You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@isis.apache.org by GitBox <gi...@apache.org> on 2021/01/14 07:32:08 UTC

[GitHub] [isis] dependabot[bot] opened a new pull request #329: Bump guava from 30.0-jre to 30.1-jre

dependabot[bot] opened a new pull request #329:
URL: https://github.com/apache/isis/pull/329


   Bumps [guava](https://github.com/google/guava) from 30.0-jre to 30.1-jre.
   <details>
   <summary>Release notes</summary>
   <p><em>Sourced from <a href="https://github.com/google/guava/releases">guava's releases</a>.</em></p>
   <blockquote>
   <h2>30.1</h2>
   <h3>Maven</h3>
   <pre lang="xml"><code>&lt;dependency&gt;
     &lt;groupId&gt;com.google.guava&lt;/groupId&gt;
     &lt;artifactId&gt;guava&lt;/artifactId&gt;
     &lt;version&gt;30.1-jre&lt;/version&gt;
     &lt;!-- or, for Android: --&gt;
     &lt;version&gt;30.1-android&lt;/version&gt;
   &lt;/dependency&gt;
   </code></pre>
   <h3>Javadoc</h3>
   <ul>
   <li><a href="http://guava.dev/releases/30.1-jre/api/docs/">30.1-jre</a></li>
   <li><a href="http://guava.dev/releases/30.1-android/api/docs/">30.1-android</a></li>
   </ul>
   <h3>JDiff</h3>
   <ul>
   <li><a href="http://guava.dev/releases/30.1-jre/api/diffs/">30.1-jre vs. 30.0-jre</a></li>
   <li><a href="http://guava.dev/releases/30.1-android/api/diffs/">30.1-android vs. 30.0-android</a></li>
   <li><a href="http://guava.dev/releases/30.1-android/api/androiddiffs/">30.1-android vs. 30.1-jre</a></li>
   </ul>
   <h3>Changelog</h3>
   <ul>
   <li>If you use guava-android in an Android project (as opposed to from a Java VM), you will need to <a href="https://developer.android.com/studio/write/java8-support.html#supported_features">enable desugaring of Java 8 <em>language features</em></a> if you have not already done so. (And if you are releasing an Android <em>library</em>, then anyone who uses that library will also have to enable desugaring.) We expect for nearly all Android projects to have already enabled desugaring. But if this causes problems for you, please let us know on [issue <a href="https://github-redirect.dependabot.com/google/guava/issues/5358">#5358</a>](<a href="https://github-redirect.dependabot.com/google/guava/issues/5358">google/guava#5358</a>). The purpose of this change is to detect potential problems for users now so that we can plan to use Java 8 language features in our implementation later this year.</li>
   <li>Introduced a warning log message when running <code>guava-android</code> under a Java 7 VM. (Android VMs are unaffected, aside from the need to use desugaring, described in the previous bullet.) This warning is not <em>guaranteed</em> to be logged when running under Java 7, so please don't rely on it as your only warning about future problems. If the warning <em>itself</em> causes you trouble, you can eliminate it by silencing the logger for <code>com.google.common.base.MoreObjects$ToStringHelper</code> (which is used <em>only</em> for this warning). This warning prepares for <a href="https://github-redirect.dependabot.com/google/guava/issues/5269">removing support for Java 7 in 2021</a>. Please report any problems. We have tried to make the warning as safe as possible, but anytime a common library logs, there is the potential for <a href="https://stackoverflow.com/a/41017717/28465"><code>NullPointerException</code></a> or even <a href="https://stackoverflow.com/a/48009613/284
 65">deadlock</a>. (To be clear, Guava will <em>not</em> log under Java 8 or Android, but it <em>may</em> log under Java 7.) (dc52e6e385)</li>
   <li><code>base</code>: Deprecated <code>StandardSystemProperty.JAVA_EXT_DIRS</code>. We do not plan to remove the API, but note that, under recent versions of Java, that property always has a value of <code>null</code>. (38abf07772)</li>
   <li><code>net</code>: Added <code>HttpHeaders</code> constants for <code>Origin-Isolation</code> and <code>X-Request-ID</code>. (a48fb4f724, 8319d201cd)</li>
   <li><code>reflect</code>: Added <code>ClassInfo.isTopLevel()</code>. (410627262b)</li>
   <li><code>util.concurrent</code>: Added <code>ClosingFuture.submitAsync(AsyncClosingCallable)</code>. (c5e2d8d5cb)</li>
   </ul>
   </blockquote>
   </details>
   <details>
   <summary>Commits</summary>
   <ul>
   <li>See full diff in <a href="https://github.com/google/guava/commits">compare view</a></li>
   </ul>
   </details>
   <br />
   
   
   [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.google.guava:guava&package-manager=maven&previous-version=30.0-jre&new-version=30.1-jre)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   <details>
   <summary>Dependabot commands and options</summary>
   <br />
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
   - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
   - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
   - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
   
   
   </details>


----------------------------------------------------------------
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

For queries about this service, please contact Infrastructure at:
users@infra.apache.org



[GitHub] [isis] andi-huber merged pull request #329: Bump guava from 30.0-jre to 30.1-jre

Posted by GitBox <gi...@apache.org>.
andi-huber merged pull request #329:
URL: https://github.com/apache/isis/pull/329


   


----------------------------------------------------------------
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

For queries about this service, please contact Infrastructure at:
users@infra.apache.org