chore: [DevOps] bump the production-minor-patch group with 3 updates
Type: Pull Request
State: Merged
Association: Contributor
Comments: 0
(8 months ago)
(8 months ago)
(8 months ago)
by newtork
dependencies java
Bumps the production-minor-patch group with 3 updates: org.apache.maven.archetype:archetype-packaging, com.sap.cloud.security:java-bom and org.checkerframework:checker-qual.
Updates org.apache.maven.archetype:archetype-packaging from 3.4.0 to 3.4.1
Release notes
Sourced from org.apache.maven.archetype:archetype-packaging's releases.
3.4.1
🐛 Bug Fixes
- Restore http in archetype descriptors (#945)
@slawekjaranowski- [ARCHETYPE-548] - Resource files without extension missing in create-from-project (#273)
@Harry-Pootha📝 Documentation updates
- Remove not existing module archetype-testing from documentation (#948)
@slawekjaranowski👻 Maintenance
📦 Dependency updates
- Use Maven 3.9.11 in dependencies, still requires 3.6.3 as minimum (#947)
@slawekjaranowski- Bump org.codehaus.plexus:plexus-archiver from 4.10.1 to 4.10.2 (#946) @dependabot[bot]
- Bump m-invoker-p to 3.9.1 - to allow build by JDK 25 (#944)
@slawekjaranowski- Bump org.apache.commons:commons-lang3 from 3.18.0 to 3.19.0 (#943) @dependabot[bot]
- Bump org.xmlunit:xmlunit-matchers from 2.10.3 to 2.10.4 (#940) @dependabot[bot]
- Bump org.apache.maven:maven-archiver from 3.6.3 to 3.6.4 (#934) @dependabot[bot]
- Bump org.codehaus.plexus:plexus-archiver from 4.10.0 to 4.10.1 (#935) @dependabot[bot]
- Bump org.codehaus.mojo:mrm-maven-plugin from 1.6.0 to 1.7.0 (#936) @dependabot[bot]
- Bump org.apache.groovy:groovy-bom from 4.0.27 to 4.0.28 (#933) @dependabot[bot]
- Bump commons-io:commons-io from 2.19.0 to 2.20.0 (#932) @dependabot[bot]
- Bump org.easymock:easymock from 5.5.0 to 5.6.0 (#272) @dependabot[bot]
- Bump org.xmlunit:xmlunit-matchers from 2.10.2 to 2.10.3 (#929) @dependabot[bot]
- Bump org.apache.groovy:groovy-bom from 4.0.26 to 4.0.27 (#276) @dependabot[bot]
- Bump org.apache.commons:commons-lang3 from 3.17.0 to 3.18.0 (#930) @dependabot[bot]
- Bump org.apache.maven:maven-parent from 44 to 45 (#927) @dependabot[bot]
- Bump org.xmlunit:xmlunit-matchers from 2.10.0 to 2.10.2 (#275) @dependabot[bot]
Commits
9097959[maven-release-plugin] prepare release maven-archetype-3.4.138d00bfUse RESOLVED_VERSION for tag-template in release-draftere344a94Remove jira from README, update social media links4a40785Remove not existing module archetype-testing from documentation7a4e240Use Maven 3.9.11 in dependencies, still requires 3.6.3 as minimum741ed2eBump org.codehaus.plexus:plexus-archiver from 4.10.1 to 4.10.20fbc317Restore http in archetype descriptors444324a- Fixed resource files without extension missing in create-from-project9cab90fAdd hacktoberfest label to projectff25739Bump m-invoker-p to 3.9.1 - to allow build by JDK 25- Additional commits viewable in compare view
Updates com.sap.cloud.security:java-bom from 3.6.4 to 3.6.5
Release notes
Sourced from com.sap.cloud.security:java-bom's releases.
3.6.5
Dependency upgrades
- Bump org.sonatype.central:central-publishing-maven-plugin (#1867)
- Bump io.projectreactor:reactor-test from 3.7.9 to 3.7.11 (#1868)
- Remove version pinning for nimbus-jose-jwt
- Update jetty dependency to 12.0.27 (#1865)
- Bump reactor.version from 3.7.9 to 3.7.11 (#1849)
- Bump org.mockito:mockito-core from 5.19.0 to 5.20.0 (#1860)
- Bump log4j2.version from 2.25.1 to 2.25.2 (#1861)
- Bump org.apache.maven.plugins:maven-javadoc-plugin from 3.11.3 to 3.12.0 (#1862)
- Bump org.assertj:assertj-core from 3.27.4 to 3.27.6 (#1864)
- Bump spring.boot.version from 3.5.5 to 3.5.6 (#1863)
- Bump org.apache.httpcomponents.client5:httpclient5 from 5.5 to 5.5.1 (#1859)
- Bump org.apache.maven.plugins:maven-surefire-plugin from 3.5.3 to 3.5.4 (#1852)
- Bump io.github.hakky54:logcaptor from 2.12.0 to 2.12.1 (#1853)
- Bump spring.core.version from 6.2.10 to 6.2.11 (#1850)
- Bump spring.security.version from 6.5.3 to 6.5.5 (#1855)
- Bump spring.security.oauth2.version from 6.5.3 to 6.5.5 (#1856)
- Bump com.github.spotbugs:spotbugs-annotations from 4.9.4 to 4.9.6 (#1857)
- Bump com.github.spotbugs:spotbugs-maven-plugin from 4.9.4.2 to 4.9.6.0 (#1858)
Changelog
Sourced from com.sap.cloud.security:java-bom's changelog.
3.6.5
Dependency upgrades
- Bump org.sonatype.central:central-publishing-maven-plugin (#1867)
- Bump io.projectreactor:reactor-test from 3.7.9 to 3.7.11 (#1868)
- Remove version pinning for nimbus-jose-jwt
- Update jetty dependency to 12.0.27 (#1865)
- Bump reactor.version from 3.7.9 to 3.7.11 (#1849)
- Bump org.mockito:mockito-core from 5.19.0 to 5.20.0 (#1860)
- Bump log4j2.version from 2.25.1 to 2.25.2 (#1861)
- Bump org.apache.maven.plugins:maven-javadoc-plugin from 3.11.3 to 3.12.0 (#1862)
- Bump org.assertj:assertj-core from 3.27.4 to 3.27.6 (#1864)
- Bump spring.boot.version from 3.5.5 to 3.5.6 (#1863)
- Bump org.apache.httpcomponents.client5:httpclient5 from 5.5 to 5.5.1 (#1859)
- Bump org.apache.maven.plugins:maven-surefire-plugin from 3.5.3 to 3.5.4 (#1852)
- Bump io.github.hakky54:logcaptor from 2.12.0 to 2.12.1 (#1853)
- Bump spring.core.version from 6.2.10 to 6.2.11 (#1850)
- Bump spring.security.version from 6.5.3 to 6.5.5 (#1855)
- Bump spring.security.oauth2.version from 6.5.3 to 6.5.5 (#1856)
- Bump com.github.spotbugs:spotbugs-annotations from 4.9.4 to 4.9.6 (#1857)
- Bump com.github.spotbugs:spotbugs-maven-plugin from 4.9.4.2 to 4.9.6.0 (#1858)
Commits
6e5aeecupdate changelog (#1870)fc5081fSet release version to 3.6.5 (#1869)782eef4Bump org.sonatype.central:central-publishing-maven-plugin (#1867)32bc177Bump io.projectreactor:reactor-test from 3.7.9 to 3.7.11 (#1868)95430cdremove version pinning for nimbus-jose-jwt (#1866)e907ae7Update jetty dependency to 12.0.27 (#1865)9092c2fBump reactor.version from 3.7.9 to 3.7.11 (#1849)9f3ca50Bump org.mockito:mockito-core from 5.19.0 to 5.20.0 (#1860)b81f4a0Bump log4j2.version from 2.25.1 to 2.25.2 (#1861)35d1933Bump org.apache.maven.plugins:maven-javadoc-plugin from 3.11.3 to 3.12.0 (#1862)- Additional commits viewable in compare view
Updates org.checkerframework:checker-qual from 3.51.0 to 3.51.1
Release notes
Sourced from org.checkerframework:checker-qual's releases.
Checker Framework 3.51.1
Version 3.51.1 (2025-10-01)
Closed issues:
Commits
f17fd42new release 3.51.111f9ab5small correction.56158f5Use a default value if cfWebsite is not set.0343594Prep for release.fc3a55dEnable caching6bf93a9Fix errors issued bymarkdownlint8a55be0Fix some broken URLs44762a7RespectJAVA21_HOMEenvironment variable4b088a8Update plugin com.diffplug.spotless to v8 (#7308)f826ca4Fix CircleCI- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions
Pull Request Statistics
1
2
+3
-3
Package Dependencies
org.checkerframework:checker-qual
maven
3.51.0 → 3.51.1
Patch
maven
3.4.0 → 3.4.1
Patch
com.sap.cloud.security:java-bom
maven
3.6.4 → 3.6.5
Patch
Technical Details
| ID: | 9708016 |
| UUID: | 2892082512 |
| Node ID: | PR_kwDOJWVxms6sYa1Q |
| Host: | GitHub |
| Repository: | SAP/cloud-sdk-java |
| Merge State: | Unknown |