dependabot[bot] opened a new pull request, #2872: URL: https://github.com/apache/shiro/pull/2872
Bumps the maven-dependencies group with 22 updates: | Package | From | To | | --- | --- | --- | | [biz.aQute.bnd:biz.aQute.bndlib](https://github.com/bndtools/bnd) | `7.3.0` | `7.4.0` | | [com.puppycrawl.tools:checkstyle](https://github.com/checkstyle/checkstyle) | `13.10.0` | `14.0.0` | | [org.easymock:easymock](https://github.com/easymock/easymock) | `5.6.0` | `5.7.0` | | [net.bytebuddy:byte-buddy](https://github.com/raphw/byte-buddy) | `1.18.11` | `1.18.12` | | [net.bytebuddy:byte-buddy-agent](https://github.com/raphw/byte-buddy) | `1.18.11` | `1.18.12` | | [org.springframework:spring-context](https://github.com/spring-projects/spring-framework) | `7.0.8` | `7.0.9` | | [org.springframework:spring-web](https://github.com/spring-projects/spring-framework) | `7.0.8` | `7.0.9` | | [org.springframework:spring-jdbc](https://github.com/spring-projects/spring-framework) | `7.0.8` | `7.0.9` | | [org.springframework:spring-orm](https://github.com/spring-projects/spring-framework) | `7.0.8` | `7.0.9` | | [org.springframework:spring-webmvc](https://github.com/spring-projects/spring-framework) | `7.0.8` | `7.0.9` | | [org.springframework:spring-test](https://github.com/spring-projects/spring-framework) | `7.0.8` | `7.0.9` | | [com.mycila:license-maven-plugin](https://github.com/mathieucarbou/license-maven-plugin) | `5.1.1` | `5.1.2` | | [org.omnifaces:omnifaces](https://github.com/omnifaces/omnifaces) | `5.4.5` | `5.5` | | [org.springframework.boot:spring-boot-dependencies](https://github.com/spring-projects/spring-boot) | `4.1.0` | `4.1.1` | | [org.springframework.boot:spring-boot-autoconfigure](https://github.com/spring-projects/spring-boot) | `4.1.0` | `4.1.1` | | [org.springframework.boot:spring-boot-configuration-processor](https://github.com/spring-projects/spring-boot) | `4.1.0` | `4.1.1` | | [org.springframework.boot:spring-boot-maven-plugin](https://github.com/spring-projects/spring-boot) | `4.1.0` | `4.1.1` | | [org.springframework.boot:spring-boot-starter-thymeleaf](https://github.com/spring-projects/spring-boot) | `4.1.0` | `4.1.1` | | [org.apache.meecrowave:meecrowave-core](https://github.com/apache/openwebbeans-meecrowave) | `2.0.0` | `2.1.1` | | [org.apache.meecrowave:meecrowave-junit](https://github.com/apache/openwebbeans-meecrowave) | `2.0.0` | `2.1.1` | | [com.flowlogix:flowlogix-jee](https://github.com/flowlogix/flowlogix) | `11.4.1` | `11.4.2` | | [fish.payara.extras:payara-micro](https://github.com/payara/payara) | `7.2026.7` | `7.2026.8` | Updates `biz.aQute.bnd:biz.aQute.bndlib` from 7.3.0 to 7.4.0 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/bndtools/bnd/releases">biz.aQute.bnd:biz.aQute.bndlib's releases</a>.</em></p> <blockquote> <h2>Bnd/Bndtools 7.4.0</h2> <p>See <a href="https://github.com/bndtools/bnd/wiki/Changes-in-7.4.0">Release Notes</a></p> <h2>What's Changed</h2> <ul> <li>Remove long-running test from ci server build by <a href="https://github.com/peterkir"><code>@peterkir</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7222">bndtools/bnd#7222</a></li> <li>CI build output improvement by <a href="https://github.com/peterkir"><code>@peterkir</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7223">bndtools/bnd#7223</a></li> <li>build(deps): bump ruby/setup-ruby from 1.306.0 to 1.307.0 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7227">bndtools/bnd#7227</a></li> <li>build(deps): bump step-security/harden-runner from 2.19.0 to 2.19.2 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7230">bndtools/bnd#7230</a></li> <li>build(deps): bump github/codeql-action from 4.35.2 to 4.36.0 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7246">bndtools/bnd#7246</a></li> <li>build(deps): bump step-security/harden-runner from 2.19.2 to 2.19.4 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7245">bndtools/bnd#7245</a></li> <li>Create SECURITY.md for bnd security documentation by <a href="https://github.com/chrisrueger"><code>@chrisrueger</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7243">bndtools/bnd#7243</a></li> <li>build(deps): bump ruby/setup-ruby from 1.307.0 to 1.310.0 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7240">bndtools/bnd#7240</a></li> <li>build(deps): bump jekyll-seo-tag from 2.8.0 to 2.9.0 in /docs by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7225">bndtools/bnd#7225</a></li> <li>Allow overriding HTTPClient request headers by <a href="https://github.com/chrisrueger"><code>@chrisrueger</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7247">bndtools/bnd#7247</a></li> <li>docs: update generated docs by <a href="https://github.com/github-actions"><code>@github-actions</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7248">bndtools/bnd#7248</a></li> <li>Set explicit headers before defaults and