You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@commons.apache.org by GitBox <gi...@apache.org> on 2022/08/26 23:02:33 UTC

[GitHub] [commons-beanutils] dependabot[bot] opened a new pull request, #128: Bump maven-pmd-plugin from 3.17.0 to 3.18.0

dependabot[bot] opened a new pull request, #128:
URL: https://github.com/apache/commons-beanutils/pull/128

   Bumps [maven-pmd-plugin](https://github.com/apache/maven-pmd-plugin) from 3.17.0 to 3.18.0.
   <details>
   <summary>Release notes</summary>
   <p><em>Sourced from <a href="https://github.com/apache/maven-pmd-plugin/releases">maven-pmd-plugin's releases</a>.</em></p>
   <blockquote>
   <h2>3.18.0</h2>
   <h3>🚀 New features and improvements</h3>
   <ul>
   <li><a href="https://issues.apache.org/jira/browse/MPMD-348">MPMD-348</a> - Support Java 19 (<a href="https://github-redirect.dependabot.com/apache/maven-pmd-plugin/issues/82">#82</a>) <a href="https://github.com/adangel"><code>@​adangel</code></a></li>
   </ul>
   <h3>🐛 Bug Fixes</h3>
   <ul>
   <li>[SECURITY] Fix Partial Path Traversal Vulnerability (<a href="https://github-redirect.dependabot.com/apache/maven-pmd-plugin/issues/80">#80</a>) <a href="https://github.com/JLLeitschuh"><code>@​JLLeitschuh</code></a></li>
   </ul>
   <h3>📦 Dependency updates</h3>
   <ul>
   <li><a href="https://issues.apache.org/jira/browse/MPMD-352">MPMD-352</a> - Upgrade Maven Common Artifact Filters to 3.3.1</li>
   <li><a href="https://issues.apache.org/jira/browse/MPMD-351">MPMD-351</a> - Upgrade Maven Artifact Transfer to 0.13.1</li>
   <li><a href="https://issues.apache.org/jira/browse/MPMD-350">MPMD-350</a> - Upgrade Maven Shared Utils to 3.3.4</li>
   <li><a href="https://issues.apache.org/jira/browse/MPMD-349">MPMD-349</a> - Upgrade Maven Reporting API to 3.1.1/Maven Reporting Impl to 3.2.0 (<a href="https://github-redirect.dependabot.com/apache/maven-pmd-plugin/issues/84">#84</a>) <a href="https://github.com/michael-o"><code>@​michael-o</code></a></li>
   <li><a href="https://issues.apache.org/jira/browse/MPMD-347">MPMD-347</a> - Upgrade to PMD 6.48.0 (<a href="https://github-redirect.dependabot.com/apache/maven-pmd-plugin/issues/81">#81</a>) <a href="https://github.com/adangel"><code>@​adangel</code></a></li>
   <li>Bump maven-plugins from 36 to 37 (<a href="https://github-redirect.dependabot.com/apache/maven-pmd-plugin/issues/79">#79</a>) <a href="https://github.com/dependabot"><code>@​dependabot</code></a></li>
   <li><a href="https://issues.apache.org/jira/browse/MPMD-345">MPMD-345</a> - Upgrade to PMD 6.47.0 (<a href="https://github-redirect.dependabot.com/apache/maven-pmd-plugin/issues/73">#73</a>) <a href="https://github.com/adangel"><code>@​adangel</code></a></li>
   <li>Bump commons-lang3 from 3.8.1 to 3.12.0 (<a href="https://github-redirect.dependabot.com/apache/maven-pmd-plugin/issues/72">#72</a>) <a href="https://github.com/dependabot"><code>@​dependabot</code></a></li>
   <li>Bump plexus-resources from 1.1.0 to 1.2.0 (<a href="https://github-redirect.dependabot.com/apache/maven-pmd-plugin/issues/56">#56</a>) <a href="https://github.com/dependabot"><code>@​dependabot</code></a></li>
   <li>Bump animal-sniffer-maven-plugin from 1.16 to 1.21 (<a href="https://github-redirect.dependabot.com/apache/maven-pmd-plugin/issues/54">#54</a>) <a href="https://github.com/dependabot"><code>@​dependabot</code></a></li>
   </ul>
   <h3>💥 Compatibility Notice</h3>
   <p>For technical reasons the parameter <code>sourceEncoding</code> has been replaced with <code>inputEncoding</code>.
   For details please see <a href="https://issues.apache.org/jira/browse/MPMD-349">MPMD-349</a>/<a href="https://gitbox.apache.org/repos/asf?p=maven-pmd-plugin.git;a=commit;h=2b7d2d7065bae1f984c82d210062064376fbd430">2b7d2d7065bae1f984c82d210062064376fbd430</a>.</p>
   </blockquote>
   </details>
   <details>
   <summary>Commits</summary>
   <ul>
   <li><a href="https://github.com/apache/maven-pmd-plugin/commit/23f5f3947b8d87665e7601216e5b5aa533b15a06"><code>23f5f39</code></a> [maven-release-plugin] prepare release maven-pmd-plugin-3.18.0</li>
   <li><a href="https://github.com/apache/maven-pmd-plugin/commit/614f1a9546bd090d246c59ccb0395b37ec579b83"><code>614f1a9</code></a> [MPMD-352] Upgrade Maven Common Artifact Filters to 3.3.1</li>
   <li><a href="https://github.com/apache/maven-pmd-plugin/commit/b62992f9db37a10ae9d880462f5aeaff98da6439"><code>b62992f</code></a> [MPMD-351] Upgrade Maven Artifact Transfer to 0.13.1</li>
   <li><a href="https://github.com/apache/maven-pmd-plugin/commit/a28c27d9e5142aa6d601d65c76d6f076bd2d8c4d"><code>a28c27d</code></a> [MPMD-350] Upgrade Maven Shared Utils to 3.3.4</li>
   <li><a href="https://github.com/apache/maven-pmd-plugin/commit/2b7d2d7065bae1f984c82d210062064376fbd430"><code>2b7d2d7</code></a> [MPMD-349] Upgrade Maven Reporting API to 3.1.1/Maven Reporting Impl to 3.2.0</li>
   <li><a href="https://github.com/apache/maven-pmd-plugin/commit/1740f00ef7b3d6132edb0cb253623f0eaf05a8d7"><code>1740f00</code></a> (doc) Update releasenotes.md</li>
   <li><a href="https://github.com/apache/maven-pmd-plugin/commit/2ecd5788286c80b12136cb7e86a6ff1795c53e23"><code>2ecd578</code></a> [MPMD-348] - Support Java 19</li>
   <li><a href="https://github.com/apache/maven-pmd-plugin/commit/10d345c3588fad71df9f7e5bf505e1ece2817c74"><code>10d345c</code></a> [MPMD-347] - Upgrade to PMD 6.48.0</li>
   <li><a href="https://github.com/apache/maven-pmd-plugin/commit/5a0ae8824d2fc95807bd233afb97fb99310b26fb"><code>5a0ae88</code></a> Bump maven-plugins from 36 to 37</li>
   <li><a href="https://github.com/apache/maven-pmd-plugin/commit/24047088b2346a75efb1e1e9641bd75fcc549806"><code>2404708</code></a> [SECURITY] Fix Partial Path Traversal Vulnerability</li>
   <li>Additional commits viewable in <a href="https://github.com/apache/maven-pmd-plugin/compare/maven-pmd-plugin-3.17.0...maven-pmd-plugin-3.18.0">compare view</a></li>
   </ul>
   </details>
   <br />
   
   
   [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.apache.maven.plugins:maven-pmd-plugin&package-manager=maven&previous-version=3.17.0&new-version=3.18.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   <details>
   <summary>Dependabot commands and options</summary>
   <br />
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
   - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
   - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
   - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
   
   
   </details>


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@commons.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [commons-beanutils] codecov-commenter commented on pull request #128: Bump maven-pmd-plugin from 3.17.0 to 3.18.0

Posted by GitBox <gi...@apache.org>.
codecov-commenter commented on PR #128:
URL: https://github.com/apache/commons-beanutils/pull/128#issuecomment-1229030833

   # [Codecov](https://codecov.io/gh/apache/commons-beanutils/pull/128?src=pr&el=h1&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=The+Apache+Software+Foundation) Report
   > Merging [#128](https://codecov.io/gh/apache/commons-beanutils/pull/128?src=pr&el=desc&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=The+Apache+Software+Foundation) (c3f6b52) into [master](https://codecov.io/gh/apache/commons-beanutils/commit/c316ab2890af34c58d1dd18909b2ec722f92ad04?el=desc&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=The+Apache+Software+Foundation) (c316ab2) will **not change** coverage.
   > The diff coverage is `n/a`.
   
   ```diff
   @@            Coverage Diff            @@
   ##             master     #128   +/-   ##
   =========================================
     Coverage     64.57%   64.57%           
     Complexity     1555     1555           
   =========================================
     Files           105      105           
     Lines          5796     5796           
     Branches       1060     1060           
   =========================================
     Hits           3743     3743           
     Misses         1607     1607           
     Partials        446      446           
   ```
   
   
   
   :mega: We’re building smart automated test selection to slash your CI/CD build times. [Learn more](https://about.codecov.io/iterative-testing/?utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=The+Apache+Software+Foundation)
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@commons.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


[GitHub] [commons-beanutils] garydgregory merged pull request #128: Bump maven-pmd-plugin from 3.17.0 to 3.18.0

Posted by GitBox <gi...@apache.org>.
garydgregory merged PR #128:
URL: https://github.com/apache/commons-beanutils/pull/128


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscribe@commons.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org