assertj-assertions-generator-maven-plugin
assertj-assertions-generator-maven-plugin copied to clipboard
Bump maven-plugin-api from 2.2.1 to 3.8.7
Bumps maven-plugin-api from 2.2.1 to 3.8.7.
Release notes
Sourced from maven-plugin-api's releases.
3.8.7
Sub-task
- [MNG-7019] - Notify also at start when profile is missing
Bug
- [MNG-7106] - VersionRange.toString() produces a string that cannot be parsed with VersionRange.createFromVersionSpec() for same lower and upper bounds
- [MNG-7316] - REGRESSION: MavenProject.getAttachedArtifacts() is read-only
- [MNG-7352] - org.apache.maven.toolchain.java.JavaToolchainImpl should be public
- [MNG-7529] - Maven resolver makes bad repository choices when resolving version ranges
- [MNG-7563] - REGRESSION: User properties now override model properties in dependencies
- [MNG-7568] - [WARNING] The requested profile "ABCDEF" could not be activated because it does not exist.
- [MNG-7578] - Building Linux image on Windows impossible (patch incuded)
- [MNG-7600] - LocalRepositoryManager is created too early
- [MNG-7621] - Parameter '-f' causes ignoring any 'maven.config' (only on Windows)
- [MNG-7637] - Possible NPE in MavenProject#hashCode()
- [MNG-7644] - Fix version comparison where .X1 < -X2 for any string qualifier X
Improvement
- [MNG-7590] - Allow configure resolver by properties in settings.xml
- [MNG-7645] - Implement some #toString() methods
Task
- [MNG-7513] - Address commons-io_commons-io vulnerability found in maven latest version
- [MNG-7634] - Revert MNG-5982 and MNG-7417
- [MNG-7636] - Partially revert MNG-5868 to restore backward compatibility (see MNG-7316)
Dependency upgrade
3.8.6
What's Changed
- [MNG-7441] 3.8.x Update version of logback by
@cstamasin apache/maven#708- [MNG-7432] Resolver session contains non-MavenWorkspaceReader by
@laeubiin apache/maven#695- [MNG-7459] Revert "[3.8.x][MNG-7347] SessionScoped beans should be singletons for a given session" by
@gnodetin apache/maven#715- [3.8.x] [MNG-7476] Display a warning when an aggregator mojo locks other mojos executions by
@gnodetin apache/maven#736Full Changelog: https://github.com/apache/maven/compare/maven-3.8.5...maven-3.8.6
... (truncated)
Commits
b89d595[maven-release-plugin] prepare release maven-3.8.76e8b4ff[MNG-7352] org.apache.maven.toolchain.java.JavaToolchainImpl should be public91ddc37[MNG-7641] Upgrade Maven Wagon to 3.5.3da4246a[MNG-7644] Fix version comparison where .X1 < -X2 for any string qualifier X7d45894Update bundled license for SLF4Jba058ee[MNG-7513] Address commons-io_commons-io vulnerability found in maven latest ...7db942b[MNG-7634] Revert MNG-5982 and MNG-741761f1f01[MNG-7590] Allow to configure resolver by properties in settings.xml8fd8a05[MNG-7600] LocalRepositoryManager is created too earlyed84933[MNG-7506] Upgrade Maven Wagon to 3.5.2- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)