCase\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3292\"\u003e#3292\u003c/a\u003e – Make \u003ccode\u003eWebProperties\u003c/code\u003e and \u003ccode\u003eWebMvcProperties\u003c/code\u003e optional in \u003ccode\u003eSwaggerConfig\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3284\"\u003e#3284\u003c/a\u003e – Upgrade swagger-core from version 2.2.48 to 2.2.49\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3282\"\u003e#3282\u003c/a\u003e – Preserve version from \u003ccode\u003enest()\u003c/code\u003e predicate across all routes in \u003ccode\u003enest\u003c/code\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3281\"\u003e#3281\u003c/a\u003e – Stabilize Spring Data \u003ccode\u003ePage\u003c/code\u003e schema property order\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3274\"\u003e#3274\u003c/a\u003e – Description disappears from the generated json after upgrade to 3.0.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3270\"\u003e#3270\u003c/a\u003e – Validation annotation of \u003ccode\u003eParameterObject\u003c/code\u003e property applied to \u003ccode\u003ePathVariable\u003c/code\u003e with the same name, even in unrelated endpoints\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3266\"\u003e#3266\u003c/a\u003e – Upgrade swagger-core from version 2.2.47 to 2.2.48\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3263\"\u003e#3263\u003c/a\u003e – Null key for a \u003ccode\u003eMap\u003c/code\u003e not allowed in JSON\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/e04f91f10267bc7f31e9031886dd3a46bb77c938\"\u003e\u003ccode\u003ee04f91f\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release v3.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/83551ce77894346de853f5755879ff8acb698e49\"\u003e\u003ccode\u003e83551ce\u003c/code\u003e\u003c/a\u003e CHANGELOG.md update\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/4a2b5bd5c53afd98cc29f0e72bfdbf048e02ff17\"\u003e\u003ccode\u003e4a2b5bd\u003c/code\u003e\u003c/a\u003e CHANGELOG.md update\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/ad0a5a51caa709ec5bbaf549c404863eda619d90\"\u003e\u003ccode\u003ead0a5a5\u003c/code\u003e\u003c/a\u003e swagger-ui upgrade to version 5.32.11\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/6e14cb4a0ead3306ded7dfd9a64d51132bb6761f\"\u003e\u003ccode\u003e6e14cb4\u003c/code\u003e\u003c/a\u003e Fix sonarqube errors\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/eae20564510fc1640e5098774dc96d6b976b3e46\"\u003e\u003ccode\u003eeae2056\u003c/code\u003e\u003c/a\u003e Fix sonarqube errors\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/b09a77bb6e4357498eec1743021a22c865374f1c\"\u003e\u003ccode\u003eb09a77b\u003c/code\u003e\u003c/a\u003e chore: act upon SonarQube warnings\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/cc3d86d6f83f64e1fd76b14ec6de5c84d32227cc\"\u003e\u003ccode\u003ecc3d86d\u003c/code\u003e\u003c/a\u003e upgrade spring-ai to version 2.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/df1c2ba12f9ef979c0afd1fd05f35d0901937bc5\"\u003e\u003ccode\u003edf1c2ba\u003c/code\u003e\u003c/a\u003e spring-boot upgrade to 4.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/springdoc/springdoc-openapi/commit/b6e5212d8b7afea30f6fa9b95561633411d2148d\"\u003e\u003ccode\u003eb6e5212\u003c/code\u003e\u003c/a\u003e Kotlin parent class's field is not properly marked as nullable. Fixes \u003ca href=\"https://redirect.github.com/springdoc/springdoc-openapi/issues/3304\"\u003e#3304\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/springdoc/springdoc-openapi/compare/v3.0.3...v3.1.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.cucumber:cucumber-java` from 7.34.6 to 7.34.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/releases\"\u003eio.cucumber:cucumber-java's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.34.7\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/blob/main/CHANGELOG.md\"\u003eio.cucumber:cucumber-java's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[7.34.7] - 2026-08-17\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/e95c9192d144916ab9d6454f79c6b6c757cb9d28\"\u003e\u003ccode\u003ee95c919\u003c/code\u003e\u003c/a\u003e Prepare release v7.34.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/ea9a4c59b45ffb0f8734405d90321268ae689f4e\"\u003e\u003ccode\u003eea9a4c5\u003c/code\u003e\u003c/a\u003e Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/97534f24a87fbbd85e988131a3d8637790258dde\"\u003e\u003ccode\u003e97534f2\u003c/code\u003e\u003c/a\u003e Prepare for the next development iteration\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/cucumber/cucumber-jvm/compare/v7.34.6...v7.34.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.cucumber:cucumber-spring` from 7.34.6 to 7.34.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/releases\"\u003eio.cucumber:cucumber-spring's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.34.7\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/blob/main/CHANGELOG.md\"\u003eio.cucumber:cucumber-spring's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[7.34.7] - 2026-08-17\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/e95c9192d144916ab9d6454f79c6b6c757cb9d28\"\u003e\u003ccode\u003ee95c919\u003c/code\u003e\u003c/a\u003e Prepare release v7.34.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/ea9a4c59b45ffb0f8734405d90321268ae689f4e\"\u003e\u003ccode\u003eea9a4c5\u003c/code\u003e\u003c/a\u003e Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/97534f24a87fbbd85e988131a3d8637790258dde\"\u003e\u003ccode\u003e97534f2\u003c/code\u003e\u003c/a\u003e Prepare for the next development iteration\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/cucumber/cucumber-jvm/compare/v7.34.6...v7.34.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.cucumber:cucumber-junit-platform-engine` from 7.34.6 to 7.34.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/releases\"\u003eio.cucumber:cucumber-junit-platform-engine's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.34.7\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/blob/main/CHANGELOG.md\"\u003eio.cucumber:cucumber-junit-platform-engine's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[7.34.7] - 2026-08-17\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/e95c9192d144916ab9d6454f79c6b6c757cb9d28\"\u003e\u003ccode\u003ee95c919\u003c/code\u003e\u003c/a\u003e Prepare release v7.34.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/ea9a4c59b45ffb0f8734405d90321268ae689f4e\"\u003e\u003ccode\u003eea9a4c5\u003c/code\u003e\u003c/a\u003e Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/97534f24a87fbbd85e988131a3d8637790258dde\"\u003e\u003ccode\u003e97534f2\u003c/code\u003e\u003c/a\u003e Prepare for the next development iteration\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/cucumber/cucumber-jvm/compare/v7.34.6...v7.34.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.cucumber:cucumber-spring` from 7.34.6 to 7.34.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/releases\"\u003eio.cucumber:cucumber-spring's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.34.7\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/blob/main/CHANGELOG.md\"\u003eio.cucumber:cucumber-spring's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[7.34.7] - 2026-08-17\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/e95c9192d144916ab9d6454f79c6b6c757cb9d28\"\u003e\u003ccode\u003ee95c919\u003c/code\u003e\u003c/a\u003e Prepare release v7.34.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/ea9a4c59b45ffb0f8734405d90321268ae689f4e\"\u003e\u003ccode\u003eea9a4c5\u003c/code\u003e\u003c/a\u003e Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/97534f24a87fbbd85e988131a3d8637790258dde\"\u003e\u003ccode\u003e97534f2\u003c/code\u003e\u003c/a\u003e Prepare for the next development iteration\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/cucumber/cucumber-jvm/compare/v7.34.6...v7.34.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.cucumber:cucumber-junit-platform-engine` from 7.34.6 to 7.34.7\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/releases\"\u003eio.cucumber:cucumber-junit-platform-engine's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev7.34.7\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/cucumber/cucumber-jvm/blob/main/CHANGELOG.md\"\u003eio.cucumber:cucumber-junit-platform-engine's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[7.34.7] - 2026-08-17\u003c/h2\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e[Core] Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e[Core] Update dependency com.fasterxml.jackson:jackson-bom to v2.22.2\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/e95c9192d144916ab9d6454f79c6b6c757cb9d28\"\u003e\u003ccode\u003ee95c919\u003c/code\u003e\u003c/a\u003e Prepare release v7.34.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/ea9a4c59b45ffb0f8734405d90321268ae689f4e\"\u003e\u003ccode\u003eea9a4c5\u003c/code\u003e\u003c/a\u003e Update dependency io.cucumber:messages-ndjson to v0.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/cucumber/cucumber-jvm/commit/97534f24a87fbbd85e988131a3d8637790258dde\"\u003e\u003ccode\u003e97534f2\u003c/code\u003e\u003c/a\u003e Prepare for the next development iteration\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/cucumber/cucumber-jvm/compare/v7.34.6...v7.34.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.springframework.boot:spring-boot-maven-plugin` from 4.1.0 to 4.1.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/spring-projects/spring-boot/releases\"\u003eorg.springframework.boot:spring-boot-maven-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev4.1.1\u003c/h2\u003e\n\u003ch2\u003e:warning: Attention Required\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSpring Boot's Gradle plugin no longer automatically configures gRPC when the Protobuf plugin is applied. This behavior caused problems for those using Protobuf without gRPC. To opt in to the configuration of gRPC, configure the \u003ccode\u003eprotobuf\u003c/code\u003e extension with the \u003ccode\u003egrpc\u003c/code\u003e plugin using an empty block. The Spring Boot Gradle plugin will then automatically configure the use of \u003ccode\u003eprotoc-gen-grpc-java\u003c/code\u003e as before. \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/50822\"\u003e#50822\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e:lady_beetle: Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eKafka consumer-specific security protocol is not taken into account \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51369\"\u003e#51369\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eStructured logging: a failed JSON encode corrupts the next log event written on the same thread \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/pull/51156\"\u003e#51156\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMicrometer registries pin the application context \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51135\"\u003e#51135\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eTemporary file is not deleted when ExportedImageTar construction fails \u003ca href=\"https://redirect.github.com/spring-projects/spring-boot/issues/51132\"\u003e#51132\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMetadata annotation processor...\n\n_Description has been truncated_","html_url":"https://github.com/lewandowski-anthony/JiRadar/pull/125","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/lewandowski-anthony%2FJiRadar/issues/125","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/125/packages"}},{"old_version":"32.0.1-jre","new_version":"33.7.1-jre","update_type":"major","path":"/app/server","pr_created_at":"2026-09-03T17:14:17.000Z","version_change":"32.0.1-jre → 33.7.1-jre","issue":{"uuid":"5339403577","node_id":"PR_kwDOSW6pMc8AAAABCFw1gA","number":61,"state":"closed","title":"chore(deps): bump com.google.guava:guava from 32.0.1-jre to 33.7.1-jre in /app/server","user":"dependabot[bot]","labels":["Stale"],"assignees":[],"locked":false,"comments_count":4,"pull_request":true,"closed_at":"2026-09-17T19:47:40.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-03T17:14:17.000Z","updated_at":"2026-09-17T19:47:50.000Z","time_to_close":1218803,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"com.google.guava:guava","old_version":"32.0.1-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"}],"path":"/app/server","ecosystem":"maven"},"body":"Bumps [com.google.guava:guava](https://github.com/google/guava) from 32.0.1-jre to 33.7.1-jre.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.google.guava:guava\u0026package-manager=maven\u0026previous-version=32.0.1-jre\u0026new-version=33.7.1-jre)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/MarcusViniciusBispoDosSantos/AppSmith/pull/61","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/MarcusViniciusBispoDosSantos%2FAppSmith/issues/61","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/61/packages"}},{"old_version":"25.1-jre","new_version":"32.0.0-jre","update_type":null,"path":"/log4j-cassandra","pr_created_at":"2026-09-03T09:51:52.000Z","version_change":"25.1-jre → 32.0.0-jre","issue":{"uuid":"5335043307","node_id":"PR_kwDOAKJSSM8AAAABCCOP_g","number":4285,"state":"closed","title":"Bump com.google.guava:guava from 25.1-jre to 32.0.0-jre in /log4j-cassandra","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":3,"pull_request":true,"closed_at":"2026-09-07T04:59:01.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-03T09:51:52.000Z","updated_at":"2026-09-07T04:59:03.000Z","time_to_close":328029,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"com.google.guava:guava","old_version":"25.1-jre","new_version":"32.0.0-jre","repository_url":"https://github.com/google/guava"}],"path":"/log4j-cassandra","ecosystem":"maven"},"body":"Bumps [com.google.guava:guava](https://github.com/google/guava) from 25.1-jre to 32.0.0-jre.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e32.0.0\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;32.0.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;32.0.0-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/32.0.0-jre/guava-32.0.0-jre.jar\"\u003e32.0.0-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/32.0.0-android/guava-32.0.0-android.jar\"\u003e32.0.0-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.1/failureaccess-1.0.1.jar\"\u003efailureaccess-1.0.1.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"http://guava.dev/releases/32.0.0-jre/api/docs/\"\u003e32.0.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"http://guava.dev/releases/32.0.0-android/api/docs/\"\u003e32.0.0-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"http://guava.dev/releases/32.0.0-jre/api/diffs/\"\u003e32.0.0-jre vs. 31.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"http://guava.dev/releases/32.0.0-android/api/diffs/\"\u003e32.0.0-android vs. 31.1-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"http://guava.dev/releases/32.0.0-android/api/androiddiffs/\"\u003e32.0.0-android vs. 32.0.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003ch4\u003eSecurity fixes\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eReimplemented \u003ccode\u003eFiles.createTempDir\u003c/code\u003e and \u003ccode\u003eFileBackedOutputStream\u003c/code\u003e to further address CVE-2020-8908 (\u003ca href=\"https://redirect.github.com/google/guava/issues/4011\"\u003e#4011\u003c/a\u003e) and CVE-2023-2976 (\u003ca href=\"https://redirect.github.com/google/guava/issues/2575\"\u003e#2575\u003c/a\u003e). (feb83a1c8f)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eWhile CVE-2020-8908 was officially closed when we deprecated \u003ccode\u003eFiles.createTempDir\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v30.0\"\u003eGuava 30.0\u003c/a\u003e, we've heard from users that even recent versions of Guava have been listed as vulnerable in \u003cem\u003eother\u003c/em\u003e databases of security vulnerabilities. In response, we've reimplemented the method (and the very rarely used \u003ccode\u003eFileBackedOutputStream\u003c/code\u003e class, which had a similar issue) to eliminate the insecure behavior entirely. This change could technically affect users in a number of different ways (discussed under \u0026quot;Incompatible changes\u0026quot; below), but in practice, the only problem users are likely to encounter is with Windows. If you are using those APIs under Windows, you should skip 32.0.0 and go straight to \u003ca href=\"https://github.com/google/guava/releases/tag/v32.0.1\"\u003e32.0.1\u003c/a\u003e which fixes the problem. (Unfortunately, we didn't think of the Windows problem until after the release. And while we \u003ca href=\"https://github.com/google/guava#important-warnings\"\u003ewarn that \u003ccode\u003ecommon.io\u003c/code\u003e in particular may not work under Windows\u003c/a\u003e, we didn't intend to regress support.) Sorry for the trouble.\u003c/p\u003e\n\u003ch4\u003eIncompatible changes\u003c/h4\u003e\n\u003cp\u003eAlthough this release bumps Guava's major version number, it makes \u003cstrong\u003eno binary-incompatible changes to the \u003ccode\u003eguava\u003c/code\u003e artifact\u003c/strong\u003e.\u003c/p\u003e\n\u003cp\u003eOne change could cause issues for Widows users, and a few other changes could cause issues for users in more usual situations:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eThe new implementations of \u003ccode\u003eFiles.createTempDir\u003c/code\u003e and \u003ccode\u003eFileBackedOutputStream\u003c/code\u003e \u003ca href=\"https://redirect.github.com/google/guava/issues/6535\"\u003ethrow an exception under Windows\u003c/a\u003e.\u003c/strong\u003e This is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v32.0.1\"\u003e32.0.1\u003c/a\u003e. Sorry for the trouble.\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eguava-gwt\u003c/code\u003e now \u003ca href=\"https://redirect.github.com/google/guava/issues/6627\"\u003erequires\u003c/a\u003e GWT \u003ca href=\"https://github.com/gwtproject/gwt/releases/tag/2.10.0\"\u003e2.10.0\u003c/a\u003e.\u003c/li\u003e\n\u003cli\u003eThis release makes a binary-incompatible change to a \u003ccode\u003e@Beta\u003c/code\u003e API in the \u003cstrong\u003eseparate artifact\u003c/strong\u003e \u003ccode\u003eguava-testlib\u003c/code\u003e. Specifically, we changed the return type of \u003ccode\u003eTestingExecutors.sameThreadScheduledExecutor\u003c/code\u003e to \u003ccode\u003eListeningScheduledExecutorService\u003c/code\u003e. The old return type was a package-private class, which caused the Kotlin compiler to produce warnings. (dafaa3e435)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.google.guava:guava\u0026package-manager=maven\u0026previous-version=25.1-jre\u0026new-version=32.0.0-jre)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/apache/logging-log4j2/network/alerts).\n\n\u003c/details\u003e","html_url":"https://github.com/apache/logging-log4j2/pull/4285","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/apache%2Flogging-log4j2/issues/4285","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/4285/packages"}},{"old_version":"33.6.0-jre","new_version":"33.7.1-jre","update_type":"minor","path":null,"pr_created_at":"2026-09-03T05:23:51.000Z","version_change":"33.6.0-jre → 33.7.1-jre","issue":{"uuid":"5332633668","node_id":"PR_kwDOPmMU8s8AAAABCASdSA","number":368,"state":"closed","title":"chore(deps): bump the maven-dependencies group across 1 directory with 14 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-04T05:23:25.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-03T05:23:51.000Z","updated_at":"2026-09-04T05:23:27.000Z","time_to_close":86374,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"maven-dependencies","update_count":14,"packages":[{"name":"com.google.cloud:google-cloud-storage-bom","old_version":"2.69.0","new_version":"2.72.0","repository_url":"https://github.com/googleapis/google-cloud-java"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"io.opentelemetry:opentelemetry-api","old_version":"1.63.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"io.opentelemetry:opentelemetry-sdk","old_version":"1.63.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"io.opentelemetry:opentelemetry-exporter-logging","old_version":"1.63.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"io.opentelemetry:opentelemetry-sdk-extension-autoconfigure-spi","old_version":"1.63.0","new_version":"1.65.0","repository_url":"https://github.com/open-telemetry/opentelemetry-java"},{"name":"com.google.cloud.opentelemetry:exporter-metrics","old_version":"0.36.0","new_version":"0.37.0","repository_url":"https://github.com/GoogleCloudPlatform/opentelemetry-operations-java"},{"name":"io.opentelemetry.contrib:opentelemetry-gcp-resources","old_version":"1.54.0-alpha","new_version":"1.60.0-alpha","repository_url":"https://github.com/open-telemetry/opentelemetry-java-contrib"},{"name":"com.google.cloud:libraries-bom","old_version":"26.84.0","new_version":"26.87.0","repository_url":"https://github.com/googleapis/google-cloud-java"},{"name":"org.apache.parquet:parquet-avro","old_version":"1.17.1","new_version":"1.18.0","repository_url":"https://github.com/apache/parquet-java"},{"name":"org.apache.parquet:parquet-column","old_version":"1.17.1","new_version":"1.18.0","repository_url":"https://github.com/apache/parquet-java"},{"name":"org.apache.parquet:parquet-hadoop","old_version":"1.17.1","new_version":"1.18.0","repository_url":"https://github.com/apache/parquet-java"},{"name":"org.apache.avro:avro","old_version":"1.12.1","new_version":"1.12.2"},{"name":"org.apache.maven.plugins:maven-compiler-plugin","old_version":"3.15.0","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-compiler-plugin"}],"path":null,"ecosystem":"maven"},"body":"Bumps the maven-dependencies group with 14 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [com.google.cloud:google-cloud-storage-bom](https://github.com/googleapis/google-cloud-java) | `2.69.0` | `2.72.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [io.opentelemetry:opentelemetry-api](https://github.com/open-telemetry/opentelemetry-java) | `1.63.0` | `1.65.0` |\n| [io.opentelemetry:opentelemetry-sdk](https://github.com/open-telemetry/opentelemetry-java) | `1.63.0` | `1.65.0` |\n| [io.opentelemetry:opentelemetry-exporter-logging](https://github.com/open-telemetry/opentelemetry-java) | `1.63.0` | `1.65.0` |\n| [io.opentelemetry:opentelemetry-sdk-extension-autoconfigure-spi](https://github.com/open-telemetry/opentelemetry-java) | `1.63.0` | `1.65.0` |\n| [com.google.cloud.opentelemetry:exporter-metrics](https://github.com/GoogleCloudPlatform/opentelemetry-operations-java) | `0.36.0` | `0.37.0` |\n| [io.opentelemetry.contrib:opentelemetry-gcp-resources](https://github.com/open-telemetry/opentelemetry-java-contrib) | `1.54.0-alpha` | `1.60.0-alpha` |\n| [com.google.cloud:libraries-bom](https://github.com/googleapis/google-cloud-java) | `26.84.0` | `26.87.0` |\n| [org.apache.parquet:parquet-avro](https://github.com/apache/parquet-java) | `1.17.1` | `1.18.0` |\n| [org.apache.parquet:parquet-column](https://github.com/apache/parquet-java) | `1.17.1` | `1.18.0` |\n| [org.apache.parquet:parquet-hadoop](https://github.com/apache/parquet-java) | `1.17.1` | `1.18.0` |\n| org.apache.avro:avro | `1.12.1` | `1.12.2` |\n| [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin) | `3.15.0` | `3.16.0` |\n\n\nUpdates `com.google.cloud:google-cloud-storage-bom` from 2.69.0 to 2.72.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/googleapis/google-cloud-java/blob/main/java-document-ai/CHANGELOG.md\"\u003ecom.google.cloud:google-cloud-storage-bom's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e2.72.0 (2025-07-11)\u003c/h2\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eupdate dependency com.google.cloud:sdk-platform-java-config to v3.50.1 (\u003ca href=\"https://redirect.github.com/googleapis/google-cloud-java/issues/11655\"\u003e#11655\u003c/a\u003e) (\u003ca href=\"https://github.com/googleapis/google-cloud-java/commit/9b34528f85043049e3349fffc30bb2dbfe01836c\"\u003e9b34528\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e2.71.0 (2025-06-25)\u003c/h2\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eupdate dependency com.google.cloud:sdk-platform-java-config to v3.50.0 (\u003ca href=\"https://redirect.github.com/googleapis/google-cloud-java/issues/11624\"\u003e#11624\u003c/a\u003e) (\u003ca href=\"https://github.com/googleapis/google-cloud-java/commit/a19f457d10f15437ac26ce379048ff8b3cc6be5d\"\u003ea19f457\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/googleapis/google-cloud-java/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.opentelemetry:opentelemetry-api` from 1.63.0 to 1.65.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/releases\"\u003eio.opentelemetry:opentelemetry-api's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was deprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector exporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e, \u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e, \u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed tokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based on string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default \u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements it to stop its polling executor (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRecord \u003ccode\u003eerror.type\u003c/code\u003e on failed collections in \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8650\"\u003e#8650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTesting: Fix \u003ccode\u003eLongExemplarAssert.hasFilteredAttributesSatisfyingExactly\u003c/code\u003e to enforce exact attribute matching (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8518\"\u003e#8518\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eLogs\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eReadWriteLogRecord\u003c/code\u003e default \u003ccode\u003egetObservedTimestampEpochNanos\u003c/code\u003e returning the record timestamp (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8504\"\u003e#8504\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eProfiles\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix profiles data model attribute count parameter name and timestamp doc unit (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8514\"\u003e#8514\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExporters\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eWARNING\u003c/strong\u003e Zipkin: Delete \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e; the artifact is no longer published (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8677\"\u003e#8677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Use HTTP error response bodies in \u003ccode\u003eHttpExporter\u003c/code\u003e warning logs (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8428\"\u003e#8428\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e mTLS when using the platform default trust store (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8565\"\u003e#8565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix sign extension on \u003ccode\u003eLogRecord\u003c/code\u003e flags in the low-allocation log marshaler (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8493\"\u003e#8493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Standardize \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e, \u003ccode\u003eJdkHttpSender\u003c/code\u003e, and \u003ccode\u003eUpstreamGrpcSender\u003c/code\u003e shutdown to await executor/channel termination (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8495\"\u003e#8495\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8627\"\u003e#8627\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8624\"\u003e#8624\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Log the underlying except/ion when a gRPC response frame is invalid (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8626\"\u003e#8626\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/blob/main/CHANGELOG.md\"\u003eio.opentelemetry:opentelemetry-api's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0 (2026-08-07)\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was\ndeprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector\nexporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed\ntokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based\non string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default\n\u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements\nit to stop its polling executor\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/7bc11edca518d4de168230c84a71484a66cbac40\"\u003e\u003ccode\u003e7bc11ed\u003c/code\u003e\u003c/a\u003e [release/v1.65.x] Prepare release 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8705\"\u003e#8705\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/60d7ecfe270354f8a329a0ecad42fca2650cc36e\"\u003e\u003ccode\u003e60d7ecf\u003c/code\u003e\u003c/a\u003e Prepare 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8700\"\u003e#8700\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/6d41aa40ed39eed5fb000e7595e1b1dd279fed91\"\u003e\u003ccode\u003e6d41aa4\u003c/code\u003e\u003c/a\u003e Bound jaeger-baggage parsing work by tokens rather than accepted entries (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/db1d6bee36537b4f356a6b7d616e587217938177\"\u003e\u003ccode\u003edb1d6be\u003c/code\u003e\u003c/a\u003e Enforce last-value-wins semantics in AttributesMap without performance regres...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/995cb3c4328f76a21f12e79b2667c684845899ca\"\u003e\u003ccode\u003e995cb3c\u003c/code\u003e\u003c/a\u003e Avoid unsafe string encoder on Android (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8637\"\u003e#8637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/48b0185d06a8d34d713d4fc24d6c70502b6f1531\"\u003e\u003ccode\u003e48b0185\u003c/code\u003e\u003c/a\u003e Do not overwrite existing baggage with empty baggage in JaegerPropagator (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/2009d5840f24251e65aac98c0f2da2f304e0bf7b\"\u003e\u003ccode\u003e2009d58\u003c/code\u003e\u003c/a\u003e Avoid exposing configuration values in errors (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8669\"\u003e#8669\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3cafbbb6206afc6cebb984d9b81e2339a506f148\"\u003e\u003ccode\u003e3cafbbb\u003c/code\u003e\u003c/a\u003e Deprecate OpenCensus shim public API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8674\"\u003e#8674\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/0e033e2ca8128ca470abd33f3ef1f2f684bcf610\"\u003e\u003ccode\u003e0e033e2\u003c/code\u003e\u003c/a\u003e Remove stray token from addLogRecordProcessorCustomizer Javadoc (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8641\"\u003e#8641\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3d1cce87bd4a78432cca4214a96586046a6e4590\"\u003e\u003ccode\u003e3d1cce8\u003c/code\u003e\u003c/a\u003e Fix ObfuscatedLoggerProvider Javadoc copy-paste example (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8639\"\u003e#8639\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/compare/v1.63.0...v1.65.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.opentelemetry:opentelemetry-sdk` from 1.63.0 to 1.65.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/releases\"\u003eio.opentelemetry:opentelemetry-sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was deprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector exporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e, \u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e, \u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed tokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based on string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default \u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements it to stop its polling executor (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRecord \u003ccode\u003eerror.type\u003c/code\u003e on failed collections in \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8650\"\u003e#8650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTesting: Fix \u003ccode\u003eLongExemplarAssert.hasFilteredAttributesSatisfyingExactly\u003c/code\u003e to enforce exact attribute matching (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8518\"\u003e#8518\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eLogs\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eReadWriteLogRecord\u003c/code\u003e default \u003ccode\u003egetObservedTimestampEpochNanos\u003c/code\u003e returning the record timestamp (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8504\"\u003e#8504\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eProfiles\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix profiles data model attribute count parameter name and timestamp doc unit (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8514\"\u003e#8514\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExporters\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eWARNING\u003c/strong\u003e Zipkin: Delete \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e; the artifact is no longer published (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8677\"\u003e#8677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Use HTTP error response bodies in \u003ccode\u003eHttpExporter\u003c/code\u003e warning logs (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8428\"\u003e#8428\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e mTLS when using the platform default trust store (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8565\"\u003e#8565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix sign extension on \u003ccode\u003eLogRecord\u003c/code\u003e flags in the low-allocation log marshaler (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8493\"\u003e#8493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Standardize \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e, \u003ccode\u003eJdkHttpSender\u003c/code\u003e, and \u003ccode\u003eUpstreamGrpcSender\u003c/code\u003e shutdown to await executor/channel termination (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8495\"\u003e#8495\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8627\"\u003e#8627\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8624\"\u003e#8624\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Log the underlying except/ion when a gRPC response frame is invalid (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8626\"\u003e#8626\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/blob/main/CHANGELOG.md\"\u003eio.opentelemetry:opentelemetry-sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0 (2026-08-07)\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was\ndeprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector\nexporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed\ntokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based\non string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default\n\u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements\nit to stop its polling executor\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/7bc11edca518d4de168230c84a71484a66cbac40\"\u003e\u003ccode\u003e7bc11ed\u003c/code\u003e\u003c/a\u003e [release/v1.65.x] Prepare release 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8705\"\u003e#8705\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/60d7ecfe270354f8a329a0ecad42fca2650cc36e\"\u003e\u003ccode\u003e60d7ecf\u003c/code\u003e\u003c/a\u003e Prepare 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8700\"\u003e#8700\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/6d41aa40ed39eed5fb000e7595e1b1dd279fed91\"\u003e\u003ccode\u003e6d41aa4\u003c/code\u003e\u003c/a\u003e Bound jaeger-baggage parsing work by tokens rather than accepted entries (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/db1d6bee36537b4f356a6b7d616e587217938177\"\u003e\u003ccode\u003edb1d6be\u003c/code\u003e\u003c/a\u003e Enforce last-value-wins semantics in AttributesMap without performance regres...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/995cb3c4328f76a21f12e79b2667c684845899ca\"\u003e\u003ccode\u003e995cb3c\u003c/code\u003e\u003c/a\u003e Avoid unsafe string encoder on Android (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8637\"\u003e#8637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/48b0185d06a8d34d713d4fc24d6c70502b6f1531\"\u003e\u003ccode\u003e48b0185\u003c/code\u003e\u003c/a\u003e Do not overwrite existing baggage with empty baggage in JaegerPropagator (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/2009d5840f24251e65aac98c0f2da2f304e0bf7b\"\u003e\u003ccode\u003e2009d58\u003c/code\u003e\u003c/a\u003e Avoid exposing configuration values in errors (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8669\"\u003e#8669\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3cafbbb6206afc6cebb984d9b81e2339a506f148\"\u003e\u003ccode\u003e3cafbbb\u003c/code\u003e\u003c/a\u003e Deprecate OpenCensus shim public API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8674\"\u003e#8674\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/0e033e2ca8128ca470abd33f3ef1f2f684bcf610\"\u003e\u003ccode\u003e0e033e2\u003c/code\u003e\u003c/a\u003e Remove stray token from addLogRecordProcessorCustomizer Javadoc (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8641\"\u003e#8641\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3d1cce87bd4a78432cca4214a96586046a6e4590\"\u003e\u003ccode\u003e3d1cce8\u003c/code\u003e\u003c/a\u003e Fix ObfuscatedLoggerProvider Javadoc copy-paste example (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8639\"\u003e#8639\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/compare/v1.63.0...v1.65.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.opentelemetry:opentelemetry-exporter-logging` from 1.63.0 to 1.65.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/releases\"\u003eio.opentelemetry:opentelemetry-exporter-logging's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was deprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector exporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e, \u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e, \u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed tokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based on string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default \u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements it to stop its polling executor (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRecord \u003ccode\u003eerror.type\u003c/code\u003e on failed collections in \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8650\"\u003e#8650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTesting: Fix \u003ccode\u003eLongExemplarAssert.hasFilteredAttributesSatisfyingExactly\u003c/code\u003e to enforce exact attribute matching (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8518\"\u003e#8518\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eLogs\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eReadWriteLogRecord\u003c/code\u003e default \u003ccode\u003egetObservedTimestampEpochNanos\u003c/code\u003e returning the record timestamp (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8504\"\u003e#8504\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eProfiles\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix profiles data model attribute count parameter name and timestamp doc unit (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8514\"\u003e#8514\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExporters\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eWARNING\u003c/strong\u003e Zipkin: Delete \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e; the artifact is no longer published (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8677\"\u003e#8677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Use HTTP error response bodies in \u003ccode\u003eHttpExporter\u003c/code\u003e warning logs (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8428\"\u003e#8428\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e mTLS when using the platform default trust store (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8565\"\u003e#8565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix sign extension on \u003ccode\u003eLogRecord\u003c/code\u003e flags in the low-allocation log marshaler (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8493\"\u003e#8493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Standardize \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e, \u003ccode\u003eJdkHttpSender\u003c/code\u003e, and \u003ccode\u003eUpstreamGrpcSender\u003c/code\u003e shutdown to await executor/channel termination (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8495\"\u003e#8495\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8627\"\u003e#8627\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8624\"\u003e#8624\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Log the underlying except/ion when a gRPC response frame is invalid (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8626\"\u003e#8626\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/blob/main/CHANGELOG.md\"\u003eio.opentelemetry:opentelemetry-exporter-logging's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0 (2026-08-07)\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was\ndeprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector\nexporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed\ntokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based\non string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default\n\u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements\nit to stop its polling executor\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/7bc11edca518d4de168230c84a71484a66cbac40\"\u003e\u003ccode\u003e7bc11ed\u003c/code\u003e\u003c/a\u003e [release/v1.65.x] Prepare release 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8705\"\u003e#8705\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/60d7ecfe270354f8a329a0ecad42fca2650cc36e\"\u003e\u003ccode\u003e60d7ecf\u003c/code\u003e\u003c/a\u003e Prepare 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8700\"\u003e#8700\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/6d41aa40ed39eed5fb000e7595e1b1dd279fed91\"\u003e\u003ccode\u003e6d41aa4\u003c/code\u003e\u003c/a\u003e Bound jaeger-baggage parsing work by tokens rather than accepted entries (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/db1d6bee36537b4f356a6b7d616e587217938177\"\u003e\u003ccode\u003edb1d6be\u003c/code\u003e\u003c/a\u003e Enforce last-value-wins semantics in AttributesMap without performance regres...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/995cb3c4328f76a21f12e79b2667c684845899ca\"\u003e\u003ccode\u003e995cb3c\u003c/code\u003e\u003c/a\u003e Avoid unsafe string encoder on Android (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8637\"\u003e#8637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/48b0185d06a8d34d713d4fc24d6c70502b6f1531\"\u003e\u003ccode\u003e48b0185\u003c/code\u003e\u003c/a\u003e Do not overwrite existing baggage with empty baggage in JaegerPropagator (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/2009d5840f24251e65aac98c0f2da2f304e0bf7b\"\u003e\u003ccode\u003e2009d58\u003c/code\u003e\u003c/a\u003e Avoid exposing configuration values in errors (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8669\"\u003e#8669\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3cafbbb6206afc6cebb984d9b81e2339a506f148\"\u003e\u003ccode\u003e3cafbbb\u003c/code\u003e\u003c/a\u003e Deprecate OpenCensus shim public API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8674\"\u003e#8674\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/0e033e2ca8128ca470abd33f3ef1f2f684bcf610\"\u003e\u003ccode\u003e0e033e2\u003c/code\u003e\u003c/a\u003e Remove stray token from addLogRecordProcessorCustomizer Javadoc (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8641\"\u003e#8641\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3d1cce87bd4a78432cca4214a96586046a6e4590\"\u003e\u003ccode\u003e3d1cce8\u003c/code\u003e\u003c/a\u003e Fix ObfuscatedLoggerProvider Javadoc copy-paste example (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8639\"\u003e#8639\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/compare/v1.63.0...v1.65.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.opentelemetry:opentelemetry-sdk-extension-autoconfigure-spi` from 1.63.0 to 1.65.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/releases\"\u003eio.opentelemetry:opentelemetry-sdk-extension-autoconfigure-spi's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was deprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector exporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e, \u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e, \u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed tokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based on string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default \u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements it to stop its polling executor (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRecord \u003ccode\u003eerror.type\u003c/code\u003e on failed collections in \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8650\"\u003e#8650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTesting: Fix \u003ccode\u003eLongExemplarAssert.hasFilteredAttributesSatisfyingExactly\u003c/code\u003e to enforce exact attribute matching (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8518\"\u003e#8518\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eLogs\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eReadWriteLogRecord\u003c/code\u003e default \u003ccode\u003egetObservedTimestampEpochNanos\u003c/code\u003e returning the record timestamp (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8504\"\u003e#8504\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eProfiles\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix profiles data model attribute count parameter name and timestamp doc unit (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8514\"\u003e#8514\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExporters\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eWARNING\u003c/strong\u003e Zipkin: Delete \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e; the artifact is no longer published (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8677\"\u003e#8677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Use HTTP error response bodies in \u003ccode\u003eHttpExporter\u003c/code\u003e warning logs (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8428\"\u003e#8428\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e mTLS when using the platform default trust store (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8565\"\u003e#8565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix sign extension on \u003ccode\u003eLogRecord\u003c/code\u003e flags in the low-allocation log marshaler (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8493\"\u003e#8493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Standardize \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e, \u003ccode\u003eJdkHttpSender\u003c/code\u003e, and \u003ccode\u003eUpstreamGrpcSender\u003c/code\u003e shutdown to await executor/channel termination (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8495\"\u003e#8495\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8627\"\u003e#8627\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8624\"\u003e#8624\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Log the underlying except/ion when a gRPC response frame is invalid (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8626\"\u003e#8626\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/blob/main/CHANGELOG.md\"\u003eio.opentelemetry:opentelemetry-sdk-extension-autoconfigure-spi's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0 (2026-08-07)\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was\ndeprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector\nexporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed\ntokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based\non string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default\n\u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements\nit to stop its polling executor\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/7bc11edca518d4de168230c84a71484a66cbac40\"\u003e\u003ccode\u003e7bc11ed\u003c/code\u003e\u003c/a\u003e [release/v1.65.x] Prepare release 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8705\"\u003e#8705\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/60d7ecfe270354f8a329a0ecad42fca2650cc36e\"\u003e\u003ccode\u003e60d7ecf\u003c/code\u003e\u003c/a\u003e Prepare 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8700\"\u003e#8700\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/6d41aa40ed39eed5fb000e7595e1b1dd279fed91\"\u003e\u003ccode\u003e6d41aa4\u003c/code\u003e\u003c/a\u003e Bound jaeger-baggage parsing work by tokens rather than accepted entries (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/db1d6bee36537b4f356a6b7d616e587217938177\"\u003e\u003ccode\u003edb1d6be\u003c/code\u003e\u003c/a\u003e Enforce last-value-wins semantics in AttributesMap without performance regres...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/995cb3c4328f76a21f12e79b2667c684845899ca\"\u003e\u003ccode\u003e995cb3c\u003c/code\u003e\u003c/a\u003e Avoid unsafe string encoder on Android (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8637\"\u003e#8637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/48b0185d06a8d34d713d4fc24d6c70502b6f1531\"\u003e\u003ccode\u003e48b0185\u003c/code\u003e\u003c/a\u003e Do not overwrite existing baggage with empty baggage in JaegerPropagator (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/2009d5840f24251e65aac98c0f2da2f304e0bf7b\"\u003e\u003ccode\u003e2009d58\u003c/code\u003e\u003c/a\u003e Avoid exposing configuration values in errors (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8669\"\u003e#8669\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3cafbbb6206afc6cebb984d9b81e2339a506f148\"\u003e\u003ccode\u003e3cafbbb\u003c/code\u003e\u003c/a\u003e Deprecate OpenCensus shim public API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8674\"\u003e#8674\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/0e033e2ca8128ca470abd33f3ef1f2f684bcf610\"\u003e\u003ccode\u003e0e033e2\u003c/code\u003e\u003c/a\u003e Remove stray token from addLogRecordProcessorCustomizer Javadoc (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8641\"\u003e#8641\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/3d1cce87bd4a78432cca4214a96586046a6e4590\"\u003e\u003ccode\u003e3d1cce8\u003c/code\u003e\u003c/a\u003e Fix ObfuscatedLoggerProvider Javadoc copy-paste example (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8639\"\u003e#8639\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/compare/v1.63.0...v1.65.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.opentelemetry:opentelemetry-sdk` from 1.63.0 to 1.65.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/releases\"\u003eio.opentelemetry:opentelemetry-sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was deprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector exporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e, \u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e, \u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed tokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based on string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default \u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements it to stop its polling executor (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eRecord \u003ccode\u003eerror.type\u003c/code\u003e on failed collections in \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8650\"\u003e#8650\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTesting: Fix \u003ccode\u003eLongExemplarAssert.hasFilteredAttributesSatisfyingExactly\u003c/code\u003e to enforce exact attribute matching (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8518\"\u003e#8518\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eLogs\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix \u003ccode\u003eReadWriteLogRecord\u003c/code\u003e default \u003ccode\u003egetObservedTimestampEpochNanos\u003c/code\u003e returning the record timestamp (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8504\"\u003e#8504\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eProfiles\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eFix profiles data model attribute count parameter name and timestamp doc unit (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8514\"\u003e#8514\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExporters\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003e\u003cstrong\u003eWARNING\u003c/strong\u003e Zipkin: Delete \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e; the artifact is no longer published (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8677\"\u003e#8677\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Use HTTP error response bodies in \u003ccode\u003eHttpExporter\u003c/code\u003e warning logs (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8428\"\u003e#8428\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e mTLS when using the platform default trust store (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8565\"\u003e#8565\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Fix sign extension on \u003ccode\u003eLogRecord\u003c/code\u003e flags in the low-allocation log marshaler (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8493\"\u003e#8493\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Standardize \u003ccode\u003eOkHttpHttpSender\u003c/code\u003e, \u003ccode\u003eJdkHttpSender\u003c/code\u003e, and \u003ccode\u003eUpstreamGrpcSender\u003c/code\u003e shutdown to await executor/channel termination (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8495\"\u003e#8495\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8627\"\u003e#8627\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8624\"\u003e#8624\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eOTLP: Log the underlying except/ion when a gRPC response frame is invalid (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8626\"\u003e#8626\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/blob/main/CHANGELOG.md\"\u003eio.opentelemetry:opentelemetry-sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 1.65.0 (2026-08-07)\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003eNOTE:\u003c/strong\u003e The \u003ccode\u003eopentelemetry-exporter-zipkin\u003c/code\u003e artifact has stopped being published. It was\ndeprecated in a prior release. Users should migrate to OTLP or use a Zipkin-compatible collector\nexporter.\u003c/p\u003e\n\u003ch3\u003eAPI\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eIgnore empty baggage keys in \u003ccode\u003eImmutableBaggage.put\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8658\"\u003e#8658\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse \u003ccode\u003eNumberFormatException\u003c/code\u003e in baggage decoder\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8593\"\u003e#8593\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eTraceStateBuilder.remove\u003c/code\u003e corrupting the builder when the same key is removed twice\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8613\"\u003e#8613\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eIncubating\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd bound instrument APIs (\u003ccode\u003eBoundLongCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleCounter\u003c/code\u003e, \u003ccode\u003eBoundLongHistogram\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleHistogram\u003c/code\u003e, \u003ccode\u003eBoundLongUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundDoubleUpDownCounter\u003c/code\u003e, \u003ccode\u003eBoundLongGauge\u003c/code\u003e,\n\u003ccode\u003eBoundDoubleGauge\u003c/code\u003e) to the incubator metrics API\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8527\"\u003e#8527\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eExtensions\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eTrace propagators: Fix \u003ccode\u003eJaegerPropagator\u003c/code\u003e baggage header key case sensitivity\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8496\"\u003e#8496\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Do not overwrite existing baggage with empty baggage in \u003ccode\u003eJaegerPropagator\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Skip empty baggage keys in \u003ccode\u003eOtTracePropagator\u003c/code\u003e extract\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8631\"\u003e#8631\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eTrace propagators: Stop parsing a \u003ccode\u003ejaeger-baggage\u003c/code\u003e header after 64 tokens, including malformed\ntokens (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eSDK\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate SDK attributes implementation (\u003ccode\u003eAttributesMap\u003c/code\u003e) to enforce last-value-win semantics based\non string value of \u003ccode\u003eAttributeKey.getKey()\u003c/code\u003e\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8548\"\u003e#8548\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eTraces\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eAdd \u003ccode\u003eSampler\u003c/code\u003e shutdown lifecycle: \u003ccode\u003eSampler\u003c/code\u003e now extends \u003ccode\u003eCloseable\u003c/code\u003e and exposes a default\n\u003ccode\u003eshutdown()\u003c/code\u003e invoked when the \u003ccode\u003eSdkTracerProvider\u003c/code\u003e is shut down; \u003ccode\u003eJaegerRemoteSampler\u003c/code\u003e implements\nit to stop its polling executor\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8574\"\u003e#8574\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eMetrics\u003c/h4\u003e\n\u003cul\u003e\n\u003cli\u003eGate \u003ccode\u003ePeriodicMetricReader\u003c/code\u003e self-observability metrics by internal telemetry version\n(\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/pull/8597\"\u003e#8597\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/7bc11edca518d4de168230c84a71484a66cbac40\"\u003e\u003ccode\u003e7bc11ed\u003c/code\u003e\u003c/a\u003e [release/v1.65.x] Prepare release 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8705\"\u003e#8705\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/60d7ecfe270354f8a329a0ecad42fca2650cc36e\"\u003e\u003ccode\u003e60d7ecf\u003c/code\u003e\u003c/a\u003e Prepare 1.65.0 (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8700\"\u003e#8700\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/6d41aa40ed39eed5fb000e7595e1b1dd279fed91\"\u003e\u003ccode\u003e6d41aa4\u003c/code\u003e\u003c/a\u003e Bound jaeger-baggage parsing work by tokens rather than accepted entries (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8702\"\u003e#8702\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/db1d6bee36537b4f356a6b7d616e587217938177\"\u003e\u003ccode\u003edb1d6be\u003c/code\u003e\u003c/a\u003e Enforce last-value-wins semantics in AttributesMap without performance regres...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/995cb3c4328f76a21f12e79b2667c684845899ca\"\u003e\u003ccode\u003e995cb3c\u003c/code\u003e\u003c/a\u003e Avoid unsafe string encoder on Android (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8637\"\u003e#8637\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/48b0185d06a8d34d713d4fc24d6c70502b6f1531\"\u003e\u003ccode\u003e48b0185\u003c/code\u003e\u003c/a\u003e Do not overwrite existing baggage with empty baggage in JaegerPropagator (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8632\"\u003e#8632\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open-telemetry/opentelemetry-java/commit/2009d5840f24251e65aac98c0f2da2f304e0bf7b\"\u003e\u003ccode\u003e2009d58\u003c/code\u003e\u003c/a\u003e Avoid exposing configuration values in errors (\u003ca href=\"https://redirect.github.com/open-telemetry/opentelemetry-java/issues/8669\"\u003e#8669\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/open...\n\n_Description has been truncated_","html_url":"https://github.com/GoogleCloudPlatform/gcs-analytics-core/pull/368","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/GoogleCloudPlatform%2Fgcs-analytics-core/issues/368","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/368/packages"}},{"old_version":"33.6.0-jre","new_version":"33.7.1-jre","update_type":"minor","path":null,"pr_created_at":"2026-09-02T21:42:51.000Z","version_change":"33.6.0-jre → 33.7.1-jre","issue":{"uuid":"5329539621","node_id":"PR_kwDOA_eGRM8AAAABB92oTA","number":728,"state":"closed","title":"Bump the klass-shared group across 1 directory with 3 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-09-11T16:45:24.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-02T21:42:51.000Z","updated_at":"2026-09-11T16:45:26.000Z","time_to_close":759753,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"klass-shared","update_count":3,"packages":[{"name":"org.opensearch.client:spring-data-opensearch-starter","old_version":"2.0.7","new_version":"2.0.8","repository_url":"https://github.com/opensearch-project/spring-data-opensearch"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"org.apache.maven.plugins:maven-compiler-plugin","old_version":"3.15.0","new_version":"3.16.0","repository_url":"https://github.com/apache/maven-compiler-plugin"}],"path":null,"ecosystem":"maven"},"body":"Bumps the klass-shared group with 3 updates in the /klass-shared directory: [org.opensearch.client:spring-data-opensearch-starter](https://github.com/opensearch-project/spring-data-opensearch), [com.google.guava:guava](https://github.com/google/guava) and [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin).\n\nUpdates `org.opensearch.client:spring-data-opensearch-starter` from 2.0.7 to 2.0.8\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/opensearch-project/spring-data-opensearch/releases\"\u003eorg.opensearch.client:spring-data-opensearch-starter's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev2.0.8\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump next version to 2.0.8 by \u003ca href=\"https://github.com/reta\"\u003e\u003ccode\u003e@​reta\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/opensearch-project/spring-data-opensearch/pull/771\"\u003eopensearch-project/spring-data-opensearch#771\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRoutine dependency updates by \u003ca href=\"https://github.com/reta\"\u003e\u003ccode\u003e@​reta\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/opensearch-project/spring-data-opensearch/pull/798\"\u003eopensearch-project/spring-data-opensearch#798\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/opensearch-project/spring-data-opensearch/compare/v2.0.7...v2.0.8\"\u003ehttps://github.com/opensearch-project/spring-data-opensearch/compare/v2.0.7...v2.0.8\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/opensearch-project/spring-data-opensearch/commit/7012435d9a9b497ef4da5cbd445be8517350c083\"\u003e\u003ccode\u003e7012435\u003c/code\u003e\u003c/a\u003e Routine dependency updates (\u003ca href=\"https://redirect.github.com/opensearch-project/spring-data-opensearch/issues/798\"\u003e#798\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/opensearch-project/spring-data-opensearch/commit/1e1e330422e21216f4066ef40323329b47bc83cc\"\u003e\u003ccode\u003e1e1e330\u003c/code\u003e\u003c/a\u003e Bump next version to 2.0.8 (\u003ca href=\"https://redirect.github.com/opensearch-project/spring-data-opensearch/issues/771\"\u003e#771\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/opensearch-project/spring-data-opensearch/compare/v2.0.7...v2.0.8\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.maven.plugins:maven-compiler-plugin` from 3.15.0 to 3.16.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/maven-compiler-plugin/releases\"\u003eorg.apache.maven.plugins:maven-compiler-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.16.0\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRecompile when dependencies change (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1102\"\u003e#1102\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix incremental detection of empty sources, 3.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1075\"\u003e#1075\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-578\"\u003e[MCOMPILER-578]\u003c/a\u003e - Track outputs across compiler executions (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1091\"\u003e#1091\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBuild fails when annotation processor list is empty (but present) (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1077\"\u003e#1077\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-374\"\u003e[MCOMPILER-374]\u003c/a\u003e - Unable to compile MR-JAR code against older directories when module-info.java is present (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1093\"\u003e#1093\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake mcompiler-120 IT locale independent (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1063\"\u003e#1063\u003c/a\u003e) \u003ca href=\"https://github.com/anilvdl\"\u003e\u003ccode\u003e@​anilvdl\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📝 Documentation updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://issues.apache.org/jira/browse/MCOMPILER-569\"\u003e[MCOMPILER-569]\u003c/a\u003e - Document implicitly compiled excluded sources (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1092\"\u003e#1092\u003c/a\u003e) \u003ca href=\"https://github.com/wilx\"\u003e\u003ccode\u003e@​wilx\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1074\"\u003e#1074\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAvoid using deprecated method CompilerConfiguration.setCompilerVersion (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1121\"\u003e#1121\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReplace adopt-openj9 by semeru JDK distribution on GH (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1122\"\u003e#1122\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePort the site documentation from APT to Markdown (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1110\"\u003e#1110\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eVerify against Maven 4.0.0-rc-6 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1105\"\u003e#1105\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix tests on Jenkins (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1100\"\u003e#1100\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1074\"\u003e#1074\u003c/a\u003e) \u003ca href=\"https://github.com/potiuk\"\u003e\u003ccode\u003e@​potiuk\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRefactor compiler mojo to use dependency injection and improve string… (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1066\"\u003e#1066\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix ITs for Maven 3.10.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1061\"\u003e#1061\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate maven-surefire-plugin version to 3.x in the MCOMPILER-481 IT (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1035\"\u003e#1035\u003c/a\u003e) \u003ca href=\"https://github.com/cdouillard\"\u003e\u003ccode\u003e@​cdouillard\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump plexusCompilerVersion from 2.16.2 to 2.17.0 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1112\"\u003e#1112\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1113\"\u003e#1113\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003euse latest Maven 4 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1045\"\u003e#1045\u003c/a\u003e) \u003ca href=\"https://github.com/hboutemy\"\u003e\u003ccode\u003e@​hboutemy\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1083\"\u003e#1083\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/pr-automation.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1082\"\u003e#1082\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml from 4 to 5 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1084\"\u003e#1084\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 48 to 49 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1068\"\u003e#1068\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-invoker-plugin from 3.9.1 to 3.10.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1047\"\u003e#1047\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 47 to 48 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1050\"\u003e#1050\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.14 to 3.9.16 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1054\"\u003e#1054\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.ow2.asm:asm from 9.10 to 9.10.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1059\"\u003e#1059\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.ow2.asm:asm from 9.9.1 to 9.10 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1053\"\u003e#1053\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.13 to 3.9.14 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1041\"\u003e#1041\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.12 to 3.9.13 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1038\"\u003e#1038\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugin-testing:maven-plugin-testing-harness from 3.5.0 to 3.5.1 (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/pull/1032\"\u003e#1032\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/e7bba6ed5f9c17003d5c5d1413144bb214177408\"\u003e\u003ccode\u003ee7bba6e\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release maven-compiler-plugin-3.16.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/c906809e0c0b2c79e8a03165cb942f152a911416\"\u003e\u003ccode\u003ec906809\u003c/code\u003e\u003c/a\u003e Avoid using deprecated method CompilerConfiguration.setCompilerVersion\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/ad74fee36865d7a1752c9b96ff9a9e702565fdb3\"\u003e\u003ccode\u003ead74fee\u003c/code\u003e\u003c/a\u003e Replace adopt-openj9 by semeru JDK distribution on GH\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/beb0eda2100e77d3f01bf4cc89edd5b721411f63\"\u003e\u003ccode\u003ebeb0eda\u003c/code\u003e\u003c/a\u003e Recompile when dependencies change (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1102\"\u003e#1102\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/a0b689e0e7f13d3a7dded7847a807fe6453e0358\"\u003e\u003ccode\u003ea0b689e\u003c/code\u003e\u003c/a\u003e [MCOMPILER-578] Track outputs across compiler executions (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1091\"\u003e#1091\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/2e8122841d9b10d2d83a90cc07530d7a09eebc47\"\u003e\u003ccode\u003e2e81228\u003c/code\u003e\u003c/a\u003e Fix incremental detection of empty sources, 3.x (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1075\"\u003e#1075\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/2132f5bf0cbfcde26301084c4833f1a9420f1baf\"\u003e\u003ccode\u003e2132f5b\u003c/code\u003e\u003c/a\u003e configure ATR project\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/5992b772033a7488767c4b3aa806f080eba96593\"\u003e\u003ccode\u003e5992b77\u003c/code\u003e\u003c/a\u003e Build fails when annotation processor list is empty (but present) (\u003ca href=\"https://redirect.github.com/apache/maven-compiler-plugin/issues/1077\"\u003e#1077\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/acccef703e5491c29c6dd9e8381677d3e7927589\"\u003e\u003ccode\u003eacccef7\u003c/code\u003e\u003c/a\u003e Bump plexusCompilerVersion from 2.16.2 to 2.17.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-compiler-plugin/commit/72bc4454dfdcd1c3551137e5b27560f88b4480ae\"\u003e\u003ccode\u003e72bc445\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/maven-compiler-plugin/compare/maven-compiler-plugin-3.15.0...maven-compiler-plugin-3.16.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e","html_url":"https://github.com/statisticsnorway/klass/pull/728","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/statisticsnorway%2Fklass/issues/728","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/728/packages"}},{"old_version":"31.1-jre","new_version":"33.7.1-jre","update_type":null,"path":null,"pr_created_at":"2026-09-02T10:12:02.000Z","version_change":"31.1-jre → 33.7.1-jre","issue":{"uuid":"5322590287","node_id":"PR_kwDOULsDGM8AAAABB4Q_Fg","number":8,"state":"closed","title":"Bump the maven-dependencies group with 8 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-05T21:59:39.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-02T10:12:02.000Z","updated_at":"2026-09-05T21:59:41.000Z","time_to_close":301657,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"maven-dependencies","update_count":8,"packages":[{"name":"org.junit.jupiter:junit-jupiter","old_version":"5.10.2","new_version":"6.1.3","repository_url":"https://github.com/junit-team/junit-framework"},{"name":"org.apache.maven.plugins:maven-dependency-plugin","old_version":"3.6.1","new_version":"3.11.0","repository_url":"https://github.com/apache/maven-dependency-plugin"},{"name":"com.google.guava:guava","old_version":"31.1-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"org.apache.commons:commons-lang3","old_version":"3.12.0","new_version":"3.20.0"},{"name":"org.slf4j:slf4j-api","old_version":"1.7.36","new_version":"2.0.18"},{"name":"org.apache.logging.log4j:log4j-core","old_version":"2.14.1","new_version":"2.26.1"},{"name":"com.fasterxml.jackson.core:jackson-databind","old_version":"2.9.10.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-databind"},{"name":"org.yaml:snakeyaml","old_version":"1.26","new_version":"2.6"}],"path":null,"ecosystem":"maven"},"body":"Bumps the maven-dependencies group with 8 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [org.junit.jupiter:junit-jupiter](https://github.com/junit-team/junit-framework) | `5.10.2` | `6.1.3` |\n| [org.apache.maven.plugins:maven-dependency-plugin](https://github.com/apache/maven-dependency-plugin) | `3.6.1` | `3.11.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `31.1-jre` | `33.7.1-jre` |\n| org.apache.commons:commons-lang3 | `3.12.0` | `3.20.0` |\n| org.slf4j:slf4j-api | `1.7.36` | `2.0.18` |\n| org.apache.logging.log4j:log4j-core | `2.14.1` | `2.26.1` |\n| [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson-databind) | `2.9.10.1` | `2.22.2` |\n| [org.yaml:snakeyaml](https://bitbucket.org/snakeyaml/snakeyaml) | `1.26` | `2.6` |\n\nUpdates `org.junit.jupiter:junit-jupiter` from 5.10.2 to 6.1.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/junit-team/junit-framework/releases\"\u003eorg.junit.jupiter:junit-jupiter's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003cp\u003eJUnit 6.1.3 = Platform 6.1.3 + Jupiter 6.1.3 + Vintage 6.1.3\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.3/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.2...r6.1.3\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.2...r6.1.3\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.2 = Platform 6.1.2 + Jupiter 6.1.2 + Vintage 6.1.2\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.2/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.2\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.2\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.1 = Platform 6.1.1 + Jupiter 6.1.1 + Vintage 6.1.1\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.1/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.0...r6.1.1\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.0...r6.1.1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.0 = Platform 6.1.0 + Jupiter 6.1.0 + Vintage 6.1.0\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.0/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/JarvisCraft\"\u003e\u003ccode\u003e@​JarvisCraft\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5633\"\u003ejunit-team/junit-framework#5633\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Maran23\"\u003e\u003ccode\u003e@​Maran23\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5644\"\u003ejunit-team/junit-framework#5644\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.0.3...r6.1.0\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.0.3...r6.1.0\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.0-RC1 = Platform 6.1.0-RC1 + Jupiter 6.1.0-RC1 + Vintage 6.1.0-RC1\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.0-RC1/release-notes/\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariokhoury4\"\u003e\u003ccode\u003e@​mariokhoury4\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/4574\"\u003ejunit-team/junit-framework#4574\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Ogu1208\"\u003e\u003ccode\u003e@​Ogu1208\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5145\"\u003ejunit-team/junit-framework#5145\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/HyungGeun94\"\u003e\u003ccode\u003e@​HyungGeun94\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5271\"\u003ejunit-team/junit-framework#5271\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yalishevant\"\u003e\u003ccode\u003e@​yalishevant\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5316\"\u003ejunit-team/junit-framework#5316\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/JINU-CHANG\"\u003e\u003ccode\u003e@​JINU-CHANG\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5290\"\u003ejunit-team/junit-framework#5290\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jaschdoc\"\u003e\u003ccode\u003e@​jaschdoc\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5427\"\u003ejunit-team/junit-framework#5427\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/kawshikbuet17\"\u003e\u003ccode\u003e@​kawshikbuet17\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5561\"\u003ejunit-team/junit-framework#5561\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/msridhar\"\u003e\u003ccode\u003e@​msridhar\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5602\"\u003ejunit-team/junit-framework#5602\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.0-M1...r6.1.0-RC1\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.0-M1...r6.1.0-RC1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.0-M1 = Platform 6.1.0-M1 + Jupiter 6.1.0-M1 + Vintage 6.1.0-M1\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.0-M1/release-notes/\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vy\"\u003e\u003ccode\u003e@​vy\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5041\"\u003ejunit-team/junit-framework#5041\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/f59f60d2cebdf2224235d81f781b1f310cbc8138\"\u003e\u003ccode\u003ef59f60d\u003c/code\u003e\u003c/a\u003e Release 6.1.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/cd8ec9202ce8260a434edb38a8565e36f620e8d6\"\u003e\u003ccode\u003ecd8ec92\u003c/code\u003e\u003c/a\u003e Finalize 6.1.3 release notes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/c8729f26aacd8e2dd6fa564b929fe047faaa7dc9\"\u003e\u003ccode\u003ec8729f2\u003c/code\u003e\u003c/a\u003e Restore compatibility with GraalVM 25 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5901\"\u003e#5901\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/ddc9e74e5d21c2dd18bc0cfe4681d5ff50ac379c\"\u003e\u003ccode\u003eddc9e74\u003c/code\u003e\u003c/a\u003e Update graalvm/setup-graalvm action to v1.6.4 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5959\"\u003e#5959\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/fe2c52a780fcbda6c7ccf5d6576beb7ad2d80bf8\"\u003e\u003ccode\u003efe2c52a\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.7 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5923\"\u003e#5923\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/62afc02b541ee9dfa16b121705f79b7d44f4dae0\"\u003e\u003ccode\u003e62afc02\u003c/code\u003e\u003c/a\u003e Delay GraalVM plugin updates for 3 days\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/0cc29022801365a409c1213a811a8877cb88cce3\"\u003e\u003ccode\u003e0cc2902\u003c/code\u003e\u003c/a\u003e Skip \u003ccode\u003egraalVmTest\u003c/code\u003e task if GraalVM env vars are not set\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/f6bbfc53e7e00b1b25e7d3b0bc09eef05cc4b721\"\u003e\u003ccode\u003ef6bbfc5\u003c/code\u003e\u003c/a\u003e Move GraalVM tests to separate test task (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5903\"\u003e#5903\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/e87e0521d4fbd75116a5fda42566fcb7a56eb340\"\u003e\u003ccode\u003ee87e052\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.6 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5899\"\u003e#5899\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/1cd56df89754fb8523ac9fbbf888e9a552e33ee8\"\u003e\u003ccode\u003e1cd56df\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.5 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5880\"\u003e#5880\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r5.10.2...r6.1.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.maven.plugins:maven-dependency-plugin` from 3.6.1 to 3.11.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/maven-dependency-plugin/releases\"\u003eorg.apache.maven.plugins:maven-dependency-plugin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e3.11.0\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd dependency:add and dependency:remove goals (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1599\"\u003e#1599\u003c/a\u003e) \u003ca href=\"https://github.com/brunoborges\"\u003e\u003ccode\u003e@​brunoborges\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdded ability to provide arbitrary dependencies to properties mojo (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1561\"\u003e#1561\u003c/a\u003e) \u003ca href=\"https://github.com/treilhes\"\u003e\u003ccode\u003e@​treilhes\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix artifact relocation support (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1633\"\u003e#1633\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix: fix addParentPoms=true causes repositories to be ignored. (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1585\"\u003e#1585\u003c/a\u003e) \u003ca href=\"https://github.com/k-wall\"\u003e\u003ccode\u003e@​k-wall\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix false positive in analyze-exclusions with transitive dependency exclusion (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1628\"\u003e#1628\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMake AbstractAnalyzeMojo.filterArtifactsByScope() null-safe (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1622\"\u003e#1622\u003c/a\u003e) \u003ca href=\"https://github.com/elharo\"\u003e\u003ccode\u003e@​elharo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePrevent NPE in BuildClasspathMojo.appendArtifactPath() when an artifact has no resolved file (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1623\"\u003e#1623\u003c/a\u003e) \u003ca href=\"https://github.com/elharo\"\u003e\u003ccode\u003e@​elharo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eLog unpacking at debug level (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1624\"\u003e#1624\u003c/a\u003e) \u003ca href=\"https://github.com/elharo\"\u003e\u003ccode\u003e@​elharo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eResolve plugins declared in pluginManagement for resolve-plugins and go-offline (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1603\"\u003e#1603\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix \u003ccode\u003eanalyze-exclusions\u003c/code\u003e crashes if there is no \u003ccode\u003edependencyManagement\u003c/code\u003e element (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1597\"\u003e#1597\u003c/a\u003e) \u003ca href=\"https://github.com/JackPGreen\"\u003e\u003ccode\u003e@​JackPGreen\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eEnable ITs for dependency:remove and use mock dependencies (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1613\"\u003e#1613\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMore meaningful assertions (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1611\"\u003e#1611\u003c/a\u003e) \u003ca href=\"https://github.com/elharo\"\u003e\u003ccode\u003e@​elharo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCure various typos IntelliJ complains about (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1612\"\u003e#1612\u003c/a\u003e) \u003ca href=\"https://github.com/elharo\"\u003e\u003ccode\u003e@​elharo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove unused jansi dependency (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1606\"\u003e#1606\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eEnable ITs for dependecy:add and use mock dependencies (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1610\"\u003e#1610\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCleaner exception handling (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1566\"\u003e#1566\u003c/a\u003e) \u003ca href=\"https://github.com/elharo\"\u003e\u003ccode\u003e@​elharo\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eManage ASM version 9.10 to support JDK 27 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1632\"\u003e#1632\u003c/a\u003e) \u003ca href=\"https://github.com/slawekjaranowski\"\u003e\u003ccode\u003e@​slawekjaranowski\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump eu.maveniverse.maven.domtrip:domtrip-core from 1.5.0 to 1.5.1 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1631\"\u003e#1631\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump eu.maveniverse.maven.domtrip:domtrip-maven from 1.5.0 to 1.5.1 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1630\"\u003e#1630\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.15 to 3.9.16 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1626\"\u003e#1626\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.shared:maven-dependency-analyzer from 1.17.0 to 1.17.1 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1627\"\u003e#1627\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.commons:commons-lang3 from 3.17.0 to 3.18.0 in /src/it/projects/remove-dependency/basic (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1607\"\u003e#1607\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugins:maven-plugins from 47 to 48 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1605\"\u003e#1605\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.14 to 3.9.15 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1601\"\u003e#1601\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.jsoup:jsoup from 1.22.1 to 1.22.2 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1602\"\u003e#1602\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.doxia:doxia-sink-api from 2.0.0 to 2.1.0 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1595\"\u003e#1595\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.fusesource.jansi:jansi from 2.4.2 to 2.4.3 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1596\"\u003e#1596\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump mavenVersion from 3.9.12 to 3.9.14 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1594\"\u003e#1594\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.apache.maven.plugin-testing:maven-plugin-testing-harness from 3.5.0 to 3.5.1 (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1589\"\u003e#1589\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e3.10.0\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eIntroduce graphRoots for dependencyFilter based mojos (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/pull/1571\"\u003e#1571\u003c/a\u003e) \u003ca href=\"https://github.com/rfscholte\"\u003e\u003ccode\u003e@​rfscholte\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🐛 Bug Fixes\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/c186d05d80e15cd18651a3071a5186e275e04029\"\u003e\u003ccode\u003ec186d05\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release maven-dependency-plugin-3.11.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/371261124f9cff27cf0439fe3abaec4e322fae7e\"\u003e\u003ccode\u003e3712611\u003c/code\u003e\u003c/a\u003e Fix artifact relocation support\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/e873e0eb87775c0346b22cf6fe0c565e93e0b01f\"\u003e\u003ccode\u003ee873e0e\u003c/code\u003e\u003c/a\u003e Manage ASM version 9.10 to support JDK 27\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/70b535690ecbf985e795cabca9869d66a2c68e10\"\u003e\u003ccode\u003e70b5356\u003c/code\u003e\u003c/a\u003e fix: fix addParentPoms=true causes repositories to be ignored. (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/issues/1585\"\u003e#1585\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/51d893970655d18dade1f06ca48e2bf676349629\"\u003e\u003ccode\u003e51d8939\u003c/code\u003e\u003c/a\u003e Fix false positive in analyze-exclusions with transitive dependency exclusion...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/02b865b98376be8e9a0c31a028b87a4e1d4ff7a3\"\u003e\u003ccode\u003e02b865b\u003c/code\u003e\u003c/a\u003e Bump eu.maveniverse.maven.domtrip:domtrip-core from 1.5.0 to 1.5.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/04f4de17e7bd73276baeacc7275308d20f1257fd\"\u003e\u003ccode\u003e04f4de1\u003c/code\u003e\u003c/a\u003e Bump eu.maveniverse.maven.domtrip:domtrip-maven from 1.5.0 to 1.5.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/2812490a1263d186950becfe2d214f03e807048f\"\u003e\u003ccode\u003e2812490\u003c/code\u003e\u003c/a\u003e Bump mavenVersion from 3.9.15 to 3.9.16\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/ce117da219149e28f4253f85a805093222b8f868\"\u003e\u003ccode\u003ece117da\u003c/code\u003e\u003c/a\u003e Bump org.apache.maven.shared:maven-dependency-analyzer\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/apache/maven-dependency-plugin/commit/aea7a6400a73696f8819071c607e3c0d16bb9294\"\u003e\u003ccode\u003eaea7a64\u003c/code\u003e\u003c/a\u003e Prevent NPE (\u003ca href=\"https://redirect.github.com/apache/maven-dependency-plugin/issues/1622\"\u003e#1622\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/apache/maven-dependency-plugin/compare/maven-dependency-plugin-3.6.1...maven-dependency-plugin-3.11.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 31.1-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.commons:commons-lang3` from 3.12.0 to 3.20.0\n\nUpdates `org.slf4j:slf4j-api` from 1.7.36 to 2.0.18\n\nUpdates `org.apache.logging.log4j:log4j-core` from 2.14.1 to 2.26.1\n\nUpdates `com.fasterxml.jackson.core:jackson-databind` from 2.9.10.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/25b2a221f9aa4107e455065a74635e209418cf55\"\u003e\u003ccode\u003e25b2a22\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bab1c1a702a941f8805ee6698e8fa4fdbfbec54a\"\u003e\u003ccode\u003ebab1c1a\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bc03cf83d74cf0e5944dce33a63ee59ddc344b64\"\u003e\u003ccode\u003ebc03cf8\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/83379fb6409075336edf3d8d88744e95911a43f8\"\u003e\u003ccode\u003e83379fb\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/0d400c9dc586fdd460d0c6a40db21ebbe22106d8\"\u003e\u003ccode\u003e0d400c9\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/ce36a279f8b078bef2d9d44a1d01034c3634f91a\"\u003e\u003ccode\u003ece36a27\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7a209e1fa97033746db50fd7bcd1e3dbab077599\"\u003e\u003ccode\u003e7a209e1\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/a432707afe6b7569243d1c2d8052a1bf33d9279c\"\u003e\u003ccode\u003ea432707\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/176df1d48b256ced412c65293ad4e09393e24bd3\"\u003e\u003ccode\u003e176df1d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7785f5f9ed24127e004115472c47b26ea4cf2774\"\u003e\u003ccode\u003e7785f5f\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-databind/compare/jackson-databind-2.9.10.1...jackson-databind-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.yaml:snakeyaml` from 1.26 to 2.6\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/015ab57b3a789f85cf8967f6f3431035d928d9bc\"\u003e\u003ccode\u003e015ab57\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/4795519ef773da23c8816a4e932f9aaffd630f8c\"\u003e\u003ccode\u003e4795519\u003c/code\u003e\u003c/a\u003e Update info\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/9c36c69034617a1c2e06b5b9b6da4073416279b8\"\u003e\u003ccode\u003e9c36c69\u003c/code\u003e\u003c/a\u003e Introduce devcontainer\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/0c5b3e513a8a3971f7c97404f73fadebb63b73c0\"\u003e\u003ccode\u003e0c5b3e5\u003c/code\u003e\u003c/a\u003e fix: add debug level to internal logger\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/a65b13170d1b221af062d6aa90fd7741ed7ea7cd\"\u003e\u003ccode\u003ea65b131\u003c/code\u003e\u003c/a\u003e Merge branch 'master' into devcontainers\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/788a98b92bfd1696e95a0a48eb1d652d80660149\"\u003e\u003ccode\u003e788a98b\u003c/code\u003e\u003c/a\u003e Update changes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/556b4bfec56355987f292f0ee515798b3a2eb3e0\"\u003e\u003ccode\u003e556b4bf\u003c/code\u003e\u003c/a\u003e Add info for devcontainer\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/0828c39da732f89844c0c66d7f55169417f8cd16\"\u003e\u003ccode\u003e0828c39\u003c/code\u003e\u003c/a\u003e ops: migrate deployment from OSSRH to Central Portal\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/30d6a3a64809f0f6d3d9fd901a85b7c3cda94930\"\u003e\u003ccode\u003e30d6a3a\u003c/code\u003e\u003c/a\u003e Add a test for issue 1108\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/commits/2da4c6d8bfe0590dab56a5319366dc3b6558b9b5\"\u003e\u003ccode\u003e2da4c6d\u003c/code\u003e\u003c/a\u003e Remove unrelated code\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://bitbucket.org/snakeyaml/snakeyaml/branches/compare/snakeyaml-2.6..snakeyaml-1.26\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n\u003c/details\u003e","html_url":"https://github.com/shikhahere/dependabot-maven-usecases/pull/8","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/shikhahere%2Fdependabot-maven-usecases/issues/8","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/8/packages"}},{"old_version":"33.6.0-jre","new_version":"33.7.1-jre","update_type":"minor","path":null,"pr_created_at":"2026-09-02T02:24:01.000Z","version_change":"33.6.0-jre → 33.7.1-jre","issue":{"uuid":"5318965534","node_id":"PR_kwDOSv_54c8AAAABB1Ziqw","number":54,"state":"closed","title":"Bump com.google.guava:guava from 33.6.0-jre to 33.7.1-jre","user":"dependabot[bot]","labels":["dependencies","java","stale"],"assignees":[],"locked":false,"comments_count":2,"pull_request":true,"closed_at":"2026-09-16T03:04:55.000Z","author_association":null,"state_reason":null,"created_at":"2026-09-02T02:24:01.000Z","updated_at":"2026-09-16T03:05:05.000Z","time_to_close":1212054,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"}],"path":null,"ecosystem":"maven"},"body":"Bumps [com.google.guava:guava](https://github.com/google/guava) from 33.6.0-jre to 33.7.1-jre.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.google.guava:guava\u0026package-manager=gradle\u0026previous-version=33.6.0-jre\u0026new-version=33.7.1-jre)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/hmcts/finrem-wa-post-deployment-ft-tests/pull/54","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/hmcts%2Ffinrem-wa-post-deployment-ft-tests/issues/54","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/54/packages"}},{"old_version":"33.6.0-android","new_version":"33.7.1-android","update_type":"minor","path":null,"pr_created_at":"2026-08-31T12:38:39.000Z","version_change":"33.6.0-android → 33.7.1-android","issue":{"uuid":"5300234107","node_id":"PR_kwDOSwV92s8AAAABBmbL2g","number":156,"state":"open","title":"build(deps): bump com.google.guava:guava from 33.6.0-android to 33.7.1-android","user":"dependabot[bot]","labels":[],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-08-31T12:38:39.000Z","updated_at":"2026-08-31T12:38:41.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps)","packages":[{"name":"com.google.guava:guava","old_version":"33.6.0-android","new_version":"33.7.1-android","repository_url":"https://github.com/google/guava"}],"path":null,"ecosystem":"maven"},"body":"Bumps [com.google.guava:guava](https://github.com/google/guava) from 33.6.0-android to 33.7.1-android.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.google.guava:guava\u0026package-manager=gradle\u0026previous-version=33.6.0-android\u0026new-version=33.7.1-android)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/darkpandawarrior/Mileway/pull/156","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/darkpandawarrior%2FMileway/issues/156","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/156/packages"}},{"old_version":"33.6.0-jre","new_version":"33.7.1-jre","update_type":"minor","path":null,"pr_created_at":"2026-08-30T22:33:17.000Z","version_change":"33.6.0-jre → 33.7.1-jre","issue":{"uuid":"5294732251","node_id":"PR_kwDOG2xsAc8AAAABBiG5IQ","number":1214,"state":"closed","title":"build(deps): bump the dependencies group across 1 directory with 6 updates","user":"dependabot[bot]","labels":[":house: pr: internal","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-06T22:32:37.000Z","author_association":null,"state_reason":null,"created_at":"2026-08-30T22:33:17.000Z","updated_at":"2026-09-06T22:32:40.000Z","time_to_close":604760,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"build(deps): bump","group_name":"dependencies","update_count":6,"packages":[{"name":"org.seleniumhq.selenium:selenium-java","old_version":"4.47.0","new_version":"4.48.0","repository_url":"https://github.com/SeleniumHQ/selenium"},{"name":"com.squareup.okhttp3:okhttp-jvm","old_version":"5.4.0","new_version":"5.5.0","repository_url":"https://github.com/lysine-dev/okhttp"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"com.fasterxml.jackson.dataformat:jackson-dataformat-yaml","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-dataformats-text"},{"name":"com.fasterxml.jackson.core:jackson-databind","old_version":"2.22.1","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-databind"},{"name":"com.puppycrawl.tools:checkstyle","old_version":"12.3.1","new_version":"14.0.0","repository_url":"https://github.com/checkstyle/checkstyle"}],"path":null,"ecosystem":"maven"},"body":"Bumps the dependencies group with 6 updates in the /core-java directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [org.seleniumhq.selenium:selenium-java](https://github.com/SeleniumHQ/selenium) | `4.47.0` | `4.48.0` |\n| [com.squareup.okhttp3:okhttp-jvm](https://github.com/lysine-dev/okhttp) | `5.4.0` | `5.5.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [com.fasterxml.jackson.dataformat:jackson-dataformat-yaml](https://github.com/FasterXML/jackson-dataformats-text) | `2.22.1` | `2.22.2` |\n| [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson-databind) | `2.22.1` | `2.22.2` |\n| [com.puppycrawl.tools:checkstyle](https://github.com/checkstyle/checkstyle) | `12.3.1` | `14.0.0` |\n\n\nUpdates `org.seleniumhq.selenium:selenium-java` from 4.47.0 to 4.48.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/SeleniumHQ/selenium/releases\"\u003eorg.seleniumhq.selenium:selenium-java's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eSelenium 4.48.0\u003c/h2\u003e\n\u003ch2\u003eDetailed Changelogs by Component\u003c/h2\u003e\n\u003cp\u003e\u003c!-- raw HTML omitted --\u003e \u003cstrong\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/blob/trunk/java/CHANGELOG\"\u003eJava\u003c/a\u003e\u003c/strong\u003e     |    \u003c!-- raw HTML omitted --\u003e \u003cstrong\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/blob/trunk/py/CHANGES\"\u003ePython\u003c/a\u003e\u003c/strong\u003e     |    \u003c!-- raw HTML omitted --\u003e \u003cstrong\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/blob/trunk/dotnet/CHANGELOG\"\u003eDotNet\u003c/a\u003e\u003c/strong\u003e     |    \u003c!-- raw HTML omitted --\u003e \u003cstrong\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/blob/trunk/rb/CHANGES\"\u003eRuby\u003c/a\u003e\u003c/strong\u003e     |    \u003c!-- raw HTML omitted --\u003e \u003cstrong\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/blob/trunk/javascript/selenium-webdriver/CHANGES.md\"\u003eJavaScript\u003c/a\u003e\u003c/strong\u003e\n\u003c!-- raw HTML omitted --\u003e\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e[js] Normalize empty custom locator results by \u003ca href=\"https://github.com/munawiki\"\u003e\u003ccode\u003e@​munawiki\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17851\"\u003eSeleniumHQ/selenium#17851\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[py]: fix W3C capabilities built from a list of options (create_matches) by \u003ca href=\"https://github.com/navin772\"\u003e\u003ccode\u003e@​navin772\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17897\"\u003eSeleniumHQ/selenium#17897\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[rb] add low-level BiDi protocol integration specs by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17878\"\u003eSeleniumHQ/selenium#17878\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix badge for CI build on the default branch by \u003ca href=\"https://github.com/nvborisenko\"\u003e\u003ccode\u003e@​nvborisenko\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17901\"\u003eSeleniumHQ/selenium#17901\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[py] Fix broken reStructuredText link in docs by \u003ca href=\"https://github.com/cgoldberg\"\u003e\u003ccode\u003e@​cgoldberg\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17902\"\u003eSeleniumHQ/selenium#17902\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[grid] stop forwarding se:remoteUrl past the Node that consumes it by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17908\"\u003eSeleniumHQ/selenium#17908\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[grid] Forward file upload/download for Kubernetes, Docker and relay sessions by \u003ca href=\"https://github.com/VietND96\"\u003e\u003ccode\u003e@​VietND96\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17914\"\u003eSeleniumHQ/selenium#17914\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] reduce github cache churn and aggressively prune CodeQL caches by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17909\"\u003eSeleniumHQ/selenium#17909\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[java] fix two flaky BiDi tests that left timing-dependent state behind by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17918\"\u003eSeleniumHQ/selenium#17918\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[java] Add warn annotation for undeclared field while JSON coercion  by \u003ca href=\"https://github.com/pujagani\"\u003e\u003ccode\u003e@​pujagani\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17917\"\u003eSeleniumHQ/selenium#17917\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[py] temporarily disable nightly TestPyPI publishing by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17920\"\u003eSeleniumHQ/selenium#17920\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[rb] fix Safari test failures by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17922\"\u003eSeleniumHQ/selenium#17922\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] fix the issues that caused the release workflow to fail during last release by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17921\"\u003eSeleniumHQ/selenium#17921\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRevert \u0026quot;[py] temporarily disable nightly TestPyPI publishing (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17920\"\u003e#17920\u003c/a\u003e)\u0026quot; by \u003ca href=\"https://github.com/diemol\"\u003e\u003ccode\u003e@​diemol\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17924\"\u003eSeleniumHQ/selenium#17924\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[rb] fix silent hang on oversized WebSocket frames by \u003ca href=\"https://github.com/aguspe\"\u003e\u003ccode\u003e@​aguspe\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17655\"\u003eSeleniumHQ/selenium#17655\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[js] Ensure BiDi is not exposed on Driver by \u003ca href=\"https://github.com/pujagani\"\u003e\u003ccode\u003e@​pujagani\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17926\"\u003eSeleniumHQ/selenium#17926\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[docs] charter: link the accepted BiDi support boundary record by \u003ca href=\"https://github.com/AutomatedTester\"\u003e\u003ccode\u003e@​AutomatedTester\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17928\"\u003eSeleniumHQ/selenium#17928\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eHonour the \u003ccode\u003eDO_NOT_TRACK\u003c/code\u003e env var by \u003ca href=\"https://github.com/shs96c\"\u003e\u003ccode\u003e@​shs96c\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17931\"\u003eSeleniumHQ/selenium#17931\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] record flaky tests on trunk and report weekly offenders to Slack by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17930\"\u003eSeleniumHQ/selenium#17930\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] ignore .bazelbsp/ IDE-generated directory by \u003ca href=\"https://github.com/diemol\"\u003e\u003ccode\u003e@​diemol\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17932\"\u003eSeleniumHQ/selenium#17932\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[adr] Install browser extensions from the driver directly by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17817\"\u003eSeleniumHQ/selenium#17817\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[py] generate the internal BiDi protocol layer from the shared binding-neutral schema by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17761\"\u003eSeleniumHQ/selenium#17761\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[rb] always reject a missing required inbound BiDi field by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17936\"\u003eSeleniumHQ/selenium#17936\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] make Java and .NET release reruns pass when already published by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17935\"\u003eSeleniumHQ/selenium#17935\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] Move dependency updates into a weekly workflow by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17934\"\u003eSeleniumHQ/selenium#17934\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[rb] accept a whole-valued float for an integer BiDi field by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17939\"\u003eSeleniumHQ/selenium#17939\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] unlock trunk once the release finishes writing to it by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17938\"\u003eSeleniumHQ/selenium#17938\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[js] Add serialization and domain layer by \u003ca href=\"https://github.com/pujagani\"\u003e\u003ccode\u003e@​pujagani\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17927\"\u003eSeleniumHQ/selenium#17927\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] stop updating browsers and CDP during release preparation by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17940\"\u003eSeleniumHQ/selenium#17940\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[py] update new BiDi layer generation to conform to latest proposed ADR by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17942\"\u003eSeleniumHQ/selenium#17942\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[dotnet] [bidi] Throw in case of unknown discriminator by \u003ca href=\"https://github.com/nvborisenko\"\u003e\u003ccode\u003e@​nvborisenko\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17948\"\u003eSeleniumHQ/selenium#17948\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[rb] reject an inbound BiDi scalar outside its union's declared arms by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17947\"\u003eSeleniumHQ/selenium#17947\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[build] alert Slack when a CDP update lands on trunk by \u003ca href=\"https://github.com/titusfortner\"\u003e\u003ccode\u003e@​titusfortner\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17950\"\u003eSeleniumHQ/selenium#17950\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[js][bidi] Add BiDi connection-level event subscription by \u003ca href=\"https://github.com/pujagani\"\u003e\u003ccode\u003e@​pujagani\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17946\"\u003eSeleniumHQ/selenium#17946\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[dotnet] [bidi] SetMediaFeaturesOverride command in Emulation module by \u003ca href=\"https://github.com/nvborisenko\"\u003e\u003ccode\u003e@​nvborisenko\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17953\"\u003eSeleniumHQ/selenium#17953\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/munawiki\"\u003e\u003ccode\u003e@​munawiki\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/pull/17851\"\u003eSeleniumHQ/selenium#17851\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/SeleniumHQ/selenium/compare/selenium-4.47.0...selenium-4.48.0\"\u003ehttps://github.com/SeleniumHQ/selenium/compare/selenium-4.47.0...selenium-4.48.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/27f5213055e28398a5105b7892b7a3bb2012a6ef\"\u003e\u003ccode\u003e27f5213\u003c/code\u003e\u003c/a\u003e [build] Prepare for release of selenium-4.48.0 (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17956\"\u003e#17956\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/857ff4fe490f4914c354979efb4f62c74fe387d9\"\u003e\u003ccode\u003e857ff4f\u003c/code\u003e\u003c/a\u003e [build] remove cddl updates from release preparation\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/2183264fb7c1d63c7cebc64ba5649b67902b4c35\"\u003e\u003ccode\u003e2183264\u003c/code\u003e\u003c/a\u003e [dotnet] [bidi] SetMediaFeaturesOverride command in Emulation module (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17953\"\u003e#17953\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/5fd1f414be84a2e5b3753512fb1555d91c5c9ae1\"\u003e\u003ccode\u003e5fd1f41\u003c/code\u003e\u003c/a\u003e [build] unlock trunk when release preparation PR is closed without merging\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/5b053b5a2684a2104a56088d90d6c5e278d21e1e\"\u003e\u003ccode\u003e5b053b5\u003c/code\u003e\u003c/a\u003e [js][bidi] Add BiDi connection-level event subscription (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17946\"\u003e#17946\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/498c0e7e8dd4e314710e69855898e877d3fe291f\"\u003e\u003ccode\u003e498c0e7\u003c/code\u003e\u003c/a\u003e [build] alert Slack when a CDP update lands on trunk (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17950\"\u003e#17950\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/7bfaedb223f530da5b6e1e8e0038c50100bd6c4f\"\u003e\u003ccode\u003e7bfaedb\u003c/code\u003e\u003c/a\u003e [rb] reject an inbound BiDi scalar outside its union's declared arms (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17947\"\u003e#17947\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/083869ccd9866da3975b7f9cd8496a8ca864c62f\"\u003e\u003ccode\u003e083869c\u003c/code\u003e\u003c/a\u003e [dotnet] [bidi] Throw in case of unknown discriminator (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17948\"\u003e#17948\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/5b3666d62507b79ae08b0bf0e18604c28bb8f404\"\u003e\u003ccode\u003e5b3666d\u003c/code\u003e\u003c/a\u003e [py] update new BiDi layer generation to conform to latest proposed ADR (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17942\"\u003e#17942\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/SeleniumHQ/selenium/commit/a4b3c3d00c8b23177c61eb8820bdb1a308a20eac\"\u003e\u003ccode\u003ea4b3c3d\u003c/code\u003e\u003c/a\u003e [build] stop updating browsers and CDP during release preparation (\u003ca href=\"https://redirect.github.com/SeleniumHQ/selenium/issues/17940\"\u003e#17940\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/SeleniumHQ/selenium/compare/selenium-4.47.0...selenium-4.48.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.squareup.okhttp3:okhttp-jvm` from 5.4.0 to 5.5.0\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/lysine-dev/okhttp/blob/main/CHANGELOG.md\"\u003ecom.squareup.okhttp3:okhttp-jvm's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eVersion 5.5.0\u003c/h2\u003e\n\u003cp\u003e\u003cem\u003e2026-08-16\u003c/em\u003e\u003c/p\u003e\n\u003cp\u003eThis release introduces \u003cstrong\u003eopt-in\u003c/strong\u003e support for [Encrypted Client Hello (ECH)]. This new feature\nimproves user privacy by encrypting domain names in transit. With regular TLS, your coffee shop’s\nWi-Fi router can see that you’re visiting \u003cem\u003ewikipedia.com\u003c/em\u003e, but it cannot see which page you’re\nlooking at. With ECH, the router observes only the IP address. This additional privacy is most\neffective on sites hosted by big CDNs because the IP address doesn’t imply a particular website.\u003c/p\u003e\n\u003cp\u003eThis requires ECH support in the platform’s TLS stack. Today this is only Android 17 (API 37,\nreleased June 2026). When other TLS stacks add ECH support, we'll integrate them.\u003c/p\u003e\n\u003cp\u003eECH took a lot of work to implement because the encryption keys are published over DNS in the\n[HTTPS resource record], and we needed to write new code to fetch these records. This release\nincludes a major update to OkHttp’s DNS API: it now supports multiple resource record types (not\njust IP addresses!), asynchronous streaming results, and in-memory caching.\u003c/p\u003e\n\u003cp\u003eTo opt in, you can use \u003ccode\u003eDnsOverHttps\u003c/code\u003e:\u003c/p\u003e\n\u003cpre lang=\"kotlin\"\u003e\u003ccode\u003e// DnsOverHttps itself uses OkHttpClient. Build both clients upon the\n// same bootstrap client so they share a connection pool and dispatcher.\nval bootstrapClient = OkHttpClient()\n\u003cp\u003e// This sample uses Cloudflare's 1.1.1.1 DnsOverHttps service.\nval client = bootstrapClient.newBuilder()\n.dns(DnsOverHttps.Builder()\n.client(bootstrapClient)\n.url(\u0026quot;\u003ca href=\"https://1.1.1.1/dns-query\u0026amp;quot;.toHttpUrl()\"\u003ehttps://1.1.1.1/dns-query\u0026amp;quot;.toHttpUrl()\u003c/a\u003e)\n.build())\n.build()\n\u003c/code\u003e\u003c/pre\u003e\u003c/p\u003e\n\u003cp\u003eYou could also opt in with our new \u003ccode\u003eAndroidDns\u003c/code\u003e API. Unfortunately, the privacy benefits of ECH are\nthwarted because its DNS queries are not encrypted by default.\u003c/p\u003e\n\u003cpre lang=\"kotlin\"\u003e\u003ccode\u003e// AndroidDns fetches the HTTPS DNS resource records necessary for ECH.\nval client = OkHttpClient.Builder()\n  .dns(AndroidDns())\n  .build()\n\u003c/code\u003e\u003c/pre\u003e\n\u003cul\u003e\n\u003cli\u003eNew: OkHttp artifacts are now signed with our [new signing key]. This project and three sibling\nprojects ([Retrofit], [Okio], and [SQLDelight]) recently joined [the Commonhaus Foundation].\u003c/li\u003e\n\u003cli\u003eFix: MockWebServer’s \u003ccode\u003e@StartStop\u003c/code\u003e annotation now supports \u003ccode\u003e@Nested\u003c/code\u003e JUnit 5 tests.\u003c/li\u003e\n\u003cli\u003eFix: Our default TLS hostname verifier now reject hosts that fail IP canonicalization.\u003c/li\u003e\n\u003cli\u003eFix: Closing a multipart part's sink no longer closes the entire request body.\u003c/li\u003e\n\u003cli\u003eFix: Flush HTTP/1 request bodies before detaching the timeout. We had a bug where timeouts\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/a94bdf152084d11acecd44dcd09ffef203f4f0aa\"\u003e\u003ccode\u003ea94bdf1\u003c/code\u003e\u003c/a\u003e Prepare for release 5.5.0.\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/ecc3b05adfe6b2607b8ec251562c2cccf7c1923a\"\u003e\u003ccode\u003eecc3b05\u003c/code\u003e\u003c/a\u003e Use a fixed size for DoH request body (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9687\"\u003e#9687\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/9926082660dfa6f1cc848c6f465cf5ccb998e415\"\u003e\u003ccode\u003e9926082\u003c/code\u003e\u003c/a\u003e Revert \u0026quot;Use a fixed size for DoH request body\u0026quot; (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9686\"\u003e#9686\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/0070c2e7b4c162ee03abf1c88fd94083e94697f4\"\u003e\u003ccode\u003e0070c2e\u003c/code\u003e\u003c/a\u003e Use a fixed size for DoH request body\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/15764539c69842dad607462f102a2507223dbfe7\"\u003e\u003ccode\u003e1576453\u003c/code\u003e\u003c/a\u003e Order ServiceMetadata records per the spec (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9683\"\u003e#9683\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/fb582e976a9a82d691342a4d57b3c72208ce416c\"\u003e\u003ccode\u003efb582e9\u003c/code\u003e\u003c/a\u003e Flip wiring of Dns.SYSTEM (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9682\"\u003e#9682\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/4e884abb1a207c321acffb070c476acb4b89fa3f\"\u003e\u003ccode\u003e4e884ab\u003c/code\u003e\u003c/a\u003e retryOnConnectionFailure doesn't impact ECH retries (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9681\"\u003e#9681\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/0433cee8131b63fa2c0634fa2f9b3a01f9a8b1f3\"\u003e\u003ccode\u003e0433cee\u003c/code\u003e\u003c/a\u003e Only one contributing.md doc (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9678\"\u003e#9678\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/a2cf5aa9f8711dabe514871e9dc4a9336a0e403f\"\u003e\u003ccode\u003ea2cf5aa\u003c/code\u003e\u003c/a\u003e Don't recover after an ECH public_name fails to verify (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9680\"\u003e#9680\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/lysine-dev/okhttp/commit/5410de9760bce8719129c3d08eb19e5bace75f6e\"\u003e\u003ccode\u003e5410de9\u003c/code\u003e\u003c/a\u003e Test ECH + HTTP proxy (\u003ca href=\"https://redirect.github.com/lysine-dev/okhttp/issues/9671\"\u003e#9671\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/lysine-dev/okhttp/compare/parent-5.4.0...parent-5.5.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.dataformat:jackson-dataformat-yaml` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/3aab0261e5e03247fa0cd779de40c742c9ed847d\"\u003e\u003ccode\u003e3aab026\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-dataformats-text-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/0e4e5b9cdd2ef978411d0d67b991d02157403522\"\u003e\u003ccode\u003e0e4e5b9\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/3fd423826a06962319bbf5886be32723d2a35a75\"\u003e\u003ccode\u003e3fd4238\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/f0f96895fadd8a2063a73a12db8187b45305f29b\"\u003e\u003ccode\u003ef0f9689\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/50d9dfac796df6f2319394c7431f1c9319347005\"\u003e\u003ccode\u003e50d9dfa\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/0e9bdd490ae06b58f32de212618f71fcaadd36ab\"\u003e\u003ccode\u003e0e9bdd4\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/613de08b86c258aa7e96ee149c47676cf786b42f\"\u003e\u003ccode\u003e613de08\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/49dc929aa8d065073356f8b9bac314235a60e848\"\u003e\u003ccode\u003e49dc929\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/c09cd3f517982471e044a1f91f0865d07322ea14\"\u003e\u003ccode\u003ec09cd3f\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-dataformats-text-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/commit/096a670a930a9f15886588784252e2c2bdab31ec\"\u003e\u003ccode\u003e096a670\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-dataformats-text/compare/jackson-dataformats-text-2.22.1...jackson-dataformats-text-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.core:jackson-databind` from 2.22.1 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/25b2a221f9aa4107e455065a74635e209418cf55\"\u003e\u003ccode\u003e25b2a22\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bab1c1a702a941f8805ee6698e8fa4fdbfbec54a\"\u003e\u003ccode\u003ebab1c1a\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bc03cf83d74cf0e5944dce33a63ee59ddc344b64\"\u003e\u003ccode\u003ebc03cf8\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/83379fb6409075336edf3d8d88744e95911a43f8\"\u003e\u003ccode\u003e83379fb\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/0d400c9dc586fdd460d0c6a40db21ebbe22106d8\"\u003e\u003ccode\u003e0d400c9\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/ce36a279f8b078bef2d9d44a1d01034c3634f91a\"\u003e\u003ccode\u003ece36a27\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7a209e1fa97033746db50fd7bcd1e3dbab077599\"\u003e\u003ccode\u003e7a209e1\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/a432707afe6b7569243d1c2d8052a1bf33d9279c\"\u003e\u003ccode\u003ea432707\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/176df1d48b256ced412c65293ad4e09393e24bd3\"\u003e\u003ccode\u003e176df1d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7785f5f9ed24127e004115472c47b26ea4cf2774\"\u003e\u003ccode\u003e7785f5f\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-databind/compare/jackson-databind-2.22.1...jackson-databind-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.puppycrawl.tools:checkstyle` from 12.3.1 to 14.0.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/checkstyle/checkstyle/releases\"\u003ecom.puppycrawl.tools:checkstyle's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003echeckstyle-14.0.0\u003c/h2\u003e\n\u003cp\u003eCheckstyle 14.0.0 - \u003ca href=\"https://checkstyle.org/releasenotes.html#Release_14.0.0\"\u003ehttps://checkstyle.org/releasenotes.html#Release_14.0.0\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eNew:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/8240\"\u003e#8240\u003c/a\u003e - Java Grammar: module-info.java support.\u003c/p\u003e\n\u003cp\u003eBug fixes:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21112\"\u003e#21112\u003c/a\u003e - InvalidJavadocPosition: false positive on module-info.java Javadoc.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21110\"\u003e#21110\u003c/a\u003e - PackageDeclaration: false positive \u0026quot;Missing package declaration\u0026quot; on module-info.java.\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003ch2\u003echeckstyle-13.11.0\u003c/h2\u003e\n\u003cp\u003eCheckstyle 13.11.0 - \u003ca href=\"https://checkstyle.org/releasenotes.html#Release_13.11.0\"\u003ehttps://checkstyle.org/releasenotes.html#Release_13.11.0\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eBreaking backward compatibility:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21080\"\u003e#21080\u003c/a\u003e - WriteTag: remove tagSeverity property and make Check to work only for violation of tag absence.\u003c/p\u003e\n\u003cp\u003eNew:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20984\"\u003e#20984\u003c/a\u003e - new Check: PreferLiteralJavadocInlineTag.\u003c/p\u003e\n\u003cp\u003eBug fixes:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/13426\"\u003e#13426\u003c/a\u003e - Xdoc file generation should be separate project that executes in maven build as just another phase; remove doxia dependency.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21222\"\u003e#21222\u003c/a\u003e - Add PreferLiteralJavadocInlineTag in openjdk_checks.xml.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21101\"\u003e#21101\u003c/a\u003e - google_checks.xml: LocalVariableName/LocalFinalVariableName false positive for identifier example \u0026quot;guava33_4_6\u0026quot; from Google Java Style Guide.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/20973\"\u003e#20973\u003c/a\u003e - Javadoc parse error on quoted HTML attribute value containing '\u003ccode\u003e\u0026lt;\u003c/code\u003e'.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/19913\"\u003e#19913\u003c/a\u003e - Documentation Comments Style Guide - Avoid Latin.\n\u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/17728\"\u003e#17728\u003c/a\u003e - Google style: False negative missing spacing between type and variable.\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/2feea2e4223f0a7acdee9c498234d79fd09cc018\"\u003e\u003ccode\u003e2feea2e\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release checkstyle-14.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/9b5b44f5d708df54d670d8831cfc51ecae88c3bd\"\u003e\u003ccode\u003e9b5b44f\u003c/code\u003e\u003c/a\u003e doc: release notes for 14.0.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/9c5344b48e6b48c6cfb58648a3c6a6d4b420a347\"\u003e\u003ccode\u003e9c5344b\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21112\"\u003e#21112\u003c/a\u003e: Fix InvalidJavadocPosition false positive on module Javadoc\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/21cdce9bfdfc0062892f2ce45138a2489c9b7e05\"\u003e\u003ccode\u003e21cdce9\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21245\"\u003e#21245\u003c/a\u003e: Resolve Commons Logging incompatibility with XWiki validation\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/f1cdd26f76d7b57a9777b011e9cc26a11305bc34\"\u003e\u003ccode\u003ef1cdd26\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21110\"\u003e#21110\u003c/a\u003e: Fix PackageDeclaration false positive on module-info.java\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/48b0316dfa4e3efa7cb727f91cbb07b19bc95eee\"\u003e\u003ccode\u003e48b0316\u003c/code\u003e\u003c/a\u003e infra: use pull_request_target for site workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/e7d79f5b4b357ceda24ea8b0b9df1891eb8b3e00\"\u003e\u003ccode\u003ee7d79f5\u003c/code\u003e\u003c/a\u003e doc: mention 14.x in JRE matrix and Java 25 language support on index page\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/86c9dae51bcba40ebcf3181eb9c88232807401ce\"\u003e\u003ccode\u003e86c9dae\u003c/code\u003e\u003c/a\u003e minor: Bump version to 14.0.0-SNAPSHOT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/74d612a49fefe6f28b777fe041995654ca62da17\"\u003e\u003ccode\u003e74d612a\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/8240\"\u003e#8240\u003c/a\u003e: Add grammar support for module-info.java\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/checkstyle/checkstyle/commit/0a64d24f2469a0ab5b236c18a5c930d013eb3f62\"\u003e\u003ccode\u003e0a64d24\u003c/code\u003e\u003c/a\u003e Issue \u003ca href=\"https://redirect.github.com/checkstyle/checkstyle/issues/21207\"\u003e#21207\u003c/a\u003e: Make LocalFinalVariableName default-config example Example1\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/checkstyle/checkstyle/compare/checkstyle-12.3.1...checkstyle-14.0.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\u003cdetails\u003e\n\u003csummary\u003eMost Recent Ignore Conditions Applied to This Pull Request\u003c/summary\u003e\n\n| Dependency Name | Ignore Conditions |\n| --- | --- |\n| com.puppycrawl.tools:checkstyle | [\u003e= 13.a0, \u003c 14] |\n\u003c/details\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n\u003c/details\u003e","html_url":"https://github.com/BoykaFramework/boyka-framework/pull/1214","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/BoykaFramework%2Fboyka-framework/issues/1214","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/1214/packages"}},{"old_version":"33.6.0-jre","new_version":"33.7.1-jre","update_type":"minor","path":null,"pr_created_at":"2026-08-30T07:53:26.000Z","version_change":"33.6.0-jre → 33.7.1-jre","issue":{"uuid":"5291006551","node_id":"PR_kwDOHkBeUs8AAAABBfYHww","number":59,"state":"closed","title":"Bump the all group across 1 directory with 10 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-06T07:53:09.000Z","author_association":null,"state_reason":null,"created_at":"2026-08-30T07:53:26.000Z","updated_at":"2026-09-06T07:53:11.000Z","time_to_close":604783,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","group_name":"all","update_count":10,"packages":[{"name":"org.junit:junit-bom","old_version":"6.1.1","new_version":"6.1.3","repository_url":"https://github.com/junit-team/junit-framework"},{"name":"io.javalin:javalin","old_version":"7.2.2","new_version":"7.2.3","repository_url":"https://github.com/javalin/javalin"},{"name":"com.fasterxml.jackson.datatype:jackson-datatype-jsr310","old_version":"2.22.0","new_version":"2.22.2"},{"name":"org.flywaydb:flyway-core","old_version":"12.10.0","new_version":"12.11.0"},{"name":"org.flywaydb:flyway-database-postgresql","old_version":"12.10.0","new_version":"12.11.0"},{"name":"org.postgresql:postgresql","old_version":"42.7.12","new_version":"42.7.13","repository_url":"https://github.com/pgjdbc/pgjdbc"},{"name":"ch.qos.logback:logback-classic","old_version":"1.5.37","new_version":"1.6.3","repository_url":"https://github.com/qos-ch/logback"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"io.github.hakky54:logcaptor","old_version":"2.12.6","new_version":"2.12.7","repository_url":"https://github.com/Hakky54/log-captor"},{"name":"io.rest-assured:rest-assured","old_version":"6.0.0","new_version":"6.0.1","repository_url":"https://github.com/rest-assured/rest-assured"}],"path":null,"ecosystem":"maven"},"body":"Bumps the all group with 10 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [org.junit:junit-bom](https://github.com/junit-team/junit-framework) | `6.1.1` | `6.1.3` |\n| [io.javalin:javalin](https://github.com/javalin/javalin) | `7.2.2` | `7.2.3` |\n| com.fasterxml.jackson.datatype:jackson-datatype-jsr310 | `2.22.0` | `2.22.2` |\n| org.flywaydb:flyway-core | `12.10.0` | `12.11.0` |\n| org.flywaydb:flyway-database-postgresql | `12.10.0` | `12.11.0` |\n| [org.postgresql:postgresql](https://github.com/pgjdbc/pgjdbc) | `42.7.12` | `42.7.13` |\n| [ch.qos.logback:logback-classic](https://github.com/qos-ch/logback) | `1.5.37` | `1.6.3` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [io.github.hakky54:logcaptor](https://github.com/Hakky54/log-captor) | `2.12.6` | `2.12.7` |\n| [io.rest-assured:rest-assured](https://github.com/rest-assured/rest-assured) | `6.0.0` | `6.0.1` |\n\n\nUpdates `org.junit:junit-bom` from 6.1.1 to 6.1.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/junit-team/junit-framework/releases\"\u003eorg.junit:junit-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003cp\u003eJUnit 6.1.3 = Platform 6.1.3 + Jupiter 6.1.3 + Vintage 6.1.3\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.3/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.2...r6.1.3\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.2...r6.1.3\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.2 = Platform 6.1.2 + Jupiter 6.1.2 + Vintage 6.1.2\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.2/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.2\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.2\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/f59f60d2cebdf2224235d81f781b1f310cbc8138\"\u003e\u003ccode\u003ef59f60d\u003c/code\u003e\u003c/a\u003e Release 6.1.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/cd8ec9202ce8260a434edb38a8565e36f620e8d6\"\u003e\u003ccode\u003ecd8ec92\u003c/code\u003e\u003c/a\u003e Finalize 6.1.3 release notes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/c8729f26aacd8e2dd6fa564b929fe047faaa7dc9\"\u003e\u003ccode\u003ec8729f2\u003c/code\u003e\u003c/a\u003e Restore compatibility with GraalVM 25 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5901\"\u003e#5901\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/ddc9e74e5d21c2dd18bc0cfe4681d5ff50ac379c\"\u003e\u003ccode\u003eddc9e74\u003c/code\u003e\u003c/a\u003e Update graalvm/setup-graalvm action to v1.6.4 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5959\"\u003e#5959\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/fe2c52a780fcbda6c7ccf5d6576beb7ad2d80bf8\"\u003e\u003ccode\u003efe2c52a\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.7 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5923\"\u003e#5923\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/62afc02b541ee9dfa16b121705f79b7d44f4dae0\"\u003e\u003ccode\u003e62afc02\u003c/code\u003e\u003c/a\u003e Delay GraalVM plugin updates for 3 days\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/0cc29022801365a409c1213a811a8877cb88cce3\"\u003e\u003ccode\u003e0cc2902\u003c/code\u003e\u003c/a\u003e Skip \u003ccode\u003egraalVmTest\u003c/code\u003e task if GraalVM env vars are not set\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/f6bbfc53e7e00b1b25e7d3b0bc09eef05cc4b721\"\u003e\u003ccode\u003ef6bbfc5\u003c/code\u003e\u003c/a\u003e Move GraalVM tests to separate test task (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5903\"\u003e#5903\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/e87e0521d4fbd75116a5fda42566fcb7a56eb340\"\u003e\u003ccode\u003ee87e052\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.6 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5899\"\u003e#5899\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/1cd56df89754fb8523ac9fbbf888e9a552e33ee8\"\u003e\u003ccode\u003e1cd56df\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.5 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5880\"\u003e#5880\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.javalin:javalin` from 7.2.2 to 7.2.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/javalin/javalin/releases\"\u003eio.javalin:javalin's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e7.2.3\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e[workflow]: Bump codecov/codecov-action from 6.0.0 to 6.0.1 in the dependencies group by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2597\"\u003ejavalin/javalin#2597\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[deps] Bump grouped dependencies (excluding Jetty) by \u003ca href=\"https://github.com/tipsy\"\u003e\u003ccode\u003e@​tipsy\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2604\"\u003ejavalin/javalin#2604\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd default enum converters for validation by \u003ca href=\"https://github.com/tipsy\"\u003e\u003ccode\u003e@​tipsy\u003c/code\u003e\u003c/a\u003e with \u003ca href=\"https://github.com/Copilot\"\u003e\u003ccode\u003e@​Copilot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2600\"\u003ejavalin/javalin#2600\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003eContext.addHeader\u003c/code\u003e method by \u003ca href=\"https://github.com/tipsy\"\u003e\u003ccode\u003e@​tipsy\u003c/code\u003e\u003c/a\u003e with \u003ca href=\"https://github.com/Copilot\"\u003e\u003ccode\u003e@​Copilot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2605\"\u003ejavalin/javalin#2605\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[workflow]: Bump codecov/codecov-action from 6.0.1 to 7.0.0 in the dependencies group by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2606\"\u003ejavalin/javalin#2606\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[http] Return 404 for unrecognized request methods instead of 500 by \u003ca href=\"https://github.com/tipsy\"\u003e\u003ccode\u003e@​tipsy\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2609\"\u003ejavalin/javalin#2609\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[workflow]: Bump the dependencies group across 1 directory with 2 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2612\"\u003ejavalin/javalin#2612\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eStream static files instead of reading all bytes into memory by \u003ca href=\"https://github.com/tipsy\"\u003e\u003ccode\u003e@​tipsy\u003c/code\u003e\u003c/a\u003e with \u003ca href=\"https://github.com/Copilot\"\u003e\u003ccode\u003e@​Copilot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2618\"\u003ejavalin/javalin#2618\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd application/xml to ContentType by \u003ca href=\"https://github.com/tipsy\"\u003e\u003ccode\u003e@​tipsy\u003c/code\u003e\u003c/a\u003e with \u003ca href=\"https://github.com/Copilot\"\u003e\u003ccode\u003e@​Copilot\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2619\"\u003ejavalin/javalin#2619\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[deps]: Bump the dependencies group across 1 directory with 32 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2617\"\u003ejavalin/javalin#2617\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e[deps] Bump stable deps and sync OptionalDependency.kt by \u003ca href=\"https://github.com/tipsy\"\u003e\u003ccode\u003e@​tipsy\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/javalin/javalin/pull/2624\"\u003ejavalin/javalin#2624\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/javalin/javalin/compare/javalin-parent-7.2.1...javalin-parent-7.2.3\"\u003ehttps://github.com/javalin/javalin/compare/javalin-parent-7.2.1...javalin-parent-7.2.3\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/8c12b9f8a5ecf889b54db7d6b2a7539490ceb86b\"\u003e\u003ccode\u003e8c12b9f\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release javalin-parent-7.2.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/3208ac58c1039987af1898ace8b0d55dc98072c6\"\u003e\u003ccode\u003e3208ac5\u003c/code\u003e\u003c/a\u003e [deps] Bump stable deps and sync OptionalDependency.kt (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2624\"\u003e#2624\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/54f055984f3b78135338f667d169bff77b383aa2\"\u003e\u003ccode\u003e54f0559\u003c/code\u003e\u003c/a\u003e [deps]: Bump the dependencies group across 1 directory with 32 updates (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2617\"\u003e#2617\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/48bf31c3e0fc9f218470dde17de67499fbf549eb\"\u003e\u003ccode\u003e48bf31c\u003c/code\u003e\u003c/a\u003e [content-type] Add application/xml (closes \u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2614\"\u003e#2614\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/c83b8b24982ea841345c6e2ca2f2c89e20007ccf\"\u003e\u003ccode\u003ec83b8b2\u003c/code\u003e\u003c/a\u003e [static-files] Stream static files instead of reading into memory (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2618\"\u003e#2618\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/6600d23a36eca699d57cca14110c3fb181222ed9\"\u003e\u003ccode\u003e6600d23\u003c/code\u003e\u003c/a\u003e [workflow]: Bump the dependencies group across 1 directory with 2 updates (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2\"\u003e#2\u003c/a\u003e...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/0ae00cac808d0d4418775ba04c54e2cd1d0af686\"\u003e\u003ccode\u003e0ae00ca\u003c/code\u003e\u003c/a\u003e [http] Return 404 for unrecognized request methods instead of 500 (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2609\"\u003e#2609\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/c397adc7ebb6a509de8b2a695d4f9a9b76667a9c\"\u003e\u003ccode\u003ec397adc\u003c/code\u003e\u003c/a\u003e [workflow]: Bump codecov/codecov-action in the dependencies group (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2606\"\u003e#2606\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/fd59a40fb123f121475202cfbf71071b0f7f0952\"\u003e\u003ccode\u003efd59a40\u003c/code\u003e\u003c/a\u003e [context] Add \u003ccode\u003eContext.addHeader\u003c/code\u003e method (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2605\"\u003e#2605\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/javalin/javalin/commit/4b82867a17b4af68090b0e6247eb847bb56da999\"\u003e\u003ccode\u003e4b82867\u003c/code\u003e\u003c/a\u003e [validation] Add default enum converters (\u003ca href=\"https://redirect.github.com/javalin/javalin/issues/2600\"\u003e#2600\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/javalin/javalin/compare/javalin-parent-7.2.2...javalin-parent-7.2.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson.datatype:jackson-datatype-jsr310` from 2.22.0 to 2.22.2\n\nUpdates `org.flywaydb:flyway-core` from 12.10.0 to 12.11.0\n\nUpdates `org.flywaydb:flyway-database-postgresql` from 12.10.0 to 12.11.0\n\nUpdates `org.flywaydb:flyway-database-postgresql` from 12.10.0 to 12.11.0\n\nUpdates `org.postgresql:postgresql` from 42.7.12 to 42.7.13\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/pgjdbc/pgjdbc/releases\"\u003eorg.postgresql:postgresql's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev42.7.13\u003c/h2\u003e\n\u003ch2\u003eChanges\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edocs: add 42.7.13 release changelog \u003ca href=\"https://github.com/davecramer\"\u003e\u003ccode\u003e@​davecramer\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4270\"\u003e#4270\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdjust EditorConfig für Makefile \u003ca href=\"https://github.com/BaumiCoder\"\u003e\u003ccode\u003e@​BaumiCoder\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4279\"\u003e#4279\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(scram): fail closed on channel-binding downgrade (no scram bump) \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4272\"\u003e#4272\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eBump pgjdbc version from 42.7.12 to 42.7.13 \u003ca href=\"https://github.com/davecramer\"\u003e\u003ccode\u003e@​davecramer\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4269\"\u003e#4269\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore: remove test-anorm-sbt module and its disabled CI wiring \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4261\"\u003e#4261\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003erefactor(test-gss): convert to Java/JUnit 5 submodule of the main build \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4166\"\u003e#4166\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: derive PG test versions from a Renovate-managed maxPgVersion \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4218\"\u003e#4218\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat(insert): cap reWriteBatchedInserts by the protocol limit, not 128 \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4207\"\u003e#4207\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003erefactor(metadata): derive getPrimaryKeys from pg_constraint.conkey \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4202\"\u003e#4202\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(protocol): defer flushes until response processing \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4196\"\u003e#4196\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(build): resolve the Temurin 8 test toolchain by vendor \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4257\"\u003e#4257\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ebuild: include multi-release source sets in the JaCoCo coverage report \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4256\"\u003e#4256\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(ci): read java_vendor before overwriting java_distribution \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4255\"\u003e#4255\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: generate the whole matrix in one batch, coverage job included \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4253\"\u003e#4253\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: pass CODECOV_TOKEN so protected-branch coverage uploads succeed \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4254\"\u003e#4254\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: collect coverage on one pinned job \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4245\"\u003e#4245\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: apply -DqueryTimeout from the matrix query_timeout axis \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4246\"\u003e#4246\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: make Codecov project and patch statuses informational \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4244\"\u003e#4244\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(build): restore JaCoCo XML report so Codecov receives coverage \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4240\"\u003e#4240\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest(replication): shrink big-transaction inserts to avoid CI timeouts \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4243\"\u003e#4243\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eupdate maintainers \u003ca href=\"https://github.com/davecramer\"\u003e\u003ccode\u003e@​davecramer\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4222\"\u003e#4222\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: add hermetic test for localSocketAddress \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4224\"\u003e#4224\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003edocs(translation): clean up leftover German header in ja.po \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4206\"\u003e#4206\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUpdate ja.po \u003ca href=\"https://github.com/davecramer\"\u003e\u003ccode\u003e@​davecramer\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/2004\"\u003e#2004\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: add PostgreSQL 18 to the CI test matrix \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4198\"\u003e#4198\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: silence expected SSPI warning stack trace in SSPIClientWaffleTest \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4197\"\u003e#4197\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix(ssl): build PKIX trust anchors without a KeyStore so FIPS-mode JVMs can load sslrootcert \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4193\"\u003e#4193\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: fix flaky sentLocationEqualToLastReceiveLSN replication test \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4175\"\u003e#4175\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ebuild: promote MethodCanBeStatic to error level \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4172\"\u003e#4172\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix PGInterval.setSeconds to reject out of range and NaN values \u003ca href=\"https://github.com/sehrope\"\u003e\u003ccode\u003e@​sehrope\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4194\"\u003e#4194\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eReplace connectThreadFactory with connectExecutor \u003ca href=\"https://github.com/sehrope\"\u003e\u003ccode\u003e@​sehrope\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4165\"\u003e#4165\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix deleting temp file when spooling large stream to disk in StreamWrapper \u003ca href=\"https://github.com/sehrope\"\u003e\u003ccode\u003e@​sehrope\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4190\"\u003e#4190\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore: Add top level /scratch to gitignore \u003ca href=\"https://github.com/sehrope\"\u003e\u003ccode\u003e@​sehrope\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4164\"\u003e#4164\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003erefactor: favour composition over inheritance for Driver.ConnectTask \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4160\"\u003e#4160\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eFix NumberParser.getFastLong(...) handling of overlong values \u003ca href=\"https://github.com/sehrope\"\u003e\u003ccode\u003e@​sehrope\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4163\"\u003e#4163\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ebuild: produce a multi-release jar from reduced-pom.xml on Java 11+ \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4157\"\u003e#4157\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdd connectThreadFactory and refactor Driver to use FutureTask for loginTimeout connection attempts \u003ca href=\"https://github.com/sehrope\"\u003e\u003ccode\u003e@​sehrope\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4120\"\u003e#4120\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: verify custom properties reach socket factory \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4125\"\u003e#4125\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: fix LazyCleanerTest timeouts for the lingering Java 8 cleanup thread \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4122\"\u003e#4122\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: stabilise StatementTest.fastCloses on Windows \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4121\"\u003e#4121\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: append default non-proxy hosts when socksNonProxyHosts is set \u003ca href=\"https://github.com/davecramer\"\u003e\u003ccode\u003e@​davecramer\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4045\"\u003e#4045\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: budget terminating Sync in BatchDeadlockTest small-RETURNING branch \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4116\"\u003e#4116\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003etest: make message assertions locale-independent \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4113\"\u003e#4113\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003ebuild: drop xgettext default keywords; regenerate translations \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4100\"\u003e#4100\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eci: opt-in scheduled workflows via ENABLE_SCHEDULED_JOBS repo variable \u003ca href=\"https://github.com/vlsi\"\u003e\u003ccode\u003e@​vlsi\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4085\"\u003e#4085\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAvoid direct java.lang.management dependency in maxResultBuffer parser \u003ca href=\"https://github.com/mblakley-casana\"\u003e\u003ccode\u003e@​mblakley-casana\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4069\"\u003e#4069\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: restore pre-describe for generated-key batches \u003ca href=\"https://github.com/bilalshehata\"\u003e\u003ccode\u003e@​bilalshehata\u003c/code\u003e\u003c/a\u003e (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4014\"\u003e#4014\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/pgjdbc/pgjdbc/blob/master/CHANGELOG.md\"\u003eorg.postgresql:postgresql's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e[42.7.13] (2026-07-06)\u003c/h2\u003e\n\u003ch3\u003eAdded\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efeat: invalidate the prepared-statement cache when the server reports a \u003ccode\u003esearch_path\u003c/code\u003e change via GUC_REPORT (PostgreSQL 18+), so cached plans are no longer used against the wrong schema [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4259\"\u003e#4259\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4259\"\u003epgjdbc/pgjdbc#4259\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat: \u003ccode\u003ereWriteBatchedInserts\u003c/code\u003e now merges up to 32768 rows into one multi-values \u003ccode\u003eINSERT\u003c/code\u003e (bounded by the 65535 bind-parameter limit on the extended protocol) instead of capping at 128, which speeds up batches of few-column rows. The new \u003ccode\u003ereWriteBatchedInsertsSize\u003c/code\u003e connection property lowers that cap when set; the default of \u003ccode\u003e0\u003c/code\u003e uses that maximum. [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4207\"\u003e#4207\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4207\"\u003epgjdbc/pgjdbc#4207\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat: invalidate the prepared-statement cache after CREATE/DROP/ALTER so callers no longer trip on \u0026quot;cached plan must not change result type\u0026quot; without opting into \u003ccode\u003eautosave=ALWAYS\u003c/code\u003e. Controlled by the new \u003ccode\u003eflushCacheOnDdl\u003c/code\u003e connection property (default \u003ccode\u003etrue\u003c/code\u003e); set to \u003ccode\u003efalse\u003c/code\u003e for the prior behaviour. [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4067\"\u003e#4067\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4067\"\u003epgjdbc/pgjdbc#4067\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat: add \u003ccode\u003econnectExecutor\u003c/code\u003e connection property to customize the \u003ccode\u003eExecutor\u003c/code\u003e used to run the worker task that performs the connection attempt when \u003ccode\u003eloginTimeout\u003c/code\u003e is in effect. The value is the fully qualified name of a class implementing \u003ccode\u003ejava.util.concurrent.Executor\u003c/code\u003e. With a null value, the default, the driver retains the prior behavior of running the connection attempt on a daemon thread named \u003ccode\u003e\u0026quot;PostgreSQL JDBC driver connection thread\u0026quot;\u003c/code\u003e. The executor must run the task on a thread other than the caller's. Running the attempt on a named thread lets applications that monitor driver-created threads identify it. [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4165\"\u003e#4165\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4165\"\u003epgjdbc/pgjdbc#4165\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat: add \u003ccode\u003eclassLoaderStrategy\u003c/code\u003e connection property to control which classloaders the driver searches when loading a class named by a connection property, for example \u003ccode\u003esocketFactory\u003c/code\u003e. The default \u003ccode\u003edriver-first\u003c/code\u003e now falls back to the thread context classloader when the driver's classloader cannot resolve the class, which fixes class loading in non-flat class paths such as Quarkus and OSGi. Set \u003ccode\u003edriver\u003c/code\u003e to keep the previous driver-classloader-only behaviour, or \u003ccode\u003econtext-first\u003c/code\u003e to prefer the thread context classloader [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/2112\"\u003e#2112\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/2112\"\u003epgjdbc/pgjdbc#2112\u003c/a\u003e) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4167\"\u003e#4167\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4167\"\u003epgjdbc/pgjdbc#4167\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat: add OID constants for geometric arrays, \u003ccode\u003eRECORD\u003c/code\u003e, and \u003ccode\u003erefcursor\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4220\"\u003e#4220\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4220\"\u003epgjdbc/pgjdbc#4220\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efeat: \u003ccode\u003eLargeObject\u003c/code\u003e \u003ccode\u003eBlobInputStream\u003c/code\u003e now skips by seeking instead of reading, and the driver exposes the server version so it can select the 64-bit large-object API where available [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4204\"\u003e#4204\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4204\"\u003epgjdbc/pgjdbc#4204\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChanged\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003erefactor: the worker that runs the connection attempt under \u003ccode\u003eloginTimeout\u003c/code\u003e is now a \u003ccode\u003eFutureTask\u003c/code\u003e (\u003ccode\u003eConnectTask\u003c/code\u003e) instead of the hand-rolled \u003ccode\u003eConnectThread\u003c/code\u003e. When the caller hits the timeout, the task is now cancelled with \u003ccode\u003ecancel(true)\u003c/code\u003e, which interrupts the worker thread rather than letting it run to completion. This makes the connection attempt interruptible, so \u003ccode\u003eloginTimeout\u003c/code\u003e can stop a slow connection attempt instead of leaking a thread. As before, a connection that the worker still manages to establish after the caller gives up is closed by the worker so that it does not leak. There are no public API changes and this should only lead to faster background resource cleanup for connections that time out. [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4120\"\u003e#4120\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4120\"\u003epgjdbc/pgjdbc#4120\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore: \u003ccode\u003ePGXAConnection.ConnectionHandler\u003c/code\u003e now rejects \u003ccode\u003esetAutoCommit(false)\u003c/code\u003e and \u003ccode\u003esetSavepoint(...)\u003c/code\u003e during an active XA branch, in addition to the long-rejected \u003ccode\u003esetAutoCommit(true)\u003c/code\u003e / \u003ccode\u003ecommit()\u003c/code\u003e / \u003ccode\u003erollback()\u003c/code\u003e. The \u003ccode\u003esetSavepoint\u003c/code\u003e rejection was already meant to be in place but the guard misspelled the method name as \u003ccode\u003esetSavePoint\u003c/code\u003e, so savepoints silently went through. Both changes bring the proxy in line with JTA 1.2 §3.4. [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4114\"\u003e#4114\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4114\"\u003epgjdbc/pgjdbc#4114\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003echore: \u003ccode\u003ecommitPrepared\u003c/code\u003e / \u003ccode\u003erollback\u003c/code\u003e-of-prepared now return \u003ccode\u003eXAER_RMFAIL\u003c/code\u003e instead of \u003ccode\u003eXAER_RMERR\u003c/code\u003e when the underlying connection is left in a non-idle \u003ccode\u003eTransactionState\u003c/code\u003e. Transaction managers (Geronimo, Narayana, Atomikos) treat \u003ccode\u003eXAER_RMFAIL\u003c/code\u003e as retryable on a fresh \u003ccode\u003eXAResource\u003c/code\u003e; the prepared transaction is no longer abandoned. [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4114\"\u003e#4114\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4114\"\u003epgjdbc/pgjdbc#4114\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003erefactor: derive \u003ccode\u003egetPrimaryKeys\u003c/code\u003e from \u003ccode\u003epg_constraint.conkey\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4202\"\u003e#4202\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4202\"\u003epgjdbc/pgjdbc#4202\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eFixed\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003efix: the published GitHub release now ships the released \u003ccode\u003epostgresql-\u0026lt;version\u0026gt;.jar\u003c/code\u003e and its detached PGP signature, taken from the same signed build that is uploaded to Maven Central, instead of a leftover SNAPSHOT jar [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3812\"\u003e#3812\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3812\"\u003epgjdbc/pgjdbc#3812\u003c/a\u003e) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3814\"\u003e#3814\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/3814\"\u003epgjdbc/pgjdbc#3814\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: simplify the \u003ccode\u003eStatement#cancel\u003c/code\u003e state machine by dropping the redundant \u003ccode\u003eCANCELLED\u003c/code\u003e state. \u003ccode\u003ekillTimerTask\u003c/code\u003e now waits for the state to return to \u003ccode\u003eIDLE\u003c/code\u003e directly, which removes a spin-forever case when more than one thread observes the cancel completing [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/1827\"\u003e#1827\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/1827\"\u003epgjdbc/pgjdbc#1827\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003eperf: defer simple-query flushes until the driver reads the response, allowing \u003ccode\u003eBEGIN\u003c/code\u003e and the following query to share a network flush [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3894\"\u003e#3894\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3894\"\u003epgjdbc/pgjdbc#3894\u003c/a\u003e) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4196\"\u003e#4196\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4196\"\u003epgjdbc/pgjdbc#4196\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003ereWriteBatchedInserts\u003c/code\u003e no longer throws \u003ccode\u003eIllegalArgumentException\u003c/code\u003e when batching a parameterless \u003ccode\u003eINSERT\u003c/code\u003e (for example \u003ccode\u003eINSERT INTO t VALUES (1, 2)\u003c/code\u003e) of 256 rows or more [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4207\"\u003e#4207\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4207\"\u003epgjdbc/pgjdbc#4207\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: a comment before \u003ccode\u003eCALL\u003c/code\u003e in a \u003ccode\u003eCallableStatement\u003c/code\u003e no longer hides the native call, so OUT parameter registration works for \u003ccode\u003e/* comment */ call proc(?, ?)\u003c/code\u003e and similar. \u003ccode\u003eParser.modifyJdbcCall\u003c/code\u003e now skips leading whitespace and SQL comments (both \u003ccode\u003e--\u003c/code\u003e and \u003ccode\u003e/* */\u003c/code\u003e) before the call, tolerates a trailing comment after a \u003ccode\u003e{ ... }\u003c/code\u003e escape, and no longer adds a spurious comma when moving an OUT parameter into a call whose arguments are only a comment [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/2538\"\u003e#2538\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/2538\"\u003epgjdbc/pgjdbc#2538\u003c/a\u003e) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4209\"\u003e#4209\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4209\"\u003epgjdbc/pgjdbc#4209\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003ePreparedStatement.toString()\u003c/code\u003e no longer throws for a \u003ccode\u003ebytea\u003c/code\u003e value supplied as text via \u003ccode\u003ePGobject\u003c/code\u003e. Hex-format values (\u003ccode\u003e\\x...\u003c/code\u003e) are validated and rendered as a \u003ccode\u003ebytea\u003c/code\u003e literal, and escape-format values are quoted and cast like any other literal [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3757\"\u003e#3757\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3757\"\u003epgjdbc/pgjdbc#3757\u003c/a\u003e) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4201\"\u003e#4201\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4201\"\u003epgjdbc/pgjdbc#4201\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: the driver no longer nulls the \u003ccode\u003econtextClassLoader\u003c/code\u003e of shared \u003ccode\u003eForkJoinPool.commonPool()\u003c/code\u003e worker threads, which previously left unrelated tasks on those threads running with a \u003ccode\u003enull\u003c/code\u003e classloader [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4155\"\u003e#4155\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4155\"\u003epgjdbc/pgjdbc#4155\u003c/a\u003e) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4156\"\u003e#4156\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4156\"\u003epgjdbc/pgjdbc#4156\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003ePgResultSet#getCharacterStream\u003c/code\u003e wraps \u003ccode\u003eString\u003c/code\u003e in a \u003ccode\u003eStringReader\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4063\"\u003e#4063\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4063\"\u003epgjdbc/pgjdbc#4063\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003ePGXAConnection\u003c/code\u003e no longer saves and restores the underlying connection's JDBC \u003ccode\u003eautoCommit\u003c/code\u003e flag. All XA-protocol SQL (\u003ccode\u003eBEGIN\u003c/code\u003e, \u003ccode\u003ePREPARE TRANSACTION\u003c/code\u003e, \u003ccode\u003eCOMMIT\u003c/code\u003e, \u003ccode\u003eROLLBACK\u003c/code\u003e, \u003ccode\u003eCOMMIT PREPARED\u003c/code\u003e, \u003ccode\u003eROLLBACK PREPARED\u003c/code\u003e, the \u003ccode\u003erecover()\u003c/code\u003e SELECT) is sent through \u003ccode\u003eQUERY_SUPPRESS_BEGIN\u003c/code\u003e, so the caller's \u003ccode\u003eautoCommit\u003c/code\u003e value is invariant across every \u003ccode\u003eXAResource\u003c/code\u003e call. Fixes the \u0026quot;2nd phase commit must be issued using an idle connection\u0026quot; failure during recovery on managed datasources that pool connections with \u003ccode\u003eautoCommit=false\u003c/code\u003e (TomEE, WildFly, WebSphere Liberty) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4114\"\u003e#4114\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4114\"\u003epgjdbc/pgjdbc#4114\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003ePGXAConnection.prepare()\u003c/code\u003e now mutates XA state only after \u003ccode\u003ePREPARE TRANSACTION\u003c/code\u003e succeeds. A failed \u003ccode\u003ePREPARE\u003c/code\u003e previously left the driver thinking the branch was already prepared, so the follow-up \u003ccode\u003erollback(xid)\u003c/code\u003e tried \u003ccode\u003eROLLBACK PREPARED\u003c/code\u003e against a non-existent gid and returned \u003ccode\u003eXAER_RMERR\u003c/code\u003e. Transaction managers (Narayana) escalated this to \u003ccode\u003eHeuristicMixedException\u003c/code\u003e. With the fix, \u003ccode\u003erollback(xid)\u003c/code\u003e takes the active-branch path and issues a plain \u003ccode\u003eROLLBACK\u003c/code\u003e, which the server accepts cleanly. Fixes [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3153\"\u003e#3153\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3153\"\u003epgjdbc/pgjdbc#3153\u003c/a\u003e), [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3123\"\u003e#3123\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3123\"\u003epgjdbc/pgjdbc#3123\u003c/a\u003e). [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4114\"\u003e#4114\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4114\"\u003epgjdbc/pgjdbc#4114\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: an updatable result set over an unqualified table name is now classified using only the table visible through \u003ccode\u003esearch_path\u003c/code\u003e. When two schemas held a table with the same name and the same primary or unique index name but a different set of key columns, the driver took the union of both schemas' columns, so the result set could be wrongly rejected as not updatable [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4214\"\u003e#4214\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4214\"\u003epgjdbc/pgjdbc#4214\u003c/a\u003e). Supersedes [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3400\"\u003e#3400\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/3400\"\u003epgjdbc/pgjdbc#3400\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003efix: \u003ccode\u003eLargeObject.close()\u003c/code\u003e now flushes a buffered output stream before marking the object closed, so closing a large object without an explicit \u003ccode\u003eflush()\u003c/code\u003e no longer drops buffered writes. The flush runs while the object is still open (it calls back into \u003ccode\u003eLargeObject.write()\u003c/code\u003e), and \u003ccode\u003elo_close\u003c/code\u003e always runs afterward; a failure from \u003ccode\u003elo_close\u003c/code\u003e no longer masks an earlier flush error, and the transaction is not committed when the flush failed [Issue \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4247\"\u003e#4247\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4247\"\u003epgjdbc/pgjdbc#4247\u003c/a\u003e) [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4248\"\u003e#4248\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4248\"\u003epgjdbc/pgjdbc#4248\u003c/a\u003e).\u003c/li\u003e\n\u003cli\u003efix: reject empty \u003ccode\u003etimestamp\u003c/code\u003e, \u003ccode\u003etimestamptz\u003c/code\u003e, and \u003ccode\u003edate\u003c/code\u003e text with a clear \u003ccode\u003eSQLException\u003c/code\u003e (SQLState \u003ccode\u003e22007\u003c/code\u003e) instead of an \u003ccode\u003eArrayIndexOutOfBoundsException\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4278\"\u003e#4278\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4278\"\u003epgjdbc/pgjdbc#4278\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: return null \u003ccode\u003eCHAR_OCTET_LENGTH\u003c/code\u003e for non-character columns [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4231\"\u003e#4231\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4231\"\u003epgjdbc/pgjdbc#4231\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: honor scale in \u003ccode\u003eResultSet.getBigDecimal(int, int)\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4211\"\u003e#4211\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4211\"\u003epgjdbc/pgjdbc#4211\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: support \u003ccode\u003ejava.time\u003c/code\u003e values in an updatable \u003ccode\u003eResultSet\u003c/code\u003e \u003ccode\u003eupdateRow()\u003c/code\u003e / \u003ccode\u003einsertRow()\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3848\"\u003e#3848\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/3848\"\u003epgjdbc/pgjdbc#3848\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: improve batching when the \u003ccode\u003eRETURNING\u003c/code\u003e clause contains \u003ccode\u003evarchar\u003c/code\u003e or \u003ccode\u003enumeric\u003c/code\u003e types [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4014\"\u003e#4014\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4014\"\u003epgjdbc/pgjdbc#4014\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: correct \u003ccode\u003eestimatedReceiveBufferBytes\u003c/code\u003e accounting after a forced \u003ccode\u003eSync\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4014\"\u003e#4014\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4014\"\u003epgjdbc/pgjdbc#4014\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: avoid creating a transient \u003ccode\u003eResultSet\u003c/code\u003e for describe-statement purposes, and restore the pre-describe path for generated-key batches [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4014\"\u003e#4014\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4014\"\u003epgjdbc/pgjdbc#4014\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: add an explicit failure message when a multi-statement command executes in a batch [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4014\"\u003e#4014\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4014\"\u003epgjdbc/pgjdbc#4014\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: detect \u003ccode\u003esearch_path\u003c/code\u003e changes case-insensitively [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4216\"\u003e#4216\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4216\"\u003epgjdbc/pgjdbc#4216\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: auto-detect the SSL key format instead of relying on the \u003ccode\u003e.key\u003c/code\u003e extension [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/3946\"\u003e#3946\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/3946\"\u003epgjdbc/pgjdbc#3946\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: build PKIX trust anchors without a \u003ccode\u003eKeyStore\u003c/code\u003e so FIPS JVMs work [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4193\"\u003e#4193\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4193\"\u003epgjdbc/pgjdbc#4193\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: use \u003ccode\u003egssResponseTimeout\u003c/code\u003e rather than \u003ccode\u003esslResponseTimeout\u003c/code\u003e for GSS connections [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4076\"\u003e#4076\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4076\"\u003epgjdbc/pgjdbc#4076\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: skip the autosave savepoint for \u003ccode\u003eSET LOCAL\u003c/code\u003e / \u003ccode\u003eSET SESSION TRANSACTION\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4203\"\u003e#4203\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4203\"\u003epgjdbc/pgjdbc#4203\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: do not throw \u003ccode\u003eAssertionError\u003c/code\u003e from \u003ccode\u003eBatchResultHandler\u003c/code\u003e on a closed connection [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4187\"\u003e#4187\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4187\"\u003epgjdbc/pgjdbc#4187\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: reject \u003ccode\u003eSQL_TSI_FRAC_SECOND\u003c/code\u003e with an explicit, explained error [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4229\"\u003e#4229\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4229\"\u003epgjdbc/pgjdbc#4229\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: reject a null URL in \u003ccode\u003eDriver.acceptsURL\u003c/code\u003e with a clear \u003ccode\u003eNullPointerException\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4205\"\u003e#4205\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4205\"\u003epgjdbc/pgjdbc#4205\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: reject overlong inputs in \u003ccode\u003eNumberParser.getFastLong\u003c/code\u003e instead of silently wrapping [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4163\"\u003e#4163\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4163\"\u003epgjdbc/pgjdbc#4163\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: reject out-of-range and NaN values in \u003ccode\u003ePGInterval.setSeconds\u003c/code\u003e [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4194\"\u003e#4194\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4194\"\u003epgjdbc/pgjdbc#4194\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: close the socket when \u003ccode\u003ePgConnection\u003c/code\u003e setup fails after connect [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4161\"\u003e#4161\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4161\"\u003epgjdbc/pgjdbc#4161\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003efix: keep the \u003ccode\u003eLazyCleanerImpl\u003c/code\u003e cleanup task alive across a transient empty queue [PR \u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4038\"\u003e#4038\u003c/a\u003e](\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/pull/4038\"\u003epgjdbc/pgjdbc#4038\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/3297557c6a8059d0d6e3522c79f0bd9a6f82ee07\"\u003e\u003ccode\u003e3297557\u003c/code\u003e\u003c/a\u003e docs: add 42.7.13 release changelog (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4270\"\u003e#4270\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/d93d370984fbbccd099fc6466e4075ba46d8ec59\"\u003e\u003ccode\u003ed93d370\u003c/code\u003e\u003c/a\u003e style: apply Autostyle to docs/ and .github/\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/2e05ff9e3ea9e8249f25dcb7017984285f1f76b1\"\u003e\u003ccode\u003e2e05ff9\u003c/code\u003e\u003c/a\u003e build: check docs/ and .github/ formatting with Autostyle\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/b4a6087d2f07b578923a5272fa0155602ade9d40\"\u003e\u003ccode\u003eb4a6087\u003c/code\u003e\u003c/a\u003e Adjust EditorConfig für Makefiles\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/725cebbb4e13be777483bd916b19dfcd428b5f26\"\u003e\u003ccode\u003e725cebb\u003c/code\u003e\u003c/a\u003e fix(jdbc): reject empty timestamp/timestamptz text with a clear error\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/23a1b0dac5a8fc633cc163e883eb21f0219ea521\"\u003e\u003ccode\u003e23a1b0d\u003c/code\u003e\u003c/a\u003e fix(scram): fail closed on channel-binding downgrade (no scram bump)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/0b4077a529b2448cc55a6ca87b2be8667243c9ab\"\u003e\u003ccode\u003e0b4077a\u003c/code\u003e\u003c/a\u003e Bump pgjdbc version from 42.7.12 to 42.7.13 (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4269\"\u003e#4269\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/394800a38aebf54f9f293f6198e1fc5c8b19f10f\"\u003e\u003ccode\u003e394800a\u003c/code\u003e\u003c/a\u003e fix: flush LargeObject output stream before marking closed (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4248\"\u003e#4248\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/83780f130e0c83a77bb67350603f3cca8d4b9bb2\"\u003e\u003ccode\u003e83780f1\u003c/code\u003e\u003c/a\u003e Maintain consistency with the use of the word maintainer vs comitter (\u003ca href=\"https://redirect.github.com/pgjdbc/pgjdbc/issues/4234\"\u003e#4234\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/pgjdbc/pgjdbc/commit/d42cad5cd12a13197e68aa53f09a7721336dce7a\"\u003e\u003ccode\u003ed42cad5\u003c/code\u003e\u003c/a\u003e fix(jdbc): classify updatable result set by search_path visibility\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/pgjdbc/pgjdbc/compare/REL42.7.12...REL42.7.13\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `ch.qos.logback:logback-classic` from 1.5.37 to 1.6.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/qos-ch/logback/releases\"\u003ech.qos.logback:logback-classic's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eLogback 1.6.3\u003c/h2\u003e\n\u003ch1\u003e2026-08-14 Release of logback version 1.6.3\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eIn response \u003ca href=\"https://www.cve.org/cverecord?id=CVE-2026-19880\"\u003eCVE-2026-19880\u003c/a\u003e,  \u003ccode\u003eMDCBasedDiscriminator\u003c/code\u003e (used by \u003ccode\u003eSiftingAppender\u003c/code\u003e) now strips forward and  backward slashes (\u003ccode\u003e/\u003c/code\u003e, \u003ccode\u003e\\\u003c/code\u003e) from MDC values before they are used as  discriminating keys. This prevents path segments from escaping into  destinations controlled by an attacker. When sanitisation actually changes a  value, a warning is emitted; the warning is rate-limited (a small batch, then  a lull of about ten minutes).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eColour console support is split out into a dedicated  \u003ca href=\"https://logback.qos.ch/manual/appenders.html#JansiConsoleAppender\"\u003e\u003ccode\u003eJansiConsoleAppender\u003c/code\u003e\u003c/a\u003e. It wraps stdout or stderr with  Jansi so ANSI escape sequences (for example coloured patterns) render  correctly on terminals that need it, notably Windows. Prefer this class over  the older path described next. See the  \u003ca href=\"https://logback.qos.ch/manual/appenders.html#JansiConsoleAppender\"\u003eappenders documentation\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe \u003ccode\u003ewithJansi\u003c/code\u003e property on \u003ccode\u003eConsoleAppender\u003c/code\u003e is \u003cstrong\u003edeprecated\u003c/strong\u003e. Existing  configurations that still set \u003ccode\u003e\u0026lt;withJansi\u0026gt;true\u0026lt;/withJansi\u0026gt;\u003c/code\u003e continue to work  for compatibility, but new setups should use \u003ccode\u003eJansiConsoleAppender\u003c/code\u003e instead.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ccode\u003eConsoleAppender\u003c/code\u003e no longer treats the process console as an exclusive  resource: stopping it does not close \u003ccode\u003eSystem.out\u003c/code\u003e / \u003ccode\u003eSystem.err\u003c/code\u003e.  \u003ccode\u003eJansiConsoleAppender\u003c/code\u003e pairs each \u003ccode\u003eAnsiConsole.systemInstall()\u003c/code\u003e with  \u003ccode\u003esystemUninstall()\u003c/code\u003e on stop, so repeated start/stop cycles do not leave Jansi  installed or tear down streams shared with the rest of the JVM. Related  behavior is covered by tests for  \u003ca href=\"https://redirect.github.com/qos-ch/logback/issues/1063\"\u003eissues/1063\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eInvocation throttling helpers were reworked: \u003ccode\u003eSimpleInvocationGate\u003c/code\u003e is renamed  \u003ccode\u003eFixedIntervalInvocationGate\u003c/code\u003e, and \u003ccode\u003eBatchedFixedIntervalInvocationGate\u003c/code\u003e allows  a short burst of invocations before applying a fixed lull. The sanitisation\nwarning above uses the batched gate.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe JPMS \u003ccode\u003emodule-info\u003c/code\u003e for logback-core now exports the  \u003ccode\u003ech.qos.logback.core.property\u003c/code\u003e package, which had been missing from the module   descriptor.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA bit-wise identical binary of this version can be reproduced by building from  \u003ca href=\"https://github.com/qos-ch/logback\"\u003esource code\u003c/a\u003e at commit  \u003ccode\u003ee8e824dede022a6d7208b36cfa875b0d1b7772f3\u003c/code\u003e associated with the tag \u003ccode\u003ev_1.6.3\u003c/code\u003e.  The release was built using Java \u0026quot;21\u0026quot; 2023-10-17 LTS build 21.0.1.+12-LTS-29   under Linux Debian 11.6.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e--\nSponsoring SLF4J/logback/reload4j at \u003ca href=\"https://github.com/sponsors/qos-ch\"\u003ehttps://github.com/sponsors/qos-ch\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eLogback 1.6.2\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/user-attachments/assets/9ceaf157-b758-4188-815d-edfe4e1b4edd\"\u003ehttps://github.com/user-attachments/assets/9ceaf157-b758-4188-815d-edfe4e1b4edd\u003c/a\u003e\u003c/p\u003e\n\u003ch1\u003e2026-08-10 Release of logback version 1.6.2\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eConfiguration analysis now detects \u003cem\u003econtradictory caller-data inclusion instructions\u003c/em\u003e. For example, an \u003ccode\u003eAsyncAppender\u003c/code\u003e, \u003ccode\u003eSocketAppender\u003c/code\u003e or \u003ccode\u003eSMTPAppender\u003c/code\u003e with \u003ccode\u003eincludeCallerData\u003c/code\u003e left at the default \u003ccode\u003efalse\u003c/code\u003e is incompatible with a layout or encoder pattern that uses a caller-data converter such as \u003ccode\u003e%C\u003c/code\u003e, \u003ccode\u003e%M\u003c/code\u003e, \u003ccode\u003e%L\u003c/code\u003e, \u003ccode\u003e%F\u003c/code\u003e, \u003ccode\u003e%l\u003c/code\u003e or \u003ccode\u003e%caller\u003c/code\u003e. At runtime those converters would print question marks and still incur extraction cost on a worker thread. Logback now emits a configuration-time warning when such instructions disagree. See \u003ca href=\"https://logback.qos.ch/codes.html#callerContradiction\"\u003ecodes.html#callerContradiction\u003c/a\u003e for details. This issue was reported in \u003ca href=\"https://redirect.github.com/qos-ch/logback/issues/1059\"\u003eissues/1059\u003c/a\u003e by \u003ca href=\"https://github.com/leeychee\"\u003eleeychee\u003c/a\u003e. The initial analysis was contributed by \u003ca href=\"https://github.com/seonwooj0810\"\u003eseonwoo_jung\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eCaller-contradiction analysis can be turned off by setting the \u003ccode\u003elogback.skipCallerContradictionAnalysis\u003c/code\u003e variable to \u003ccode\u003etrue\u003c/code\u003e, either as a system property (\u003ccode\u003e-Dlogback.skipCallerContradictionAnalysis=true\u003c/code\u003e) or as a property in the configuration file:\u003c/p\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;property name=\u0026quot;logback.skipCallerContradictionAnalysis\u0026quot; value=\u0026quot;true\u0026quot;/\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ccode\u003eSimpleSocketServer\u003c/code\u003e and \u003ccode\u003eSimpleSSLSocketServer\u003c/code\u003e now require an explicit client IP whitelist. On the command line, pass one or more allowed addresses (single IPs or CIDR ranges) after the configuration file. An empty whitelist means no clients are accepted. When embedding the server programmatically, register allowed addresses with \u003ccode\u003eaddAllowedClientAddress(String)\u003c/code\u003e or \u003ccode\u003esetAllowedClientAddresses(Collection)\u003c/code\u003e before clients connect. See the documentation on \u003ca href=\"https://logback.qos.ch/manual/appenders.html#simpleSocketServerClientAccess\"\u003erestricting client access\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdded \u003ccode\u003eThrowableProxyVOBuilder\u003c/code\u003e for assembling a \u003ccode\u003eThrowableProxyVO\u003c/code\u003e field by field, with a corresponding \u003ccode\u003eThrowableProxyVO.builder()\u003c/code\u003e entry point.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDependency analysis handlers now run their \u003ccode\u003epostHandle\u003c/code\u003e method after child models have been processed, so checks that depend on nested appenders (such as caller-contradiction analysis) see a complete picture.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated several dependencies, including Angus Mail to 2.0.4 and Jetty (test) to 12.1.12.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA bit-wise identical binary of this version can be reproduced by building from \u003ca href=\"https://github.com/qos-ch/logback\"\u003esource code\u003c/a\u003e at commit e3d78330ad1ba024fd987fd00c3ffb9cfcdb07dc associated with the tag \u003ccode\u003ev_1.6.2\u003c/code\u003e. The release was built using Java \u0026quot;21\u0026quot; 2023-10-17 LTS build 21.0.1.+12-LTS-29 under Linux Debian 11.6.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eLogback 1.6.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003e2026-07-28 Release of logback version 1.6.1\u003c/strong\u003e\u003c/p\u003e\n\u003cp\u003e• In TimeBasedRollingPolicy, when the file option is set, the intermediate file renamed before asynchronous compression now receives the target archive name without the compression suffix (e.g. \u003ccode\u003e.gz\u003c/code\u003e, \u003ccode\u003e.zip\u003c/code\u003e, \u003ccode\u003e.xz\u003c/code\u003e). Previously it used a nanotime-based \u003ccode\u003e.tmp\u003c/code\u003e suffix. This makes the file easier to identify if compression fails during rollover. (See also the following paragraph.)\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/e8e824dede022a6d7208b36cfa875b0d1b7772f3\"\u003e\u003ccode\u003ee8e824d\u003c/code\u003e\u003c/a\u003e prepare release 1.6.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/761821bfaacac3a0ad44fa546cfc814429bf9312\"\u003e\u003ccode\u003e761821b\u003c/code\u003e\u003c/a\u003e MDCBasedDiscriminator has a gated warning mechanism\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/53ed1229008d8b1902f5c234deaa07d742890879\"\u003e\u003ccode\u003e53ed122\u003c/code\u003e\u003c/a\u003e update copyright year\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/c7e2db244671ffa916182b5da8c89579eb54a645\"\u003e\u003ccode\u003ec7e2db2\u003c/code\u003e\u003c/a\u003e rename SimpleInvocationGate as FixedIntervalInvocationGate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/b5aa931b096a4b0b6a9e140b74fabe7da152cbf0\"\u003e\u003ccode\u003eb5aa931\u003c/code\u003e\u003c/a\u003e added BatchedSimpleInvocationGate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/1f22af7686aadd25c08b4bd1e6943a906a743ad4\"\u003e\u003ccode\u003e1f22af7\u003c/code\u003e\u003c/a\u003e add javadocs to SimpleInvocationGate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/638ffa7e7852478b605a91b3e91238ff26f8158c\"\u003e\u003ccode\u003e638ffa7\u003c/code\u003e\u003c/a\u003e prevent forward and backward slashes to escape to other directories\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/7d6b9a4f8c8996834c0a694f6c141705a003d7bb\"\u003e\u003ccode\u003e7d6b9a4\u003c/code\u003e\u003c/a\u003e add missing ch.qos.logback.core.property package\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/fa25930346f35636fb6a077c1f66ebb06edd3b6f\"\u003e\u003ccode\u003efa25930\u003c/code\u003e\u003c/a\u003e add an extension path in ConsoleAppender for JansiConsoleAppender\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/c73b43f2011f9d4545abc7ea461172276a0a43b3\"\u003e\u003ccode\u003ec73b43f\u003c/code\u003e\u003c/a\u003e deprecate the withJansi path\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/qos-ch/logback/compare/v_1.5.37...v_1.6.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.github.hakky54:logcaptor` from 2.12.6 to 2.12.7\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/Hakky54/log-captor/blob/master/CHANGELOG.MD\"\u003eio.github.hakky54:logcaptor's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch3\u003ev2.12.7\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eBumped dependencies\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/0e0090799f1965ad081530daaf789d50bbe33042\"\u003e\u003ccode\u003e0e00907\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release v2.12.7\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/bf17c68af8f495eea4dc0a14f34b47d4a9ef3786\"\u003e\u003ccode\u003ebf17c68\u003c/code\u003e\u003c/a\u003e Updated docs\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/02ac9143b73638efd2dd87090e204b1938f01d84\"\u003e\u003ccode\u003e02ac914\u003c/code\u003e\u003c/a\u003e Bump net.bytebuddy:byte-buddy from 1.18.10 to 1.18.11 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/232\"\u003e#232\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/af21db7efd40c5004f4db27a258f6d7ead87a856\"\u003e\u003ccode\u003eaf21db7\u003c/code\u003e\u003c/a\u003e Bump org.apache.maven.plugins:maven-jar-plugin from 3.5.0 to 3.5.1 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/233\"\u003e#233\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/0c07e776c3fba290f574b715f00acfbbdc7b198d\"\u003e\u003ccode\u003e0c07e77\u003c/code\u003e\u003c/a\u003e Bump version.log4j from 2.26.0 to 2.26.1 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/231\"\u003e#231\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/853027b1cd7b86c4ce93048e0dc3dc72fed6f569\"\u003e\u003ccode\u003e853027b\u003c/code\u003e\u003c/a\u003e Bump org.jacoco:jacoco-maven-plugin from 0.8.14 to 0.8.15 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/229\"\u003e#229\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/af7832a17f210136767de0ce60dc2b9d3f6770c6\"\u003e\u003ccode\u003eaf7832a\u003c/code\u003e\u003c/a\u003e Bump net.bytebuddy:byte-buddy from 1.18.8 to 1.18.10 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/230\"\u003e#230\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/517ab9c042f45e73bb7c4601cdb905cfe1ba2d0f\"\u003e\u003ccode\u003e517ab9c\u003c/code\u003e\u003c/a\u003e Bump version.slf4j from 2.0.17 to 2.0.18 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/226\"\u003e#226\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/e02dd210557b6875f390bc0b247c94649db4a4f0\"\u003e\u003ccode\u003ee02dd21\u003c/code\u003e\u003c/a\u003e Bump version.log4j from 2.25.4 to 2.26.0 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/227\"\u003e#227\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Hakky54/log-captor/commit/15429a2dd4d950a35fc6bed5b94e97f9a11da985\"\u003e\u003ccode\u003e15429a2\u003c/code\u003e\u003c/a\u003e Bump org.apache.maven.plugins:maven-surefire-plugin from 3.5.5 to 3.5.6 (\u003ca href=\"https://redirect.github.com/Hakky54/log-captor/issues/228\"\u003e#228\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/Hakky54/log-captor/compare/v2.12.6...v2.12.7\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.rest-assured:rest-assured` from 6.0.0 to 6.0.1\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/rest-assured/rest-assured/blob/master/changelog.txt\"\u003eio.rest-assured:rest-assured's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eChangelog 6.0.1 (2026-07-10)\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eFix a JsonPath denial-of-service where oversized numeric literals in untrusted JSON were parsed into arbitrarily large BigIntegers, an O(n^2) CPU and heap cost. JSON number tokens are now capped at 1000 characters by default, configurable via JsonPathConfig.numberLengthLimit and JsonConfig.numberLengthLimit (a negative value disables the check). Thanks to Brian Lee (PhD security researcher, Georgia Tech SSLab) for the private report.\u003c/li\u003e\n\u003cli\u003eUse custom Jackson 3 object mapper in JsonPath (\u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1858\"\u003e#1858\u003c/a\u003e) (thanks to gkiel for PR)\u003c/li\u003e\n\u003cli\u003eFix Spring MockMvc cookie handling with Jakarta-only servlet APIs (fixes \u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1853\"\u003e#1853\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eUse Jackson 3 mapper in JsonPath deserialization when Jackson 3 is the only Jackson on the classpath (\u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1865\"\u003e#1865\u003c/a\u003e) (thanks to dickerpulli for PR)\u003c/li\u003e\n\u003cli\u003eAdd JsonPath.using(Jackson3ObjectMapperFactory) overload (\u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1861\"\u003e#1861\u003c/a\u003e) (thanks to Anusha-7254 for PR)\u003c/li\u003e\n\u003cli\u003eFix typo in duplicate-finder-maven-plugin phase property (\u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1866\"\u003e#1866\u003c/a\u003e) (thanks to metacosm for PR)\u003c/li\u003e\n\u003cli\u003eFix incorrect serialization of enum constants declared with a body when used as query/path parameters (\u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1799\"\u003e#1799\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eThe spring-mock-mvc and spring-web-test-client modules now target Spring Framework 7 and no longer expose their own Spring version as a transitive dependency (the Spring dependencies are declared optional), so they no longer drag Spring 5 onto a Spring Boot 4 / Spring Framework 7 classpath. This removes the need for manual Spring exclusions on Spring Boot 4 (fixes \u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1853\"\u003e#1853\u003c/a\u003e, \u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1868\"\u003e#1868\u003c/a\u003e). Thanks to spencerarq for the detailed investigation.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eChangelog 5.5.7 (2026-01-16)\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSpring MockMvc module now supports Spring Framework 7.0 (thanks to Marcin Grzejszczak for PR)\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/8cc835a516ece11c5a6af30c328cf8e10f564314\"\u003e\u003ccode\u003e8cc835a\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release rest-assured-6.0.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/92551ed73a02dbe6d6cd89e1f6a91dd0f1b4d71d\"\u003e\u003ccode\u003e92551ed\u003c/code\u003e\u003c/a\u003e Sync dist and OSGi module versions during release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/29b55e24dddab3b99841fc13ed5799916060ba17\"\u003e\u003ccode\u003e29b55e2\u003c/code\u003e\u003c/a\u003e Sync dist and osgi module parent versions to 6.0.1-SNAPSHOT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/f1abe776be4a17e034e6a72eb905d195f81a830a\"\u003e\u003ccode\u003ef1abe77\u003c/code\u003e\u003c/a\u003e [ci skip] Preparing for release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/d134dfb3ed147f35d90aef33cf9123581c956e28\"\u003e\u003ccode\u003ed134dfb\u003c/code\u003e\u003c/a\u003e Target Spring Framework 7 in the Spring modules and stop leaking Spring onto ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/a146f5600425a02479ea247ed0c86c5222d6b9cf\"\u003e\u003ccode\u003ea146f56\u003c/code\u003e\u003c/a\u003e Add AGENTS.md with changelog convention, reference it from CLAUDE.md\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/2bbb19a282df9ecebdcbaa93cde5c073e5bc9720\"\u003e\u003ccode\u003e2bbb19a\u003c/code\u003e\u003c/a\u003e Fix remaining duplicate-finder property typo in spring7-mvc-webapp\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/c5214b82740644f8fdd72930e99d1139de8a27f8\"\u003e\u003ccode\u003ec5214b8\u003c/code\u003e\u003c/a\u003e Fix serialization of enum constants declared with a body (\u003ca href=\"https://redirect.github.com/rest-assured/rest-assured/issues/1799\"\u003e#1799\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/bc4608fbad56eca8fb640632e3b44fc993127808\"\u003e\u003ccode\u003ebc4608f\u003c/code\u003e\u003c/a\u003e [ci skip] Updated changelog to reflect the latest changes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rest-assured/rest-assured/commit/2054f37233111bd78357dbfc7d2800f951e13819\"\u003e\u003ccode\u003e2054f37\u003c/code\u003e\u003c/a\u003e Add JsonPath.using(Jackson3ObjectMapperFactory) overload\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/rest-assured/rest-assured/compare/rest-assured-6.0.0...rest-assured-6.0.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore \u003cdependency name\u003e major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)\n- `@dependabot ignore \u003cdependency name\u003e` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)\n- `@dependabot unignore \u003cdependency name\u003e` will remove all of the ignore conditions of the specified dependency\n- `@dependabot unignore \u003cdependency name\u003e \u003cignore condition\u003e` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n\u003c/details\u003e","html_url":"https://github.com/alecigne/somafm-song-history/pull/59","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/alecigne%2Fsomafm-song-history/issues/59","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/59/packages"}},{"old_version":"33.6.0-jre","new_version":"33.7.1-jre","update_type":"minor","path":null,"pr_created_at":"2026-08-30T04:42:40.000Z","version_change":"33.6.0-jre → 33.7.1-jre","issue":{"uuid":"5290385979","node_id":"PR_kwDOKn3QjM8AAAABBe7SHQ","number":87,"state":"closed","title":"chore(deps): bump the version-updates group across 1 directory with 6 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2026-09-06T05:02:19.000Z","author_association":null,"state_reason":null,"created_at":"2026-08-30T04:42:40.000Z","updated_at":"2026-09-06T05:02:28.000Z","time_to_close":605979,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps): bump","group_name":"version-updates","update_count":6,"packages":[{"name":"io.netty:netty-bom","old_version":"4.2.15.Final","new_version":"4.2.17.Final","repository_url":"https://github.com/netty/netty"},{"name":"io.qdrant:client","old_version":"1.18.3","new_version":"1.19.0","repository_url":"https://github.com/qdrant/java-client"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"io.grpc:grpc-protobuf","old_version":"1.82.1","new_version":"1.83.1","repository_url":"https://github.com/grpc/grpc-java"},{"name":"org.apache.spark:spark-sql_2.13","old_version":"4.1.2","new_version":"4.2.0"},{"name":"com.fasterxml.jackson.core:jackson-databind","old_version":"2.21.5","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-databind"}],"path":null,"ecosystem":"maven"},"body":"Bumps the version-updates group with 6 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [io.netty:netty-bom](https://github.com/netty/netty) | `4.2.15.Final` | `4.2.17.Final` |\n| [io.qdrant:client](https://github.com/qdrant/java-client) | `1.18.3` | `1.19.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [io.grpc:grpc-protobuf](https://github.com/grpc/grpc-java) | `1.82.1` | `1.83.1` |\n| org.apache.spark:spark-sql_2.13 | `4.1.2` | `4.2.0` |\n| [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson-databind) | `2.21.5` | `2.22.2` |\n\n\nUpdates `io.netty:netty-bom` from 4.2.15.Final to 4.2.17.Final\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/netty/netty/releases\"\u003eio.netty:netty-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003enetty-4.2.17.Final\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAsciiString.cached(String) should sanitize the provided String (\u003ca href=\"https://redirect.github.com/netty/netty/issues/13749\"\u003e#13749\u003c/a\u003e) by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix deploy workflow by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17071\"\u003enetty/netty#17071\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AsciiString.cached(String) performance regression by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17074\"\u003enetty/netty#17074\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSslHandler: Fix possible buffer leak when an OOME is thrown during allocation by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17059\"\u003enetty/netty#17059\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid leak presence detector in leak profile by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17073\"\u003enetty/netty#17073\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd HttpContentCompressor constructor with ability to specify desired maxPipelineDepth by \u003ca href=\"https://github.com/reta\"\u003e\u003ccode\u003e@​reta\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17068\"\u003enetty/netty#17068\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: preserve readPending when rescheduling cancelled reads by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17087\"\u003enetty/netty#17087\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReject negative maxOrder in PooledByteBufAllocator by \u003ca href=\"https://github.com/coderbruis\"\u003e\u003ccode\u003e@​coderbruis\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17093\"\u003enetty/netty#17093\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AdaptiveByteBuf._setLongLE calling checked setLongLE by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17098\"\u003enetty/netty#17098\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSnappy: Guard decoder against invalid chunk lengths by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17099\"\u003enetty/netty#17099\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix OCSP Tests by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17114\"\u003enetty/netty#17114\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate to latest netty-tcnative release by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17056\"\u003enetty/netty#17056\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse safe decompressor in Lz4FrameDecoder by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17118\"\u003enetty/netty#17118\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eConfigure TestLens for the PR builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17129\"\u003enetty/netty#17129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: add SO_INQ support for Unix domain sockets by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17127\"\u003enetty/netty#17127\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(mqtt): drop UNSUBACK reason codes for MQTT 3.x encoding by \u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropagate the CI envionment variables through to the docker builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17138\"\u003enetty/netty#17138\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add decompressor API by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/16745\"\u003enetty/netty#16745\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix silent failures and optimize error short-circuit in multi-threaded tests by \u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Bzip2Decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17145\"\u003enetty/netty#17145\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix buddy cache evicting chunks with live buffers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17154\"\u003enetty/netty#17154\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Snappy frame decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17153\"\u003enetty/netty#17153\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add zlib decompressors by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17155\"\u003enetty/netty#17155\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Zstd decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17152\"\u003enetty/netty#17152\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add LZF decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17147\"\u003enetty/netty#17147\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add BrotliDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17146\"\u003enetty/netty#17146\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Lz4FrameDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17148\"\u003enetty/netty#17148\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpObjectEncoder\u003c/code\u003e / \u003ccode\u003eDefaultHttp2FrameWriter\u003c/code\u003e: fix buffer leak when a \u003ccode\u003eThrowable\u003c/code\u003e is thrown during header encoding by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17089\"\u003enetty/netty#17089\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix direct memory OOM on low-core containers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17166\"\u003enetty/netty#17166\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: Fix the recvmmsg emulation by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17187\"\u003enetty/netty#17187\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid classloader leak via GlobalEventExecutor terminationFuture failure by \u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBrotliEncoder: Prevent duplicate close scheduling by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17175\"\u003enetty/netty#17175\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix JdkZlibDecompressor losing the tail of highly compressible streams by \u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate compress-lzf to 1.2.1 by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17194\"\u003enetty/netty#17194\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDo not write WebSocket handshake response to the tail of the pipeline by \u003ca href=\"https://github.com/el-psy-kongroo-d\"\u003e\u003ccode\u003e@​el-psy-kongroo-d\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17192\"\u003enetty/netty#17192\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpServerCodec\u003c/code\u003e: do not consume the method queue for 1xx interim responses by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17182\"\u003enetty/netty#17182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWeakly reference engines from the OpenSSL engine map by \u003ca href=\"https://github.com/bryce-anderson\"\u003e\u003ccode\u003e@​bryce-anderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17199\"\u003enetty/netty#17199\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eOpenSSL: Allow to obtain used named group via OpenSslSession by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17058\"\u003enetty/netty#17058\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17052\"\u003enetty/netty#17052\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate surefire plugin to latest version by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17210\"\u003enetty/netty#17210\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMerge changes from forks by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17213\"\u003enetty/netty#17213\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/e0789d32c72f46fd2e7c99b6fdbbf7e2f4409e44\"\u003e\u003ccode\u003ee0789d3\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release netty-4.2.17.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/1b5abc6443b63726c72cdd285af2feb7ddbb8ff7\"\u003e\u003ccode\u003e1b5abc6\u003c/code\u003e\u003c/a\u003e Merge changes from forks (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17213\"\u003e#17213\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/36fbf5788c73e7040e6f18fed841a2cdfcae1452\"\u003e\u003ccode\u003e36fbf57\u003c/code\u003e\u003c/a\u003e Update surefire plugin to latest version (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17210\"\u003e#17210\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/a96226cb54e87e963e1e341cd7121f2217fc7c2e\"\u003e\u003ccode\u003ea96226c\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17052\"\u003e#17052\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/14a4e6ad865a187c3f1bf0da18d9146472e18192\"\u003e\u003ccode\u003e14a4e6a\u003c/code\u003e\u003c/a\u003e OpenSSL: Allow to obtain used named group via OpenSslSession (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17058\"\u003e#17058\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/26255b123f7c699cd88cbdb42f6ecc6ed5cb7843\"\u003e\u003ccode\u003e26255b1\u003c/code\u003e\u003c/a\u003e Weakly reference engines from the OpenSSL engine map (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17199\"\u003e#17199\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/ae414179e3a030e0747fb68648ff2433fa4539e1\"\u003e\u003ccode\u003eae41417\u003c/code\u003e\u003c/a\u003e \u003ccode\u003eHttpServerCodec\u003c/code\u003e: do not consume the method queue for 1xx interim responses ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/41f1db523d3657954e9ad12250004cbdfde2a97d\"\u003e\u003ccode\u003e41f1db5\u003c/code\u003e\u003c/a\u003e Do not write WebSocket handshake response to the tail of the pipeline (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17192\"\u003e#17192\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/035d76e3f43fa462e101c1e03b59a69984c5ebf3\"\u003e\u003ccode\u003e035d76e\u003c/code\u003e\u003c/a\u003e Update compress-lzf to 1.2.1 (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17194\"\u003e#17194\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/7681affcf120fca1de8554095216ddea20b408c5\"\u003e\u003ccode\u003e7681aff\u003c/code\u003e\u003c/a\u003e Fix JdkZlibDecompressor losing the tail of highly compressible streams (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17191\"\u003e#17191\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/netty/netty/compare/netty-4.2.15.Final...netty-4.2.17.Final\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.qdrant:client` from 1.18.3 to 1.19.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/qdrant/java-client/releases\"\u003eio.qdrant:client's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.19.0\u003c/h2\u003e\n\u003ch1\u003eUpdates\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003eSupport for Qdrant v1.19.x - \u003ca href=\"https://github.com/qdrant/qdrant/releases/tag/v1.19.0\"\u003ehttps://github.com/qdrant/qdrant/releases/tag/v1.19.0\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eCommits\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003echore(deps): bump the version-updates group with 2 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/134\"\u003eqdrant/java-client#134\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the version-updates group with 5 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/135\"\u003eqdrant/java-client#135\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the version-updates group with 6 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/137\"\u003eqdrant/java-client#137\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump actions/setup-java from 5.4.0 to 5.5.0 in the version-updates group by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/138\"\u003eqdrant/java-client#138\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the version-updates group with 5 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/139\"\u003eqdrant/java-client#139\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the version-updates group with 4 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/142\"\u003eqdrant/java-client#142\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump actions/setup-java from 5.5.0 to 5.6.0 in the version-updates group by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/140\"\u003eqdrant/java-client#140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump actions/checkout from 5.0.1 to 6.1.0 by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/141\"\u003eqdrant/java-client#141\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003echore(deps): bump the version-updates group with 6 updates by \u003ca href=\"https://github.com/dependabot\"\u003e\u003ccode\u003e@​dependabot\u003c/code\u003e\u003c/a\u003e[bot] in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/144\"\u003eqdrant/java-client#144\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e1.19.0 by \u003ca href=\"https://github.com/Anush008\"\u003e\u003ccode\u003e@​Anush008\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/qdrant/java-client/pull/143\"\u003eqdrant/java-client#143\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/qdrant/java-client/compare/v1.18.3...v1.19.0\"\u003ehttps://github.com/qdrant/java-client/compare/v1.18.3...v1.19.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/d30855a7232ecc03dd39a4f393590b15a533e778\"\u003e\u003ccode\u003ed30855a\u003c/code\u003e\u003c/a\u003e 1.19.0 (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/143\"\u003e#143\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/058c3e75244f6c707ba1148fda1415e0ec13bebe\"\u003e\u003ccode\u003e058c3e7\u003c/code\u003e\u003c/a\u003e chore(deps): bump the version-updates group with 6 updates (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/144\"\u003e#144\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/e50da949dcb421438c780dcba72d50358927d045\"\u003e\u003ccode\u003ee50da94\u003c/code\u003e\u003c/a\u003e chore(deps): bump actions/checkout from 5.0.1 to 6.1.0 (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/141\"\u003e#141\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/9ce0b0f9ea0832b39ae4a766e3831b8e7b33f8f6\"\u003e\u003ccode\u003e9ce0b0f\u003c/code\u003e\u003c/a\u003e chore(deps): bump actions/setup-java in the version-updates group (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/140\"\u003e#140\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/7dbe0291e82d72c2f0da84c8691f4f81880a6a1e\"\u003e\u003ccode\u003e7dbe029\u003c/code\u003e\u003c/a\u003e chore(deps): bump the version-updates group with 4 updates (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/142\"\u003e#142\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/fdbc3ce69ef91741ece6177ef09dc7965ab44651\"\u003e\u003ccode\u003efdbc3ce\u003c/code\u003e\u003c/a\u003e chore(deps): bump the version-updates group with 5 updates (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/139\"\u003e#139\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/c6abd557de7c2a13e4a0ba4ae7aafcb0682c7cb0\"\u003e\u003ccode\u003ec6abd55\u003c/code\u003e\u003c/a\u003e chore(deps): bump actions/setup-java in the version-updates group (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/138\"\u003e#138\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/b613a134d8e3f90ea05221674f1b52524ce091fd\"\u003e\u003ccode\u003eb613a13\u003c/code\u003e\u003c/a\u003e chore(deps): bump the version-updates group with 6 updates (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/137\"\u003e#137\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/806cfd44469e886534653c1287874035d4ee1bc8\"\u003e\u003ccode\u003e806cfd4\u003c/code\u003e\u003c/a\u003e chore(deps): bump the version-updates group with 5 updates (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/135\"\u003e#135\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qdrant/java-client/commit/64cf2c208638755fa6a7b7e6fa0905b96c0414f3\"\u003e\u003ccode\u003e64cf2c2\u003c/code\u003e\u003c/a\u003e chore(deps): bump the version-updates group with 2 updates (\u003ca href=\"https://redirect.github.com/qdrant/java-client/issues/134\"\u003e#134\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/qdrant/java-client/compare/v1.18.3...v1.19.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.grpc:grpc-protobuf` from 1.82.1 to 1.83.1\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/grpc/grpc-java/releases\"\u003eio.grpc:grpc-protobuf's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003ev1.83.1\u003c/h2\u003e\n\u003ch2\u003egRPC Java 1.83.1 Release Notes\u003c/h2\u003e\n\u003ch3\u003eImprovements\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003enetty: Fix client-initiated stream limit bypass in NettyServerHandler (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12942\"\u003e#12942\u003c/a\u003e). Enforces the limit proactively at startup without waiting for SETTINGS_ACK\u003c/li\u003e\n\u003cli\u003ecore: Coalesce Contiguous Small Buffers for ReadableBuffer (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12944\"\u003e#12944\u003c/a\u003e)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003ev1.83.0\u003c/h2\u003e\n\u003ch2\u003egRPC Java 1.83.0 Release Notes\u003c/h2\u003e\n\u003ch3\u003eAPI Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eapi: Turn on RFC 3986 parsing by default and update javadoc. (4456721328)\u003c/li\u003e\n\u003cli\u003eapi: Add Grpc.newChannelBuilder accepting NameResolverRegistry (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/11901\"\u003e#11901\u003c/a\u003e) (2b86f8f42f). This allows users to explicitly provide a NameResolverRegistry during channel creation rather than relying on the global registry, offering better isolation and control over name resolution per-channel.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eBehavior Changes\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eokhttp: enable TLS 1.3 for servers on Android (3018ce341c). v1.82.0 enabled TLS 1.3 for clients; this does the same for servers\u003c/li\u003e\n\u003cli\u003exds: enable orca to lrs propagation by default (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12836\"\u003e#12836\u003c/a\u003e) (1e85674a40) Enables xDS configuration to control which fields get propagated from ORCA backend metric reports to LRS load reports as per gRFC A85\u003c/li\u003e\n\u003cli\u003exds: Use leaf cluster name for  backend service label in metrics, instead of aggregate cluster name (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12882\"\u003e#12882\u003c/a\u003e) (c8079eed98). This only has an effect when using aggregate clusters\u003c/li\u003e\n\u003cli\u003exds: Hold parsed service config in CdsUpdate (3db3235ebd). Previously, modifications to LoadBalancerRegistry could cause failures in the LB tree\u003c/li\u003e\n\u003cli\u003exds: Revert \u0026quot;xds: reuse connections to the control plane across channels\u0026quot; added in 1.81.0 (d49c0b15d8). If using xds heavily with many targets, then MAX_CONCURRENT_STREAMS to the control plane could be exceeded. This then prevents loading resources for new targets, which causes those channels to hang on name resolution. RPCs would see the nondescript \u0026quot;DEADLINE_EXCEEDED: Deadline Context was exceeded after Xs\u0026quot; or \u0026quot;DEADLINE_EXCEEDED: Deadline CallOptions was exceeded after Xs\u0026quot;\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eImprovements\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eapi: Move attributes to the end of ResolvedAddresses.toString(), for better legibility (103bd4b852)\u003c/li\u003e\n\u003cli\u003ecore: normalize service config number values (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12826\"\u003e#12826\u003c/a\u003e) (663c505dbd) This updates default service config validation to accept numeric values represented as Number, not only Double. Common JSON parsers may deserialize integer-looking JSON values such as maxAttempts: 4 and backoffMultiplier: 2 as Integer, which previously caused defaultServiceConfig() to fail with IllegalArgumentException. The values are normalized to Double when copied into the validated service config, preserving the existing internal representation expected by the service config parsing code.\u003c/li\u003e\n\u003cli\u003ecore: DEADLINE_EXCEEDED before initial name resolution completes will now mention “name_resolver” in the error description (56d2b25eb5). Previously there was not a hint as to what gRPC was delayed on when the deadline was exceeded.\u003c/li\u003e\n\u003cli\u003enetty: Reduce TcpMetrics log from INFO to FINE (4ec83df1eb). This removes unnecessary log noise\u003c/li\u003e\n\u003cli\u003ecore: Enable child channel plugins (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12578\"\u003e#12578\u003c/a\u003e) (89aef90d52). This introduces the ChildChannelConfigurer API to allow intercepting and customizing the configuration (such as injecting interceptors or modifying credentials) of child channels created dynamically by load balancers.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eDependencies\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade to Netty 4.2.15 (66c6ab1da6). If you need Netty 4.1 support, please file an issue\u003c/li\u003e\n\u003cli\u003eUpgrade codegen plugin to C++ Protobuf 35.1 (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12876\"\u003e#12876\u003c/a\u003e) (c886f0a06b)\u003c/li\u003e\n\u003cli\u003eUpgrade various dependencies (064272c61d):\n\u003cul\u003e\n\u003cli\u003egson to 2.14.0\u003c/li\u003e\n\u003cli\u003eguava to 33.6.0\u003c/li\u003e\n\u003cli\u003ecel-java to 0.13.0\u003c/li\u003e\n\u003cli\u003eprotobuf-java to 3.25.9\u003c/li\u003e\n\u003cli\u003eerror-prone-annotations to 2.50.0\u003c/li\u003e\n\u003cli\u003eopentelemetry to 1.63.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eDocumentation\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003eDocument how to build with Bazel and introduce bazel support for building android and binder (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12811\"\u003e#12811\u003c/a\u003e) (f94574eff7)\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eThanks to\u003c/h3\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/8f621c03b776eed114c39969ce1bf347625d2e9d\"\u003e\u003ccode\u003e8f621c0\u003c/code\u003e\u003c/a\u003e Bump version to 1.83.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/2bafe5e8c7b40c1244656894d3ac0170ab792912\"\u003e\u003ccode\u003e2bafe5e\u003c/code\u003e\u003c/a\u003e Update README etc to reference 1.83.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/e1f2dbd873bf1dc5d26218276a40c055ab49c4f4\"\u003e\u003ccode\u003ee1f2dbd\u003c/code\u003e\u003c/a\u003e netty: Fix client-initiated stream limit bypass in NettyServerHandler (v1.83....\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/ee8232feb42e64bff79eb9be1ff107da7c10d9e7\"\u003e\u003ccode\u003eee8232f\u003c/code\u003e\u003c/a\u003e core: Coalesce Contiguous Small Buffers for ReadableBuffer (v1.83.x backport)...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/b4ca099f30d8c362fad54b63f34cab87c11530f2\"\u003e\u003ccode\u003eb4ca099\u003c/code\u003e\u003c/a\u003e Fix docker tagging failure in upload_artifacts by using stable tag name (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12922\"\u003e#12922\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/b4fb7f425fa5186da6512ed332005d38a391af15\"\u003e\u003ccode\u003eb4fb7f4\u003c/code\u003e\u003c/a\u003e build: Allow downloading pkgconfiglite with empty checksum\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/1fbfa8692d18c6d86184c19443ea05e22f28e092\"\u003e\u003ccode\u003e1fbfa86\u003c/code\u003e\u003c/a\u003e Bump version to 1.83.1-SNAPSHOT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/8ab6e0af58129d6fc397d0da3cbfae8fe5f21b17\"\u003e\u003ccode\u003e8ab6e0a\u003c/code\u003e\u003c/a\u003e Bump version to 1.83.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/33ad6a45369a4b4cbb60639cb112895e7f4e771f\"\u003e\u003ccode\u003e33ad6a4\u003c/code\u003e\u003c/a\u003e Update README etc to reference 1.83.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/grpc/grpc-java/commit/17d5bd6c675496f23c239497faf4beba7142ea7e\"\u003e\u003ccode\u003e17d5bd6\u003c/code\u003e\u003c/a\u003e Revert \u0026quot;enable child channel plugins (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12578\"\u003e#12578\u003c/a\u003e)\u0026quot; (v1.83.x backport) (\u003ca href=\"https://redirect.github.com/grpc/grpc-java/issues/12913\"\u003e#12913\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/grpc/grpc-java/compare/v1.82.1...v1.83.1\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.apache.spark:spark-sql_2.13` from 4.1.2 to 4.2.0\n\nUpdates `com.fasterxml.jackson.core:jackson-databind` from 2.21.5 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/25b2a221f9aa4107e455065a74635e209418cf55\"\u003e\u003ccode\u003e25b2a22\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bab1c1a702a941f8805ee6698e8fa4fdbfbec54a\"\u003e\u003ccode\u003ebab1c1a\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/bc03cf83d74cf0e5944dce33a63ee59ddc344b64\"\u003e\u003ccode\u003ebc03cf8\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/83379fb6409075336edf3d8d88744e95911a43f8\"\u003e\u003ccode\u003e83379fb\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/0d400c9dc586fdd460d0c6a40db21ebbe22106d8\"\u003e\u003ccode\u003e0d400c9\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/ce36a279f8b078bef2d9d44a1d01034c3634f91a\"\u003e\u003ccode\u003ece36a27\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7a209e1fa97033746db50fd7bcd1e3dbab077599\"\u003e\u003ccode\u003e7a209e1\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/a432707afe6b7569243d1c2d8052a1bf33d9279c\"\u003e\u003ccode\u003ea432707\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/176df1d48b256ced412c65293ad4e09393e24bd3\"\u003e\u003ccode\u003e176df1d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-databind-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-databind/commit/7785f5f9ed24127e004115472c47b26ea4cf2774\"\u003e\u003ccode\u003e7785f5f\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-databind/compare/jackson-databind-2.21.5...jackson-databind-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n","html_url":"https://github.com/qdrant/qdrant-spark/pull/87","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/qdrant%2Fqdrant-spark/issues/87","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/87/packages"}},{"old_version":"33.6.0-jre","new_version":"33.7.1-jre","update_type":"minor","path":"/jetty-ee8","pr_created_at":"2026-08-29T00:57:28.000Z","version_change":"33.6.0-jre → 33.7.1-jre","issue":{"uuid":"5283572808","node_id":"PR_kwDOTN-QB88AAAABBZ05TQ","number":24,"state":"open","title":"[12.1.x EE8] Bump the dev-dependencies group in /jetty-ee8 with 37 updates","user":"dependabot[bot]","labels":["dependencies","java"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":null,"state_reason":null,"created_at":"2026-08-29T00:57:28.000Z","updated_at":"2026-09-05T01:08:38.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"[12.1.x EE8] Bump","group_name":"dev-dependencies","update_count":37,"packages":[{"name":"org.ow2.asm:asm","old_version":"9.10","new_version":"9.10.1"},{"name":"org.ow2.asm:asm-commons","old_version":"9.10","new_version":"9.10.1"},{"name":"org.ow2.asm:asm-bom","old_version":"9.10","new_version":"9.10.1"},{"name":"org.codehaus.plexus:plexus-utils","old_version":"4.0.3","new_version":"4.1.0","repository_url":"https://github.com/codehaus-plexus/plexus-utils"},{"name":"org.codehaus.plexus:plexus-xml","old_version":"4.1.1","new_version":"4.2.0","repository_url":"https://github.com/codehaus-plexus/plexus-xml"},{"name":"com.fasterxml.jackson:jackson-bom","old_version":"2.21.3","new_version":"2.22.2","repository_url":"https://github.com/FasterXML/jackson-bom"},{"name":"io.netty:netty-bom","old_version":"4.2.13.Final","new_version":"4.2.17.Final","repository_url":"https://github.com/netty/netty"},{"name":"org.hibernate.search:hibernate-search-bom","old_version":"8.3.1.Final","new_version":"8.4.0.Final","repository_url":"https://github.com/hibernate/hibernate-search"},{"name":"org.junit:junit-bom","old_version":"6.0.3","new_version":"6.1.3","repository_url":"https://github.com/junit-team/junit-framework"},{"name":"ch.qos.logback:logback-core","old_version":"1.5.32","new_version":"1.6.3","repository_url":"https://github.com/qos-ch/logback"},{"name":"com.github.jnr:jffi","old_version":"1.3.15","new_version":"1.4.0","repository_url":"https://github.com/jnr/jffi"},{"name":"com.google.guava:guava","old_version":"33.6.0-jre","new_version":"33.7.1-jre","repository_url":"https://github.com/google/guava"},{"name":"commons-codec:commons-codec","old_version":"1.22.0","new_version":"1.22.1","repository_url":"https://github.com/apache/commons-codec"},{"name":"io.grpc:grpc-core","old_version":"1.81.0","new_version":"1.83.1","repository_url":"https://github.com/grpc/grpc-java"},{"name":"io.grpc:grpc-netty-shaded","old_version":"1.81.0","new_version":"1.83.1","repository_url":"https://github.com/grpc/grpc-java"},{"name":"io.smallrye.common:smallrye-common-annotation","old_version":"2.18.1","new_version":"2.20.0","repository_url":"https://github.com/smallrye/smallrye-common"},{"name":"io.smallrye.common:smallrye-common-cpu","old_version":"2.18.1","new_version":"2.20.0","repository_url":"https://github.com/smallrye/smallrye-common"},{"name":"net.java.dev.jna:jna","old_version":"5.18.1","new_version":"5.19.1","repository_url":"https://github.com/java-native-access/jna"},{"name":"net.java.dev.jna:jna-jpms","old_version":"5.18.1","new_version":"5.19.1","repository_url":"https://github.com/java-native-access/jna"},{"name":"org.apache.kerby:kerb-simplekdc","old_version":"2.1.1","new_version":"2.1.2"},{"name":"org.apache.logging.log4j:log4j-api","old_version":"2.26.0","new_version":"2.26.1"},{"name":"org.bouncycastle:bcpkix-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.bouncycastle:bcprov-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.bouncycastle:bctls-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.bouncycastle:bcutil-jdk18on","old_version":"1.84","new_version":"1.85","repository_url":"https://github.com/bcgit/bc-java"},{"name":"org.codehaus.plexus:plexus-classworlds","old_version":"2.11.0","new_version":"2.12.1","repository_url":"https://github.com/codehaus-plexus/plexus-classworlds"},{"name":"org.conscrypt:conscrypt-openjdk-uber","old_version":"2.5.2","new_version":"2.6.3","repository_url":"https://github.com/google/conscrypt"},{"name":"org.eclipse.jdt:ecj","old_version":"3.45.0","new_version":"3.46.0","repository_url":"https://github.com/eclipse-jdt/eclipse.jdt.core"},{"name":"org.hibernate.models:hibernate-models","old_version":"1.1.1","new_version":"1.3.0","repository_url":"https://github.com/hibernate/hibernate-models"},{"name":"org.mariadb.jdbc:mariadb-java-client","old_version":"3.5.8","new_version":"3.5.10","repository_url":"https://github.com/mariadb-corporation/mariadb-connector-j"},{"name":"org.mortbay.jetty.quiche:jetty-quiche-native","old_version":"0.29.2","new_version":"0.29.3","repository_url":"https://github.com/jetty-project/jetty-quiche-native"},{"name":"org.junit.platform:junit-platform-engine","old_version":"6.0.3","new_version":"6.1.3","repository_url":"https://github.com/junit-team/junit-framework"},{"name":"org.eclipse.jetty.toolchain:jetty-build-support","old_version":"1.5","new_version":"1.6"},{"name":"eu.maveniverse.maven.njord:extension3","old_version":"0.9.6","new_version":"0.9.10","repository_url":"https://github.com/maveniverse/njord"},{"name":"eu.maveniverse.maven.plugins:njord","old_version":"0.9.6","new_version":"0.9.10","repository_url":"https://github.com/maveniverse/njord"},{"name":"org.apache.maven.extensions:maven-build-cache-extension","old_version":"1.2.2","new_version":"1.3.0","repository_url":"https://github.com/apache/maven-build-cache-extension"},{"name":"org.cyclonedx:cyclonedx-maven-plugin","old_version":"2.9.1","new_version":"2.9.3","repository_url":"https://github.com/CycloneDX/cyclonedx-maven-plugin"}],"path":"/jetty-ee8","ecosystem":"maven"},"body":"Bumps the dev-dependencies group in /jetty-ee8 with 37 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| org.ow2.asm:asm | `9.10` | `9.10.1` |\n| org.ow2.asm:asm-commons | `9.10` | `9.10.1` |\n| org.ow2.asm:asm-bom | `9.10` | `9.10.1` |\n| [org.codehaus.plexus:plexus-utils](https://github.com/codehaus-plexus/plexus-utils) | `4.0.3` | `4.1.0` |\n| [org.codehaus.plexus:plexus-xml](https://github.com/codehaus-plexus/plexus-xml) | `4.1.1` | `4.2.0` |\n| [com.fasterxml.jackson:jackson-bom](https://github.com/FasterXML/jackson-bom) | `2.21.3` | `2.22.2` |\n| [io.netty:netty-bom](https://github.com/netty/netty) | `4.2.13.Final` | `4.2.17.Final` |\n| [org.hibernate.search:hibernate-search-bom](https://github.com/hibernate/hibernate-search) | `8.3.1.Final` | `8.4.0.Final` |\n| [org.junit:junit-bom](https://github.com/junit-team/junit-framework) | `6.0.3` | `6.1.3` |\n| [ch.qos.logback:logback-core](https://github.com/qos-ch/logback) | `1.5.32` | `1.6.3` |\n| [com.github.jnr:jffi](https://github.com/jnr/jffi) | `1.3.15` | `1.4.0` |\n| [com.google.guava:guava](https://github.com/google/guava) | `33.6.0-jre` | `33.7.1-jre` |\n| [commons-codec:commons-codec](https://github.com/apache/commons-codec) | `1.22.0` | `1.22.1` |\n| [io.grpc:grpc-core](https://github.com/grpc/grpc-java) | `1.81.0` | `1.83.1` |\n| [io.grpc:grpc-netty-shaded](https://github.com/grpc/grpc-java) | `1.81.0` | `1.83.1` |\n| [io.smallrye.common:smallrye-common-annotation](https://github.com/smallrye/smallrye-common) | `2.18.1` | `2.20.0` |\n| [io.smallrye.common:smallrye-common-cpu](https://github.com/smallrye/smallrye-common) | `2.18.1` | `2.20.0` |\n| [net.java.dev.jna:jna](https://github.com/java-native-access/jna) | `5.18.1` | `5.19.1` |\n| [net.java.dev.jna:jna-jpms](https://github.com/java-native-access/jna) | `5.18.1` | `5.19.1` |\n| org.apache.kerby:kerb-simplekdc | `2.1.1` | `2.1.2` |\n| org.apache.logging.log4j:log4j-api | `2.26.0` | `2.26.1` |\n| [org.bouncycastle:bcpkix-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.bouncycastle:bcprov-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.bouncycastle:bctls-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.bouncycastle:bcutil-jdk18on](https://github.com/bcgit/bc-java) | `1.84` | `1.85` |\n| [org.codehaus.plexus:plexus-classworlds](https://github.com/codehaus-plexus/plexus-classworlds) | `2.11.0` | `2.12.1` |\n| [org.conscrypt:conscrypt-openjdk-uber](https://github.com/google/conscrypt) | `2.5.2` | `2.6.3` |\n| [org.eclipse.jdt:ecj](https://github.com/eclipse-jdt/eclipse.jdt.core) | `3.45.0` | `3.46.0` |\n| [org.hibernate.models:hibernate-models](https://github.com/hibernate/hibernate-models) | `1.1.1` | `1.3.0` |\n| [org.mariadb.jdbc:mariadb-java-client](https://github.com/mariadb-corporation/mariadb-connector-j) | `3.5.8` | `3.5.10` |\n| [org.mortbay.jetty.quiche:jetty-quiche-native](https://github.com/jetty-project/jetty-quiche-native) | `0.29.2` | `0.29.3` |\n| [org.junit.platform:junit-platform-engine](https://github.com/junit-team/junit-framework) | `6.0.3` | `6.1.3` |\n| org.eclipse.jetty.toolchain:jetty-build-support | `1.5` | `1.6` |\n| [eu.maveniverse.maven.njord:extension3](https://github.com/maveniverse/njord) | `0.9.6` | `0.9.10` |\n| [eu.maveniverse.maven.plugins:njord](https://github.com/maveniverse/njord) | `0.9.6` | `0.9.10` |\n| [org.apache.maven.extensions:maven-build-cache-extension](https://github.com/apache/maven-build-cache-extension) | `1.2.2` | `1.3.0` |\n| [org.cyclonedx:cyclonedx-maven-plugin](https://github.com/CycloneDX/cyclonedx-maven-plugin) | `2.9.1` | `2.9.3` |\n\nUpdates `org.ow2.asm:asm` from 9.10 to 9.10.1\n\nUpdates `org.ow2.asm:asm-commons` from 9.10 to 9.10.1\n\nUpdates `org.ow2.asm:asm-bom` from 9.10 to 9.10.1\n\nUpdates `org.ow2.asm:asm-commons` from 9.10 to 9.10.1\n\nUpdates `org.codehaus.plexus:plexus-utils` from 4.0.3 to 4.1.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/releases\"\u003eorg.codehaus.plexus:plexus-utils's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.1.0\u003c/h2\u003e\n\u003cp\u003e\u003ccode\u003eDirectoryScanner\u003c/code\u003e no longer excludes \u003ccode\u003e.gitignore\u003c/code\u003e and \u003ccode\u003e.cvsignore\u003c/code\u003e by default. Code that relied on\nthe old defaults has to add the two patterns explicitly. That change is what makes this a minor\nrelease rather than 4.0.4.\u003c/p\u003e\n\u003ch2\u003e:boom: Breaking changes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDo not exclude \u0026quot;.gitignore\u0026quot; and \u0026quot;.cvsignore\u0026quot; by default (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/326\"\u003e#326\u003c/a\u003e) \u003ca href=\"https://github.com/kwin\"\u003e\u003ccode\u003e@​kwin\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRewrite README with usage, status and version guidance (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/332\"\u003e#332\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Build\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate parent to plexus 27 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/338\"\u003e#338\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDrop the Publish Site workflow (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/337\"\u003e#337\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd the Publish Site workflow (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/334\"\u003e#334\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse the shared release-drafter config instead of a local copy (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/333\"\u003e#333\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eBump the plexus dependencies released today (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/340\"\u003e#340\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus from 25 to 26 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/335\"\u003e#335\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7.6.0 to 7.7.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/331\"\u003e#331\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7 to 7.6.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-utils/pull/330\"\u003e#330\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/572ce90d98d71bfe29078b680fc14d3088f43a14\"\u003e\u003ccode\u003e572ce90\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release plexus-utils-4.1.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/077e8010c109576715077f4a70094623295d5ce9\"\u003e\u003ccode\u003e077e801\u003c/code\u003e\u003c/a\u003e Bump the plexus dependencies released today\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/840a1b49b3b7bdc3f883ef0c698566988c7e21ec\"\u003e\u003ccode\u003e840a1b4\u003c/code\u003e\u003c/a\u003e Update parent to plexus 27\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/9c560fa3ea573e48d7d528c86eca4690ff1a6bc0\"\u003e\u003ccode\u003e9c560fa\u003c/code\u003e\u003c/a\u003e Drop the Publish Site workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/5f96b03fefa9e3f9d7c47b88bebc400a44c88795\"\u003e\u003ccode\u003e5f96b03\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus from 25 to 26\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/4846c05a48b35bb12dc3fb5254b3b77b93784730\"\u003e\u003ccode\u003e4846c05\u003c/code\u003e\u003c/a\u003e Add the Publish Site workflow\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/4df3a8663601eaeb0fd5c71fd6bcc2b2ecc2234d\"\u003e\u003ccode\u003e4df3a86\u003c/code\u003e\u003c/a\u003e Use the shared release-drafter config instead of a local copy\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/9eb5fc61fe732c5e16737490f11b1898634252fe\"\u003e\u003ccode\u003e9eb5fc6\u003c/code\u003e\u003c/a\u003e Apply spotless formatting to README\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/f2856f90460216275047fa6c5b4c333726ee3f80\"\u003e\u003ccode\u003ef2856f9\u003c/code\u003e\u003c/a\u003e Rewrite README with usage, status and version guidance\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/commit/62fe2fa47a81245ca0588a110c35a918a8f4402e\"\u003e\u003ccode\u003e62fe2fa\u003c/code\u003e\u003c/a\u003e Bump release-drafter/release-drafter from 7.6.0 to 7.7.0\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/codehaus-plexus/plexus-utils/compare/plexus-utils-4.0.3...plexus-utils-4.1.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.codehaus.plexus:plexus-xml` from 4.1.1 to 4.2.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/releases\"\u003eorg.codehaus.plexus:plexus-xml's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.2.0\u003c/h2\u003e\n\u003cp\u003eThe 4.x line no longer builds its DOM through Maven's deprecated \u003ccode\u003eXmlNodeBuilder\u003c/code\u003e: \u003ccode\u003eXpp3DomBuilder\u003c/code\u003e uses a pull builder of its own, so a future Maven can delete that class without breaking this one. The artifact also carries \u003ccode\u003eAutomatic-Module-Name: org.codehaus.plexus.util.xml\u003c/code\u003e, which anyone on the module path sees.\u003c/p\u003e\n\u003cp\u003eThe Maven dependency is split: \u003ccode\u003emaven-api-xml\u003c/code\u003e at compile, \u003ccode\u003emaven-xml\u003c/code\u003e at runtime, since \u003ccode\u003eXmlService\u003c/code\u003e resolves its implementation through \u003ccode\u003eServiceLoader\u003c/code\u003e. Consumers keep the API transitively and lose \u003ccode\u003eorg.apache.maven.internal.*\u003c/code\u003e along with woodstox-core and stax2-api.\u003c/p\u003e\n\u003cp\u003eRequires Java 17 and Maven 4. On Maven 3, use the 3.x line.\u003c/p\u003e\n\u003ch2\u003e🚀 New features and improvements\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eEstablish an automatic module name (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/92\"\u003e#92\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBuild the DOM with a local pull builder instead of Maven's deprecated XmlNodeBuilder (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/94\"\u003e#94\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📝 Documentation updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eRewrite README with usage, status and version guidance (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/88\"\u003e#88\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e👻 Maintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSet the next development version to 4.2.0-SNAPSHOT (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/97\"\u003e#97\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBuild against maven-xml 4.0.0-rc-6 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/87\"\u003e#87\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eRemove deprecated XmlNode references (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/81\"\u003e#81\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e🔧 Build\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate parent to plexus 27 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/99\"\u003e#99\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e📦 Dependency updates\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eDepend on maven-api-xml at compile and maven-xml at runtime (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/96\"\u003e#96\u003c/a\u003e) \u003ca href=\"https://github.com/slachiewicz\"\u003e\u003ccode\u003e@​slachiewicz\u003c/code\u003e\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump org.codehaus.plexus:plexus from 25 to 26 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/90\"\u003e#90\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7.6.0 to 7.7.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/86\"\u003e#86\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 7 to 7.6.0 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/84\"\u003e#84\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBump release-drafter/release-drafter from 6 to 7 (\u003ca href=\"https://redirect.github.com/codehaus-plexus/plexus-xml/pull/79\"\u003e#79\u003c/a\u003e) @\u003ca href=\"https://github.com/apps/dependabot\"\u003edependabot[bot]\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/215f435589f545e3c6bb840513f45a952709fb5a\"\u003e\u003ccode\u003e215f435\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release plexus-xml-4.2.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/ce5d0624363998ebfc398f55672921552d7578ae\"\u003e\u003ccode\u003ece5d062\u003c/code\u003e\u003c/a\u003e Update parent to plexus 27\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/38c200b943a3109066ea3a18001ab8f1e11d4ee3\"\u003e\u003ccode\u003e38c200b\u003c/code\u003e\u003c/a\u003e Depend on maven-api-xml at compile and maven-xml at runtime\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/ae27358905fc4eb0fb28a6b10ea2a0cbb566c966\"\u003e\u003ccode\u003eae27358\u003c/code\u003e\u003c/a\u003e Set the next development version to 4.2.0-SNAPSHOT\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/d1c51ce927244d359ed7aeb86ef809c0e77205cb\"\u003e\u003ccode\u003ed1c51ce\u003c/code\u003e\u003c/a\u003e Establish an automatic module name\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/d0f198be29880b2124560a72f4a7684ceb5d24f8\"\u003e\u003ccode\u003ed0f198b\u003c/code\u003e\u003c/a\u003e Build the DOM with a local pull builder, not Maven's XmlNodeBuilder\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/470396adc7ca98a41b00b45ea908d6941ebe6ae3\"\u003e\u003ccode\u003e470396a\u003c/code\u003e\u003c/a\u003e Bump org.codehaus.plexus:plexus from 25 to 26\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/51d60d59faff0fde7d6fe75986909819fb45f0e3\"\u003e\u003ccode\u003e51d60d5\u003c/code\u003e\u003c/a\u003e Rewrite README with usage, status and version guidance\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/e91d180a097e8777450d6cfba5cc0c4c3fd3226c\"\u003e\u003ccode\u003ee91d180\u003c/code\u003e\u003c/a\u003e Bump release-drafter/release-drafter from 7.6.0 to 7.7.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/commit/b628bf3a4e89d939808f90eb1fd431f039ef5d18\"\u003e\u003ccode\u003eb628bf3\u003c/code\u003e\u003c/a\u003e Build against maven-xml 4.0.0-rc-6\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/codehaus-plexus/plexus-xml/compare/plexus-xml-4.1.1...plexus-xml-4.2.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.fasterxml.jackson:jackson-bom` from 2.21.3 to 2.22.2\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/062d76d67a3619238e00d4d62f9bdb51cfe6cd52\"\u003e\u003ccode\u003e062d76d\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-bom-2.22.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/dcf18f79fa8a9b935d880b3906291d8ed8cb1d0d\"\u003e\u003ccode\u003edcf18f7\u003c/code\u003e\u003c/a\u003e Prep for 2.22.2 release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/9688c7b1dfc9072fdec7c9770653072d0a728fd1\"\u003e\u003ccode\u003e9688c7b\u003c/code\u003e\u003c/a\u003e Merge branch '2.21' into 2.22\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/7796a7ddb240ce41c1b6c6a3a435b29948a6a727\"\u003e\u003ccode\u003e7796a7d\u003c/code\u003e\u003c/a\u003e Merge branch '2.20' into 2.21\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/d3cd7fc1794f6d1a9f0a4dee41d8d46a310741d7\"\u003e\u003ccode\u003ed3cd7fc\u003c/code\u003e\u003c/a\u003e Merge branch '2.19' into 2.20\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/7a28068902087b3c407d2dcabd875d7593127d97\"\u003e\u003ccode\u003e7a28068\u003c/code\u003e\u003c/a\u003e Merge branch '2.18' into 2.19\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/51eb4657b141f598bb285763ac42492bd23a1da3\"\u003e\u003ccode\u003e51eb465\u003c/code\u003e\u003c/a\u003e Post-release dep version bump\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/34ff5e8c68b0712086794b8287d0ad643a0a1993\"\u003e\u003ccode\u003e34ff5e8\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare for next development iteration\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/0b44a458b999c5ac5568e2a4b1190a7d1080038e\"\u003e\u003ccode\u003e0b44a45\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release jackson-bom-2.18.10\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/FasterXML/jackson-bom/commit/691ec93ce7c1fcc582a2a44348e82e91ca424098\"\u003e\u003ccode\u003e691ec93\u003c/code\u003e\u003c/a\u003e Prep for 2.18.10 release\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/FasterXML/jackson-bom/compare/jackson-bom-2.21.3...jackson-bom-2.22.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `io.netty:netty-bom` from 4.2.13.Final to 4.2.17.Final\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/netty/netty/releases\"\u003eio.netty:netty-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003enetty-4.2.17.Final\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAsciiString.cached(String) should sanitize the provided String (\u003ca href=\"https://redirect.github.com/netty/netty/issues/13749\"\u003e#13749\u003c/a\u003e) by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix deploy workflow by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17071\"\u003enetty/netty#17071\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AsciiString.cached(String) performance regression by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17074\"\u003enetty/netty#17074\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSslHandler: Fix possible buffer leak when an OOME is thrown during allocation by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17059\"\u003enetty/netty#17059\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid leak presence detector in leak profile by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17073\"\u003enetty/netty#17073\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd HttpContentCompressor constructor with ability to specify desired maxPipelineDepth by \u003ca href=\"https://github.com/reta\"\u003e\u003ccode\u003e@​reta\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17068\"\u003enetty/netty#17068\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: preserve readPending when rescheduling cancelled reads by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17087\"\u003enetty/netty#17087\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eReject negative maxOrder in PooledByteBufAllocator by \u003ca href=\"https://github.com/coderbruis\"\u003e\u003ccode\u003e@​coderbruis\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17093\"\u003enetty/netty#17093\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix AdaptiveByteBuf._setLongLE calling checked setLongLE by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17098\"\u003enetty/netty#17098\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eSnappy: Guard decoder against invalid chunk lengths by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17099\"\u003enetty/netty#17099\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix OCSP Tests by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17114\"\u003enetty/netty#17114\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate to latest netty-tcnative release by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17056\"\u003enetty/netty#17056\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUse safe decompressor in Lz4FrameDecoder by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17118\"\u003enetty/netty#17118\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eConfigure TestLens for the PR builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17129\"\u003enetty/netty#17129\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: add SO_INQ support for Unix domain sockets by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17127\"\u003enetty/netty#17127\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003efix(mqtt): drop UNSUBACK reason codes for MQTT 3.x encoding by \u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ePropagate the CI envionment variables through to the docker builds by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17138\"\u003enetty/netty#17138\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add decompressor API by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/16745\"\u003enetty/netty#16745\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix silent failures and optimize error short-circuit in multi-threaded tests by \u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Bzip2Decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17145\"\u003enetty/netty#17145\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix buddy cache evicting chunks with live buffers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17154\"\u003enetty/netty#17154\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Snappy frame decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17153\"\u003enetty/netty#17153\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add zlib decompressors by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17155\"\u003enetty/netty#17155\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Zstd decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17152\"\u003enetty/netty#17152\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add LZF decompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17147\"\u003enetty/netty#17147\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add BrotliDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17146\"\u003enetty/netty#17146\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eCodec-compression: Add Lz4FrameDecompressor by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17148\"\u003enetty/netty#17148\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpObjectEncoder\u003c/code\u003e / \u003ccode\u003eDefaultHttp2FrameWriter\u003c/code\u003e: fix buffer leak when a \u003ccode\u003eThrowable\u003c/code\u003e is thrown during header encoding by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17089\"\u003enetty/netty#17089\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix direct memory OOM on low-core containers by \u003ca href=\"https://github.com/franz1981\"\u003e\u003ccode\u003e@​franz1981\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17166\"\u003enetty/netty#17166\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eIoUring: Fix the recvmmsg emulation by \u003ca href=\"https://github.com/dreamlike-ocean\"\u003e\u003ccode\u003e@​dreamlike-ocean\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17187\"\u003enetty/netty#17187\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAvoid classloader leak via GlobalEventExecutor terminationFuture failure by \u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eBrotliEncoder: Prevent duplicate close scheduling by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17175\"\u003enetty/netty#17175\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eFix JdkZlibDecompressor losing the tail of highly compressible streams by \u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate compress-lzf to 1.2.1 by \u003ca href=\"https://github.com/yawkat\"\u003e\u003ccode\u003e@​yawkat\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17194\"\u003enetty/netty#17194\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eDo not write WebSocket handshake response to the tail of the pipeline by \u003ca href=\"https://github.com/el-psy-kongroo-d\"\u003e\u003ccode\u003e@​el-psy-kongroo-d\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17192\"\u003enetty/netty#17192\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ccode\u003eHttpServerCodec\u003c/code\u003e: do not consume the method queue for 1xx interim responses by \u003ca href=\"https://github.com/HwangRock\"\u003e\u003ccode\u003e@​HwangRock\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17182\"\u003enetty/netty#17182\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eWeakly reference engines from the OpenSSL engine map by \u003ca href=\"https://github.com/bryce-anderson\"\u003e\u003ccode\u003e@​bryce-anderson\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17199\"\u003enetty/netty#17199\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eOpenSSL: Allow to obtain used named group via OpenSslSession by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17058\"\u003enetty/netty#17058\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eAdd \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style by \u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17052\"\u003enetty/netty#17052\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eUpdate surefire plugin to latest version by \u003ca href=\"https://github.com/normanmaurer\"\u003e\u003ccode\u003e@​normanmaurer\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17210\"\u003enetty/netty#17210\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003eMerge changes from forks by \u003ca href=\"https://github.com/chrisvest\"\u003e\u003ccode\u003e@​chrisvest\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17213\"\u003enetty/netty#17213\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vpelikh\"\u003e\u003ccode\u003e@​vpelikh\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17007\"\u003enetty/netty#17007\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/ChunMengLu\"\u003e\u003ccode\u003e@​ChunMengLu\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17117\"\u003enetty/netty#17117\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/rajan-github\"\u003e\u003ccode\u003e@​rajan-github\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17106\"\u003enetty/netty#17106\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/seonwooj0810\"\u003e\u003ccode\u003e@​seonwooj0810\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17140\"\u003enetty/netty#17140\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/renechoi\"\u003e\u003ccode\u003e@​renechoi\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/netty/netty/pull/17191\"\u003enetty/netty#17191\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/e0789d32c72f46fd2e7c99b6fdbbf7e2f4409e44\"\u003e\u003ccode\u003ee0789d3\u003c/code\u003e\u003c/a\u003e [maven-release-plugin] prepare release netty-4.2.17.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/1b5abc6443b63726c72cdd285af2feb7ddbb8ff7\"\u003e\u003ccode\u003e1b5abc6\u003c/code\u003e\u003c/a\u003e Merge changes from forks (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17213\"\u003e#17213\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/36fbf5788c73e7040e6f18fed841a2cdfcae1452\"\u003e\u003ccode\u003e36fbf57\u003c/code\u003e\u003c/a\u003e Update surefire plugin to latest version (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17210\"\u003e#17210\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/a96226cb54e87e963e1e341cd7121f2217fc7c2e\"\u003e\u003ccode\u003ea96226c\u003c/code\u003e\u003c/a\u003e Add \u003ccode\u003e.editorconfig\u003c/code\u003e to enforce consistent coding style (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17052\"\u003e#17052\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/14a4e6ad865a187c3f1bf0da18d9146472e18192\"\u003e\u003ccode\u003e14a4e6a\u003c/code\u003e\u003c/a\u003e OpenSSL: Allow to obtain used named group via OpenSslSession (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17058\"\u003e#17058\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/26255b123f7c699cd88cbdb42f6ecc6ed5cb7843\"\u003e\u003ccode\u003e26255b1\u003c/code\u003e\u003c/a\u003e Weakly reference engines from the OpenSSL engine map (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17199\"\u003e#17199\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/ae414179e3a030e0747fb68648ff2433fa4539e1\"\u003e\u003ccode\u003eae41417\u003c/code\u003e\u003c/a\u003e \u003ccode\u003eHttpServerCodec\u003c/code\u003e: do not consume the method queue for 1xx interim responses ...\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/41f1db523d3657954e9ad12250004cbdfde2a97d\"\u003e\u003ccode\u003e41f1db5\u003c/code\u003e\u003c/a\u003e Do not write WebSocket handshake response to the tail of the pipeline (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17192\"\u003e#17192\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/035d76e3f43fa462e101c1e03b59a69984c5ebf3\"\u003e\u003ccode\u003e035d76e\u003c/code\u003e\u003c/a\u003e Update compress-lzf to 1.2.1 (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17194\"\u003e#17194\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/netty/netty/commit/7681affcf120fca1de8554095216ddea20b408c5\"\u003e\u003ccode\u003e7681aff\u003c/code\u003e\u003c/a\u003e Fix JdkZlibDecompressor losing the tail of highly compressible streams (\u003ca href=\"https://redirect.github.com/netty/netty/issues/17191\"\u003e#17191\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/netty/netty/compare/netty-4.2.13.Final...netty-4.2.17.Final\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.hibernate.search:hibernate-search-bom` from 8.3.1.Final to 8.4.0.Final\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/hibernate/hibernate-search/releases\"\u003eorg.hibernate.search:hibernate-search-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eRelease 8.4.0.Final\u003c/h2\u003e\n\u003ch1\u003eHibernate Search 8.4.0.Final released\u003c/h1\u003e\n\u003cp\u003eWe are pleased to announce the release of Hibernate Search 8.4: 8.4.0.Final.\u003c/p\u003e\n\u003cp\u003eYou can find the full list of 8.4.0.Final changes \u003ca href=\"https://hibernate.atlassian.net/issues/?jql=project%20%3D%20HSEARCH%20AND%20fixVersion%20%3D%208.4.0.Final\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eWhat's new\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSee the \u003ca href=\"https://hibernate.org/search/releases/8.4\"\u003ewebsite\u003c/a\u003e for requirements and compatibilities.\u003c/li\u003e\n\u003cli\u003eSee the \u003ca href=\"https://docs.hibernate.org/search/8.4/whats-new/en-US/html_single/\"\u003eWhat's New\u003c/a\u003e guide for details about new features and capabilities.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eConclusion\u003c/h2\u003e\n\u003cp\u003eFor additional details, see:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003ethe \u003ca href=\"https://hibernate.org/search/releases/8.4/\"\u003erelease page\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/migration/html_single/\"\u003eMigration Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/getting-started/orm/en-US/html_single/\"\u003eORM Getting Started Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/getting-started/standalone/en-US/html_single/\"\u003eStandalone Getting Started Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/reference/en-US/html_single/\"\u003eReference Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/api\"\u003eAPI docs\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eVisit the \u003ca href=\"https://hibernate.org/community/\"\u003ewebsite\u003c/a\u003e for details on getting in touch with us.\u003c/p\u003e\n\u003ch2\u003eRelease 8.4.0.CR1\u003c/h2\u003e\n\u003ch1\u003eHibernate Search 8.4.0.CR1 released\u003c/h1\u003e\n\u003cp\u003eWe are pleased to announce the release of Hibernate Search 8.4: 8.4.0.CR1.\u003c/p\u003e\n\u003cp\u003eYou can find the full list of 8.4.0.CR1 changes \u003ca href=\"https://hibernate.atlassian.net/issues/?jql=project%20%3D%20HSEARCH%20AND%20fixVersion%20%3D%208.4.0.CR1\"\u003ehere\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eWhat's new\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eSee the \u003ca href=\"https://hibernate.org/search/releases/8.4\"\u003ewebsite\u003c/a\u003e for requirements and compatibilities.\u003c/li\u003e\n\u003cli\u003eSee the \u003ca href=\"https://docs.hibernate.org/search/8.4/whats-new/en-US/html_single/\"\u003eWhat's New\u003c/a\u003e guide for details about new features and capabilities.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eConclusion\u003c/h2\u003e\n\u003cp\u003eFor additional details, see:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003ethe \u003ca href=\"https://hibernate.org/search/releases/8.4/\"\u003erelease page\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/migration/html_single/\"\u003eMigration Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/getting-started/orm/en-US/html_single/\"\u003eORM Getting Started Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/getting-started/standalone/en-US/html_single/\"\u003eStandalone Getting Started Guide\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003ethe \u003ca href=\"https://docs.hibernate.org/search/8.4/reference/en-US/html_single/\"\u003eReference Guide\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/hibernate/hibernate-search/blob/main/changelog.md\"\u003eorg.hibernate.search:hibernate-search-bom's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e8.4.0.Final (2026-05-27)\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://hibernate.atlassian.net/projects/HSEARCH/versions/39072\"\u003eFull changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eImprovement\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5630\"\u003eHSEARCH-5630\u003c/a\u003e - Update to Hibernate ORM 7.4.0.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5629\"\u003eHSEARCH-5629\u003c/a\u003e - Use Maven 3.9.16 as a required minimum version for the build\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5627\"\u003eHSEARCH-5627\u003c/a\u003e - Switch from the Search session holder to a Hibernate ORM session extension\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5626\"\u003eHSEARCH-5626\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest-client) to 9.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5625\"\u003eHSEARCH-5625\u003c/a\u003e - Test against latest Elasticsearch 9.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5624\"\u003eHSEARCH-5624\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest5-client) to 9.4.1\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.4.0.CR1 (2026-05-11)\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://hibernate.atlassian.net/projects/HSEARCH/versions/37437\"\u003eFull changelog\u003c/a\u003e\u003c/p\u003e\n\u003ch3\u003eBug\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5595\"\u003eHSEARCH-5595\u003c/a\u003e - \u003ccode\u003echeckstyle:check\u003c/code\u003e is not build cache relocatable due to project resources including the workspace root\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eImprovement\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5623\"\u003eHSEARCH-5623\u003c/a\u003e - Update to Hibernate ORM 7.4.0.CR1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5622\"\u003eHSEARCH-5622\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest5-client) to 9.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5621\"\u003eHSEARCH-5621\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest-client) to 9.4.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5620\"\u003eHSEARCH-5620\u003c/a\u003e - Add compatibility with Elasticsearch 9.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5619\"\u003eHSEARCH-5619\u003c/a\u003e - Upgrade to GSON 2.14.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5618\"\u003eHSEARCH-5618\u003c/a\u003e - Update Jackson to 2.21.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5617\"\u003eHSEARCH-5617\u003c/a\u003e - Update to AWS SDK 2.44.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5616\"\u003eHSEARCH-5616\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest-client) to 9.3.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5613\"\u003eHSEARCH-5613\u003c/a\u003e - Use Maven 3.9.15 as a required minimum version for the build\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5612\"\u003eHSEARCH-5612\u003c/a\u003e - Upgrade to commons-codec 1.22.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5611\"\u003eHSEARCH-5611\u003c/a\u003e - Update Apache HTTP Client components to 5.6.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5609\"\u003eHSEARCH-5609\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest-client) to 9.3.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5608\"\u003eHSEARCH-5608\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest5-client) to 9.3.4\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5607\"\u003eHSEARCH-5607\u003c/a\u003e - Update Elasticsearch rest client (opensearch-rest-client) to 3.6.0\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5606\"\u003eHSEARCH-5606\u003c/a\u003e - Add compatibility with OpenSearch 3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5601\"\u003eHSEARCH-5601\u003c/a\u003e - Update to commons-logging to 1.3.6\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5600\"\u003eHSEARCH-5600\u003c/a\u003e - Update Jackson to 2.21.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5599\"\u003eHSEARCH-5599\u003c/a\u003e - Update Apache HTTP Core client components to 5.4.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5598\"\u003eHSEARCH-5598\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest-client) to 9.3.2\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5597\"\u003eHSEARCH-5597\u003c/a\u003e - Update Elasticsearch client (elasticsearch-rest5-client) to 9.3.3\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eTask\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5596\"\u003eHSEARCH-5596\u003c/a\u003e - Use changeDetection config option instead of the deprecated overwrite in maven-resources-plugin\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5280\"\u003eHSEARCH-5280\u003c/a\u003e - Look into \u003ccode\u003eOutboxPollingAutomaticIndexingDynamicShardingRebalancingIT#agentJoined\u003c/code\u003e test\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://hibernate.atlassian.net/browse/HSEARCH-5242\"\u003eHSEARCH-5242\u003c/a\u003e - Investigate why building hibernate-search-integrationtest-performance-backend-lucene fails on some envs\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e8.3.0.Final (2026-03-20)\u003c/h2\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/7369a18fc526aaffba13336fdcdc95a333702b19\"\u003e\u003ccode\u003e7369a18\u003c/code\u003e\u003c/a\u003e [Jenkins release job] Preparing release 8.4.0.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/4e26c085ba83c21cde89022a2f10864b08711e25\"\u003e\u003ccode\u003e4e26c08\u003c/code\u003e\u003c/a\u003e [Jenkins release job] changelog.txt updated by release build 8.4.0.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/fe410d2d5c25d9e05648f67c027441564a32be03\"\u003e\u003ccode\u003efe410d2\u003c/code\u003e\u003c/a\u003e HSEARCH-5630 Add a few migration notes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/87335b65fd124493bf91ad83de78f64eafc1155c\"\u003e\u003ccode\u003e87335b6\u003c/code\u003e\u003c/a\u003e HSEARCH-5630 Update to Hibernate ORM 7.4.0.Final\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/58d6af143d22c9ce55872c9f13c51c8dd8e03d32\"\u003e\u003ccode\u003e58d6af1\u003c/code\u003e\u003c/a\u003e HSEARCH-5624 Update Elasticsearch client (elasticsearch-rest5-client) to 9.4.1\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/9efe369fcb419ded47b3e77a02b3d84451e64853\"\u003e\u003ccode\u003e9efe369\u003c/code\u003e\u003c/a\u003e Bump the build-dependencies group with 4 updates\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/bc1c18509b22d2b1fa9e41149fbe5cf166d7f663\"\u003e\u003ccode\u003ebc1c185\u003c/code\u003e\u003c/a\u003e Use the ssh URL for updating the website during the release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/311adb00224ab04fc2c397da94cf41a373338801\"\u003e\u003ccode\u003e311adb0\u003c/code\u003e\u003c/a\u003e HSEARCH-5627 Mention limitations of a StatelessSession\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/d429b05110cf6015d70faa6278176c6b3e7defa0\"\u003e\u003ccode\u003ed429b05\u003c/code\u003e\u003c/a\u003e HSEARCH-5627 Better error message for \u0026quot;incompatible\u0026quot; session types\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/hibernate/hibernate-search/commit/2eaeb282d9d9bc136bc32f93ca12634374e249d4\"\u003e\u003ccode\u003e2eaeb28\u003c/code\u003e\u003c/a\u003e HSEARCH-5627 Add a simple StatelessSession test\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/hibernate/hibernate-search/compare/8.3.1.Final...8.4.0.Final\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.junit:junit-bom` from 6.0.3 to 6.1.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/junit-team/junit-framework/releases\"\u003eorg.junit:junit-bom's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003cp\u003eJUnit 6.1.3 = Platform 6.1.3 + Jupiter 6.1.3 + Vintage 6.1.3\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.3/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.2...r6.1.3\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.2...r6.1.3\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.2 = Platform 6.1.2 + Jupiter 6.1.2 + Vintage 6.1.2\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.2/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.2\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.2\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.1 = Platform 6.1.1 + Jupiter 6.1.1 + Vintage 6.1.1\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.1/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.0...r6.1.1\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.0...r6.1.1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.0 = Platform 6.1.0 + Jupiter 6.1.0 + Vintage 6.1.0\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.0/release-notes.html\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/JarvisCraft\"\u003e\u003ccode\u003e@​JarvisCraft\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5633\"\u003ejunit-team/junit-framework#5633\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Maran23\"\u003e\u003ccode\u003e@​Maran23\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5644\"\u003ejunit-team/junit-framework#5644\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.0.3...r6.1.0\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.0.3...r6.1.0\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.0-RC1 = Platform 6.1.0-RC1 + Jupiter 6.1.0-RC1 + Vintage 6.1.0-RC1\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.0-RC1/release-notes/\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/mariokhoury4\"\u003e\u003ccode\u003e@​mariokhoury4\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/4574\"\u003ejunit-team/junit-framework#4574\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/Ogu1208\"\u003e\u003ccode\u003e@​Ogu1208\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5145\"\u003ejunit-team/junit-framework#5145\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/HyungGeun94\"\u003e\u003ccode\u003e@​HyungGeun94\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5271\"\u003ejunit-team/junit-framework#5271\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/yalishevant\"\u003e\u003ccode\u003e@​yalishevant\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5316\"\u003ejunit-team/junit-framework#5316\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/JINU-CHANG\"\u003e\u003ccode\u003e@​JINU-CHANG\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5290\"\u003ejunit-team/junit-framework#5290\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jaschdoc\"\u003e\u003ccode\u003e@​jaschdoc\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5427\"\u003ejunit-team/junit-framework#5427\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/kawshikbuet17\"\u003e\u003ccode\u003e@​kawshikbuet17\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5561\"\u003ejunit-team/junit-framework#5561\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/msridhar\"\u003e\u003ccode\u003e@​msridhar\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5602\"\u003ejunit-team/junit-framework#5602\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.1.0-M1...r6.1.0-RC1\"\u003ehttps://github.com/junit-team/junit-framework/compare/r6.1.0-M1...r6.1.0-RC1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eJUnit 6.1.0-M1 = Platform 6.1.0-M1 + Jupiter 6.1.0-M1 + Vintage 6.1.0-M1\u003c/p\u003e\n\u003cp\u003eSee \u003ca href=\"https://docs.junit.org/6.1.0-M1/release-notes/\"\u003eRelease Notes\u003c/a\u003e.\u003c/p\u003e\n\u003ch2\u003eNew Contributors\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/vy\"\u003e\u003ccode\u003e@​vy\u003c/code\u003e\u003c/a\u003e made their first contribution in \u003ca href=\"https://redirect.github.com/junit-team/junit-framework/pull/5041\"\u003ejunit-team/junit-framework#5041\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/f59f60d2cebdf2224235d81f781b1f310cbc8138\"\u003e\u003ccode\u003ef59f60d\u003c/code\u003e\u003c/a\u003e Release 6.1.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/cd8ec9202ce8260a434edb38a8565e36f620e8d6\"\u003e\u003ccode\u003ecd8ec92\u003c/code\u003e\u003c/a\u003e Finalize 6.1.3 release notes\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/c8729f26aacd8e2dd6fa564b929fe047faaa7dc9\"\u003e\u003ccode\u003ec8729f2\u003c/code\u003e\u003c/a\u003e Restore compatibility with GraalVM 25 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5901\"\u003e#5901\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/ddc9e74e5d21c2dd18bc0cfe4681d5ff50ac379c\"\u003e\u003ccode\u003eddc9e74\u003c/code\u003e\u003c/a\u003e Update graalvm/setup-graalvm action to v1.6.4 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5959\"\u003e#5959\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/fe2c52a780fcbda6c7ccf5d6576beb7ad2d80bf8\"\u003e\u003ccode\u003efe2c52a\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.7 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5923\"\u003e#5923\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/62afc02b541ee9dfa16b121705f79b7d44f4dae0\"\u003e\u003ccode\u003e62afc02\u003c/code\u003e\u003c/a\u003e Delay GraalVM plugin updates for 3 days\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/0cc29022801365a409c1213a811a8877cb88cce3\"\u003e\u003ccode\u003e0cc2902\u003c/code\u003e\u003c/a\u003e Skip \u003ccode\u003egraalVmTest\u003c/code\u003e task if GraalVM env vars are not set\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/f6bbfc53e7e00b1b25e7d3b0bc09eef05cc4b721\"\u003e\u003ccode\u003ef6bbfc5\u003c/code\u003e\u003c/a\u003e Move GraalVM tests to separate test task (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5903\"\u003e#5903\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/e87e0521d4fbd75116a5fda42566fcb7a56eb340\"\u003e\u003ccode\u003ee87e052\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.6 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5899\"\u003e#5899\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/junit-team/junit-framework/commit/1cd56df89754fb8523ac9fbbf888e9a552e33ee8\"\u003e\u003ccode\u003e1cd56df\u003c/code\u003e\u003c/a\u003e Update plugin org.graalvm.buildtools.native to v1.1.5 (\u003ca href=\"https://redirect.github.com/junit-team/junit-framework/issues/5880\"\u003e#5880\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/junit-team/junit-framework/compare/r6.0.3...r6.1.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `org.ow2.asm:asm-bom` from 9.10 to 9.10.1\n\nUpdates `ch.qos.logback:logback-core` from 1.5.32 to 1.6.3\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/qos-ch/logback/releases\"\u003ech.qos.logback:logback-core's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eLogback 1.6.3\u003c/h2\u003e\n\u003ch1\u003e2026-08-14 Release of logback version 1.6.3\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eIn response \u003ca href=\"https://www.cve.org/cverecord?id=CVE-2026-19880\"\u003eCVE-2026-19880\u003c/a\u003e,  \u003ccode\u003eMDCBasedDiscriminator\u003c/code\u003e (used by \u003ccode\u003eSiftingAppender\u003c/code\u003e) now strips forward and  backward slashes (\u003ccode\u003e/\u003c/code\u003e, \u003ccode\u003e\\\u003c/code\u003e) from MDC values before they are used as  discriminating keys. This prevents path segments from escaping into  destinations controlled by an attacker. When sanitisation actually changes a  value, a warning is emitted; the warning is rate-limited (a small batch, then  a lull of about ten minutes).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eColour console support is split out into a dedicated  \u003ca href=\"https://logback.qos.ch/manual/appenders.html#JansiConsoleAppender\"\u003e\u003ccode\u003eJansiConsoleAppender\u003c/code\u003e\u003c/a\u003e. It wraps stdout or stderr with  Jansi so ANSI escape sequences (for example coloured patterns) render  correctly on terminals that need it, notably Windows. Prefer this class over  the older path described next. See the  \u003ca href=\"https://logback.qos.ch/manual/appenders.html#JansiConsoleAppender\"\u003eappenders documentation\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe \u003ccode\u003ewithJansi\u003c/code\u003e property on \u003ccode\u003eConsoleAppender\u003c/code\u003e is \u003cstrong\u003edeprecated\u003c/strong\u003e. Existing  configurations that still set \u003ccode\u003e\u0026lt;withJansi\u0026gt;true\u0026lt;/withJansi\u0026gt;\u003c/code\u003e continue to work  for compatibility, but new setups should use \u003ccode\u003eJansiConsoleAppender\u003c/code\u003e instead.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ccode\u003eConsoleAppender\u003c/code\u003e no longer treats the process console as an exclusive  resource: stopping it does not close \u003ccode\u003eSystem.out\u003c/code\u003e / \u003ccode\u003eSystem.err\u003c/code\u003e.  \u003ccode\u003eJansiConsoleAppender\u003c/code\u003e pairs each \u003ccode\u003eAnsiConsole.systemInstall()\u003c/code\u003e with  \u003ccode\u003esystemUninstall()\u003c/code\u003e on stop, so repeated start/stop cycles do not leave Jansi  installed or tear down streams shared with the rest of the JVM. Related  behavior is covered by tests for  \u003ca href=\"https://redirect.github.com/qos-ch/logback/issues/1063\"\u003eissues/1063\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eInvocation throttling helpers were reworked: \u003ccode\u003eSimpleInvocationGate\u003c/code\u003e is renamed  \u003ccode\u003eFixedIntervalInvocationGate\u003c/code\u003e, and \u003ccode\u003eBatchedFixedIntervalInvocationGate\u003c/code\u003e allows  a short burst of invocations before applying a fixed lull. The sanitisation\nwarning above uses the batched gate.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eThe JPMS \u003ccode\u003emodule-info\u003c/code\u003e for logback-core now exports the  \u003ccode\u003ech.qos.logback.core.property\u003c/code\u003e package, which had been missing from the module   descriptor.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA bit-wise identical binary of this version can be reproduced by building from  \u003ca href=\"https://github.com/qos-ch/logback\"\u003esource code\u003c/a\u003e at commit  \u003ccode\u003ee8e824dede022a6d7208b36cfa875b0d1b7772f3\u003c/code\u003e associated with the tag \u003ccode\u003ev_1.6.3\u003c/code\u003e.  The release was built using Java \u0026quot;21\u0026quot; 2023-10-17 LTS build 21.0.1.+12-LTS-29   under Linux Debian 11.6.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e--\nSponsoring SLF4J/logback/reload4j at \u003ca href=\"https://github.com/sponsors/qos-ch\"\u003ehttps://github.com/sponsors/qos-ch\u003c/a\u003e\u003c/p\u003e\n\u003ch2\u003eLogback 1.6.2\u003c/h2\u003e\n\u003cp\u003e\u003ca href=\"https://github.com/user-attachments/assets/9ceaf157-b758-4188-815d-edfe4e1b4edd\"\u003ehttps://github.com/user-attachments/assets/9ceaf157-b758-4188-815d-edfe4e1b4edd\u003c/a\u003e\u003c/p\u003e\n\u003ch1\u003e2026-08-10 Release of logback version 1.6.2\u003c/h1\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eConfiguration analysis now detects \u003cem\u003econtradictory caller-data inclusion instructions\u003c/em\u003e. For example, an \u003ccode\u003eAsyncAppender\u003c/code\u003e, \u003ccode\u003eSocketAppender\u003c/code\u003e or \u003ccode\u003eSMTPAppender\u003c/code\u003e with \u003ccode\u003eincludeCallerData\u003c/code\u003e left at the default \u003ccode\u003efalse\u003c/code\u003e is incompatible with a layout or encoder pattern that uses a caller-data converter such as \u003ccode\u003e%C\u003c/code\u003e, \u003ccode\u003e%M\u003c/code\u003e, \u003ccode\u003e%L\u003c/code\u003e, \u003ccode\u003e%F\u003c/code\u003e, \u003ccode\u003e%l\u003c/code\u003e or \u003ccode\u003e%caller\u003c/code\u003e. At runtime those converters would print question marks and still incur extraction cost on a worker thread. Logback now emits a configuration-time warning when such instructions disagree. See \u003ca href=\"https://logback.qos.ch/codes.html#callerContradiction\"\u003ecodes.html#callerContradiction\u003c/a\u003e for details. This issue was reported in \u003ca href=\"https://redirect.github.com/qos-ch/logback/issues/1059\"\u003eissues/1059\u003c/a\u003e by \u003ca href=\"https://github.com/leeychee\"\u003eleeychee\u003c/a\u003e. The initial analysis was contributed by \u003ca href=\"https://github.com/seonwooj0810\"\u003eseonwoo_jung\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eCaller-contradiction analysis can be turned off by setting the \u003ccode\u003elogback.skipCallerContradictionAnalysis\u003c/code\u003e variable to \u003ccode\u003etrue\u003c/code\u003e, either as a system property (\u003ccode\u003e-Dlogback.skipCallerContradictionAnalysis=true\u003c/code\u003e) or as a property in the configuration file:\u003c/p\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;property name=\u0026quot;logback.skipCallerContradictionAnalysis\u0026quot; value=\u0026quot;true\u0026quot;/\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003e\u003ccode\u003eSimpleSocketServer\u003c/code\u003e and \u003ccode\u003eSimpleSSLSocketServer\u003c/code\u003e now require an explicit client IP whitelist. On the command line, pass one or more allowed addresses (single IPs or CIDR ranges) after the configuration file. An empty whitelist means no clients are accepted. When embedding the server programmatically, register allowed addresses with \u003ccode\u003eaddAllowedClientAddress(String)\u003c/code\u003e or \u003ccode\u003esetAllowedClientAddresses(Collection)\u003c/code\u003e before clients connect. See the documentation on \u003ca href=\"https://logback.qos.ch/manual/appenders.html#simpleSocketServerClientAccess\"\u003erestricting client access\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAdded \u003ccode\u003eThrowableProxyVOBuilder\u003c/code\u003e for assembling a \u003ccode\u003eThrowableProxyVO\u003c/code\u003e field by field, with a corresponding \u003ccode\u003eThrowableProxyVO.builder()\u003c/code\u003e entry point.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eDependency analysis handlers now run their \u003ccode\u003epostHandle\u003c/code\u003e method after child models have been processed, so checks that depend on nested appenders (such as caller-contradiction analysis) see a complete picture.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eUpdated several dependencies, including Angus Mail to 2.0.4 and Jetty (test) to 12.1.12.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eA bit-wise identical binary of this version can be reproduced by building from \u003ca href=\"https://github.com/qos-ch/logback\"\u003esource code\u003c/a\u003e at commit e3d78330ad1ba024fd987fd00c3ffb9cfcdb07dc associated with the tag \u003ccode\u003ev_1.6.2\u003c/code\u003e. The release was built using Java \u0026quot;21\u0026quot; 2023-10-17 LTS build 21.0.1.+12-LTS-29 under Linux Debian 11.6.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eLogback 1.6.1\u003c/h2\u003e\n\u003cp\u003e\u003cstrong\u003e2026-07-28 Release of logback version 1.6.1\u003c/strong\u003e\u003c/p\u003e\n\u003cp\u003e• In TimeBasedRollingPolicy, when the file option is set, the intermediate file renamed before asynchronous compression now receives the target archive name without the compression suffix (e.g. \u003ccode\u003e.gz\u003c/code\u003e, \u003ccode\u003e.zip\u003c/code\u003e, \u003ccode\u003e.xz\u003c/code\u003e). Previously it used a nanotime-based \u003ccode\u003e.tmp\u003c/code\u003e suffix. This makes the file easier to identify if compression fails during rollover. (See also the following paragraph.)\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/e8e824dede022a6d7208b36cfa875b0d1b7772f3\"\u003e\u003ccode\u003ee8e824d\u003c/code\u003e\u003c/a\u003e prepare release 1.6.3\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/761821bfaacac3a0ad44fa546cfc814429bf9312\"\u003e\u003ccode\u003e761821b\u003c/code\u003e\u003c/a\u003e MDCBasedDiscriminator has a gated warning mechanism\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/53ed1229008d8b1902f5c234deaa07d742890879\"\u003e\u003ccode\u003e53ed122\u003c/code\u003e\u003c/a\u003e update copyright year\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/c7e2db244671ffa916182b5da8c89579eb54a645\"\u003e\u003ccode\u003ec7e2db2\u003c/code\u003e\u003c/a\u003e rename SimpleInvocationGate as FixedIntervalInvocationGate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/b5aa931b096a4b0b6a9e140b74fabe7da152cbf0\"\u003e\u003ccode\u003eb5aa931\u003c/code\u003e\u003c/a\u003e added BatchedSimpleInvocationGate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/1f22af7686aadd25c08b4bd1e6943a906a743ad4\"\u003e\u003ccode\u003e1f22af7\u003c/code\u003e\u003c/a\u003e add javadocs to SimpleInvocationGate\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/638ffa7e7852478b605a91b3e91238ff26f8158c\"\u003e\u003ccode\u003e638ffa7\u003c/code\u003e\u003c/a\u003e prevent forward and backward slashes to escape to other directories\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/7d6b9a4f8c8996834c0a694f6c141705a003d7bb\"\u003e\u003ccode\u003e7d6b9a4\u003c/code\u003e\u003c/a\u003e add missing ch.qos.logback.core.property package\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/fa25930346f35636fb6a077c1f66ebb06edd3b6f\"\u003e\u003ccode\u003efa25930\u003c/code\u003e\u003c/a\u003e add an extension path in ConsoleAppender for JansiConsoleAppender\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/qos-ch/logback/commit/c73b43f2011f9d4545abc7ea461172276a0a43b3\"\u003e\u003ccode\u003ec73b43f\u003c/code\u003e\u003c/a\u003e deprecate the withJansi path\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/qos-ch/logback/compare/v_1.5.32...v_1.6.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.github.jnr:jffi` from 1.3.15 to 1.4.0\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/jnr/jffi/releases\"\u003ecom.github.jnr:jffi's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e1.4.0\u003c/h2\u003e\n\u003ch2\u003eWhat's Changed\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUse a parent pom to ease management and release by \u003ca href=\"https://github.com/headius\"\u003e\u003ccode\u003e@​headius\u003c/code\u003e\u003c/a\u003e in \u003ca href=\"https://redirect.github.com/jnr/jffi/pull/195\"\u003ejnr/jffi#195\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003e\u003cstrong\u003eFull Changelog\u003c/strong\u003e: \u003ca href=\"https://github.com/jnr/jffi/compare/jffi-1.3.15...1.4.0\"\u003ehttps://github.com/jnr/jffi/compare/jffi-1.3.15...1.4.0\u003c/a\u003e\u003c/p\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/3a2aa585b2beefda5d3d4ed9cb1747c87c3e58fd\"\u003e\u003ccode\u003e3a2aa58\u003c/code\u003e\u003c/a\u003e Bump the major minor for new Maven structure before release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/3da7efbef832eac19811fccccf2378b616879458\"\u003e\u003ccode\u003e3da7efb\u003c/code\u003e\u003c/a\u003e Add bare relativePath to always resolve parent\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/4621e143079aec80dcc5e276113734096a860658\"\u003e\u003ccode\u003e4621e14\u003c/code\u003e\u003c/a\u003e Update version for release\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/2b02140805647cf1cfd4c4fcbb040d86c37b044e\"\u003e\u003ccode\u003e2b02140\u003c/code\u003e\u003c/a\u003e Merge pull request \u003ca href=\"https://redirect.github.com/jnr/jffi/issues/195\"\u003e#195\u003c/a\u003e from headius/jnr-parent\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/ea18e4800785d586133fbe08a6e159bcd9075050\"\u003e\u003ccode\u003eea18e48\u003c/code\u003e\u003c/a\u003e Remove snapshot repository inherited from parent\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/f761f8dd494b54dcd0bfd4ebc6d0a9cf3f97ff51\"\u003e\u003ccode\u003ef761f8d\u003c/code\u003e\u003c/a\u003e Update to release version of parent\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/5c1077eaa89b7096a8c882236249eb286e379490\"\u003e\u003ccode\u003e5c1077e\u003c/code\u003e\u003c/a\u003e Install prerequisites to compile tests on macOS\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/2a8b56a4b281a5660da0df692d693915138f80e0\"\u003e\u003ccode\u003e2a8b56a\u003c/code\u003e\u003c/a\u003e Tweaks for toolchain use in jffi\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/86a17749ce763d78d64265fb7bfbbef06f2b72ee\"\u003e\u003ccode\u003e86a1774\u003c/code\u003e\u003c/a\u003e Disable fail-fast\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/jnr/jffi/commit/45269c3f87753b667c379383972e504191de1ec9\"\u003e\u003ccode\u003e45269c3\u003c/code\u003e\u003c/a\u003e Update for toolchain and parent defaults\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/jnr/jffi/compare/jffi-1.3.15...1.4.0\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `com.google.guava:guava` from 33.6.0-jre to 33.7.1-jre\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/google/guava/releases\"\u003ecom.google.guava:guava's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e33.7.1\u003c/h2\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.1-android\u0026lt;/version\u0026gt;\r\n\u0026lt;/dependency\u0026gt;\r\n\u003c/code\u003e\u003c/pre\u003e\n\u003ch3\u003eJar files\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-jre/guava-33.7.1-jre.jar\"\u003e33.7.1-jre.jar\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/guava/33.7.1-android/guava-33.7.1-android.jar\"\u003e33.7.1-android.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eGuava requires \u003ca href=\"https://github.com/google/guava/wiki/UseGuavaInYourBuild#what-about-guavas-own-dependencies\"\u003eone runtime dependency\u003c/a\u003e, which you can download here:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://repo1.maven.org/maven2/com/google/guava/failureaccess/1.0.3/failureaccess-1.0.3.jar\"\u003efailureaccess-1.0.3.jar\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJavadoc\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/docs/\"\u003e33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/docs/\"\u003e33.7.1-android\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eJDiff\u003c/h3\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-jre/api/diffs/\"\u003e33.7.1-jre vs. 33.7.0-jre\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/diffs/\"\u003e33.7.1-android vs. 33.7.0-android\u003c/a\u003e\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://guava.dev/releases/33.7.1-android/api/androiddiffs/\"\u003e33.7.1-android vs. 33.7.1-jre\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eChangelog\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.1 removes the \u003ccode\u003eMulti-Release\u003c/code\u003e line from our jar manifest, fixing an issue under Java 9 and 10 that was introduced to \u003ccode\u003eguava-jre\u003c/code\u003e in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.0\"\u003eversion 33.7.0\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch2\u003e33.7.0\u003c/h2\u003e\n\u003ch3\u003eNewly introduced problem for Java 9 and Java 10 only\u003c/h3\u003e\n\u003cp\u003eGuava 33.7.0 includes a \u003ccode\u003eMulti-Release\u003c/code\u003e line in its jar manifest, even though it is no longer a multi-release jar. This causes \u003ca href=\"https://redirect.github.com/google/guava/issues/8614\"\u003esome problems with tools from Java 9 and Java 10\u003c/a\u003e. The issue is fixed in \u003ca href=\"https://github.com/google/guava/releases/tag/v33.7.1\"\u003eversion 33.7.1\u003c/a\u003e. Sorry for the trouble.\u003c/p\u003e\n\u003ch3\u003eMaven\u003c/h3\u003e\n\u003cpre lang=\"xml\"\u003e\u003ccode\u003e\u0026lt;dependency\u0026gt;\r\n  \u0026lt;groupId\u0026gt;com.google.guava\u0026lt;/groupId\u0026gt;\r\n  \u0026lt;artifactId\u0026gt;guava\u0026lt;/artifactId\u0026gt;\r\n  \u0026lt;version\u0026gt;33.7.0-jre\u0026lt;/version\u0026gt;\r\n  \u0026lt;!-- or, for Android: --\u0026gt;\r\n\u0026lt;/tr\u0026gt;\u0026lt;/table\u0026gt; \n\u003c/code\u003e\u003c/pre\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/google/guava/commits\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\nUpdates `commons-codec:commons-codec` from 1.22.0 to 1.22.1\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/apache/commons-codec/blob/master/RELEASE-NOTES.txt\"\u003ecommons-codec:commons-codec's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003eApache Commons Codec 1.22.1 Release Notes\u003c/h2\u003e\n\u003cp\u003eThe Apache Commons Codec team is pleased to announce the release of Apache Commons Codec 1.22.1.\u003c/p\u003e\n\u003cp\u003eThe Apache Commons Codec component contains encoders and decoders for\nformats such as Base16, Base32, Base64, digest, and Hexadecimal. In addition to these\nwidely used encoders and decoders, the codec package also maintains a\ncollection of phonetic encoding utilities.\u003c/p\u003e\n\u003cp\u003eThis is a feature and maintenance release. Java 8 or later is required.\u003c/p\u003e\n\u003ch2\u003eFixed Bugs\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eCODEC-344:  Base64.Builder.setEncodeTable(byte...) accepts invalid custom alphabets. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-340:  Base58.Builder.setEncodeTable(byte...) is ignored when encoding and decoding. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-342:  Base32.Builder.setEncodeTable(byte...) can create a codec that cannot decode its own output. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-343:  Base32.Builder.setHexDecodeTable(boolean) sets the encode table to a decode lookup table. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-341:  Base16.Builder.setEncodeTable(byte...) can create a codec that cannot decode its own output. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-339:  URLCodec.encodeUrl(BitSet, byte[]) allows custom safe sets to emit URL encoding control characters. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-338:  PercentCodec loses literal '+' when plusForSpace is enabled. Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003eCODEC-337:  Digest ALL reuses System.in, so only the first algorithm sees the real input (\u003ca href=\"https://redirect.github.com/apache/commons-codec/issues/431\"\u003e#431\u003c/a\u003e). Thanks to Ruiqi Dong, Gary Gregory.\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Fix Base64.toIntegerBytes(BigInteger) for zero edge case ([#441](https://github.com/apache/commons-codec/issues/441)). Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Add messages when throwing NullPointerException. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Add messages when throwing NullPointerException. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        StringEncoderComparator.StringEncoderComparator(StringEncoder) now fails fast on null input. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eChanges\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Bump org.apache.commons:commons-parent from 98 to 103. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cpre\u003e\u003ccode\u003e        Bump commons-io:commons-io from 2.21.0 to 2.22.0. Thanks to Gary Gregory.\n\u003c/code\u003e\u003c/pre\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eFor complete information on Apache Commons Codec, including instructions on how to submit bug reports,\npatches, or suggestions for improvement, see the Apache Commons Codec website:\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://commons.apache.org/proper/commons-codec/\"\u003ehttps://commons.apache.org/proper/commons-codec/\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eDownload page: \u003ca href=\"https://commons.apache.org/proper/commons-codec/download_codec.cgi\"\u003ehttps://commons.apache.org/proper/commons-codec/download_codec.cg...\n\n_Description has been truncated_","html_url":"https://github.com/finos-osera/patch-jetty/pull/24","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/finos-osera%2Fpatch-jetty/issues/24","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/24/packages"}}]}