Skip to content

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Sep 8, 2024

Bumps the java group with 9 updates:

Package From To
ch.qos.logback:logback-classic 1.5.7 1.5.8
org.apache.logging.log4j:log4j-core 2.23.1 2.24.0
com.fasterxml.jackson.core:jackson-databind 2.12.7.1 2.17.2
org.apache.maven.plugins:maven-compiler-plugin 2.3.2 3.13.0
com.beust:jcommander 1.81 1.82
org.apache.maven.plugins:maven-shade-plugin 3.5.1 3.6.0
org.apache.nutch:nutch 1.20 2.4
org.apache.httpcomponents:httpmime 4.5.2 4.5.14
co.elastic.clients:elasticsearch-java 8.15.0 8.15.1

Updates ch.qos.logback:logback-classic from 1.5.7 to 1.5.8

Commits
  • 92e1a5e prepare release 1.5.8
  • 76d8dd8 Update README.md, comment out CI action results
  • d7e0d59 Merge branch 'master' of github.com:qos-ch/logback
  • fe3bf9d os.name property is expected to be Mac OS X on Apple computers
  • 9806273 Update README.md
  • c45f110 check for Mac OS X
  • 00c6f5e what is the os.name
  • 7d03a42 update actions/setup
  • edacb3b skip email sent termination test on MacOs
  • 3b5d041 allow more time for timetout
  • Additional commits viewable in compare view

Updates org.apache.logging.log4j:log4j-core from 2.23.1 to 2.24.0

Updates com.fasterxml.jackson.core:jackson-databind from 2.12.7.1 to 2.17.2

Commits

Updates org.apache.maven.plugins:maven-compiler-plugin from 2.3.2 to 3.13.0

Release notes

Sourced from org.apache.maven.plugins:maven-compiler-plugin's releases.

3.13.0

🚀 New features and improvements

📦 Dependency updates

📝 Documentation updates

👻 Maintenance

3.12.1

🐛 Bug Fixes

📦 Dependency updates

3.12.0

🚀 New features and improvements

... (truncated)

Commits
  • a1415aa [maven-release-plugin] prepare release maven-compiler-plugin-3.13.0
  • b2b9196 [MCOMPILER-574] Propagate cause of exception in AbstractCompilerMojo
  • 6d2ce5a [MCOMPILER-584] Refresh page - Using Non-Javac Compilers
  • eebad60 [MCOMPILER-585] Refresh plugins versions in ITs
  • ceacf68 [MCOMPILER-582] Automatic detection of release option for JDK < 9
  • 110293f [MCOMPILER-583] Require Maven 3.6.3
  • 90131df [MCOMPILER-575] Bump plexusCompilerVersion from 2.14.2 to 2.15.0 (#227)
  • 74cfc72 [MCOMPILER-548] JDK 21 throws annotations processing warning that can not be ...
  • f85aa27 Bump apache/maven-gh-actions-shared from 3 to 4
  • d59ef49 extract Maven 3.3.1 specific method call
  • Additional commits viewable in compare view

Updates com.beust:jcommander from 1.81 to 1.82

Commits

Updates org.apache.maven.plugins:maven-shade-plugin from 3.5.1 to 3.6.0

Commits
  • 9a572e2 [maven-release-plugin] prepare release maven-shade-plugin-3.6.0
  • ade2e35 [MSHADE-428] Prevent null value in array of transformers (#229)
  • b573b8c [MSHADE-478] Extra JARs feature (#228)
  • 199ffae Drop the cruft (#225)
  • 912a81d Bump maven-gh-actions-shared to v4
  • 80e4420 [maven-release-plugin] prepare for next development iteration
  • 19618cd [maven-release-plugin] prepare release maven-shade-plugin-3.5.3
  • faf233e [MSHADE-472] upgrade parent POM
  • 7de9ae7 [MSHADE-471] deal with DST
  • 58d8cfe [MSHADE-470] Bump asmVersion from 9.6 to 9.7 (#218)
  • Additional commits viewable in compare view

Updates org.apache.nutch:nutch from 1.20 to 2.4

Changelog

Sourced from org.apache.nutch:nutch's changelog.

Nutch Change Log

Nutch 1.19 Release 22/08/2022 (dd/mm/yyyy) Release Report: https://s.apache.org/lf6li

Breaking Changes

- Nutch is built on JDK 11 (NUTCH-2857)
- the Nutch WebApp was moved to a separate repository (NUTCH-2886)
  see https://github.com/apache/nutch-webapp
      https://gitbox.apache.org/repos/asf?p=nutch-webapp.git
- the plugin parse-swf for parsing Shockwave/Adobe Flash content was removed (NUTCH-2861)

Sub-task

[NUTCH-2819] - Move spotbugs "installation" directory to avoid that spotbugs is shipped in Nutch runtime
[NUTCH-2846] - Fix various bugs spotted by NUTCH-2815
[NUTCH-2850] - Method ignores exceptional return value
[NUTCH-2851] - Random object created and used only once
[NUTCH-2855] - Update org.elasticsearch.client

Bug

[NUTCH-2290] - Update licenses of bundled libraries
[NUTCH-2512] - Nutch does not build under JDK9
[NUTCH-2821] - Deduplicate licenses in LICENSE.txt file
[NUTCH-2822] - Split the LICENSE.txt file into two files for source resp. binary releases
[NUTCH-2831] - Elastic indexer does not support SSL
[NUTCH-2843] - Duplicate declaration of dependencies in ivy.xml
[NUTCH-2858] - urlnormalizer-protocol: URL port is lost during normalization
[NUTCH-2862] - Do not include Ivy jar in source release package
[NUTCH-2863] - Injector to parse command-line flags case-insensitive
[NUTCH-2866] - MetaData.toString() should return "key=value ..."
[NUTCH-2868] - urlnormalizer-protocol fails with StringIndexOutOfBoundsException when reading invalid line in configuration file
[NUTCH-2881] - bug in 'nutch' symlink in docker container
[NUTCH-2889] - nutch indexer-elasticsearch plugin, doesn't work with https protocol
[NUTCH-2890] - Protocol-okhttp: upgrade okhttp to 4.9.1 to address infinite connection retries
[NUTCH-2894] - Java plugin compilation classpath: priorize plugin dependencies
[NUTCH-2899] - Remove needless warning about missing o/a/rat/anttasks/antlib.xml
[NUTCH-2902] - Jexl parsing error on statements
[NUTCH-2905] - Mask sensitive strings in log output of index writers
[NUTCH-2910] - FetchItemQueues overloaded constructor also interprets fetcher timeout as -1 e.g. no-timeout.
[NUTCH-2915] - Upgrade to log4j 2.15.0
[NUTCH-2916] - Fix log file rotation / rename default log file
[NUTCH-2917] - Remove transitive dependency to log4j 1.x
[NUTCH-2922] - Upgrade to log4j 2.17.0
[NUTCH-2935] - DeduplicationJob: failure on URLs with invalid percent encoding
[NUTCH-2936] - Early registration of URL stream handlers provided by plugins may fail Hadoop jobs running in distributed mode if protocol-okhttp is used
[NUTCH-2945] - Solr Index Writer pluging schema.xml missing a copyToField
[NUTCH-2947] - Fetcher: keep state of empty fetch queues unless queue feeder is finished

... (truncated)

Commits
  • e803acd Update 2.4 release date
  • d0509ef Add dependency to hbase-common explicitly to ivy.xml
  • 508b18a Add NUTCH-2722 and NUTCH-2734 to CHANGES.txt
  • 52188de NUTCH-2734 Upgrade Tika dependency to 1.22
  • 8e124be NUTCH-2722 Fetch dependencies via https
  • 4944597 Prepare for Nutch 2.4 release candidate
  • e56f82d NUTCH-2475 If and else-if branches has the same condition
  • 90dede9 NUTCH-2667 Update Tika and Commons Collections 4
  • add07fa Merge pull request #423 from sebastian-nagel/NUTCH-2667-upgrade-tika-commons-...
  • 7044365 NUTCH-2667 Update Tika and Commons Collections 4
  • Additional commits viewable in compare view

Updates org.apache.httpcomponents:httpmime from 4.5.2 to 4.5.14

Updates co.elastic.clients:elasticsearch-java from 8.15.0 to 8.15.1

Commits
  • 17c4cf5 [codegen] update to latest spec
  • f67b74c Addressing bulk ingester stuck threads (#870) (#873)
  • c7ff6d3 fixed tests
  • b35cd3f correctly regen
  • 3e14e79 Add support for shortcut properties of non-primitive type (#858)
  • c7aeb33 [codegen] update to latest spec and generator
  • ef0adbf [codegen] updated to latest api spec
  • daba75e fixed indent in release highlights
  • 156f858 [codegen] updated to latest api spec
  • 4f87a27 updated release notes
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

