Update dependency org.bouncycastle:bcpkix-jdk18on to v1.78
This PR contains the following updates:
| Package | Change | Age | Adoption | Passing | Confidence |
|---|---|---|---|---|---|
| org.bouncycastle:bcpkix-jdk18on (source) | 1.75 -> 1.78 |
Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
- [ ] If you want to rebase/retry this PR, check this box
This PR has been generated by Mend Renovate. View repository job log here.
SpotBugs
| Category | Base | New |
|---|---|---|
| Bad practice | 7 | 7 |
| Correctness | 34 | 34 |
| Dodgy code | 26 | 26 |
| Internationalization | 6 | 6 |
| Malicious code vulnerability | 49 | 49 |
| Multithreaded correctness | 3 | 3 |
| Performance | 5 | 5 |
| Total | 130 | 130 |
Codecov Report
Merging #1323 (4773dfb) into master (0219681) will increase coverage by
0.06%. Report is 2 commits behind head on master. The diff coverage isn/a.
Additional details and impacted files
@@ Coverage Diff @@
## master #1323 +/- ##
============================================
+ Coverage 48.93% 49.00% +0.06%
- Complexity 995 997 +2
============================================
Files 206 206
Lines 7826 7826
Branches 1018 1018
============================================
+ Hits 3830 3835 +5
+ Misses 3446 3443 -3
+ Partials 550 548 -2
SpotBugs
| Category | Base | New |
|---|---|---|
| Bad practice | 35 | 35 |
| Correctness | 34 | 34 |
| Dodgy code | 26 | 26 |
| Internationalization | 6 | 6 |
| Malicious code vulnerability | 49 | 49 |
| Multithreaded correctness | 3 | 3 |
| Performance | 8 | 8 |
| Total | 161 | 161 |
SpotBugs
| Category | Base | New |
|---|---|---|
| Bad practice | 35 | 35 |
| Correctness | 34 | 34 |
| Dodgy code | 26 | 26 |
| Internationalization | 6 | 6 |
| Malicious code vulnerability | 49 | 49 |
| Multithreaded correctness | 3 | 3 |
| Performance | 8 | 8 |
| Total | 161 | 161 |
SpotBugs
| Category | Base | New |
|---|---|---|
| Bad practice | 35 | 35 |
| Correctness | 34 | 34 |
| Dodgy code | 26 | 26 |
| Internationalization | 6 | 6 |
| Malicious code vulnerability | 49 | 49 |
| Multithreaded correctness | 3 | 3 |
| Performance | 8 | 8 |
| Total | 161 | 161 |
SpotBugs
| Category | Base | New |
|---|---|---|
| Bad practice | 35 | 35 |
| Correctness | 34 | 34 |
| Dodgy code | 26 | 26 |
| Internationalization | 6 | 6 |
| Malicious code vulnerability | 49 | 49 |
| Multithreaded correctness | 3 | 3 |
| Performance | 8 | 8 |
| Total | 161 | 161 |
SpotBugs
| Category | Base | New |
|---|---|---|
| Bad practice | 35 | 35 |
| Correctness | 34 | 34 |
| Dodgy code | 26 | 26 |
| Internationalization | 6 | 6 |
| Malicious code vulnerability | 49 | 49 |
| Multithreaded correctness | 3 | 3 |
| Performance | 8 | 8 |
| Total | 161 | 161 |
matching PR to https://github.com/nextcloud/android/pull/12495
SpotBugs
| Category | Base | New |
|---|---|---|
| Bad practice | 35 | 35 |
| Correctness | 34 | 34 |
| Dodgy code | 26 | 26 |
| Internationalization | 6 | 6 |
| Malicious code vulnerability | 49 | 49 |
| Multithreaded correctness | 3 | 3 |
| Performance | 8 | 8 |
| Total | 161 | 161 |
@tobiasKaminsky valid lint issue
/home/runner/.gradle/caches/modules-2/files-2.1/org.bouncycastle/bcpkix-jdk18on/1.77/ed953791ba0229747dd0fd9911e3d76a462acfd3/bcpkix-jdk18on-1.77.jar: Error: checkServerTrusted is empty, which could cause insecure network traffic due to trusting arbitrary TLS/SSL certificates presented by peers [TrustAllX509TrustManager]
Explanation for issues of type "TrustAllX509TrustManager":
This check looks for X509TrustManager implementations whose
checkServerTrusted or checkClientTrusted methods do nothing (thus trusting
any certificate chain) which could result in insecure network traffic
caused by trusting arbitrary TLS/SSL certificates presented by peers.
https://goo.gle/TrustAllX509TrustManager
SpotBugs
| Category | Base | New |
|---|---|---|
| Bad practice | 35 | 35 |
| Correctness | 34 | 34 |
| Dodgy code | 26 | 26 |
| Internationalization | 6 | 6 |
| Malicious code vulnerability | 49 | 49 |
| Multithreaded correctness | 3 | 3 |
| Performance | 8 | 8 |
| Total | 161 | 161 |
SpotBugs
| Category | Base | New |
|---|---|---|
| Bad practice | 35 | 35 |
| Correctness | 34 | 34 |
| Dodgy code | 26 | 26 |
| Internationalization | 6 | 6 |
| Malicious code vulnerability | 49 | 49 |
| Multithreaded correctness | 3 | 3 |
| Performance | 8 | 8 |
| Total | 161 | 161 |
SpotBugs
| Category | Base | New |
|---|---|---|
| Bad practice | 35 | 35 |
| Correctness | 34 | 34 |
| Dodgy code | 26 | 26 |
| Internationalization | 6 | 6 |
| Malicious code vulnerability | 49 | 49 |
| Multithreaded correctness | 3 | 3 |
| Performance | 8 | 8 |
| Total | 161 | 161 |
Edited/Blocked Notification
Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.
You can manually request rebase by checking the rebase/retry box above.
⚠ Warning: custom changes will be lost.