Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump the build-dependencies group with 5 updates #3833

Closed

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Nov 21, 2023

Bumps the build-dependencies group with 5 updates:

Package From To
org.codehaus.mojo:exec-maven-plugin 3.1.0 3.1.1
org.codehaus.mojo:versions-maven-plugin 2.16.1 2.16.2
com.buschmais.jqassistant:jqassistant-maven-plugin 2.0.8 2.0.9
org.owasp:dependency-check-maven 8.4.2 8.4.3
com.ibm.db2:jcc 11.5.8.0 11.5.9.0

Updates org.codehaus.mojo:exec-maven-plugin from 3.1.0 to 3.1.1

Release notes

Sourced from org.codehaus.mojo:exec-maven-plugin's releases.

3.1.1

🚀 New features and improvements

🐛 Bug Fixes

📦 Dependency updates

👻 Maintenance

... (truncated)

Commits
  • 58be40b [maven-release-plugin] prepare release 3.1.1
  • 285443b Use name and tag template for release-drafter from commons
  • 2afa124 Code cleanups - use newer JDK features
  • 5fb64ce Enable spotless for code formatting - reformat
  • 69d648f Enable spotless for code formatting
  • b08fba0 Remove unused killAfter options
  • 6fae009 #391 Cope with Thread::stop being unavailable in JDK 20+ (#393)
  • 6fcb15b Only prefix program output with thread name when Maven is running with multip...
  • 584c544 #389 Add option 'blockSystemExit' to 'java' mojo
  • c545089 Bump org.codehaus.plexus:plexus-utils
  • Additional commits viewable in compare view

Updates org.codehaus.mojo:versions-maven-plugin from 2.16.1 to 2.16.2

Release notes

Sourced from org.codehaus.mojo:versions-maven-plugin's releases.

2.16.2

Changes

🚀 New features and improvements

🐛 Bug Fixes

📦 Dependency updates

Commits
  • 6b33fbc [maven-release-plugin] prepare release 2.16.2
  • e56c8c4 Align update-parent and display-parent-update (#1017)
  • 1136bf4 Fix ISE with plugins aggregate report when reactor projects contains the same...
  • 2fd9c32 Reading project model should throw exception
  • 2ac332d Bump org.codehaus.plexus:plexus-archiver from 4.8.0 to 4.9.0
  • 048d3a3 Bump org.apache.commons:commons-text from 1.10.0 to 1.11.0
  • 4a397c2 Cleanup redundant definitions after pom update
  • 69cc330 Bump org.codehaus.mojo:mojo-parent from 76 to 77
  • eca1e46 Bump commons-io:commons-io from 2.14.0 to 2.15.0
  • 8fefd9d Add dependency to plexus-xml 3.0.0
  • Additional commits viewable in compare view

Updates com.buschmais.jqassistant:jqassistant-maven-plugin from 2.0.8 to 2.0.9

Commits
  • d809d04 Release 2.0.9
  • 56c566c removed Sonatype OSS Snapshot repository from pom.xml
  • 20d9c3f Set development version to 2.1.0-SNAPSHOT
  • See full diff in compare view

Updates org.owasp:dependency-check-maven from 8.4.2 to 8.4.3

Release notes

Sourced from org.owasp:dependency-check-maven's releases.

Version 8.4.3

  • fix: bump jcs3 (#6047)
  • docs: Corrected docs on hostedSuppressions (#6035)

See the full listing of changes.

Changelog

Sourced from org.owasp:dependency-check-maven's changelog.

Version 8.4.3 (2023-11-15)

  • fix: bump jcs3 (#6047)
  • docs: Corrected docs on hostedSuppressions (#6035)

See the full listing of changes.

Commits
  • 3406274 build: prepare release v8.4.3
  • 7b19383 docs: prepare 8.4.3
  • 45dc137 build(deps): bump org.apache.maven.plugins:maven-surefire-report-plugin from ...
  • 3877317 build(deps): bump amannn/action-semantic-pull-request from 5.3.0 to 5.4.0 (#6...
  • 7a45227 build: remove failing action (#6049)
  • 1ff8a54 fix: bump jcs3 (#6047)
  • 6165b43 build(deps): bump org.apache.maven.plugins:maven-surefire-plugin from 3.1.2 t...
  • 7d987bf build(deps): bump org.apache.commons:commons-text from 1.10.0 to 1.11.0 (#6024)
  • da4796f docs: Corrected docs on hostedSuppressions (#6035)
  • ab31be9 build(deps): bump org.apache.commons:commons-dbcp2 from 2.10.0 to 2.11.0 (#6022)
  • Additional commits viewable in compare view

Updates com.ibm.db2:jcc from 11.5.8.0 to 11.5.9.0

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the build-dependencies group with 5 updates:

| Package | From | To |
| --- | --- | --- |
| [org.codehaus.mojo:exec-maven-plugin](https://github.com/mojohaus/exec-maven-plugin) | `3.1.0` | `3.1.1` |
| [org.codehaus.mojo:versions-maven-plugin](https://github.com/mojohaus/versions) | `2.16.1` | `2.16.2` |
| [com.buschmais.jqassistant:jqassistant-maven-plugin](https://github.com/jqassistant/jqa-maven-plugin) | `2.0.8` | `2.0.9` |
| [org.owasp:dependency-check-maven](https://github.com/jeremylong/DependencyCheck) | `8.4.2` | `8.4.3` |
| com.ibm.db2:jcc | `11.5.8.0` | `11.5.9.0` |


Updates `org.codehaus.mojo:exec-maven-plugin` from 3.1.0 to 3.1.1
- [Release notes](https://github.com/mojohaus/exec-maven-plugin/releases)
- [Commits](mojohaus/exec-maven-plugin@exec-maven-plugin-3.1.0...3.1.1)

Updates `org.codehaus.mojo:versions-maven-plugin` from 2.16.1 to 2.16.2
- [Release notes](https://github.com/mojohaus/versions/releases)
- [Changelog](https://github.com/mojohaus/versions/blob/master/ReleaseNotes.md)
- [Commits](mojohaus/versions@2.16.1...2.16.2)

Updates `com.buschmais.jqassistant:jqassistant-maven-plugin` from 2.0.8 to 2.0.9
- [Commits](jqassistant-archive/jqa-maven-plugin@REL-2.0.8...REL-2.0.9)

Updates `org.owasp:dependency-check-maven` from 8.4.2 to 8.4.3
- [Release notes](https://github.com/jeremylong/DependencyCheck/releases)
- [Changelog](https://github.com/jeremylong/DependencyCheck/blob/main/CHANGELOG.md)
- [Commits](jeremylong/DependencyCheck@v8.4.2...v8.4.3)

Updates `com.ibm.db2:jcc` from 11.5.8.0 to 11.5.9.0

---
updated-dependencies:
- dependency-name: org.codehaus.mojo:exec-maven-plugin
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: build-dependencies
- dependency-name: org.codehaus.mojo:versions-maven-plugin
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: build-dependencies
- dependency-name: com.buschmais.jqassistant:jqassistant-maven-plugin
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: build-dependencies
- dependency-name: org.owasp:dependency-check-maven
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: build-dependencies
- dependency-name: com.ibm.db2:jcc
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: build-dependencies
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels Nov 21, 2023
Copy link
Contributor Author

dependabot bot commented on behalf of github Nov 21, 2023

Looks like these dependencies are updatable in another way, so this is no longer needed.

@dependabot dependabot bot closed this Nov 21, 2023
@dependabot dependabot bot deleted the dependabot/maven/build-dependencies-8dffe374d1 branch November 21, 2023 07:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file java Pull requests that update Java code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant