dependabot[bot] opened a new pull request, #1149: URL: https://github.com/apache/incubator-kie-kogito-pipelines/pull/1149
Bumps [org.jenkins-ci.plugins:git](https://github.com/jenkinsci/git-plugin) from 3.0.0 to 4.11.5. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/jenkinsci/git-plugin/releases">org.jenkins-ci.plugins:git's releases</a>.</em></p> <blockquote> <h2>4.11.5</h2> <h2>🐛 Bug fixes</h2> <ul> <li><a href="https://www.jenkins.io/security/advisory/2022-08-23/#SECURITY-2796">SECURITY-2796</a> - fix <a href="https://github.com/raul-arabaolaza"><code>@raul-arabaolaza</code></a></li> </ul> <h2>4.11.4</h2> <h2>🐛 Bug fixes</h2> <ul> <li><a href="https://www.jenkins.io/security/advisory/2022-07-27/#SECURITY-284">SECURITY-284</a> - fix <a href="https://github.com/yaroslavafenkin"><code>@yaroslavafenkin</code></a></li> </ul> <h2>4.11.3</h2> <!-- raw HTML omitted --> <h2>🐛 Bug fixes</h2> <ul> <li><a href="https://issues.jenkins.io/browse/JENKINS-68562">JENKINS-68562</a> - Fix Git checkouts for controllers running on Windows (<a href="https://redirect.github.com/jenkinsci/git-plugin/issues/1273">#1273</a>) <a href="https://github.com/dwnusbaum"><code>@dwnusbaum</code></a></li> </ul> <h2>📝 Documentation updates</h2> <ul> <li>Fix minor typo in documentation. (<a href="https://redirect.github.com/jenkinsci/git-plugin/issues/1260">#1260</a>) <a href="https://github.com/pouwerkerk"><code>@pouwerkerk</code></a></li> </ul> <h2>📦 Dependency updates</h2> <ul> <li>Bump spotless-maven-plugin from 2.22.3 to 2.22.5 (<a href="https://redirect.github.com/jenkinsci/git-plugin/issues/1261">#1261</a>, <a href="https://redirect.github.com/jenkinsci/git-plugin/issues/1269">#1269</a>) <a href="https://github.com/dependabot"><code>@dependabot</code></a></li> <li>Bump spotbugs-annotations from 4.6.0 to 4.7.0 (<a href="https://redirect.github.com/jenkinsci/git-plugin/issues/1263">#1263</a>) <a href="https://github.com/dependabot"><code>@dependabot</code></a></li> </ul> <h2>4.11.2</h2> <!-- raw HTML omitted --> <h2>Security fix</h2> <ul> <li><a href="https://jenkins.io/security/advisories/">SECURITY-2478</a> - Prevent checkout from the controller file system</li> </ul> <h2>4.11.1</h2> <!-- raw HTML omitted --> <h2>📝 Documentation updates</h2> <ul> <li>Add warning about unexpected default branch name. (<a href="https://redirect.github.com/jenkinsci/git-plugin/issues/1246">#1246</a>) <a href="https://github.com/jmMeessen"><code>@jmMeessen</code></a></li> </ul> <h2>🚦 Tests</h2> <ul> <li>Work around <a href="https://issues.jenkins.io/browse/JENKINS-67309">JENKINS-67309</a> - (<a href="https://redirect.github.com/jenkinsci/git-plugin/issues/1255">#1255</a>) <a href="https://github.com/basil"><code>@basil</code></a></li> </ul> <h2>📦 Dependency updates</h2> <ul> <li>Bump promoted-builds from 3.9.1 to 3.10.1 (<a href="https://redirect.github.com/jenkinsci/git-plugin/issues/1254">#1254</a>) <a href="https://github.com/dependabot"><code>@dependabot</code></a></li> <li>Test with Java 17 in addition to Java 11 and Java 8 (<a href="https://redirect.github.com/jenkinsci/git-plugin/issues/1249">#1249</a>) <a href="https://github.com/MarkEWaite"><code>@MarkEWaite</code></a></li> <li>Bump plugin pom from 4.38 to 4.40 (<a href="https://redirect.github.com/jenkinsci/git-plugin/issues/1245">#1245</a>, <a href="https://redirect.github.com/jenkinsci/git-plugin/issues/1248">#1248</a>) <a href="https://github.com/dependabot"><code>@dependabot</code></a></li> <li>Bump spotless-maven-plugin from 2.21.0 to 2.22.1 (<a href="https://redirect.github.com/jenkinsci/git-plugin/issues/1244">#1244</a>, <a href="https://redirect.github.com/jenkinsci/git-plugin/issues/1250">#1250</a>) <a href="https://github.com/dependabot"><code>@dependabot</code></a></li> </ul> <h2>4.11.0</h2> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/jenkinsci/git-plugin/blob/master/CHANGELOG.adoc">org.jenkins-ci.plugins:git's changelog</a>.</em></p> <blockquote> <p>[[changelog-moved-to-github-releases]] = Changelog moved to <a href="https://github.com/jenkinsci/git-plugin/releases%5BGitHub">https://github.com/jenkinsci/git-plugin/releases[GitHub</a> Releases]</p> <p>== See <a href="https://github.com/jenkinsci/git-plugin/releases%5BGitHub">https://github.com/jenkinsci/git-plugin/releases[GitHub</a> Releases] for all new changelogs (July 1, 2019)</p> <p>== Version 3.10.0 (May 2, 2019)</p> <ul> <li>Require Java 8</li> <li>Require Jenkins 2.121.1 or newer</li> <li>Fix upgrade compatibility error for mergeStrategy 'default' of pre-build merge in pipeline jobs (<a href="https://issues.jenkins.io/browse/JENKINS-51638%5BJENKINS-51638%5D">https://issues.jenkins.io/browse/JENKINS-51638[JENKINS-51638]</a>)</li> </ul> <p>== Version 3.9.4 (April 24, 2019)</p> <ul> <li><a href="https://jenkins.io/security/advisory/2019-01-28/%5BSecurity">https://jenkins.io/security/advisory/2019-01-28/[Security</a> advisory] Fix object not found exception scanning multibranch pipeline repo (<a href="https://issues.jenkins.io/browse/JENKINS-50394%5BJENKINS-50394%5D">https://issues.jenkins.io/browse/JENKINS-50394[JENKINS-50394]</a>)</li> </ul> <p>== Version 4.0.0-rc (January 30, 2019)</p> <ul> <li>Require Java 8</li> <li>Require Jenkins 2.60</li> <li>Make matrix project dependency optional</li> <li>Add shallow cloning for submodules (<a href="https://issues.jenkins.io/browse/JENKINS-21248%5BJENKINS-21248%5D">https://issues.jenkins.io/browse/JENKINS-21248[JENKINS-21248]</a>)</li> <li>Add option to search for users by e-mail address (<a href="https://issues.jenkins.io/browse/JENKINS-9016%5BJENKINS-9016%5D">https://issues.jenkins.io/browse/JENKINS-9016[JENKINS-9016]</a>)</li> <li>Add parallel update for submodules (<a href="https://issues.jenkins.io/browse/JENKINS-44720%5BJENKINS-44720%5D">https://issues.jenkins.io/browse/JENKINS-44720[JENKINS-44720]</a>)</li> <li>Stop bloating build.xml files with BuildData (<a href="https://issues.jenkins.io/browse/JENKINS-19022%5BJENKINS-19022%5D">https://issues.jenkins.io/browse/JENKINS-19022[JENKINS-19022]</a>)</li> <li>Fix notifyCommit for branch names that contain '/' characters (<a href="https://issues.jenkins.io/browse/JENKINS-29603%5BJENKINS-29603%5D">https://issues.jenkins.io/browse/JENKINS-29603[JENKINS-29603]</a>, <a href="https://issues.jenkins.io/browse/JENKINS-32174%5BJENKINS-32174%5D">https://issues.jenkins.io/browse/JENKINS-32174[JENKINS-32174]</a>)</li> <li>Fix empty "depth" parameter handling for shallow cloning (<a href="https://issues.jenkins.io/browse/JENKINS-53050%5BJENKINS-53050%5D">https://issues.jenkins.io/browse/JENKINS-53050[JENKINS-53050]</a>)</li> <li>Ignore exceptions when generating commit message as informational message in build log (<a href="https://issues.jenkins.io/browse/JENKINS-53725%5BJENKINS-53725%5D">https://issues.jenkins.io/browse/JENKINS-53725[JENKINS-53725]</a>)</li> <li>Fix snippet generator gitlab version class cast exception (<a href="https://issues.jenkins.io/browse/JENKINS-46650%5BJENKINS-46650%5D">https://issues.jenkins.io/browse/JENKINS-46650[JENKINS-46650]</a>)</li> <li>Fix git tool references on agent (<a href="https://issues.jenkins.io/browse/JENKINS-55827%5BJENKINS-55827%5D">https://issues.jenkins.io/browse/JENKINS-55827[JENKINS-55827]</a>)</li> </ul> <p>== Version 3.9.3 (January 30, 2019)</p> <ul> <li><a href="https://jenkins.io/security/advisory/2019-01-28/%5BFix">https://jenkins.io/security/advisory/2019-01-28/[Fix</a> local tool reference was ignored] (<a href="https://issues.jenkins.io/browse/JENKINS-55827%5BJENKINS-55827%5D">https://issues.jenkins.io/browse/JENKINS-55827[JENKINS-55827]</a>), regression in 3.9.2</li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/jenkinsci/git-plugin/commit/d66885a6b7a7251e662982e068e1335571dacfb9"><code>d66885a</code></a> [maven-release-plugin] prepare release git-4.11.5</li> <li><a href="https://github.com/jenkinsci/git-plugin/commit/3241db9cc696711c871d4e78b3c3c0daad0740c3"><code>3241db9</code></a> SECURITY-2796</li> <li><a href="https://github.com/jenkinsci/git-plugin/commit/a776a3f76b3464326e51b49c7157e9fc6855e2cb"><code>a776a3f</code></a> [maven-release-plugin] prepare for next development iteration</li> <li><a href="https://github.com/jenkinsci/git-plugin/commit/e732ec592ccd25bce205179cf7f80900644c4db1"><code>e732ec5</code></a> [maven-release-plugin] prepare release git-4.11.4</li> <li><a href="https://github.com/jenkinsci/git-plugin/commit/b46165c74a0bf15e08763de2e506005624d5d238"><code>b46165c</code></a> [SECURITY-284][SECURITY-907]</li> <li><a href="https://github.com/jenkinsci/git-plugin/commit/18577d14afa2d1fbf970c44f60fce426d083073b"><code>18577d1</code></a> [maven-release-plugin] prepare for next development iteration</li> <li><a href="https://github.com/jenkinsci/git-plugin/commit/7dd7758f2018f5fa1d6f9fd5d2b897551b1f3186"><code>7dd7758</code></a> [maven-release-plugin] prepare release git-4.11.3</li> <li><a href="https://github.com/jenkinsci/git-plugin/commit/170f24f22c1e755dd6d824a066c93f293593ad5d"><code>170f24f</code></a> Merge pull request <a href="https://redirect.github.com/jenkinsci/git-plugin/issues/1273">#1273</a> from dwnusbaum/JENKINS-68562</li> <li><a href="https://github.com/jenkinsci/git-plugin/commit/4c498695c931655b129d45d4ca2d95fe5931c5a2"><code>4c49869</code></a> Merge remote-tracking branch 'security/master'</li> <li><a href="https://github.com/jenkinsci/git-plugin/commit/83580ffd2395f587a2f2cbdec6e339c488a85843"><code>83580ff</code></a> [JENKINS-68562] Minor refactoring</li> <li>Additional commits viewable in <a href="https://github.com/jenkinsci/git-plugin/compare/git-3.0.0...git-4.11.5">compare view</a></li> </ul> </details> <br /> [](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/apache/incubator-kie-kogito-pipelines/network/alerts). </details> -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: [email protected] For queries about this service, please contact Infrastructure at: [email protected] --------------------------------------------------------------------- To unsubscribe, e-mail: [email protected] For additional commands, e-mail: [email protected]
