Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jul 7, 2022

Bumps spotbugs-maven-plugin from 4.7.0.0 to 4.7.1.0.

Release notes

Sourced from spotbugs-maven-plugin's releases.

Spotbugs Maven Plugin 4.7.1.0

  • Support spotbugs 4.7.1
  • Add support for multiple bug inclusion, excusion, and baseline files. See PR #436
  • Build Updates including usage of asm bom, groovy bom, and adjustment to asm to ensure it works after maven changes
  • Invoker plugin set to groovy 3 while project is groovy 4 as invoker needs older groovy.
Commits
  • f87e38e [maven-release-plugin] prepare release spotbugs-maven-plugin-4.7.1.0
  • 2236446 Merge pull request #447 from hazendaz/spotbugs
  • 993d405 [pom] Adjust since to match release version in flight
  • c0b2fff [pom] Bump jgit to 5.13.1.202206130422-r
  • 294077e Merge pull request #436 from hgschmie/multi-files
  • 070c0e3 Support multiple bug baseline files.
  • b3e0d8c Support multiple bug exclusion files.
  • cd7fbd3 Support multiple bug inclusion files.
  • 0dddbd6 Merge pull request #446 from hazendaz/spotbugs
  • b952219 [pom] Order 'asm' first to overcome issues with maven changes
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [spotbugs-maven-plugin](https://github.com/spotbugs/spotbugs-maven-plugin) from 4.7.0.0 to 4.7.1.0.
- [Release notes](https://github.com/spotbugs/spotbugs-maven-plugin/releases)
- [Commits](spotbugs/spotbugs-maven-plugin@spotbugs-maven-plugin-4.7.0.0...spotbugs-maven-plugin-4.7.1.0)

---
updated-dependencies:
- dependency-name: com.github.spotbugs:spotbugs-maven-plugin
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels Jul 7, 2022
@cx-pedro-lopes cx-pedro-lopes enabled auto-merge July 7, 2022 19:08
@cx-pedro-lopes
Copy link
Contributor

Logo
Checkmarx AST – Scan Summary & Details8ff7e643-2558-40c6-b244-edfddb1adad7

No New Or Fixed Issues Found

@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Jul 25, 2022

Superseded by #140.

@dependabot dependabot bot closed this Jul 25, 2022
auto-merge was automatically disabled July 25, 2022 19:16

Pull request was closed

@dependabot dependabot bot deleted the dependabot/maven/com.github.spotbugs-spotbugs-maven-plugin-4.7.1.0 branch July 25, 2022 19:16
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update Java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant