Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Mar 6, 2023

Bumps maven-plugin-annotations from 3.6.4 to 3.8.1.

Release notes

Sourced from maven-plugin-annotations's releases.

3.8.1

Release Notes - Maven Plugin Tools - Version 3.8.1

Bug

  • [MPLUGIN-443] - Javadoc reference containing a link label with spaces are not detected
  • [MPLUGIN-444] - JavadocLinkGenerator.createLink: Support nested binary class names
  • [MPLUGIN-446] - ERROR during build of m-plugin-report-p and m-plugin-p: Dependencies in wrong scope
  • [MPLUGIN-448] - "Executes as an aggregator plugin" documentation: s/plugin/goal/
  • [MPLUGIN-452] - Maven scope warning should be logged at WARN level
  • [MPLUGIN-453] - Fix Temporary File Information Disclosure Vulnerability

New Feature

  • [MPLUGIN-441] - Support mojos using the new maven v4 api

Improvement

  • [MPLUGIN-425] - Plugin descriptor should contain the requiredJavaVersion/requiredMavenVersion
  • [MPLUGIN-439] - Execute annotation only supports standard lifecycle phases due to use of enum
  • [MPLUGIN-440] - Clarify deprecation of all extractors but the maven-plugin-tools-annotations

Dependency upgrade

3.7.1

3.7.0

Bug

  • [MPLUGIN-298] - The plugin descriptor generated by plugin:descriptor does not consider @ see javadoc taglets
  • [MPLUGIN-394] - Report-Mojo doesn't respect input encoding
  • [MPLUGIN-403] - Generating site reports for plugin results in NoSuchMethodError
  • [MPLUGIN-404] - JDK Requirements in plugin-info.html: Consider property "maven.compiler.release"

... (truncated)

Commits
  • b242658 [maven-release-plugin] prepare release maven-plugin-tools-3.8.1
  • 2721944 Revert "Bump plexus-velocity from 1.2 to 2.0 and velocity from 1.7 to 2.3 (#1...
  • d99a455 [maven-release-plugin] prepare for next development iteration
  • 9ca8a18 [maven-release-plugin] prepare release maven-plugin-tools-3.8.0
  • 84f9a2e [MPLUGIN-455] Bump plexus-archiver from 4.5.0 to 4.6.1 (#189)
  • df4b8fd Bump plexus-velocity from 1.2 to 2.0 and velocity from 1.7 to 2.3 (#195)
  • 25837ee [MPLUGIN-441] Upgrade to maven alpha-4 (#191)
  • 4cd8c03 [MPLUGIN-454] Bump junit-bom from 5.9.1 to 5.9.2 (#193)
  • 52be8fa [MPLUGIN-453] Fix Temporary File Information Disclosure (#176)
  • ce49816 [MPLUGIN-447] Ignore reformat commit rev in blame
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [maven-plugin-annotations](https://github.com/apache/maven-plugin-tools) from 3.6.4 to 3.8.1.
- [Release notes](https://github.com/apache/maven-plugin-tools/releases)
- [Commits](apache/maven-plugin-tools@maven-plugin-tools-3.6.4...maven-plugin-tools-3.8.1)

---
updated-dependencies:
- dependency-name: org.apache.maven.plugin-tools:maven-plugin-annotations
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Mar 6, 2023
@sonarqubecloud
Copy link

sonarqubecloud bot commented Mar 6, 2023

Kudos, SonarCloud Quality Gate passed!    Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
0.0% 0.0% Duplication

@ilyavy ilyavy merged commit f500d5c into master Mar 7, 2023
@dependabot dependabot bot deleted the dependabot/maven/org.apache.maven.plugin-tools-maven-plugin-annotations-3.8.1 branch March 7, 2023 11:45
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants