Skip to content

Bump maven-core from 3.8.6 to 3.9.0#1303

Closed
dependabot[bot] wants to merge 1 commit into2.xfrom
dependabot/maven/org.apache.maven-maven-core-3.9.0
Closed

Bump maven-core from 3.8.6 to 3.9.0#1303
dependabot[bot] wants to merge 1 commit into2.xfrom
dependabot/maven/org.apache.maven-maven-core-3.9.0

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Feb 27, 2023

Bumps maven-core from 3.8.6 to 3.9.0.

Release notes

Sourced from maven-core's releases.

3.9.0

Release Notes - Maven - Version 3.9.0

Sub-task

  • [MNG-7019] - Notify also at start when profile is missing
  • [MNG-7447] - Several Improvements by using Stream API

Bug

  • [MNG-5222] - Maven 3 no longer logs warnings about deprecated plugin parameters.
  • [MNG-6965] - Extensions suddenly have org.codehaus.plexus:plexus-utils:jar:1.1 on their classpath
  • [MNG-7055] - Using MINSTALL/DEPLOY 3.0.0-M1+ does not write plugin information into maven-metadata.xml
  • [MNG-7106] - VersionRange.toString() produces a string that cannot be parsed with VersionRange.createFromVersionSpec() for same lower and upper bounds
  • [MNG-7131] - maven.config doesn't handle arguments with spaces in them
  • [MNG-7160] - Extension And Classloaders: difference of result given extension types
  • [MNG-7316] - REGRESSION: MavenProject.getAttachedArtifacts() is read-only
  • [MNG-7352] - org.apache.maven.toolchain.java.JavaToolchainImpl should be public
  • [MNG-7413] - Fix POM model documentation confusion on report plugins, distribution repository and profile build
  • [MNG-7425] - Maven artifact downloads sometimes result in empty zip files in local repository
  • [MNG-7432] - [REGRESSION] Resolver session contains non-MavenWorkspaceReader
  • [MNG-7433] - [REGRESSION] Multiple maven instances working on same source tree can lock each other
  • [MNG-7441] - Update Version of (optional) Logback to Address CVE-2021-42550
  • [MNG-7448] - Don't ignore bin/ otherwise bin/ in apache-maven module cannot be readded
  • [MNG-7459] - Revert MNG-7347 (SessionScoped beans should be singletons for a given session)
  • [MNG-7471] - Resolver 1.8.0 introduces binary breakage in plugin using Resolver
  • [MNG-7487] - Fix deadlock during forked lifecycle executions
  • [MNG-7493] - [REGRESSION] Resolving dependencies between submodules fails
  • [MNG-7504] - Warning about unknown reportPlugins parameters for m-site-p are always generated
  • [MNG-7511] - Ensure the degreeOfConcurrency is a positive number in MavenExecutionRequest
  • [MNG-7515] - Cannot see a dependency tree for apache-maven module
  • [MNG-7529] - Maven resolver makes bad repository choices when resolving version ranges
  • [MNG-7545] - Multi building can create bad files for downloaded artifacts in local repository
  • [MNG-7563] - REGRESSION: User properties now override model properties in dependencies
  • [MNG-7564] - Potential NPE in MavenMetadataSource
  • [MNG-7568] - [WARNING] The requested profile "ABCDEF" could not be activated because it does not exist.
  • [MNG-7578] - Building Linux image on Windows impossible (patch incuded)
  • [MNG-7600] - LocalRepositoryManager is created too early
  • [MNG-7606] - Maven 3.9.0-SNAPSHOT cannot build Maven 4.0.0-SNAPSHOT
  • [MNG-7621] - Parameter '-f' causes ignoring any 'maven.config' (only on Windows)
  • [MNG-7624] - Plugins without non-mandatory goalPrefix are now logging incomplete info
  • [MNG-7637] - Possible NPE in MavenProject#hashCode()
  • [MNG-7644] - Fix version comparison where .X1 < -X2 for any string qualifier X
  • [MNG-7648] - Generated model reader is not setting location information
  • [MNG-7672] - Aggregate goals executed in a submodule forks the whole reactor

New Feature

... (truncated)

Commits
  • 9b58d2b [maven-release-plugin] prepare release maven-3.9.0
  • 87f4044 Update git-blame-ignore-revs
  • e9d5708 Reformat
  • 1a600c7 [MNG-7675] Update Parent to 39 and reformat
  • a5d0ca4 Fix site plugin warning (#973)
  • 48cac1c [MNG-7672] Fork should only execute the project and its submodules (#969)
  • 8fa5545 Get rid of surefire watning, take 2 (#967)
  • 36f02c9 Get rid of surefire warning (#965)
  • f7ca0b6 [MNG-7608] Make native transport the default (#961)
  • 51354e6 [maven-3.9.x] [MNG-7666] Update default binding and lifecycle plugin versions...
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot added dependencies Related to third party dependency updates or migrations java Pull requests that update Java code labels Feb 27, 2023
@ppkarwasz
Copy link
Contributor

@dependabot rebase

Bumps [maven-core](https://github.com/apache/maven) from 3.8.6 to 3.9.0.
- [Release notes](https://github.com/apache/maven/releases)
- [Commits](apache/maven@maven-3.8.6...maven-3.9.0)

---
updated-dependencies:
- dependency-name: org.apache.maven:maven-core
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/maven/org.apache.maven-maven-core-3.9.0 branch from 7678909 to bbda65d Compare March 6, 2023 20:36
@ppkarwasz
Copy link
Contributor

@dependabot rebase

@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Jul 21, 2023

The dependabot.yml entry that created this PR has been deleted so this PR can't be rebased. Please close the PR so Dependabot can create a new one with the current dependabot.yml.

@ppkarwasz ppkarwasz closed this Jul 21, 2023
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Jul 21, 2023

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

@dependabot dependabot bot deleted the dependabot/maven/org.apache.maven-maven-core-3.9.0 branch July 21, 2023 06:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Related to third party dependency updates or migrations java Pull requests that update Java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant