Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump matrix-auth from 2.6.5 to 2.6.6 #5366

Conversation

MarkEWaite
Copy link
Contributor

@MarkEWaite MarkEWaite commented Mar 19, 2021

Bumps matrix-auth from 2.6.5 to 2.6.6

Bumps matrix-auth from 2.6.5 to 2.6.6.

See Security Advisory 2021-03-18.

Proposed changelog entries

Proposed upgrade guidelines

N/A

Submitter checklist

  • (If applicable) Jira issue is well described
  • Changelog entries and upgrade guidelines are appropriate for the audience affected by the change (users or developer, depending on the change). Examples
    • Fill-in the Proposed changelog entries section only if there are breaking changes or other changes which may require extra steps from users during the upgrade
  • Appropriate autotests or explanation to why this change has no tests
  • For dependency updates: links to external changelogs and, if possible, full diffs

Desired reviewers

@mention

Maintainer checklist

Before the changes are marked as ready-for-merge:

  • There are at least 2 approvals for the pull request and no outstanding requests for change
  • Conversations in the pull request are over OR it is explicit that a reviewer does not block the change
  • Changelog entries in the PR title and/or Proposed changelog entries are correct
  • Proper changelog labels are set so that the changelog can be generated automatically
  • If the change needs additional upgrade steps from users, upgrade-guide-needed label is set and there is a Proposed upgrade guidelines section in the PR title. (example)
  • If it would make sense to backport the change to LTS, a Jira issue must exist, be a Bug or Improvement, and be labeled as lts-candidate to be considered (see query).

commit c9748db
Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Date: Fri Mar 19 06:17:11 2021 +0000

Bump matrix-auth from 2.6.5 to 2.6.6

Bumps [matrix-auth](https://github.com/jenkinsci/matrix-auth-plugin) from 2.6.5 to 2.6.6.
- [Release notes](https://github.com/jenkinsci/matrix-auth-plugin/releases)
- [Changelog](https://github.com/jenkinsci/matrix-auth-plugin/blob/master/CHANGELOG.md)
- [Commits](https://github.com/jenkinsci/matrix-auth-plugin/compare/matrix-auth-2.6.5...matrix-auth-2.6.6)

Signed-off-by: dependabot[bot] <support@github.com>

Original dependabot content

Bumps matrix-auth from 2.6.5 to 2.6.6.

Release notes

Sourced from matrix-auth's releases.

Version 2.6.6

Fix SECURITY-2180.

Changelog

Sourced from matrix-auth's changelog.

Changelog

Commits
  • b2a2aa7 [maven-release-plugin] prepare release matrix-auth-2.6.6
  • bbe3585 [SECURITY-2180]
  • b698c30 Merge pull request #100 from jenkinsci/daniel-beck-patch-1
  • 955996f Minor changelog fixes
  • b363945 Merge pull request #98 from daniel-beck/remove-test-code-change
  • ef87eb3 Remove change to test code from changelog, not notable enough
  • e50cd1c [maven-release-plugin] prepare for next development iteration
  • See full diff in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually

Copy link
Member

@daniel-beck daniel-beck left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks Mark!

@dependabot dependabot bot deleted the dependabot/maven/org.jenkins-ci.plugins-matrix-auth-2.6.6 branch March 19, 2021 16:12
@MarkEWaite MarkEWaite added the rfe For changelog: Minor enhancement. use `major-rfe` for changes to be highlighted label Mar 21, 2021
@timja
Copy link
Member

timja commented Mar 21, 2021

This PR is now ready for merge, after ~24 hours, we will merge it if there's no negative feedback.

Thanks!

@timja timja added the ready-for-merge The PR is ready to go, and it will be merged soon if there is no negative feedback label Mar 21, 2021
@timja timja merged commit c6420c6 into jenkinsci:master Mar 21, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
ready-for-merge The PR is ready to go, and it will be merged soon if there is no negative feedback rfe For changelog: Minor enhancement. use `major-rfe` for changes to be highlighted
Projects
None yet
4 participants