An open index of dependabot pull requests across open source projects.

chore(deps): bump org.skyscreamer:jsonassert from 1.3.0 to 1.5.3

Open
Number: #129
Type: Pull Request
State: Open
Author: dependabot[bot] dependabot[bot]
Association: Contributor
Comments: 1
Created: May 29, 2025 at 12:23 PM UTC
(about 1 year ago)
Updated: July 23, 2025 at 12:41 PM UTC
(11 months ago)
Labels:
dependencies java
Description:

Bumps org.skyscreamer:jsonassert from 1.3.0 to 1.5.3.

Release notes

Sourced from org.skyscreamer:jsonassert's releases.

jsonassert-1.5.3

Breaking change since 1.5.1 (Java 6), dropped Java 6 and Java 7 support, oldest supported version is Java 8. For Java 6/7, stick to 1.5.1.

Reverting to compile using Java 8 (1.8) for compatibility with older software.

jsonassert-1.5.2

Breaking change since 1.5.1 (Java 6), accidentally dropped Java <21 support. For a Java 8 compatible version use 1.5.3 for a Java 6/7 compatible version stick to 1.5.1,

New Contributors

Full Changelog: https://github.com/skyscreamer/JSONassert/compare/jsonassert-1.5.1...jsonassert-1.5.2

JSONassert 1.5.1

This is the last version compatible with Java 6 and Java 7.

Version 1.5.1 - 7/4/2022

Going to try to catch up on some ancient PRs, mainly around security and cleanup. Starting with accepted PRs that didn't get released yet. To be followed hopefully shortly with another release.

  • Added convenience methods for JSONObject comparison using a custom JSONComparator (thanks jakob-o@!)
  • Fix issue #105: Issue when comparing JSONArray if any value is null (thanks suraj1291993@!)
  • Fixes security vulnerability associated with older version of junit

JSONassert 1.5.0

Version 1.5.0 - 3/19/2017

  • JSONassert now supports user-supplied error messages (thanks yasin3061@!)
  • Some refactoring / code health cleanup (thanks picimako@!)
  • License headers on individual files
  • Java 8 friendly javadocs

JSONAssert 1.4.0

  • Change the implementation for org.json to one with a more open license
  • Fix null pointer exception (issue #48)
  • Support wildcards in Customization.path
Changelog

Sourced from org.skyscreamer:jsonassert's changelog.

Version 1.5.3 - 6/28/2024

  • Revert Java release version from 21 to 8 due to breaking older compilers.

Version 1.5.2 - 6/14/2024

Version 1.5.1 - 7/4/2022

Going to try to catch up on some ancient PRs, mainly around security and cleanup. Starting with accepted PRs that didn't get released yet. To be followed hopefully shortly with another release.

  • Added convenience methods for JSONObject comparison using a custom JSONComparator (thanks jakob-o@!)
  • Fix issue #105: Issue when comparing JSONArray if any value is null (thanks suraj1291993@!)
  • Fixes security vulnerability associated with older version of junit

Version 1.5.0 - 3/19/2017

  • JSONassert now supports user-supplied error messages (thanks yasin3061@!)
  • Some refactoring / code health cleanup (thanks picimako@!)
  • License headers on individual files
  • Java 8 friendly javadocs

Version 1.4.0 - 10/30/2016

  • Change the implementation for org.json to one with a more open license
  • Fix null pointer exception (issue #48)
  • Support wildcards in Customization.path
Commits
  • b1750da Removed snapshot for release 1.5.3
  • 721abb0 Updated pom.xml file for new release process.
  • f7ebd4b Prepare for release of 1.5.3
  • 3112d8e Revert from Java 21 to 8 (#192)
  • eebcfe8 Update to Java 21 (#188)
  • 8e2ba62 Bump pom.xml target/source from 6 to 8. (#187)
  • 313c61b Update documentation and CHANGELOG to 1.5.2. (#186)
  • 7414e90 Updated ReadMe for syntax errors of strike of code (#147)
  • 5e73cb0 Merge pull request #157 from imanushin/addGitIgnore
  • f36dc93 Merge pull request #159 from imanushin/BumpDependencyVersions
  • Additional commits viewable in compare view

Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

Pull Request Statistics
Commits:
0
Files Changed:
0
Additions:
+0
Deletions:
-0
Package Dependencies
Ecosystem:
maven
Version Change:
1.3.0 → 1.5.3
Update Type:
Minor
Technical Details
ID: 4088787
UUID: 3100181189
Node ID: PR_kwDOBCq1mc6YHUNb
Host: GitHub
Repository: SiftScience/sift-java