Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump spotbugs-annotations from 4.0.3 to 4.0.4 #78

Conversation

dependabot-preview[bot]
Copy link
Contributor

Bumps spotbugs-annotations from 4.0.3 to 4.0.4.

Release notes

Sourced from spotbugs-annotations's releases.

SpotBugs 4.0.4

CHANGELOG

CHECKSUM

file checksum (sha256)
spotbugs-4.0.4-javadoc.jar 1662005c2ba2e8c9b4eff2e9c8554d61575271ec273dfccad66bcf115e4f4bea
spotbugs-4.0.4-sources.jar ae6f7109565e4c5a5b204569b41954bcd2f8d9badca2fc3e5cfdffe53576336f
spotbugs-4.0.4.tgz eff36aff1ce8d3326d317919aa0d7e92361d535b823befc26b7cf8e598ca660d
spotbugs-4.0.4.zip 204adbdaa0fa51fedf738b405a1fda65c693f39c66f754e8c4f93323a2c77a8d
spotbugs-annotations-4.0.4-javadoc.jar 9eea9f952c3e23e53479c4249318f219d188533eb43457a62d47f1c6c367a0cc
spotbugs-annotations-4.0.4-sources.jar b338136e3e82d585348cde58a8fe3a678e16f51a35c31c1463e05fefef557aad
spotbugs-annotations.jar 460da898f7696e40b109687a0099240ab36e8b442987df222454b0e5595f3c9d
spotbugs-ant-4.0.4-javadoc.jar 6b8b2d738e38fb0744e53b5480d7077b5076723f8c0fd08e9cff4a57bb0997f3
spotbugs-ant-4.0.4-sources.jar c74dec42c0ed0dd1ae02a7410d8e0f0dbbee23e8e7da4a21910863677fcdbc8e
spotbugs-ant.jar a9f1c4ea228ce3c4bb11065b26806f5e2d4ffe457a95a012166b11a58164cc19
spotbugs.jar 1388a164d1129508e780c9ba76f58c3ce8e36fa65d6824c4bbcbafe8e60dbf51
test-harness-4.0.4-javadoc.jar dacb076e59e912be320cc269bb8a8411de8ccb156fb7017663bb748dc84cc559
test-harness-4.0.4-sources.jar 2c1f5ef929453f3b682c7eb7c1e22db3082b5f74c5a5be439be5dc31dd7a31aa
test-harness-4.0.4.jar e6d72665dcaed1afd413541f211992924ffc2d4d64dc54f1a8f0bfa494853596
test-harness-core-4.0.4-javadoc.jar 205a3a90820f4c4f6fb78ea061b56dd077eb7b9097dfe2c34e30bc7cc4b62b47
test-harness-core-4.0.4-sources.jar f320f5eb4069e9686b760b2a6a0760989753225f9e9ce1226e3258ec64795d8a
test-harness-core-4.0.4.jar de97934146238f9ae23707bd14e3cea3f12bd89f3dde2b6b0648e41f11815418
test-harness-jupiter-4.0.4-javadoc.jar 2cc61d478c2683a78f32323221b56b0154da5f46a66309a7dc953acd9592f6f4
test-harness-jupiter-4.0.4-sources.jar 210353a57016e26b1a654d936a15f039613fa1ac532d485c1b1d03902f6c6315
test-harness-jupiter-4.0.4.jar 17e8d78d1868f86e63f3e5e3d878e86f3d7fb1b8cf1a8d5f893333c982bfd3e2
Changelog

Sourced from spotbugs-annotations's changelog.

4.0.4 - 2020-06-09

Security

  • Update dom4j to 2.1.3 to fix security vulnerability. (#1122)
Commits
  • 249e1a7 release SpotBugs v4.0.4
  • 9696e40 ci: create GitHub Release only for tagged commits
  • 5e9ed91 explain about tasks generated to each sourceSet
  • 2bbcbfc ci: fix release build in the master branch
  • 19968a0 ci: Automate the process to create a GitHub Release page (#1132)
  • bd8eda0 ci: Move more process from Travis to GitHub Actions (#1133)
  • 8a0c728 Fix documented parameter
  • d813e67 Remove tags not matching any actual parameter
  • 0817ee8 Fix the XML External Entity (XXE) Injection Vulnerability (#1131)
  • bd35f9b prepare for the next development
  • See full diff in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot badge me will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in the .dependabot/config.yml file in this repo:

  • Update frequency
  • Automerge options (never/patch/minor, and dev/runtime dependencies)
  • Out-of-range updates (receive only lockfile updates, if desired)
  • Security updates (receive only security updates, if desired)

@dependabot-preview dependabot-preview bot added the dependencies Update of dependencies label Jun 9, 2020
@uhafner uhafner merged commit 2f3971a into master Jun 18, 2020
@dependabot-preview dependabot-preview bot deleted the dependabot/maven/com.github.spotbugs-spotbugs-annotations-4.0.4 branch June 18, 2020 09:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Update of dependencies
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant