Skip to content
This repository has been archived by the owner on Apr 13, 2019. It is now read-only.

Bump dependency-check-maven from 3.2.0 to 3.2.1 #194

Merged

Conversation

dependabot-preview[bot]
Copy link

Bumps dependency-check-maven from 3.2.0 to 3.2.1.

Changelog

Sourced from dependency-check-maven's changelog.

Version 3.2.1 (2018-05-21)

Bug Fixes

  • In some cases when using the Maven or Gradle plugins the GAV coordinates were not being added as an Identifier causing suppression rules to fail; this has been resolved (#1298)
  • Documentation Update (SCM links in the maven site were broken) (#1297)
  • False positive reduction (#1290)
  • Enhanced logging output for TLS failures to better assist with debugging (#1269)
  • Resolved a Null Pointer Exception (#1296)
Commits
  • 46ce431 updated release notes for 3.2.1
  • b9e0559 Merge branch 'master' of github.com:jeremylong/DependencyCheck
  • 65bf772 v3.2.1
  • 53681c7 update for #1290
  • 7d1f155 Merge pull request #1302 from jeremylong/dependabot/maven/com.spotify-dockerf...
  • 512abaf Bump dockerfile-maven-plugin from 1.4.1 to 1.4.2
  • 743d477 added hashes for virtual dependenciesa (used in reporting)
  • 53d8458 updated reports to better handle virtual dependencies
  • 81ea98c updated test case
  • 62847a8 fix npe per #196
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot ignore this [patch|minor|major] version will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
  • @dependabot use (this|these) label[s] will set the current labels as the default for future PRs for this repo and language
  • @dependabot use (this|these) reviewer[s] will set the current reviewers as the default for future PRs for this repo and language
  • @dependabot use (this|these) assignee[s] will set the current assignees as the default for future PRs for this repo and language

Additionally, you can set the following in your Dependabot dashboard:

  • Update frequency (including time of day and day of week)
  • Automerge options (never/patch/minor, and dev/runtime dependencies)
  • Pull request limits (per update run and/or open at any time)
  • Out-of-range updates (receive only lockfile updates, if desired)
  • Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

@mprins mprins modified the milestones: Future, 3.5.4-SNAPSHOT May 29, 2018
@mprins mprins self-assigned this May 29, 2018
@mprins mprins merged commit 2ad1654 into master May 29, 2018
@dependabot-preview dependabot-preview bot deleted the dependabot/maven/org.owasp-dependency-check-maven-3.2.1 branch May 29, 2018 07:50
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants