deps: bump the regular group with 9 updates#2327
Merged
Merged
Conversation
Bumps the regular group with 9 updates: | Package | From | To | | --- | --- | --- | | [ch.qos.logback:logback-core](https://github.com/qos-ch/logback) | `1.5.32` | `1.5.33` | | [ch.qos.logback:logback-classic](https://github.com/qos-ch/logback) | `1.5.32` | `1.5.33` | | [com.networknt:json-schema-validator](https://github.com/networknt/json-schema-validator) | `1.5.9` | `3.0.3` | | [org.apache.maven.plugins:maven-dependency-plugin](https://github.com/apache/maven-dependency-plugin) | `3.10.0` | `3.11.0` | | [com.diffplug.spotless:spotless-maven-plugin](https://github.com/diffplug/spotless) | `3.5.1` | `3.6.0` | | [org.sonarsource.scanner.maven:sonar-maven-plugin](https://github.com/SonarSource/sonar-scanner-maven) | `5.6.0.6792` | `5.7.0.6970` | | [org.apache.maven.plugins:maven-surefire-plugin](https://github.com/apache/maven-surefire) | `3.5.5` | `3.5.6` | | [org.apache.maven.plugins:maven-failsafe-plugin](https://github.com/apache/maven-surefire) | `3.5.5` | `3.5.6` | | [tools.jackson:jackson-bom](https://github.com/FasterXML/jackson-bom) | `3.1.3` | `3.1.4` | Updates `ch.qos.logback:logback-core` from 1.5.32 to 1.5.33 - [Release notes](https://github.com/qos-ch/logback/releases) - [Commits](qos-ch/logback@v_1.5.32...v_1.5.33) Updates `ch.qos.logback:logback-classic` from 1.5.32 to 1.5.33 - [Release notes](https://github.com/qos-ch/logback/releases) - [Commits](qos-ch/logback@v_1.5.32...v_1.5.33) Updates `ch.qos.logback:logback-classic` from 1.5.32 to 1.5.33 - [Release notes](https://github.com/qos-ch/logback/releases) - [Commits](qos-ch/logback@v_1.5.32...v_1.5.33) Updates `com.networknt:json-schema-validator` from 1.5.9 to 3.0.3 - [Release notes](https://github.com/networknt/json-schema-validator/releases) - [Changelog](https://github.com/networknt/json-schema-validator/blob/master/CHANGELOG.md) - [Commits](networknt/json-schema-validator@1.5.9...3.0.3) Updates `org.apache.maven.plugins:maven-dependency-plugin` from 3.10.0 to 3.11.0 - [Release notes](https://github.com/apache/maven-dependency-plugin/releases) - [Commits](apache/maven-dependency-plugin@maven-dependency-plugin-3.10.0...maven-dependency-plugin-3.11.0) Updates `com.diffplug.spotless:spotless-maven-plugin` from 3.5.1 to 3.6.0 - [Release notes](https://github.com/diffplug/spotless/releases) - [Changelog](https://github.com/diffplug/spotless/blob/main/CHANGES.md) - [Commits](diffplug/spotless@maven/3.5.1...maven/3.6.0) Updates `org.sonarsource.scanner.maven:sonar-maven-plugin` from 5.6.0.6792 to 5.7.0.6970 - [Release notes](https://github.com/SonarSource/sonar-scanner-maven/releases) - [Commits](SonarSource/sonar-scanner-maven@5.6.0.6792...5.7.0.6970) Updates `org.apache.maven.plugins:maven-surefire-plugin` from 3.5.5 to 3.5.6 - [Release notes](https://github.com/apache/maven-surefire/releases) - [Commits](apache/maven-surefire@surefire-3.5.5...surefire-3.5.6) Updates `org.apache.maven.plugins:maven-failsafe-plugin` from 3.5.5 to 3.5.6 - [Release notes](https://github.com/apache/maven-surefire/releases) - [Commits](apache/maven-surefire@surefire-3.5.5...surefire-3.5.6) Updates `org.apache.maven.plugins:maven-failsafe-plugin` from 3.5.5 to 3.5.6 - [Release notes](https://github.com/apache/maven-surefire/releases) - [Commits](apache/maven-surefire@surefire-3.5.5...surefire-3.5.6) Updates `tools.jackson:jackson-bom` from 3.1.3 to 3.1.4 - [Commits](FasterXML/jackson-bom@jackson-bom-3.1.3...jackson-bom-3.1.4) --- updated-dependencies: - dependency-name: ch.qos.logback:logback-core dependency-version: 1.5.33 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: regular - dependency-name: ch.qos.logback:logback-classic dependency-version: 1.5.33 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: regular - dependency-name: ch.qos.logback:logback-classic dependency-version: 1.5.33 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: regular - dependency-name: com.networknt:json-schema-validator dependency-version: 3.0.3 dependency-type: direct:production update-type: version-update:semver-major dependency-group: regular - dependency-name: org.apache.maven.plugins:maven-dependency-plugin dependency-version: 3.11.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: regular - dependency-name: com.diffplug.spotless:spotless-maven-plugin dependency-version: 3.6.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: regular - dependency-name: org.sonarsource.scanner.maven:sonar-maven-plugin dependency-version: 5.7.0.6970 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: regular - dependency-name: org.apache.maven.plugins:maven-surefire-plugin dependency-version: 3.5.6 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: regular - dependency-name: org.apache.maven.plugins:maven-failsafe-plugin dependency-version: 3.5.6 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: regular - dependency-name: org.apache.maven.plugins:maven-failsafe-plugin dependency-version: 3.5.6 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: regular - dependency-name: tools.jackson:jackson-bom dependency-version: 3.1.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: regular ... Signed-off-by: dependabot[bot] <support@github.com>
triceo
approved these changes
Jun 1, 2026
|
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.



Bumps the regular group with 9 updates:
1.5.321.5.331.5.321.5.331.5.93.0.33.10.03.11.03.5.13.6.05.6.0.67925.7.0.69703.5.53.5.63.5.53.5.63.1.33.1.4Updates
ch.qos.logback:logback-corefrom 1.5.32 to 1.5.33Release notes
Sourced from ch.qos.logback:logback-core's releases.
Commits
124e8b4prepare release 1.5.33d8fd6f2escapeTags in message field when printing status messages95edbebhostnameVerification default to true in SSLParametersConfiguration, SSL.DEFAU...b768a96remove spurious java.swing.* import12cf2c5classes in java.lang and java.util are now whitelisted individuallye9133edfix typo47089a2added Filip Egeric icla85735f7Modified ConversionRuleAction.java: Updated validPreconditions() to614f7a7the official name for initial instructions file foe coding agents is AGENTS.mdfe50bb5fix: do not warn when both converterClass and class attributes are specified ...Updates
ch.qos.logback:logback-classicfrom 1.5.32 to 1.5.33Release notes
Sourced from ch.qos.logback:logback-classic's releases.
Commits
124e8b4prepare release 1.5.33d8fd6f2escapeTags in message field when printing status messages95edbebhostnameVerification default to true in SSLParametersConfiguration, SSL.DEFAU...b768a96remove spurious java.swing.* import12cf2c5classes in java.lang and java.util are now whitelisted individuallye9133edfix typo47089a2added Filip Egeric icla85735f7Modified ConversionRuleAction.java: Updated validPreconditions() to614f7a7the official name for initial instructions file foe coding agents is AGENTS.mdfe50bb5fix: do not warn when both converterClass and class attributes are specified ...Updates
ch.qos.logback:logback-classicfrom 1.5.32 to 1.5.33Release notes
Sourced from ch.qos.logback:logback-classic's releases.
Commits
124e8b4prepare release 1.5.33d8fd6f2escapeTags in message field when printing status messages95edbebhostnameVerification default to true in SSLParametersConfiguration, SSL.DEFAU...b768a96remove spurious java.swing.* import12cf2c5classes in java.lang and java.util are now whitelisted individuallye9133edfix typo47089a2added Filip Egeric icla85735f7Modified ConversionRuleAction.java: Updated validPreconditions() to614f7a7the official name for initial instructions file foe coding agents is AGENTS.mdfe50bb5fix: do not warn when both converterClass and class attributes are specified ...Updates
com.networknt:json-schema-validatorfrom 1.5.9 to 3.0.3Release notes
Sourced from com.networknt:json-schema-validator's releases.
... (truncated)
Changelog
Sourced from com.networknt:json-schema-validator's changelog.
... (truncated)
Commits
7407dddupgrade to 3.0.3 and update changelog07b694bfixes #1246 Coercion bug (#1247)9df7d32Merge branch 'master' of github.com:networknt/json-schema-validator2686725add gitignore331ced5Cleanup of IOException leftovers after update to jackson3 (#1244)a6ae62cupgrade to 3.0.2 and update changelog054f2f6Support handling of non-finite numbers if present (#1241)d352d6fupdate version to 3.0.1a313e60upgrade to 3.0.1 and update changelogff327ecUpgrade Jackson from 3.0.3 to 3.1.0 to fix CVE-2026-29062 (#1236)Updates
org.apache.maven.plugins:maven-dependency-pluginfrom 3.10.0 to 3.11.0Release notes
Sourced from org.apache.maven.plugins:maven-dependency-plugin's releases.
Commits
c186d05[maven-release-plugin] prepare release maven-dependency-plugin-3.11.03712611Fix artifact relocation supporte873e0eManage ASM version 9.10 to support JDK 2770b5356fix: fix addParentPoms=true causes repositories to be ignored. (#1585)51d8939Fix false positive in analyze-exclusions with transitive dependency exclusion...02b865bBump eu.maveniverse.maven.domtrip:domtrip-core from 1.5.0 to 1.5.104f4de1Bump eu.maveniverse.maven.domtrip:domtrip-maven from 1.5.0 to 1.5.12812490Bump mavenVersion from 3.9.15 to 3.9.16ce117daBump org.apache.maven.shared:maven-dependency-analyzeraea7a64Prevent NPE (#1622)Updates
com.diffplug.spotless:spotless-maven-pluginfrom 3.5.1 to 3.6.0Release notes
Sourced from com.diffplug.spotless:spotless-maven-plugin's releases.
Commits
71a433cPublished maven/3.6.03a0f101Published gradle/8.6.0007e9d8Published lib/4.6.2a074d53Allow setting the local P2 cache dir in the Spotless Gradle plugin (#2944)a266fc2Merge branch 'main' into add-cache-directory-dsle0d466eFix: sort members treats record declarations as types (#2942)3936b6fMerge branch 'main' into main278765ffix: expandWildcardImports support pom type dependency, fix #2839 (#2935)a18ddecRemove maxLineLength from versionCatalog step (#2949)b91ad87Add changelog entries for versionCatalog maxLineLength removalUpdates
org.sonarsource.scanner.maven:sonar-maven-pluginfrom 5.6.0.6792 to 5.7.0.6970Release notes
Sourced from org.sonarsource.scanner.maven:sonar-maven-plugin's releases.
Commits
9e114d7SCANMAVEN-332 Support modular-jar (#402)7424fe5SCANMAVEN-317 - Support encryption of sonar.token, and other new secure prope...b8ff39fSCANMAVEN-341 Fix regex for encrypted property filtering for mvn4 and add tes...b4c0b4aSCANMAVEN-377 Update dependency org.assertj:assertj-core to v3.27.7 [SECURITY...cd19506SCANMAVEN-372 Configure Renovate (#393)944f552SCANMAVEN-376 Use SonarSource/.../sonar-update-center-release@v1 instead of @...2832b8aSCANMAVEN-374 Unpin internal GitHub actions (#396)81caeebSCANMAVEN-373 SubmitReview: Use Vault token (#395)c62dd74SCANMAVEN-370 Prepare next development iteration 5.7.0 (#392)Updates
org.apache.maven.plugins:maven-surefire-pluginfrom 3.5.5 to 3.5.6Release notes
Sourced from org.apache.maven.plugins:maven-surefire-plugin's releases.
Commits
25ea054[maven-release-plugin] prepare release surefire-3.5.6e5f374cBump org.fusesource.jansi:jansi from 2.4.2 to 2.4.3dadd55bIssue #2613 Debugging failsafe tests: Message 'Listening for transport dt_soc...39dd250Bump commons-io:commons-io from 2.21.0 to 2.22.02774273Ensure that the statistics filename is calculated only once. (#3326) (#3327)0d5df8a3.5.x/bug/cherry pick embedded mode its (#3328)04ad9a2Use surefire 3.5.5 by project itself for testing37e8f69Addflakesattribute to use intestsuitereport (#3306) (#3308)a970fefIntroduce reportTestTimestamp option and include timestamp for test sets and ...e838393deploy 3.5.x branch to nexusUpdates
org.apache.maven.plugins:maven-failsafe-pluginfrom 3.5.5 to 3.5.6Release notes
Sourced from org.apache.maven.plugins:maven-failsafe-plugin's releases.
Commits
25ea054[maven-release-plugin] prepare release surefire-3.5.6e5f374cBump org.fusesource.jansi:jansi from 2.4.2 to 2.4.3dadd55bIssue #2613 Debugging failsafe tests: Message 'Listening for transport dt_soc...39dd250Bump commons-io:commons-io from 2.21.0 to 2.22.02774273Ensure that the statistics filename is calculated only once. (#3326) (#3327)0d5df8a3.5.x/bug/cherry pick embedded mode its (#3328)04ad9a2Use surefire 3.5.5 by project itself for testing37e8f69Addflakesattribute to use intestsuitereport (#3306) (#3308)a970fefIntroduce reportTestTimestamp option and include timestamp for test sets and ...e838393deploy 3.5.x branch to nexusUpdates
org.apache.maven.plugins:maven-failsafe-pluginfrom 3.5.5 to 3.5.6Release notes
Sourced from org.apache.maven.plugins:maven-failsafe-plugin's releases.
Commits
25ea054[maven-release-plugin] prepare release surefire-3.5.6e5f374cBump org.fusesource.jansi:jansi from 2.4.2 to 2.4.3dadd55bIssue #2613 Debugging failsafe tests: Message 'Listening for transport dt_soc...39dd250Bump commons-io:commons-io from 2.21.0 to 2.22.02774273Ensure that the statistics filename is calculated only once. (#3326) (#3327)0d5df8a3.5.x/bug/cherry pick embedded mode its (#3328)04ad9a2Use surefire 3.5.5 by project itself for testing37e8f69Addflakesattribute to use intestsuitereport (#3306) (#3308)a970fefIntroduce reportTestTimestamp option and include timestamp for test sets and ...e838393deploy 3.5.x branch to nexusUpdates
tools.jackson:jackson-bomfrom 3.1.3 to 3.1.4Commits
4085e4d[maven-release-plugin] prepare release jackson-bom-3.1.4f8e1a4ePrep for 3.1.4 release47eb6eaMerge branch '2.x' into 3.1902ec69Update Woodstox/stax2-api (to 7.2.0/4.3.0)d5df403Post-release dep version bump7ed6798[maven-release-plugin] prepare for next development iteration2570647Merge branch '2.21' into 2.x9d3a9d5Post-release dep version bump84bcf7f[maven-release-plugin] prepare for next development iteration374fbd0[maven-release-plugin] prepare release jackson-bom-2.21.3Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions