{"payload":{"feedbackUrl":"https://github.com/orgs/community/discussions/53140","repo":{"id":920237,"defaultBranch":"main","name":"myfaces-html5","ownerLogin":"apache","currentUserCanPush":false,"isFork":false,"isEmpty":false,"createdAt":"2010-09-18T07:00:07.000Z","ownerAvatar":"https://avatars.githubusercontent.com/u/47359?v=4","public":true,"private":false,"isOrgOwned":true},"refInfo":{"name":"","listCacheKey":"v0:1702763738.0","currentOid":""},"activityList":{"items":[{"before":"66748210f1ca27cc4a372d202541c24c7d319ad1","after":null,"ref":"refs/heads/dependabot/maven/org.apache.myfaces.core-myfaces-impl-2.0.12","pushedAt":"2023-12-16T21:55:38.000Z","pushType":"branch_deletion","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"}},{"before":"89f18e6c57895aae1efe144d1705cbf51852eb21","after":"ed7711f0b59a5a0836ecee127d2a6546950dcb65","ref":"refs/heads/main","pushedAt":"2023-12-16T21:55:30.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"melloware","name":"Melloware","path":"/melloware","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/4399574?s=80&v=4"},"commit":{"message":"Bump org.apache.myfaces.core:myfaces-impl from 2.0.1 to 2.0.12 (#4)\n\nBumps org.apache.myfaces.core:myfaces-impl from 2.0.1 to 2.0.12.\r\n\r\n---\r\nupdated-dependencies:\r\n- dependency-name: org.apache.myfaces.core:myfaces-impl\r\n dependency-type: direct:production\r\n...\r\n\r\nSigned-off-by: dependabot[bot] \r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>","shortMessageHtmlLink":"Bump org.apache.myfaces.core:myfaces-impl from 2.0.1 to 2.0.12 (#4)"}},{"before":"76034fbba94ea0e0c9f2597158f6a3ecd0d09475","after":"89f18e6c57895aae1efe144d1705cbf51852eb21","ref":"refs/heads/main","pushedAt":"2023-12-16T21:55:17.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"melloware","name":"Melloware","path":"/melloware","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/4399574?s=80&v=4"},"commit":{"message":"Use HTTPS instead of HTTP to resolve dependencies (#1)\n\nThis fixes a security vulnerability in this project where the `pom.xml`\r\nfiles were configuring Maven to resolve dependencies over HTTP instead of\r\nHTTPS.\r\n\r\nSigned-off-by: Jonathan Leitschuh ","shortMessageHtmlLink":"Use HTTPS instead of HTTP to resolve dependencies (#1)"}},{"before":"7e83af5105dbcf015712050ba44119fe7ea732e9","after":null,"ref":"refs/heads/dependabot/maven/myfaces-html5-core/junit-junit-4.13.1","pushedAt":"2023-12-16T21:55:06.000Z","pushType":"branch_deletion","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"}},{"before":null,"after":"66748210f1ca27cc4a372d202541c24c7d319ad1","ref":"refs/heads/dependabot/maven/org.apache.myfaces.core-myfaces-impl-2.0.12","pushedAt":"2023-12-16T21:55:05.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"},"commit":{"message":"Bump org.apache.myfaces.core:myfaces-impl from 2.0.1 to 2.0.12\n\nBumps org.apache.myfaces.core:myfaces-impl from 2.0.1 to 2.0.12.\n\n---\nupdated-dependencies:\n- dependency-name: org.apache.myfaces.core:myfaces-impl\n dependency-type: direct:production\n...\n\nSigned-off-by: dependabot[bot] ","shortMessageHtmlLink":"Bump org.apache.myfaces.core:myfaces-impl from 2.0.1 to 2.0.12"}},{"before":"b0447c94b32f1ece750c26255cb4c7fc01a6ad60","after":"76034fbba94ea0e0c9f2597158f6a3ecd0d09475","ref":"refs/heads/main","pushedAt":"2023-12-16T21:54:58.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"melloware","name":"Melloware","path":"/melloware","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/4399574?s=80&v=4"},"commit":{"message":"Bump junit from 4.8.1 to 4.13.1 in /myfaces-html5-core (#2)\n\nBumps [junit](https://github.com/junit-team/junit4) from 4.8.1 to 4.13.1.\r\n- [Release notes](https://github.com/junit-team/junit4/releases)\r\n- [Changelog](https://github.com/junit-team/junit4/blob/main/doc/ReleaseNotes4.13.1.md)\r\n- [Commits](https://github.com/junit-team/junit4/compare/r4.8.1...r4.13.1)\r\n\r\n---\r\nupdated-dependencies:\r\n- dependency-name: junit:junit\r\n dependency-type: direct:development\r\n...\r\n\r\nSigned-off-by: dependabot[bot] \r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>","shortMessageHtmlLink":"Bump junit from 4.8.1 to 4.13.1 in /myfaces-html5-core (#2)"}},{"before":"a41da3706ea99b631d113baef0af946dc2a2d19f","after":"b0447c94b32f1ece750c26255cb4c7fc01a6ad60","ref":"refs/heads/main","pushedAt":"2023-12-16T21:54:48.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"melloware","name":"Melloware","path":"/melloware","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/4399574?s=80&v=4"},"commit":{"message":"vuln-fix: Use HTTPS instead of HTTP to resolve deps CVE-2021-26291 (#3)\n\nThis fixes a security vulnerability in this project where the `pom.xml`\r\nfiles were configuring Maven to resolve dependencies over HTTP instead of\r\nHTTPS.\r\n\r\nWeakness: CWE-829: Inclusion of Functionality from Untrusted Control Sphere\r\nSeverity: High\r\nCVSS: 8.1\r\nDetection: CodeQL & OpenRewrite (https://app.moderne.io/recipes/org.openrewrite.maven.security.UseHttpsForRepositories)\r\n\r\nReported-by: Jonathan Leitschuh \r\n\r\n\r\nBug-tracker: https://github.com/JLLeitschuh/security-research/issues/8\r\nDetection: CodeQL (https://codeql.github.com/codeql-query-help/java/java-maven-non-https-url/) & OpenRewrite (https://app.moderne.io/recipes/org.openrewrite.maven.security.UseHttpsForRepositories)\r\n\r\nReported-by: Jonathan Leitschuh \r\n\r\n\r\nBug-tracker: https://github.com/JLLeitschuh/security-research/issues/8\r\n\r\n\r\nUse this link to re-run the recipe: https://app.moderne.io/recipes/builder/IfHkrYfxx?organizationId=QWxsIEdpdEh1Yg%3D%3D\r\n\r\nCo-authored-by: Moderne ","shortMessageHtmlLink":"vuln-fix: Use HTTPS instead of HTTP to resolve deps CVE-2021-26291 (#3)"}}],"hasNextPage":false,"hasPreviousPage":false,"activityType":"all","actor":null,"timePeriod":"all","sort":"DESC","perPage":30,"cursor":"djE6ks8AAAADzAOfPQA","startCursor":null,"endCursor":null}},"title":"Activity ยท apache/myfaces-html5"}