An open index of dependabot pull requests across open source projects.

Bump com.google.zxing:javase from 3.2.1 to 3.5.4

Open
Number: #12544
Type: Pull Request
State: Open
Author: dependabot[bot] dependabot[bot]
Association: Unknown
Comments: 10
Created: January 29, 2026 at 06:22 AM UTC
(4 months ago)
Updated: January 29, 2026 at 04:02 PM UTC
(4 months ago)
Labels:
component:build dependencies java
Description:

Bumps com.google.zxing:javase from 3.2.1 to 3.5.4.

Release notes

Sourced from com.google.zxing:javase's releases.

ZXing 3.5.4

What's Changed

Full Changelog: https://github.com/zxing/zxing/compare/zxing-3.5.3...zxing-3.5.4

ZXing 3.5.3

What's Changed

New Contributors

Full Changelog: https://github.com/zxing/zxing/compare/zxing-3.5.2...zxing-3.5.3

ZXing 3.5.2

ZXing 3.5.1

  • Various minor bug fixes, including more from oss-fuzz
  • Avoid very long detection of QR codes in two types of pathological cases
  • Don't fail QR code decoding if GB2312 not supported by JDK

See https://github.com/zxing/zxing/milestone/14?closed=1

ZXing 3.5.0

... (truncated)

Changelog

Sourced from com.google.zxing:javase's changelog.

0.1 (09 Nov 2007)

  • Initial release

0.1.1 (11 Nov 2007)

  • Fixed bug decoding version 0 QR Codes
  • Now default zoom is 2.5x in Java ME client

0.1.2 (28 Nov 2007)

  • Issue 11 fixed: Build problems on Windows
  • Can now build "ZXingReaderBasic" which does not require JSR-234
  • Issue 14 fixed: release .zip builds into one directory

0.1.3 (7 Dec 2007)

  • Unit test for QR Code decoding
  • Added EAN-13 support
  • Now builds with class file format version 1.2 -- may solve some compatibility issues?
  • Fixed obfuscation step bug causing NoClassDefFoundError

0.1.4 (13 Dec 2007)

  • Added Blackberry client build script -- does not yet work
  • Big change to handling of content of barcodes:
    • com.google.zxing.client.result moved from core-ext to core
    • Rewritten for J2ME
    • core-ext removed
    • J2ME client now uses this code for better parsing/handling of results

0.2 (07 Jan 2008)

  • Few small bug fixes in AlignmentPatternFinder, MultiFormatReader (thank K. Kakima, Andreas)
  • LCDUIImageMonochromeBitmapSource now public
  • Notably improved decoding for Basic version -- Regular version still your best bet if you can run it though

0.2.1 (16 Jan 2008)

  • Slight tweaks and enhancements to decode and runtime performance of UPCDecoder
  • Added black-box test suites against a known set of images (Thanks to Enrique G. S. for additional images)

0.2.2 (22 Jan 2008)

  • Now includes junit locally to build tests
  • Fixed "MIDlet" name in MANIFEST.MF, which may solve some problems
  • Friendlier error message when barcode can't be found

0.3 (04 Feb 2008)

  • Major refactoring of 1D barcode decoding
  • Added support for UPC-E, EAN-8
  • Also added Code 39, Code 128 support -- may need refinement
  • Now any "game" key triggers photo capture
  • Workaround implemented for Nokias that use "capture://image" in MMAPI
  • UPC codes now trigger lookup to upcdatabase.com

... (truncated)

Commits
  • f651b0a [maven-release-plugin] prepare release zxing-3.5.4
  • 6d66bd9 Restore 3.5.4-SNAPSHOT
  • c65c550 [maven-release-plugin] prepare release zxing-3.5.4
  • 00ff3cb Add new Sonatype repo
  • 4a16098 [maven-release-plugin] rollback the release of zxing-3.5.4
  • 7c58665 [maven-release-plugin] prepare for next development iteration
  • b36e149 [maven-release-plugin] prepare release zxing-3.5.4
  • 8536950 [maven-release-plugin] rollback the release of zxing-3.5.4
  • 1fe940f [maven-release-plugin] prepare release zxing-3.5.4
  • 6cf1062 Manually update secondary packages to 3.5.4. parent
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Package Dependencies
Ecosystem:
maven
Version Change:
3.2.1 → 3.5.4
Update Type:
Minor
Technical Details
ID: 13279360
UUID: 3869049689
Node ID: PR_kwDOAJTq2M7AC68z
Host: GitHub
Repository: apache/cloudstack