-
Notifications
You must be signed in to change notification settings - Fork 2.7k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Upgrade Jakarta EL impl to 3.0.4 #20412
Conversation
Should we add it to dependabot? |
This workflow status is outdated as a new workflow run has been triggered. Failing Jobs - Building 7e6ed6d
Full information is available in the Build summary check run. Failures⚙️ JVM Tests - JDK 11 Windows #- Failing: extensions/vertx-http/deployment
! Skipped: core/test-extension/deployment docs extensions/agroal/deployment and 286 more 📦 extensions/vertx-http/deployment✖
✖
✖
✖
✖
✖
✖
✖
✖
✖
✖
|
7e6ed6d
to
93df2e7
Compare
We could but we will need to ignore all the new major versions. |
@gsmet OK, let me update the dependabot rule |
Hmm, is it
? |
Hey @geoand can you check my last comment please ? |
Oh sorry, I missed that! |
@geoand np :-), I'll add the ignore section, 1 sec |
I let you folks figure it out. I just need to have this merged by tonight if it's going to be part of |
93df2e7
to
054f550
Compare
@geoand done :-), if that does not work then we'll make sure the major version is not merged in any case, Guillaume, we won't let 4.x.x in :-) |
When Dependabot pushes the update, you can add a comment with something like "ignore this major version" (not exactly sure it's the right wording but the help is available in the Dependabot PR). |
Sound good |
There was a single JVM JDK 11 failure,
Which is not related, I could not see anything else, so let me merge |
Fixes #20274
It fixes a CVE so probably something to consider for 2.2.