-
-
Notifications
You must be signed in to change notification settings - Fork 8.6k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Bump spring-framework-bom from 5.3.20 to 5.3.21 #6664
Bump spring-framework-bom from 5.3.20 to 5.3.21 #6664
Conversation
Bumps [spring-framework-bom](https://github.com/spring-projects/spring-framework) from 5.3.20 to 5.3.21. - [Release notes](https://github.com/spring-projects/spring-framework/releases) - [Commits](spring-projects/spring-framework@v5.3.20...v5.3.21) --- updated-dependencies: - dependency-name: org.springframework:spring-framework-bom dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com>
This PR is now ready for merge, after ~24 hours, we will merge it if there's no negative feedback. Thanks! |
This is an upgrade of a production library, not a build or test library, so I could see an argument for including it in the Jenkins changelog, linking to the upstream changelog. That is what I have done in the recent past for other Spring Framework and Spring Security library upgrades at least. Though these upgrades generally do not contain any changes that are of impact to Jenkins users, I think it sends a positive message to the Jenkins community that we are staying up-to-date with library upgrades for major components. |
Feel free to add it. |
If and when I am interested in adding it, I will do so. Thanks! |
I am removing the |
it would have been far less effort for you to add yourself than type and link that. |
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Proposed changelog entries
Dependabot section
Bumps spring-framework-bom from 5.3.20 to 5.3.21.
Release notes
Sourced from spring-framework-bom's releases.
Commits
fcfb168
Release v5.3.21c75da7b
Upgrade to Reactor 2020.0.20eeac150
Polish contribution0ce9516
Avoid eager instantiation of non-singleton FactoryBean in getBeanNamesForTypee47cc44
Polish DefaultListableBeanFactoryTests57db73d
Upgrade to Tomcat 9.0.64, Jackson 2.12.7, Apache Johnzon 1.2.18, OpenPDF 1.3....d7be1e0
Polishing30c873b
Move NestedServletExceptionTests to spring-web modulee72b0a0
Document limitations for MessageProducer/Consumer caching with WebLogic JMSf8b41c1
Consistent support for setContextClass in CGLIB beans packageDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)