build(deps): bump org.apache.maven.resolver:maven-resolver-impl from 1.3.1 to 2.0.21 - #19930
Conversation
Bumps [org.apache.maven.resolver:maven-resolver-impl](https://github.com/apache/maven-resolver) from 1.3.1 to 2.0.21. - [Release notes](https://github.com/apache/maven-resolver/releases) - [Commits](apache/maven-resolver@maven-resolver-1.3.1...maven-resolver-2.0.21) --- updated-dependencies: - dependency-name: org.apache.maven.resolver:maven-resolver-impl dependency-version: 2.0.21 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com>
|
I verified this PR at head This head is not approvable. The exact-head unit-test logs, strict-compilation logs, packaging logs, web-check logs, and all three CodeQL language jobs fail compiling The effective dependency tree also fails Maven Enforcer: Fixing this is therefore not a safe one-line version bump: it requires a coordinated Resolver-family/provider/transport migration, production and test source changes around |
|
Closed after the verified high-effort compatibility and build review documented in the preceding comment. |
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
Bumps org.apache.maven.resolver:maven-resolver-impl from 1.3.1 to 2.0.21.
Release notes
Sourced from org.apache.maven.resolver:maven-resolver-impl's releases.
... (truncated)
Commits
838477a[maven-release-plugin] prepare release maven-resolver-2.0.21f598880Add ATR meta (#1982)1e5d22aFix: preserve original trace data when stamping re-entrancy marker (#1980)f4d1fa9RRF: self-heal from provably broken auto-discovered prefixes files (#1976)8532889Bug: in certain cases Resolver caused build failure (#1975)0feb214Feat: config to close connection at end of tx (#1978)f974235Do not check UrlTransporter for open connections after closedbaf309Make sure to always close input streams bound to responses (#1970)45482a8Fix: be more defensive regarding request traces (#1973)4bb69adFix tools classpathDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)