Skip to content

chore(deps): bump com.github.spotbugs:spotbugs-maven-plugin from 4.9.8.2 to 4.9.8.3#456

Merged
oldratlee merged 1 commit into2.x-devfrom
dependabot/maven/com.github.spotbugs-spotbugs-maven-plugin-4.9.8.3
Mar 31, 2026
Merged

chore(deps): bump com.github.spotbugs:spotbugs-maven-plugin from 4.9.8.2 to 4.9.8.3#456
oldratlee merged 1 commit into2.x-devfrom
dependabot/maven/com.github.spotbugs-spotbugs-maven-plugin-4.9.8.3

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot bot commented on behalf of github Mar 30, 2026

Bumps com.github.spotbugs:spotbugs-maven-plugin from 4.9.8.2 to 4.9.8.3.

Release notes

Sourced from com.github.spotbugs:spotbugs-maven-plugin's releases.

Spotbugs Maven Plugin 4.9.8.3

Consumer

  • Fix support for noClassOk
  • Fix xref links
  • library updates

Build

  • Update actions
  • Plugin updates
  • Restore spock test runs
  • Update copyright date on files from 2025 to 2026 to keep java 8 release in line with master
Commits
  • 60c97f8 [maven-release-plugin] prepare release spotbugs-maven-plugin-4.9.8.3
  • 5579b86 Merge pull request #1350 from hazendaz/master
  • e8d6344 [ci] formatting
  • cb28317 [pom] Update byte buddy to 1.18.7 (no jdk5)
  • 29ec1fe Update README.md
  • 1405d03 Merge pull request #1344 from spotbugs/hazendaz-patch-1
  • a761466 Update Java version requirements in README
  • 62594b3 Merge pull request #1342 from hazendaz/master
  • adcc2e3 [ci] Formatting
  • 0b53c1d Merge pull request #1338 from spotbugs/renovate/github-codeql-action-digest
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [com.github.spotbugs:spotbugs-maven-plugin](https://github.com/spotbugs/spotbugs-maven-plugin) from 4.9.8.2 to 4.9.8.3.
- [Release notes](https://github.com/spotbugs/spotbugs-maven-plugin/releases)
- [Commits](spotbugs/spotbugs-maven-plugin@spotbugs-maven-plugin-4.9.8.2...spotbugs-maven-plugin-4.9.8.3)

---
updated-dependencies:
- dependency-name: com.github.spotbugs:spotbugs-maven-plugin
  dependency-version: 4.9.8.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels Mar 30, 2026
@github-actions
Copy link
Copy Markdown

Qodana for JVM

It seems all right 👌

No new problems were found according to the checks applied

View the detailed Qodana report

To be able to view the detailed Qodana report, you can either:

To get *.log files or any other Qodana artifacts, run the action with upload-result option set to true,
so that the action will upload the files as the job artifacts:

      - name: 'Qodana Scan'
        uses: JetBrains/qodana-action@v2025.3.2
        with:
          upload-result: true
Contact Qodana team

Contact us at qodana-support@jetbrains.com

@codecov
Copy link
Copy Markdown

codecov bot commented Mar 30, 2026

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 98.55%. Comparing base (7721201) to head (ce95b3f).
⚠️ Report is 4 commits behind head on 2.x-dev.

Additional details and impacted files
@@            Coverage Diff             @@
##             2.x-dev     #456   +/-   ##
==========================================
  Coverage      98.55%   98.55%           
  Complexity       999      999           
==========================================
  Files             24       24           
  Lines           2069     2069           
  Branches         147      147           
==========================================
  Hits            2039     2039           
  Misses            20       20           
  Partials          10       10           

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@oldratlee oldratlee merged commit 12a7801 into 2.x-dev Mar 31, 2026
17 checks passed
@dependabot dependabot bot deleted the dependabot/maven/com.github.spotbugs-spotbugs-maven-plugin-4.9.8.3 branch March 31, 2026 17:06
oldratlee pushed a commit that referenced this pull request Apr 11, 2026
bump org.junit:junit-bom from 5.14.1 to 5.14.2 (#429)
bump org.junit:junit-bom from 5.14.1 to 5.14.2 in /demos (#430)
bump org.sonatype.central:central-publishing-maven-plugin from 0.9.0 to 0.10.0 (#431)
bump org.assertj:assertj-bom from 3.27.6 to 3.27.7 (#433)
bump org.apache.maven.plugins:maven-compiler-plugin from 3.14.1 to 3.15.0 (#434)
bump org.apache.maven.plugins:maven-compiler-plugin from 3.14.1 to 3.15.0 (#435)
bump kotlin.version from 2.3.0 to 2.3.10 in /demos (#437)
bump kotlin.version from 2.3.0 to 2.3.10 (#436)
bump org.apache.maven.plugins:maven-dependency-plugin from 3.9.0 to 3.10.0 (#438)
bump io.vavr:vavr from 0.11.0 to 1.0.0 (#439)
bump org.junit:junit-bom from 5.14.2 to 5.14.3 (#441)
bump org.junit:junit-bom from 5.14.2 to 5.14.3 in /demos (#442)
bump org.jetbrains:annotations from 26.0.2-1 to 26.1.0 (#443)
bump org.apache.maven.plugins:maven-surefire-plugin from 3.5.4 to 3.5.5 (#444)
bump org.apache.maven.plugins:maven-surefire-plugin from 3.5.4 to 3.5.5 (#445)
bump io.vavr:vavr from 1.0.0 to 1.0.1 (#446)
bump org.apache.maven.plugins:maven-resources-plugin from 3.4.0 to 3.5.0 (#447)
bump org.apache.maven.plugins:maven-resources-plugin from 3.4.0 to 3.5.0 (#448)
bump org.apache.maven.plugins:maven-shade-plugin from 3.6.1 to 3.6.2 (#449)
bump org.codehaus.mojo:extra-enforcer-rules from 1.11.0 to 1.12.0 (#450)
bump kotlin.version from 2.3.10 to 2.3.20 in /demos (#451)
bump org.apache.logging.log4j:log4j-bom from 2.25.3 to 2.25.4 (#454)
bump io.github.git-commit-id:git-commit-id-maven-plugin from 9.0.2 to 9.1.0 (#455)
bump com.github.spotbugs:spotbugs-maven-plugin from 4.9.8.2 to 4.9.8.3 (#456)
bump codecov/codecov-action from 5 to 6 (#453)
bump io.github.git-commit-id:git-commit-id-maven-plugin from 9.1.0 to 10.0.0 (#457)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update Java code

Development

Successfully merging this pull request may close these issues.

1 participant