@dependabot dependabot bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels Sep 8, 2024
Bumps the java group with 9 updates:

| Package | From | To |
| --- | --- | --- |
| [ch.qos.logback:logback-classic](https://github.com/qos-ch/logback) | `1.5.7` | `1.5.8` |
| org.apache.logging.log4j:log4j-core | `2.23.1` | `2.24.0` |
| [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson) | `2.12.7.1` | `2.17.2` |
| [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin) | `2.3.2` | `3.13.0` |
| [com.beust:jcommander](https://github.com/cbeust/jcommander) | `1.81` | `1.82` |
| [org.apache.maven.plugins:maven-shade-plugin](https://github.com/apache/maven-shade-plugin) | `3.5.1` | `3.6.0` |
| [org.apache.nutch:nutch](https://github.com/apache/nutch) | `1.20` | `2.4` |
| org.apache.httpcomponents:httpmime | `4.5.2` | `4.5.14` |
| [co.elastic.clients:elasticsearch-java](https://github.com/elastic/elasticsearch-java) | `8.15.0` | `8.15.1` |


Updates `ch.qos.logback:logback-classic` from 1.5.7 to 1.5.8
- [Commits](qos-ch/logback@v_1.5.7...v_1.5.8)

Updates `org.apache.logging.log4j:log4j-core` from 2.23.1 to 2.24.0

Updates `com.fasterxml.jackson.core:jackson-databind` from 2.12.7.1 to 2.17.2
- [Commits](https://github.com/FasterXML/jackson/commits)

Updates `org.apache.maven.plugins:maven-compiler-plugin` from 2.3.2 to 3.13.0
- [Release notes](https://github.com/apache/maven-compiler-plugin/releases)
- [Commits](apache/maven-compiler-plugin@maven-compiler-plugin-2.3.2...maven-compiler-plugin-3.13.0)

Updates `com.beust:jcommander` from 1.81 to 1.82
- [Changelog](https://github.com/cbeust/jcommander/blob/master/CHANGELOG.md)
- [Commits](cbeust/jcommander@1.81...1.82)

Updates `org.apache.maven.plugins:maven-shade-plugin` from 3.5.1 to 3.6.0
- [Release notes](https://github.com/apache/maven-shade-plugin/releases)
- [Commits](apache/maven-shade-plugin@maven-shade-plugin-3.5.1...maven-shade-plugin-3.6.0)

Updates `org.apache.nutch:nutch` from 1.20 to 2.4
- [Changelog](https://github.com/apache/nutch/blob/master/CHANGES.md)
- [Commits](apache/nutch@release-1.20...release-2.4)

Updates `org.apache.httpcomponents:httpmime` from 4.5.2 to 4.5.14

Updates `co.elastic.clients:elasticsearch-java` from 8.15.0 to 8.15.1
- [Release notes](https://github.com/elastic/elasticsearch-java/releases)
- [Changelog](https://github.com/elastic/elasticsearch-java/blob/main/CHANGELOG.md)
- [Commits](elastic/elasticsearch-java@v8.15.0...v8.15.1)

---
updated-dependencies:
- dependency-name: ch.qos.logback:logback-classic
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.apache.logging.log4j:log4j-core
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: java
- dependency-name: com.fasterxml.jackson.core:jackson-databind
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: java
- dependency-name: org.apache.maven.plugins:maven-compiler-plugin
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: java
- dependency-name: com.beust:jcommander
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: java
- dependency-name: org.apache.maven.plugins:maven-shade-plugin
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: java
- dependency-name: org.apache.nutch:nutch
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: java
- dependency-name: org.apache.httpcomponents:httpmime
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: co.elastic.clients:elasticsearch-java
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/maven/0.3.9/java-f483cb7b94 branch from 33c335a to ca000f3 Compare September 9, 2024 08:11
@alegauss alegauss merged commit acc4aea into 0.3.9 Sep 9, 2024
2 of 4 checks passed
@dependabot dependabot bot deleted the dependabot/maven/0.3.9/java-f483cb7b94 branch September 9, 2024 15:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update Java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant