Skip to content

Issue #440: Upgrade dependencies - #461

Merged
reckart merged 3 commits into
mainfrom
refactoring/440-Upgrade-dependencies
Aug 9, 2026
Merged

reckart merged 3 commits into
mainfrom
refactoring/440-Upgrade-dependencies

Conversation

@reckart

@reckart reckart commented Aug 9, 2026 •

Copy link
Copy Markdown
Member

What's in the PR

  • log4j 2.25.3 -> 2.26.1
  • slf4j 2.0.17 -> 2.0.18
  • bytebuddy 1.18.10 -> 1.18.11
  • javassist 3.31.0-GA -> 3.32.0-GA
  • xmlunit 2.12.0 -> 2.13.0
  • junit-platform 1.14.3 -> 1.14.4
  • asciidoctor-pdf 2.3.19 -> 2.3.23
  • plexus-archiver 4.8.0 -> 4.12.0
  • maven-plugin-testing-harness 3.3.0 -> 3.5.1
  • maven-plugin-annotations 3.8.1 -> 3.15.2 (split from shared maven.version property)
  • Add .mvn/versions-rules.xml to filter pre-release candidates in dependency upgrade discovery
  • Decouple maven-plugin-tools version from Maven core API version to prevent property misalignment across artifact families
  • Pin GitHub Actions to commit SHAs: actions/checkout v7.0.1, actions/setup-java v5.7.0, mikepenz/action-junit-report v6.4.2, github/codeql-action v4
  • Remove stCarolas/setup-maven action and use runner-provided Maven 3.9.16 instead of installing 3.9.9

How to test manually

  • No specific test procedure

Automatic testing

  • PR adds/updates unit tests

Documentation

  • PR adds/updates documentation

Organizational

  • PR adds/updates dependencies.
    Only dependencies under approved licenses are allowed. LICENSE and NOTICE files in the respective modules where dependencies have been added as well as in the project root have been updated.

reckart added 3 commits August 9, 2026 19:19
- log4j 2.25.3 -> 2.26.1
- slf4j 2.0.17 -> 2.0.18
- bytebuddy 1.18.10 -> 1.18.11
- javassist 3.31.0-GA -> 3.32.0-GA
- xmlunit 2.12.0 -> 2.13.0
- junit-platform 1.14.3 -> 1.14.4
- asciidoctor-pdf 2.3.19 -> 2.3.23
- plexus-archiver 4.8.0 -> 4.12.0
- maven-plugin-testing-harness 3.3.0 -> 3.5.1
- maven-plugin-annotations 3.8.1 -> 3.15.2 (split from shared maven.version property)
- Add .mvn/versions-rules.xml to filter pre-release candidates in dependency upgrade discovery
- Decouple maven-plugin-tools version from Maven core API version to prevent property misalignment across artifact families
- Pin GitHub Actions to commit SHAs: actions/checkout v7.0.1, actions/setup-java v5.7.0, mikepenz/action-junit-report v6.4.2, github/codeql-action v4
- Remove stCarolas/setup-maven action and use runner-provided Maven 3.9.16 instead of installing 3.9.9
- Bump binary dist license/notice files where required
@reckart reckart self-assigned this Aug 9, 2026
@reckart reckart added the ⚙️ Refactoring Improvement for development or maintainability label Aug 9, 2026
@reckart reckart added this to the 3.7.0 milestone Aug 9, 2026
@reckart
reckart merged commit b12def8 into main Aug 9, 2026
5 checks passed
@reckart
reckart deleted the refactoring/440-Upgrade-dependencies branch August 9, 2026 18:05
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

⚙️ Refactoring Improvement for development or maintainability

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant