DoctorK
DoctorK copied to clipboard
Bump metrics-core from 3.2.3 to 4.2.3
Bumps metrics-core from 3.2.3 to 4.2.3.
Release notes
Sourced from metrics-core's releases.
v4.2.3
Dependency updates
- Update jackson.version to v2.12.4 (release/4.2.x) (#2069)
- Update jetty9.version to v9.4.43.v20210629 (release/4.2.x) (#2070)
- Update dependency com.github.ben-manes.caffeine:caffeine to v2.9.2 (release/4.2.x) (#2058)
- Update dependency com.github.ben-manes.caffeine:caffeine to v3.0.3 (release/4.2.x) (#2060)
- Update dependency com.rabbitmq:amqp-client to v5.13.0 (release/4.2.x) (#2076)
- Update dependency org.eclipse.jetty:jetty-bom to v10.0.6 (release/4.2.x) (#2067)
- Update dependency org.eclipse.jetty:jetty-bom to v11.0.6 (release/4.2.x) (#2068)
- Update dependency org.jdbi:jdbi3-core to v3.21.0 (release/4.2.x) (#2083)
- Update dependency org.checkerframework:checker-qual to v3.16.0 (release/4.2.x) (#2078)
- Update dependency org.openjdk.jcstress:jcstress-core to v0.14 (#2053)
- Bump actions/stale from 3.0.19 to 4 (#2079)
v4.2.2
Bug fixes
- Fix accidental leaking of dependencies in metrics-bom (#2047)
Dependency updates
- Update slf4j.version to v1.7.31 (#2035)
- Update dependency org.assertj:assertj-core to v3.20.2 (#2032, #2041)
- Update dependency org.checkerframework:checker-qual to v3.15.0 (#2037)
- Update dependency org.mockito:mockito-core to v3.11.2 (#2044)
v4.2.1
⚠️ Dependency leak in
metrics-bom
This release accidentally leaked non-project dependencies into
io.dropwizard.metrics:metrics-bom
.If you're using this BOM, please be aware that it also manages the following dependencies:
org.slf4j:slf4j-api
org.slf4j:slf4j-simple
junit:junit
org.assertj:assertj-core
org.mockito:mockito-core
org.hamcrest:hamcrest-core
This has been fixed in Dropwizard Metrics 4.2.2.
Bug fixes
JMXReporter
may create invalid ObjectNames (#2031)Dependency updates
- Upgrade to Jackson 2.12.3
... (truncated)
Commits
f43f60e
[maven-release-plugin] prepare release v4.2.38b39de6
Update dependency org.jdbi:jdbi3-core to v3.21.0 (release/4.2.x) (#2083)311eb49
Bump actions/stale from 3.0.19 to 4 (#2079)132c279
Update dependency org.checkerframework:checker-qual to v3.16.0 (release/4.2.x...026bdb5
Update dependency com.rabbitmq:amqp-client to v5.13.0 (release/4.2.x) (#2076)12a0cef
Add Dependabot config for GitHub Actionsaa146a8
Update jetty9.version to v9.4.43.v20210629 (release/4.2.x) (#2070)1006636
Update dependency org.eclipse.jetty:jetty-bom to v10.0.6 (release/4.2.x) (#2067)29f649f
Update jackson.version to v2.12.4 (release/4.2.x) (#2069)f984c9e
Update dependency org.eclipse.jetty:jetty-bom to v11.0.6 (release/4.2.x) (#2068)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase
.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebase
will rebase this PR -
@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it -
@dependabot merge
will merge this PR after your CI passes on it -
@dependabot squash and merge
will squash and merge this PR after your CI passes on it -
@dependabot cancel merge
will cancel a previously requested merge and block automerging -
@dependabot reopen
will reopen this PR if it is closed -
@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) -
@dependabot use these labels
will set the current labels as the default for future PRs for this repo and language -
@dependabot use these reviewers
will set the current reviewers as the default for future PRs for this repo and language -
@dependabot use these assignees
will set the current assignees as the default for future PRs for this repo and language -
@dependabot use this milestone
will set the current milestone as the default for future PRs for this repo and language -
@dependabot badge me
will comment on this PR with code to add a "Dependabot enabled" badge to your readme
Additionally, you can set the following in your Dependabot dashboard:
- Update frequency (including time of day and day of week)
- Pull request limits (per update run and/or open at any time)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)