Bump org.codehaus.mojo:license-maven-plugin from 2.7.0 to 2.7.1 by dependabot[bot] · Pull Request #491 · oras-project/oras-java
Bumps org.codehaus.mojo:license-maven-plugin from 2.7.0 to 2.7.1.
Release notes
Sourced from org.codehaus.mojo:license-maven-plugin's releases.
2.7.1
💥 Breaking changes
- Bump LibreOffice library odfdom-java to 0.12.0, require JDK 11+ for generating Calc file ODS (#684)
@slawekjaranowski🚀 New features and improvements
- Bump LibreOffice library odfdom-java to 0.12.0, require JDK 11+ for generating Calc file ODS (#684)
@slawekjaranowski- Fix for issues/533 (dual licensed dependency with one license on whitelist and the other on blacklist) (#670)
@wuwu2000- Make Mojos thread-safe and improve concurrent cache handling (#674)
@shaikhu👻 Maintenance
- Add PR automation workflow (#682)
@slawekjaranowski📦 Dependency updates
- Bump org.apache.commons:commons-lang3 from 3.8.1 to 3.18.0 in /src/it/ISSUE-345 (#691) @dependabot[bot]
- Bump org.codehaus.mojo:mojo-parent from 94 to 95 (#690) @dependabot[bot]
- Bump org.apache.commons:commons-lang3 from 3.8.1 to 3.18.0 in /src/it/ISSUE-508 (#677) @dependabot[bot]
- Bump org.apache.maven:maven-archiver from 3.6.5 to 3.6.6 (#689) @dependabot[bot]
- Bump org.apache.logging.log4j:log4j-to-slf4j from 2.25.2 to 2.25.3 (#688) @dependabot[bot]
- Bump mavenVersion from 3.9.11 to 3.9.12 (#687) @dependabot[bot]
- Bump org.apache.poi:poi-ooxml from 5.5.0 to 5.5.1 (#683) @dependabot[bot]
- Bump org.apache.commons:commons-lang3 from 3.9 to 3.18.0 in /src/it/ISSUE-312/child2 (#681) @dependabot[bot]
- Bump org.apache.commons:commons-lang3 from 3.19.0 to 3.20.0 (#679) @dependabot[bot]
- Bump org.apache.poi:poi-ooxml from 5.4.1 to 5.5.0 (#680) @dependabot[bot]
- Bump org.wiremock:wiremock-standalone from 3.13.1 to 3.13.2 (#678) @dependabot[bot]
- Bump commons-io:commons-io from 2.20.0 to 2.21.0 (#676) @dependabot[bot]
- Bump org.apache.maven:maven-archiver from 3.6.4 to 3.6.5 (#671) @dependabot[bot]
- Bump org.codehaus.mojo:mojo-parent from 93 to 94 (#669) @dependabot[bot]
- Bump org.apache.logging.log4j:log4j-to-slf4j from 2.25.1 to 2.25.2 (#667) @dependabot[bot]
- Bump org.apache.commons:commons-lang3 from 3.18.0 to 3.19.0 (#668) @dependabot[bot]
Commits
0b4fe61[maven-release-plugin] prepare release 2.7.153caf42Bump LibreOffice library odfdom-java to 0.12.0, require JDK 11+ for generatin...ee4cefdBump org.apache.commons:commons-lang3 in /src/it/ISSUE-345d25151bBump org.codehaus.mojo:mojo-parent from 94 to 95d5941c4Bump org.apache.commons:commons-lang3 in /src/it/ISSUE-508 (#677)448c1f6Bump org.apache.maven:maven-archiver from 3.6.5 to 3.6.6c8db9e4Bump org.apache.logging.log4j:log4j-to-slf4j from 2.25.2 to 2.25.3bc9c5a6Bump mavenVersion from 3.9.11 to 3.9.12d8cb983Fix for issues/533 (dual licensed dependency with one license on whitelist an...903de29Bump org.apache.poi:poi-ooxml from 5.5.0 to 5.5.1- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)