- 
                Notifications
    You must be signed in to change notification settings 
- Fork 2.5k
build(deps): bump the maven group across 15 directories with 20 updates #13583
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
base: master
Are you sure you want to change the base?
build(deps): bump the maven group across 15 directories with 20 updates #13583
Conversation
Bumps the maven group with 3 updates in the /projects/apache-cxf/project-parent/fuzz-targets directory: org.apache.cxf:cxf-core, org.apache.cxf:cxf-rt-frontend-jaxrs and org.apache.cxf:cxf-rt-transports-http. Bumps the maven group with 1 update in the /projects/apache-poi directory: org.apache.poi:poi-ooxml. Bumps the maven group with 2 updates in the /projects/async-http-client/project-parent/fuzz-targets directory: [org.asynchttpclient:async-http-client](https://github.com/AsyncHttpClient/async-http-client) and org.eclipse.jetty:jetty-server. Bumps the maven group with 1 update in the /projects/avro/project-parent/fuzz-targets directory: org.apache.avro:avro. Bumps the maven group with 1 update in the /projects/eclipse-equinox/equinox-fuzzer directory: [org.eclipse.platform:org.eclipse.core.runtime](https://github.com/eclipse-platform/eclipse.platform). Bumps the maven group with 1 update in the /projects/hadoop/project-parent/fuzz-targets directory: org.apache.hadoop:hadoop-common. Bumps the maven group with 1 update in the /projects/htmlunit/htmlunit-fuzzer directory: [org.htmlunit:htmlunit](https://github.com/HtmlUnit/htmlunit). Bumps the maven group with 3 updates in the /projects/jetty/project-parent/fuzz-targets directory: org.eclipse.jetty:jetty-server, org.eclipse.jetty:jetty-http and org.eclipse.jetty.http2:http2-server. Bumps the maven group with 1 update in the /projects/jose4j/project-parent/fuzz-targets directory: [org.bitbucket.b_c:jose4j](https://bitbucket.org/b_c/jose4j). Bumps the maven group with 1 update in the /projects/nimbus-jwt/nimbus-jwt-fuzzer directory: [com.nimbusds:nimbus-jose-jwt](https://bitbucket.org/connect2id/nimbus-jose-jwt). Bumps the maven group with 2 updates in the /projects/opencensus-java/project-parent/fuzz-targets directory: [com.google.guava:guava](https://github.com/google/guava) and [com.google.protobuf:protobuf-java](https://github.com/protocolbuffers/protobuf). Bumps the maven group with 1 update in the /projects/pdfbox/project-parent/fuzz-targets directory: org.apache.pdfbox:pdfbox. Bumps the maven group with 1 update in the /projects/xnio-api/xnio-fuzzer directory: org.jboss.xnio:xnio-api. Bumps the maven group with 1 update in the /projects/yamlbeans/project-parent/fuzz-targets directory: [com.esotericsoftware.yamlbeans:yamlbeans](https://github.com/EsotericSoftware/yamlbeans). Bumps the maven group with 1 update in the /projects/zt-zip/project-parent/fuzz-targets directory: [org.zeroturnaround:zt-zip](https://github.com/zeroturnaround/zt-zip). Updates `org.apache.cxf:cxf-core` from Fuzzing-SNAPSHOT to 3.5.10 Updates `org.apache.cxf:cxf-rt-frontend-jaxrs` from Fuzzing-SNAPSHOT to 2.6.11 Updates `org.apache.cxf:cxf-rt-transports-http` from Fuzzing-SNAPSHOT to 3.1.16 Updates `org.apache.poi:poi-ooxml` from 5.3.0 to 5.4.0 Updates `org.asynchttpclient:async-http-client` from Fuzzing-SNAPSHOT to 2.0.35 - [Release notes](https://github.com/AsyncHttpClient/async-http-client/releases) - [Changelog](https://github.com/AsyncHttpClient/async-http-client/blob/main/CHANGES.md) - [Commits](https://github.com/AsyncHttpClient/async-http-client/commits/async-http-client-project-2.0.35) Updates `org.eclipse.jetty:jetty-server` from 11.0.14 to 11.0.24 Updates `org.apache.avro:avro` from Fuzzing-SNAPSHOT to 1.11.4 Updates `org.eclipse.platform:org.eclipse.core.runtime` from 3.26.100 to 3.29.0 - [Commits](https://github.com/eclipse-platform/eclipse.platform/commits) Updates `org.apache.hadoop:hadoop-common` from Fuzzing-SNAPSHOT to 3.4.0 Updates `org.htmlunit:htmlunit` from 2.7.0 to 3.9.0 - [Release notes](https://github.com/HtmlUnit/htmlunit/releases) - [Commits](HtmlUnit/htmlunit@HtmlUnit-2.7...3.9.0) Updates `org.eclipse.jetty:jetty-server` from Fuzzing-SNAPSHOT to 9.4.56.v20240826 Updates `org.eclipse.jetty:jetty-http` from Fuzzing-SNAPSHOT to 12.0.12 Updates `org.eclipse.jetty.http2:http2-server` from Fuzzing-SNAPSHOT to 9.4.53.v20231009 Updates `org.bitbucket.b_c:jose4j` from Fuzzing-SNAPSHOT to 0.9.4 - [Commits](https://bitbucket.org/b_c/jose4j/commits/tag/jose4j-0.9.4) Updates `com.nimbusds:nimbus-jose-jwt` from 9.30.1 to 10.0.2 - [Changelog](https://bitbucket.org/connect2id/nimbus-jose-jwt/src/master/CHANGELOG.txt) - [Commits](https://bitbucket.org/connect2id/nimbus-jose-jwt/branches/compare/10.0.2..9.30.1) Updates `com.google.guava:guava` from 31.1-jre to 32.0.0-jre - [Release notes](https://github.com/google/guava/releases) - [Commits](https://github.com/google/guava/commits) Updates `com.google.protobuf:protobuf-java` from 4.0.0-rc-2 to 4.31.1 - [Release notes](https://github.com/protocolbuffers/protobuf/releases) - [Changelog](https://github.com/protocolbuffers/protobuf/blob/main/protobuf_release.bzl) - [Commits](https://github.com/protocolbuffers/protobuf/commits/v4.31.1) Updates `org.apache.pdfbox:pdfbox` from Fuzzing-SNAPSHOT to 1.8.16 Updates `org.jboss.xnio:xnio-api` from 3.8.8.Final to 3.8.14.Final Updates `com.esotericsoftware.yamlbeans:yamlbeans` from Fuzzing-SNAPSHOT to 1.17 - [Release notes](https://github.com/EsotericSoftware/yamlbeans/releases) - [Commits](https://github.com/EsotericSoftware/yamlbeans/commits/1.17) Updates `org.zeroturnaround:zt-zip` from Fuzzing-SNAPSHOT to 1.13 - [Changelog](https://github.com/zeroturnaround/zt-zip/blob/master/Changelog.txt) - [Commits](https://github.com/zeroturnaround/zt-zip/commits/zt-zip-1.13) --- updated-dependencies: - dependency-name: org.apache.cxf:cxf-core dependency-version: 3.5.10 dependency-type: direct:production dependency-group: maven - dependency-name: org.apache.cxf:cxf-rt-frontend-jaxrs dependency-version: 2.6.11 dependency-type: direct:production dependency-group: maven - dependency-name: org.apache.cxf:cxf-rt-transports-http dependency-version: 3.1.16 dependency-type: direct:production dependency-group: maven - dependency-name: org.apache.poi:poi-ooxml dependency-version: 5.4.0 dependency-type: direct:production dependency-group: maven - dependency-name: org.asynchttpclient:async-http-client dependency-version: 2.0.35 dependency-type: direct:production dependency-group: maven - dependency-name: org.eclipse.jetty:jetty-server dependency-version: 11.0.24 dependency-type: direct:development dependency-group: maven - dependency-name: org.apache.avro:avro dependency-version: 1.11.4 dependency-type: direct:development dependency-group: maven - dependency-name: org.eclipse.platform:org.eclipse.core.runtime dependency-version: 3.29.0 dependency-type: direct:production dependency-group: maven - dependency-name: org.apache.hadoop:hadoop-common dependency-version: 3.4.0 dependency-type: direct:production dependency-group: maven - dependency-name: org.htmlunit:htmlunit dependency-version: 3.9.0 dependency-type: direct:production dependency-group: maven - dependency-name: org.eclipse.jetty:jetty-server dependency-version: 9.4.56.v20240826 dependency-type: direct:production dependency-group: maven - dependency-name: org.eclipse.jetty:jetty-http dependency-version: 12.0.12 dependency-type: direct:production dependency-group: maven - dependency-name: org.eclipse.jetty.http2:http2-server dependency-version: 9.4.53.v20231009 dependency-type: direct:development dependency-group: maven - dependency-name: org.bitbucket.b_c:jose4j dependency-version: 0.9.4 dependency-type: direct:production dependency-group: maven - dependency-name: com.nimbusds:nimbus-jose-jwt dependency-version: 10.0.2 dependency-type: direct:production dependency-group: maven - dependency-name: com.google.guava:guava dependency-version: 32.0.0-jre dependency-type: direct:production dependency-group: maven - dependency-name: com.google.protobuf:protobuf-java dependency-version: 4.31.1 dependency-type: direct:production dependency-group: maven - dependency-name: org.apache.pdfbox:pdfbox dependency-version: 1.8.16 dependency-type: direct:production dependency-group: maven - dependency-name: org.jboss.xnio:xnio-api dependency-version: 3.8.14.Final dependency-type: direct:production dependency-group: maven - dependency-name: com.esotericsoftware.yamlbeans:yamlbeans dependency-version: '1.17' dependency-type: direct:production dependency-group: maven - dependency-name: org.zeroturnaround:zt-zip dependency-version: '1.13' dependency-type: direct:production dependency-group: maven ... Signed-off-by: dependabot[bot] <[email protected]>
| dependabot[bot] is a new contributor to projects/opencensus-java. The PR must be approved by known contributors before it can be merged. The past contributors are: catenacyber, henryrneh | 
Bumps the maven group with 3 updates in the /projects/apache-cxf/project-parent/fuzz-targets directory: org.apache.cxf:cxf-core, org.apache.cxf:cxf-rt-frontend-jaxrs and org.apache.cxf:cxf-rt-transports-http.
Bumps the maven group with 1 update in the /projects/apache-poi directory: org.apache.poi:poi-ooxml.
Bumps the maven group with 2 updates in the /projects/async-http-client/project-parent/fuzz-targets directory: org.asynchttpclient:async-http-client and org.eclipse.jetty:jetty-server.
Bumps the maven group with 1 update in the /projects/avro/project-parent/fuzz-targets directory: org.apache.avro:avro.
Bumps the maven group with 1 update in the /projects/eclipse-equinox/equinox-fuzzer directory: org.eclipse.platform:org.eclipse.core.runtime.
Bumps the maven group with 1 update in the /projects/hadoop/project-parent/fuzz-targets directory: org.apache.hadoop:hadoop-common.
Bumps the maven group with 1 update in the /projects/htmlunit/htmlunit-fuzzer directory: org.htmlunit:htmlunit.
Bumps the maven group with 3 updates in the /projects/jetty/project-parent/fuzz-targets directory: org.eclipse.jetty:jetty-server, org.eclipse.jetty:jetty-http and org.eclipse.jetty.http2:http2-server.
Bumps the maven group with 1 update in the /projects/jose4j/project-parent/fuzz-targets directory: org.bitbucket.b_c:jose4j.
Bumps the maven group with 1 update in the /projects/nimbus-jwt/nimbus-jwt-fuzzer directory: com.nimbusds:nimbus-jose-jwt.
Bumps the maven group with 2 updates in the /projects/opencensus-java/project-parent/fuzz-targets directory: com.google.guava:guava and com.google.protobuf:protobuf-java.
Bumps the maven group with 1 update in the /projects/pdfbox/project-parent/fuzz-targets directory: org.apache.pdfbox:pdfbox.
Bumps the maven group with 1 update in the /projects/xnio-api/xnio-fuzzer directory: org.jboss.xnio:xnio-api.
Bumps the maven group with 1 update in the /projects/yamlbeans/project-parent/fuzz-targets directory: com.esotericsoftware.yamlbeans:yamlbeans.
Bumps the maven group with 1 update in the /projects/zt-zip/project-parent/fuzz-targets directory: org.zeroturnaround:zt-zip.
Updates
org.apache.cxf:cxf-corefrom Fuzzing-SNAPSHOT to 3.5.10Updates
org.apache.cxf:cxf-rt-frontend-jaxrsfrom Fuzzing-SNAPSHOT to 2.6.11Updates
org.apache.cxf:cxf-rt-transports-httpfrom Fuzzing-SNAPSHOT to 3.1.16Updates
org.apache.poi:poi-ooxmlfrom 5.3.0 to 5.4.0Updates
org.asynchttpclient:async-http-clientfrom Fuzzing-SNAPSHOT to 2.0.35Changelog
Sourced from org.asynchttpclient:async-http-client's changelog.
Commits
Updates
org.eclipse.jetty:jetty-serverfrom 11.0.14 to 11.0.24Updates
org.apache.avro:avrofrom Fuzzing-SNAPSHOT to 1.11.4Updates
org.eclipse.platform:org.eclipse.core.runtimefrom 3.26.100 to 3.29.0Commits
Updates
org.apache.hadoop:hadoop-commonfrom Fuzzing-SNAPSHOT to 3.4.0Updates
org.htmlunit:htmlunitfrom 2.7.0 to 3.9.0Release notes
Sourced from org.htmlunit:htmlunit's releases.
... (truncated)
Commits
a599e36version 3.9.0d4c1105core-js 3.9.051f0eefexclude commons.logging from httpcomponents65986a4code style1587961lib updates2a972cehtmx 1.9.9792e845new subproject htmlunit-cspe07ba67fix ms driver checke015082enable FEATURE_SECURE_PROCESSING for the MSXML XSLProcessor77aeaa8another minor neko updateUpdates
org.eclipse.jetty:jetty-serverfrom Fuzzing-SNAPSHOT to 9.4.56.v20240826Updates
org.eclipse.jetty:jetty-httpfrom Fuzzing-SNAPSHOT to 12.0.12Updates
org.eclipse.jetty.http2:http2-serverfrom Fuzzing-SNAPSHOT to 9.4.53.v20231009Updates
org.bitbucket.b_c:jose4jfrom Fuzzing-SNAPSHOT to 0.9.4Commits
Updates
com.nimbusds:nimbus-jose-jwtfrom 9.30.1 to 10.0.2Changelog
Sourced from com.nimbusds:nimbus-jose-jwt's changelog.
Commits
418595b[maven-release-plugin] prepare for next development iteration1923b4fAdds JWKParameterNames.PUBLIC constantec090bd[maven-release-plugin] prepare release 9.465ae1614[maven-release-plugin] prepare for next development iteration10b13c9Replaces unreachable else in AESEncrypter with assertion72275bcAdds static JSONArrayUtils.parse(String), JSONArrayUtils.toJSONString(List<?>)55e7dc4JSONObjectUtils.toJSONString must throw NPE on null String (iss #577)ed73642Fixes regression: Invalid JSON was accepted in versions 9.24+ (iss #574)8eb6fbd[maven-release-plugin] prepare release 9.476020cd1[maven-release-plugin] prepare for next development iterationUpdates
com.google.guava:guavafrom 31.1-jre to 32.0.0-jreRelease notes
Sourced from com.google.guava:guava's releases.
... (truncated)
Commits
Updates
com.google.protobuf:protobuf-javafrom 4.0.0-rc-2 to 4.31.1Commits
Updates
org.apache.pdfbox:pdfboxfrom Fuzzing-SNAPSHOT to 1.8.16Updates
org.jboss.xnio:xnio-apifrom 3.8.8.Final to 3.8.14.FinalUpdates
com.esotericsoftware.yamlbeans:yamlbeansfrom Fuzzing-SNAPSHOT to 1.17Commits
Updates
org.zeroturnaround:zt-zipfrom Fuzzing-SNAPSHOT to 1.13Changelog
Sourced from org.zeroturnaround:zt-zip's changelog.
Commits
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.