serverless-java-container
serverless-java-container copied to clipboard
chore(deps): bump org.owasp:dependency-check-maven from 12.1.1 to 12.1.3
Bumps org.owasp:dependency-check-maven from 12.1.1 to 12.1.3.
Release notes
Sourced from org.owasp:dependency-check-maven's releases.
Version 12.1.3
Refer to the CHANGELOG.md for information about improvements and upgrade notes.
Version 12.1.2
Refer to the CHANGELOG.md for information about improvements and upgrade notes.
Changelog
Sourced from org.owasp:dependency-check-maven's changelog.
Version 12.1.3 (2025-06-10)
- fix: correct regex matches introduced in 12.1.2 (#7726)
- build(deps): bump org.semver4j:semver4j from 5.7.0 to 5.7.1 (#7718)
- build(deps): bump junit.version from 5.13.0 to 5.13.1 (#7719)
See the full listing of changes
Version 12.1.2 (2025-06-07)
- fix: Allow configuring OSS Index user/pw directly (#7640)
- fix: remove vulnerable transitive dependency - beanutils (#7705)
- fix: Simplify PHP framework suppression for Composer (#7693)
- fix: update CPE pattern to remove FP (#7684)
- fix(cli): Patch generated Windows shell script for JAVACMD installs with spaces (#7653)
- fix: Resolve various WCAG accessibility / css issues in the HTML report (#7629)
- fix: #7510 Display a dedicated message when receiving an HTTP 403 (#7575)
- docs: Make
Vulnerability SourcesinRelated Workclearer (#7691)- docs: #7610 add a reference to NVD mirroring in getting started documentation (#7611)
See the full listing of changes
Commits
dfd437ebuild: prepare release v12.1.384d3436docs: release 12.1.3f9e6b79fix: correct regex matches introduced in 12.1.2 (#7726)2b548f8build(deps): bump org.semver4j:semver4j from 5.7.0 to 5.7.1 (#7718)a58584fbuild(deps): bump junit.version from 5.13.0 to 5.13.1 (#7719)7fdad34build(deps): bump org.semver4j:semver4j from 5.7.0 to 5.7.1cc18626build: Release 12.1.2 (#7714)7f9b258build: prepare for next development iteration4744206build: prepare release v12.1.2624c3cadocs: release 12.1.2- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)