refine logging by <a href="https://github.com/chrisrueger"><code>@chrisrueger</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7249">bndtools/bnd#7249</a></li> <li>Cooldowns for Dependabot updates by <a href="https://github.com/chrisrueger"><code>@chrisrueger</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7250">bndtools/bnd#7250</a></li> <li>build(deps): bump org.apache.maven.plugins:maven-invoker-plugin from 3.10.0 to 3.10.1 in /maven-plugins by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7219">bndtools/bnd#7219</a></li> <li>build(deps-dev): bump org.apache.maven.plugins:maven-surefire-plugin from 3.5.5 to 3.5.6 in /maven-plugins by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7251">bndtools/bnd#7251</a></li> <li>Surface Sonatype deployment IDs in CI Job Summary and workflow outputs by <a href="https://github.com/peterkir"><code>@peterkir</code></a> with <a href="https://github.com/Copilot"><code>@Copilot</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7252">bndtools/bnd#7252</a></li> <li>Stabilize SonatypeDeploymentTest deployment ID discovery across CI by <a href="https://github.com/peterkir"><code>@peterkir</code></a> with <a href="https://github.com/Copilot"><code>@Copilot</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7254">bndtools/bnd#7254</a></li> <li>Use <code>PAT_WORKSPACE_REPO</code> for <code>create-workspace-template</code> git auth by <a href="https://github.com/peterkir"><code>@peterkir</code></a> with <a href="https://github.com/Copilot"><code>@Copilot</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7253">bndtools/bnd#7253</a></li> <li>Readme: Update Bnd Maven and Gradle plugin versions to 7.3.0 by <a href="https://github.com/chrisrueger"><code>@chrisrueger</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7258">bndtools/bnd#7258</a></li> <li>build(deps): bump actions/checkout from 6.0.2 to 6.0.3 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7256">bndtools/bnd#7256</a></li> <li>build(deps): bump actions/stale from 10.2.0 to 10.3.0 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7244">bndtools/bnd#7244</a></li> <li>build(deps): bump github/codeql-action from 4.36.0 to 4.36.1 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7257">bndtools/bnd#7257</a></li> <li>Bndtools Explorer Quick Links addition - Existing Bnd Workspace by <a href="https://github.com/peterkir"><code>@peterkir</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7259">bndtools/bnd#7259</a></li> <li>Update baseline version to 7.3.0 by <a href="https://github.com/chrisrueger"><code>@chrisrueger</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7260">bndtools/bnd#7260</a></li> <li>build(deps): bump github/codeql-action from 4.36.1 to 4.36.2 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7261">bndtools/bnd#7261</a></li> <li>Add sync baseline version step in postrelease workflow by <a href="https://github.com/chrisrueger"><code>@chrisrueger</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7263">bndtools/bnd#7263</a></li> <li>Post release 7.3.0 by <a href="https://github.com/github-actions"><code>@github-actions</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7266">bndtools/bnd#7266</a></li> <li>[maven][resolve] Provide a better logging experience for maven users when resolving by <a href="https://github.com/timothyjward"><code>@timothyjward</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7255">bndtools/bnd#7255</a></li> <li>build(deps): bump gradle/actions from 6.1.0 to 6.2.0 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7272">bndtools/bnd#7272</a></li> <li>build(deps): bump ruby/setup-ruby from 1.310.0 to 1.313.0 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7271">bndtools/bnd#7271</a></li> <li>build(deps): bump actions/setup-java from 5.2.0 to 5.3.0 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7273">bndtools/bnd#7273</a></li> <li>build(deps): bump concurrent-ruby from 1.3.6 to 1.3.7 in /docs by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7278">bndtools/bnd#7278</a></li> <li>build(deps): bump ruby/setup-ruby from 1.313.0 to 1.314.0 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7282">bndtools/bnd#7282</a></li> <li>Persist and manage workspace template fragment indexes by <a href="https://github.com/maho7791"><code>@maho7791</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7284">bndtools/bnd#7284</a></li> <li>Fix IllegalArgumentException for Maven-style SNAPSHOT versions in PomResource by <a href="https://github.com/peterkir"><code>@peterkir</code></a> with <a href="https://github.com/Copilot"><code>@Copilot</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7286">bndtools/bnd#7286</a></li> <li>Add <code>repo deps</code> command to export Maven GAVs for dash-licenses by <a href="https://github.com/juergen-albert"><code>@juergen-albert</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7275">bndtools/bnd#7275</a></li> <li>docs: update generated docs by <a href="https://github.com/github-actions"><code>@github-actions</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7287">bndtools/bnd#7287</a></li> <li>fix IndexOutOfBoundsException by <a href="https://github.com/chrisrueger"><code>@chrisrueger</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7291">bndtools/bnd#7291</a></li> <li>fixing issue <a href="https://redirect.github.com/bndtools/bnd/issues/7124">#7124</a> by <a href="https://github.com/peterkir"><code>@peterkir</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7292">bndtools/bnd#7292</a></li> <li>build(deps): bump actions/checkout from 6.0.3 to 7.0.0 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7277">bndtools/bnd#7277</a></li> <li>build(deps): bump actions/setup-java from 5.3.0 to 5.4.0 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7295">bndtools/bnd#7295</a></li> <li>Exclude Eclipse features from P2 Repo .versions() by <a href="https://github.com/chrisrueger"><code>@chrisrueger</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7296">bndtools/bnd#7296</a></li> <li>build(deps): bump ruby/setup-ruby from 1.314.0 to 1.315.0 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7299">bndtools/bnd#7299</a></li> <li>build(deps): bump ruby/setup-ruby from 1.315.0 to 1.316.0 by <a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot] in <a href="https://redirect.github.com/bndtools/bnd/pull/7301">bndtools/bnd#7301</a></li> <li>[Security] Maven Repositories: Add Trusted Checksum Verification by <a href="https://github.com/chrisrueger"><code>@chrisrueger</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7269">bndtools/bnd#7269</a></li> <li>Fix NPE in RepoCollector initialization during Project construction by <a href="https://github.com/chrisrueger"><code>@chrisrueger</code></a> in <a href="https://redirect.github.com/bndtools/bnd/pull/7304">bndtools/bnd#7304</a></li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/bndtools/bnd/commit/2046c36f902161120b55a6b88bfe3c3060dfc251"><code>2046c36</code></a> build: Build Release 7.4.0</li> <li><a href="https://github.com/bndtools/bnd/commit/aab8519ae9da7edb3c3476c7aeef5c08ca7731cc"><code>aab8519</code></a> build: Build Release 7.4.0.RC3</li> <li><a href="https://github.com/bndtools/bnd/commit/606a199c8bb6d3c5cc3678c4dd8ed1c5af52055b"><code>606a199</code></a> build: Build Release 7.4.0.RC2</li> <li><a href="https://github.com/bndtools/bnd/commit/afdf5478f1fbb40fb0423817411d4ef6b99e03f6"><code>afdf547</code></a> missing files</li> <li><a href="https://github.com/bndtools/bnd/commit/9074a7a33f5476982205d36e868b6edad118b174"><code>9074a7a</code></a> build: Build Release 7.4.0.RC1</li> <li><a href="https://github.com/bndtools/bnd/commit/b5c4c588e5aa020c9d9b5692861b3336d2c15851"><code>b5c4c58</code></a> Revert "Eclipse feature support for buildpath"</li> <li><a href="https://github.com/bndtools/bnd/commit/4fd8e4a9951d2401954be797d8eb8a5342e688f0"><code>4fd8e4a</code></a> Eclipse feature support for buildpath</li> <li><a href="https://github.com/bndtools/bnd/commit/a6ba530d468ef79720ea273cc22948fb3049fac4"><code>a6ba530</code></a> Merge pull request <a href="https://redirect.github.com/bndtools/bnd/issues/7336">#7336</a> from chrisrueger/7214-fix-deadlock-junit-tee</li> <li><a href="https://github.com/bndtools/bnd/commit/0fda33aa548226ce3654e50e58497ceea34b5bbd"><code>0fda33a</code></a> Fix thread-safety in Tee class</li> <li><a href="https://github.com/bndtools/bnd/commit/061b7fd5c265827cf5b931e7f29cb367cf32bdcd"><code>061b7fd</code></a> Merge pull request <a href="https://redirect.github.com/bndtools/bnd/issues/7325">#7325</a> from bndtools/dependabot/github_actions/actions/chec...</li> <li>Additional commits viewable in <a href="https://github.com/bndtools/bnd/compare/7.3.0...7.4.0">compare view</a></li> </ul> </details> <br /> Updates `com.puppycrawl.tools:checkstyle` from 13.10.0 to 14.0.0 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/checkstyle/checkstyle/releases">com.puppycrawl.tools:checkstyle's releases</a>.</em></p> <blockquote> <h2>checkstyle-14.0.0</h2> <p>Checkstyle 14.0.0 - <a href="https://checkstyle.org/releasenotes.html#Release_14.0.0">https://checkstyle.org/releasenotes.html#Release_14.0.0</a></p> <p>New:</p> <p><a href="https://redirect.github.com/checkstyle/checkstyle/issues/8240">#8240</a> - Java Grammar: module-info.java support.</p> <p>Bug fixes:</p> <p><a href="https://redirect.github.com/checkstyle/checkstyle/issues/21112">#21112</a> - InvalidJavadocPosition: false positive on module-info.java Javadoc. <a href="https://redirect.github.com/checkstyle/checkstyle/issues/21110">#21110</a> - PackageDeclaration: false positive "Missing package declaration" on module-info.java.</p> <!-- raw HTML omitted --> <h2>checkstyle-13.11.0</h2> <p>Checkstyle 13.11.0 - <a href="https://checkstyle.org/releasenotes.html#Release_13.11.0">https://checkstyle.org/releasenotes.html#Release_13.11.0</a></p> <p>Breaking backward compatibility:</p> <p><a href="https://redirect.github.com/checkstyle/checkstyle/issues/21080">#21080</a> - WriteTag: remove tagSeverity property and make Check to work only for violation of tag absence.</p> <p>New:</p> <p><a href="https://redirect.github.com/checkstyle/checkstyle/issues/20984">#20984</a> - new Check: PreferLiteralJavadocInlineTag.</p> <p>Bug fixes:</p> <p><a href="https://redirect.github.com/checkstyle/checkstyle/issues/13426">#13426</a> - Xdoc file generation should be separate project that executes in maven build as just another phase; remove doxia dependency. <a href="https://redirect.github.com/checkstyle/checkstyle/issues/21222">#21222</a> - Add PreferLiteralJavadocInlineTag in openjdk_checks.xml. <a href="https://redirect.github.com/checkstyle/checkstyle/issues/21101">#21101</a> - google_checks.xml: LocalVariableName/LocalFinalVariableName false positive for identifier example "guava33_4_6" from Google Java Style Guide. <a href="https://redirect.github.com/checkstyle/checkstyle/issues/20973">#20973</a> - Javadoc parse error on quoted HTML attribute value containing '<code><</code>'. <a href="https://redirect.github.com/checkstyle/checkstyle/issues/19913">#19913</a> - Documentation Comments Style Guide - Avoid Latin. <a href="https://redirect.github.com/checkstyle/checkstyle/issues/17728">#17728</a> - Google style: False negative missing spacing between type and variable.</p> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/checkstyle/checkstyle/commit/2feea2e4223f0a7acdee9c498234d79fd09cc018"><code>2feea2e</code></a> [maven-release-plugin] prepare release checkstyle-14.0.0</li> <li><a href="https://github.com/checkstyle/checkstyle/commit/9b5b44f5d708df54d670d8831cfc51ecae88c3bd"><code>9b5b44f</code></a> doc: release notes for 14.0.0</li> <li><a href="https://github.com/checkstyle/checkstyle/commit/9c5344b48e6b48c6cfb58648a3c6a6d4b420a347"><code>9c5344b</code></a> Issue <a href="https://redirect.github.com/checkstyle/checkstyle/issues/21112">#21112</a>: Fix InvalidJavadocPosition false positive on module Javadoc</li> <li><a href="https://github.com/checkstyle/checkstyle/commit/21cdce9bfdfc0062892f2ce45138a2489c9b7e05"><code>21cdce9</code></a> Issue <a href="https://redirect.github.com/checkstyle/checkstyle/issues/21245">#21245</a>: Resolve Commons Logging incompatibility with XWiki validation</li> <li><a href="https://github.com/checkstyle/checkstyle/commit/f1cdd26f76d7b57a9777b011e9cc26a11305bc34"><code>f1cdd26</code></a> Issue <a href="https://redirect.github.com/checkstyle/checkstyle/issues/21110">#21110</a>: Fix PackageDeclaration false positive on module-info.java</li> <li><a href="https://github.com/checkstyle/checkstyle/commit/48b0316dfa4e3efa7cb727f91cbb07b19bc95eee"><code>48b0316</code></a> infra: use pull_request_target for site workflow</li> <li><a href="https://github.com/checkstyle/checkstyle/commit/e7d79f5b4b357ceda24ea8b0b9df1891eb8b3e00"><code>e7d79f5</code></a> doc: mention 14.x in JRE matrix and Java 25 language support on index page</li> <li><a href="https://github.com/checkstyle/checkstyle/commit/86c9dae51bcba40ebcf3181eb9c88232807401ce"><code>86c9dae</code></a> minor: Bump version to 14.0.0-SNAPSHOT</li> <li><a href="https://github.com/checkstyle/checkstyle/commit/74d612a49fefe6f28b777fe041995654ca62da17"><code>74d612a</code></a> Issue <a href="https://redirect.github.com/checkstyle/checkstyle/issues/8240">#8240</a>: Add grammar support for module-info.java</li> <li><a href="https://github.com/checkstyle/checkstyle/commit/0a64d24f2469a0ab5b236c18a5c930d013eb3f62"><code>0a64d24</code></a> Issue <a href="https://redirect.github.com/checkstyle/checkstyle/issues/21207">#21207</a>: Make LocalFinalVariableName default-config example Example1</li> <li>Additional commits viewable in <a href="https://github.com/checkstyle/checkstyle/compare/checkstyle-13.10.0...checkstyle-14.0.0">compare view</a></li> </ul> </details> <br /> Updates `org.easymock:easymock` from 5.6.0 to 5.7.0 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/easymock/easymock/releases">org.easymock:easymock's releases</a>.</em></p> <blockquote> <h2>5.7.0</h2> <p>Add Java 26 support where bytebuddy isn't using unsafe anymore.</p> <h2>Change log</h2> <ul> <li>Add mock() methods without parameters using varargs reification (<a href="https://redirect.github.com/easymock/easymock/issues/933">#933</a>)</li> <li>Mock creation fails with JDK 26 and ByteBuddy 1.18.10 (<a href="https://redirect.github.com/easymock/easymock/issues/908">#908</a>)git log --oneline</li> <li>Use new Maven central plugin</li> <li>Use a github_token instead</li> <li>Add the missing REST calls to fully automated the release</li> <li>Move to .mvn style version</li> <li>Use assertThrows all over the place</li> <li>Optimize imports and finish updating to JUnit 5</li> <li>Update eclipse configuration</li> <li>Move all to UTF-8 like it should already be</li> <li>Use https for xsd</li> <li>Update objenesis to 3.6</li> <li>Update copyrights to 2026</li> <li>Remove Hamcrest usage</li> <li>Add Maven cache</li> <li>Bump actions/checkout from 7.0.0 to 7.0.1 (<a href="https://redirect.github.com/easymock/easymock/pull/917">#917</a>)</li> <li>Bump actions/github-script from 8 to 9 (<a href="https://redirect.github.com/easymock/easymock/pull/887">#887</a>)</li> <li>Bump actions/setup-java from 5.6.0 to 5.7.0 (<a href="https://redirect.github.com/easymock/easymock/pull/918">#918</a>)</li> <li>Bump activesupport from 8.1.2 to 8.1.2.1 in /website (<a href="https://redirect.github.com/easymock/easymock/pull/882">#882</a>)</li> <li>Bump addressable from 2.8.8 to 2.9.0 in /website (<a href="https://redirect.github.com/easymock/easymock/pull/886">#886</a>)</li> <li>Bump ch.qos.logback:logback-classic from 1.3.14 to 1.6.3 (<a href="https://redirect.github.com/easymock/easymock/pull/930">#930</a>)</li> <li>Bump com.github.spotbugs:spotbugs from 4.8.6 to 4.10.3 (<a href="https://redirect.github.com/easymock/easymock/pull/921">#921</a>)</li> <li>Bump com.github.spotbugs:spotbugs-maven-plugin from 4.8.6.6 to 4.10.3.0 (<a href="https://redirect.github.com/easymock/easymock/pull/922">#922</a>)</li> <li>Bump com.mycila:license-maven-plugin from 4.6 to 5.1.1 (<a href="https://redirect.github.com/easymock/easymock/pull/919">#919</a>)</li> <li>Bump com.puppycrawl.tools:checkstyle from 13.9.0 to 13.11.0 (<a href="https://redirect.github.com/easymock/easymock/pull/931">#931</a>)</li> <li>Bump concurrent-ruby from 1.3.6 to 1.3.7 in /website (<a href="https://redirect.github.com/easymock/easymock/pull/913">#913</a>)</li> <li>Bump faraday from 2.14.2 to 2.14.3 in /website (<a href="https://redirect.github.com/easymock/easymock/pull/912">#912</a>)</li> <li>Bump json from 2.20.0 to 2.21.2 in /website (<a href="https://redirect.github.com/easymock/easymock/pull/924">#924</a>)</li> <li>Bump junit.jupiter.version from 5.14.1 to 6.1.3 (<a href="https://redirect.github.com/easymock/easymock/pull/926">#926</a>)</li> <li>Bump net.bytebuddy:byte-buddy from 1.18.8 to 1.18.12 (<a href="https://redirect.github.com/easymock/easymock/pull/932">#932</a>)</li> <li>Bump nokogiri from 1.19.3 to 1.19.4 in /website (<a href="https://redirect.github.com/easymock/easymock/pull/911">#911</a>)</li> <li>Bump org.apache.felix:maven-bundle-plugin from 5.1.9 to 6.1.0 (<a href="https://redirect.github.com/easymock/easymock/pull/929">#929</a>)</li> <li>Bump org.apache.maven.plugins:maven-assembly-plugin from 3.7.1 to 3.8.0 (<a href="https://redirect.github.com/easymock/easymock/pull/832">#832</a>)</li> <li>Bump org.apache.maven.plugins:maven-compiler-plugin from 3.14.1 to 3.15.0 (<a href="https://redirect.github.com/easymock/easymock/pull/863">#863</a>)</li> <li>Bump org.apache.maven.plugins:maven-dependency-plugin from 3.10.0 to 3.11.0 (<a href="https://redirect.github.com/easymock/easymock/pull/899">#899</a>)</li> <li>Bump org.apache.maven.plugins:maven-enforcer-plugin from 3.6.2 to 3.6.3 (<a href="https://redirect.github.com/easymock/easymock/pull/894">#894</a>)</li> <li>Bump org.apache.maven.plugins:maven-jar-plugin from 3.4.2 to 3.5.0 (<a href="https://redirect.github.com/easymock/easymock/pull/833">#833</a>)</li> <li>Bump org.apache.maven.plugins:maven-resources-plugin from 3.4.0 to 3.5.0 (<a href="https://redirect.github.com/easymock/easymock/pull/879">#879</a>)</li> <li>Bump org.apache.maven.plugins:maven-shade-plugin from 3.6.1 to 3.6.2 (<a href="https://redirect.github.com/easymock/easymock/pull/880">#880</a>)</li> <li>Bump org.apache.maven.plugins:maven-source-plugin from 3.3.1 to 3.4.0 (<a href="https://redirect.github.com/easymock/easymock/pull/837">#837</a>)</li> <li>Bump org.apache.maven.plugins:maven-surefire-plugin from 3.5.5 to 3.5.6 (<a href="https://redirect.github.com/easymock/easymock/pull/900">#900</a>)</li> <li>Bump org.apache.maven.plugins:maven-toolchains-plugin from 3.2.0 to 3.3.0 (<a href="https://redirect.github.com/easymock/easymock/pull/928">#928</a>)</li> <li>Bump org.apache.maven.surefire:surefire-testng from 3.5.5 to 3.5.6 (<a href="https://redirect.github.com/easymock/easymock/pull/897">#897</a>)</li> <li>Bump org.codehaus.mojo:animal-sniffer-maven-plugin from 1.26 to 1.27 (<a href="https://redirect.github.com/easymock/easymock/pull/852">#852</a>)</li> <li>Bump org.codehaus.mojo:exec-maven-plugin from 3.6.2 to 3.6.3 (<a href="https://redirect.github.com/easymock/easymock/pull/844">#844</a>)</li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/easymock/easymock/blob/master/ReleaseNotes.md">org.easymock:easymock's changelog</a>.</em></p> <blockquote> <p>Add Java 26 support where bytebuddy isn't using unsafe anymore.</p> <h2>Change log</h2> <ul> <li>Add mock() methods without parameters using varargs reification (<a href="https://redirect.github.com/easymock/easymock/issues/933">#933</a>)</li> <li>Mock creation fails with JDK 26 and ByteBuddy 1.18.10 (<a href="https://redirect.github.com/easymock/easymock/issues/908">#908</a>)git log --oneline</li> <li>Use new Maven central plugin</li> <li>Use a github_token instead</li> <li>Add the missing REST calls to fully automated the release</li> <li>Move to .mvn style version</li> <li>Use assertThrows all over the place</li> <li>Optimize imports and finish updating to JUnit 5</li> <li>Update eclipse configuration</li> <li>Move all to UTF-8 like it should already be</li> <li>Use https for xsd</li> <li>Update objenesis to 3.6</li> <li>Update copyrights to 2026</li> <li>Remove Hamcrest usage</li> <li>Add Maven cache</li> <li>Bump actions/checkout from 7.0.0 to 7.0.1 (<a href="https://redirect.github.com/easymock/easymock/pull/917">#917</a>)</li> <li>Bump actions/github-script from 8 to 9 (<a href="https://redirect.github.com/easymock/easymock/pull/887">#887</a>)</li> <li>Bump actions/setup-java from 5.6.0 to 5.7.0 (<a href="https://redirect.github.com/easymock/easymock/pull/918">#918</a>)</li> <li>Bump activesupport from 8.1.2 to 8.1.2.1 in /website (<a href="https://redirect.github.com/easymock/easymock/pull/882">#882</a>)</li> <li>Bump addressable from 2.8.8 to 2.9.0 in /website (<a href="https://redirect.github.com/easymock/easymock/pull/886">#886</a>)</li> <li>Bump ch.qos.logback:logback-classic from 1.3.14 to 1.6.3 (<a href="https://redirect.github.com/easymock/easymock/pull/930">#930</a>)</li> <li>Bump com.github.spotbugs:spotbugs from 4.8.6 to 4.10.3 (<a href="https://redirect.github.com/easymock/easymock/pull/921">#921</a>)</li> <li>Bump com.github.spotbugs:spotbugs-maven-plugin from 4.8.6.6 to 4.10.3.0 (<a href="https://redirect.github.com/easymock/easymock/pull/922">#922</a>)</li> <li>Bump com.mycila:license-maven-plugin from 4.6 to 5.1.1 (<a href="https://redirect.github.com/easymock/easymock/pull/919">#919</a>)</li> <li>Bump com.puppycrawl.tools:checkstyle from 13.9.0 to 13.11.0 (<a href="https://redirect.github.com/easymock/easymock/pull/931">#931</a>)</li> <li>Bump concurrent-ruby from 1.3.6 to 1.3.7 in /website (<a href="https://redirect.github.com/easymock/easymock/pull/913">#913</a>)</li> <li>Bump faraday from 2.14.2 to 2.14.3 in /website (<a href="https://redirect.github.com/easymock/easymock/pull/912">#912</a>)</li> <li>Bump json from 2.20.0 to 2.21.2 in /website (<a href="https://redirect.github.com/easymock/easymock/pull/924">#924</a>)</li> <li>Bump junit.jupiter.version from 5.14.1 to 6.1.3 (<a href="https://redirect.github.com/easymock/easymock/pull/926">#926</a>)</li> <li>Bump net.bytebuddy:byte-buddy from 1.18.8 to 1.18.12 (<a href="https://redirect.github.com/easymock/easymock/pull/932">#932</a>)</li> <li>Bump nokogiri from 1.19.3 to 1.19.4 in /website (<a href="https://redirect.github.com/easymock/easymock/pull/911">#911</a>)</li> <li>Bump org.apache.felix:maven-bundle-plugin from 5.1.9 to 6.1.0 (<a href="https://redirect.github.com/easymock/easymock/pull/929">#929</a>)</li> <li>Bump org.apache.maven.plugins:maven-assembly-plugin from 3.7.1 to 3.8.0 (<a href="https://redirect.github.com/easymock/easymock/pull/832">#832</a>)</li> <li>Bump org.apache.maven.plugins:maven-compiler-plugin from 3.14.1 to 3.15.0 (<a href="https://redirect.github.com/easymock/easymock/pull/863">#863</a>)</li> <li>Bump org.apache.maven.plugins:maven-dependency-plugin from 3.10.0 to 3.11.0 (<a href="https://redirect.github.com/easymock/easymock/pull/899">#899</a>)</li> <li>Bump org.apache.maven.plugins:maven-enforcer-plugin from 3.6.2 to 3.6.3 (<a href="https://redirect.github.com/easymock/easymock/pull/894">#894</a>)</li> <li>Bump org.apache.maven.plugins:maven-jar-plugin from 3.4.2 to 3.5.0 (<a href="https://redirect.github.com/easymock/easymock/pull/833">#833</a>)</li> <li>Bump org.apache.maven.plugins:maven-resources-plugin from 3.4.0 to 3.5.0 (<a href="https://redirect.github.com/easymock/easymock/pull/879">#879</a>)</li> <li>Bump org.apache.maven.plugins:maven-shade-plugin from 3.6.1 to 3.6.2 (<a href="https://redirect.github.com/easymock/easymock/pull/880">#880</a>)</li> <li>Bump org.apache.maven.plugins:maven-source-plugin from 3.3.1 to 3.4.0 (<a href="https://redirect.github.com/easymock/easymock/pull/837">#837</a>)</li> <li>Bump org.apache.maven.plugins:maven-surefire-plugin from 3.5.5 to 3.5.6 (<a href="https://redirect.github.com/easymock/easymock/pull/900">#900</a>)</li> <li>Bump org.apache.maven.plugins:maven-toolchains-plugin from 3.2.0 to 3.3.0 (<a href="https://redirect.github.com/easymock/easymock/pull/928">#928</a>)</li> <li>Bump org.apache.maven.surefire:surefire-testng from 3.5.5 to 3.5.6 (<a href="https://redirect.github.com/easymock/easymock/pull/897">#897</a>)</li> <li>Bump org.codehaus.mojo:animal-sniffer-maven-plugin from 1.26 to 1.27 (<a href="https://redirect.github.com/easymock/easymock/pull/852">#852</a>)</li> <li>Bump org.codehaus.mojo:exec-maven-plugin from 3.6.2 to 3.6.3 (<a href="https://redirect.github.com/easymock/easymock/pull/844">#844</a>)</li> <li>Bump org.codehaus.mojo:jdepend-maven-plugin from 2.1 to 2.2.0 (<a href="https://redirect.github.com/easymock/easymock/pull/855">#855</a>)</li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/easymock/easymock/commit/a8422b97046b58a1671ebd4493729db070281645"><code>a8422b9</code></a> Move to version 5.7.0</li> <li><a href="https://github.com/easymock/easymock/commit/c0ffdcc99d2b29cd127a1e553aaac1e0e3804066"><code>c0ffdcc</code></a> Flatten for oss</li> <li><a href="https://github.com/easymock/easymock/commit/dc07999c696465eee8b5f04315f3a9adcfeadb17"><code>dc07999</code></a> Add missing headers</li> <li><a href="https://github.com/easymock/easymock/commit/6047a3c60be00801eeb3887d45c6b286eaf4f10b"><code>6047a3c</code></a> Class can be static</li> <li><a href="https://github.com/easymock/easymock/commit/e208b61da22d603562342a80945bbf6a361d6c15"><code>e208b61</code></a> Upgrade samples to JUnit 5 and reified calls</li> <li><a href="https://github.com/easymock/easymock/commit/f833ee7fbf2e4f4ea6a889c5bc66bfdfee8001f7"><code>f833ee7</code></a> Add reified methods (close <a href="https://redirect.github.com/easymock/easymock/issues/933">#933</a>)</li> <li><a href="https://github.com/easymock/easymock/commit/ffaa64ba5001d6a2b02db5d82cb06398f75d6bb4"><code>ffaa64b</code></a> Add flatten-maven-plugin</li> <li><a href="https://github.com/easymock/easymock/commit/02e038e95c77116bcb7136dec58133a1a5cf363a"><code>02e038e</code></a> Bump com.puppycrawl.tools:checkstyle from 13.10.0 to 13.11.0</li> <li><a href="https://github.com/easymock/easymock/commit/dd4dcf8fc8acb6a1b5e5cc0c8652020ecc28da00"><code>dd4dcf8</code></a> Bump net.bytebuddy:byte-buddy from 1.18.11 to 1.18.12</li> <li><a href="https://github.com/easymock/easymock/commit/4d66c46c87de489f58a23562be1eb2ad5cae0702"><code>4d66c46</code></a> CI has been github actions for years now</li> <li>Additional commits viewable in <a href="https://github.com/easymock/easymock/compare/easymock-5.6.0...easymock-5.7.0">compare view</a></li> </ul> </details> <br /> Updates `net.bytebuddy:byte-buddy` from 1.18.11 to 1.18.12 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/raphw/byte-buddy/releases">net.bytebuddy:byte-buddy's releases</a>.</em></p> <blockquote> <h2>Byte Buddy 1.18.12</h2> <ul> <li>Automatically support Kotlin in Gradle plugin.</li> <li>Add support for native attach on Windows for ARM64.</li> <li>Correct JNA injector which accidentally created on based on Unsafe.</li> </ul> </blockquote> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/raphw/byte-buddy/blob/master/release-notes.md">net.bytebuddy:byte-buddy's changelog</a>.</em></p> <blockquote> <h3>17. July 2026: version 1.18.12</h3> <ul> <li>Automatically support Kotlin in Gradle plugin.</li> <li>Correct JNA injector which accidentally created on based on Unsafe.</li> <li>Support dynamic attach on Windows ARM64 by shipping a native <code>attach_hotspot_windows</code> library for <code>win32-aarch64</code>.</li> </ul> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/raphw/byte-buddy/commit/706d4a4fe833e3685ca292318c179afcbd76b54b"><code>706d4a4</code></a> [publish] Releasing Byte Buddy 1.18.12</li> <li><a href="https://github.com/raphw/byte-buddy/commit/b567461809f62cf7bbc3d995c50e38bda7fdcc03"><code>b567461</code></a> [release] Release new version</li> <li><a href="https://github.com/raphw/byte-buddy/commit/bcb5d26b0e89a43343961ad4313888665fa98278"><code>bcb5d26</code></a> Avoid compilation issue on older JVMs.</li> <li><a href="https://github.com/raphw/byte-buddy/commit/e42d7267e40caf3129f956bc92543ee49d858fac"><code>e42d726</code></a> Remove unused import.</li> <li><a href="https://github.com/raphw/byte-buddy/commit/942efc47115a3aed2abe7396a38b373123cb2714"><code>942efc4</code></a> [release] Release new version</li> <li><a href="https://github.com/raphw/byte-buddy/commit/7cff8e9f2cf0a3008bc39d31b0c79bcd24bf4c16"><code>7cff8e9</code></a> [release] Release new version</li> <li><a href="https://github.com/raphw/byte-buddy/commit/6d6cd85d8eb4e06dc05f95edd9d4fb7a7dc6b4dd"><code>6d6cd85</code></a> feat(gradle/plugin): native kotlin support (<a href="https://redirect.github.com/raphw/byte-buddy/issues/1925">#1925</a>)</li> <li><a href="https://github.com/raphw/byte-buddy/commit/fe2f8d0f5542a6a5671fe2a97a4be080aaeade16"><code>fe2f8d0</code></a> Add reproducible builds badge to readme.</li> <li><a href="https://github.com/raphw/byte-buddy/commit/440fa0a8c9fbf13adee3be1d9166612daee849d1"><code>440fa0a</code></a> Add native attach library for Windows ARM64 to support dynamic attach.</li> <li><a href="https://github.com/raphw/byte-buddy/commit/373c52f007f01fc753ff78ff11ebcfba8cc208b6"><code>373c52f</code></a> Update internal Byte Buddy and release notes.</li> <li>Additional commits viewable in <a href="https://github.com/raphw/byte-buddy/compare/byte-buddy-1.18.11...byte-buddy-1.18.12">compare view</a></li> </ul> </details> <br /> Updates `net.bytebuddy:byte-buddy-agent` from 1.18.11 to 1.18.12 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/raphw/byte-buddy/releases">net.bytebuddy:byte-buddy-agent's releases</a>.</em></p> <blockquote> <h2>Byte Buddy 1.18.12</h2> <ul> <li>Automatically support Kotlin in Gradle plugin.</li> <li>Add support for native attach on Windows for ARM64.</li> <li>Correct JNA injector which accidentally created on based on Unsafe.</li> </ul> </blockquote> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/raphw/byte-buddy/blob/master/release-notes.md">net.bytebuddy:byte-buddy-agent's changelog</a>.</em></p> <blockquote> <h3>17. July 2026: version 1.18.12</h3> <ul> <li>Automatically support Kotlin in Gradle plugin.</li> <li>Correct JNA injector which accidentally created on based on Unsafe.</li> <li>Support dynamic attach on Windows ARM64 by shipping a native <code>attach_hotspot_windows</code> library for <code>win32-aarch64</code>.</li> </ul> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/raphw/byte-buddy/commit/706d4a4fe833e3685ca292318c179afcbd76b54b"><code>706d4a4</code></a> [publish] Releasing Byte Buddy 1.18.12</li> <li><a href="https://github.com/raphw/byte-buddy/commit/b567461809f62cf7bbc3d995c50e38bda7fdcc03"><code>b567461</code></a> [release] Release new version</li> <li><a href="https://github.com/raphw/byte-buddy/commit/bcb5d26b0e89a43343961ad4313888665fa98278"><code>bcb5d26</code></a> Avoid compilation issue on older JVMs.</li> <li><a href="https://github.com/raphw/byte-buddy/commit/e42d7267e40caf3129f956bc92543ee49d858fac"><code>e42d726</code></a> Remove unused import.</li> <li><a href="https://github.com/raphw/byte-buddy/commit/942efc47115a3aed2abe7396a38b373123cb2714"><code>942efc4</code></a> [release] Release new version</li> <li><a href="https://github.com/raphw/byte-buddy/commit/7cff8e9f2cf0a3008bc39d31b0c79bcd24bf4c16"><code>7cff8e9</code></a> [release] Release new version</li> <li><a href="https://github.com/raphw/byte-buddy/commit/6d6cd85d8eb4e06dc05f95edd9d4fb7a7dc6b4dd"><code>6d6cd85</code></a> feat(gradle/plugin): native kotlin support (<a href="https://redirect.github.com/raphw/byte-buddy/issues/1925">#1925</a>)</li> <li><a href="https://github.com/raphw/byte-buddy/commit/fe2f8d0f5542a6a5671fe2a97a4be080aaeade16"><code>fe2f8d0</code></a> Add reproducible builds badge to readme.</li> <li><a href="https://github.com/raphw/byte-buddy/commit/440fa0a8c9fbf13adee3be1d9166612daee849d1"><code>440fa0a</code></a> Add native attach library for Windows ARM64 to support dynamic attach.</li> <li><a href="https://github.com/raphw/byte-buddy/commit/373c52f007f01fc753ff78ff11ebcfba8cc208b6"><code>373c52f</code></a> Update internal Byte Buddy and release notes.</li> <li>Additional commits viewable in <a href="https://github.com/raphw/byte-buddy/compare/byte-buddy-1.18.11...byte-buddy-1.18.12">compare view</a></li> </ul> </details> <br /> Updates `net.bytebuddy:byte-buddy-agent` from 1.18.11 to 1.18.12 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/raphw/byte-buddy/releases">net.bytebuddy:byte-buddy-agent's releases</a>.</em></p> <blockquote> <h2>Byte Buddy 1.18.12</h2> <ul> <li>Automatically support Kotlin in Gradle plugin.</li> <li>Add support for native attach on Windows for ARM64.</li> <li>Correct JNA injector which accidentally created on based on Unsafe.</li> </ul> </blockquote> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/raphw/byte-buddy/blob/master/release-notes.md">net.bytebuddy:byte-buddy-agent's changelog</a>.</em></p> <blockquote> <h3>17. July 2026: version 1.18.12</h3> <ul> <li>Automatically support Kotlin in Gradle plugin.</li> <li>Correct JNA injector which accidentally created on based on Unsafe.</li> <li>Support dynamic attach on Windows ARM64 by shipping a native <code>attach_hotspot_windows</code> library for <code>win32-aarch64</code>.</li> </ul> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/raphw/byte-buddy/commit/706d4a4fe833e3685ca292318c179afcbd76b54b"><code>706d4a4</code></a> [publish] Releasing Byte Buddy 1.18.12</li> <li><a href="https://github.com/raphw/byte-buddy/commit/b567461809f62cf7bbc3d995c50e38bda7fdcc03"><code>b567461</code></a> [release] Release new version</li> <li><a href="https://github.com/raphw/byte-buddy/commit/bcb5d26b0e89a43343961ad4313888665fa98278"><code>bcb5d26</code></a> Avoid compilation issue on older JVMs.</li> <li><a href="https://github.com/raphw/byte-buddy/commit/e42d7267e40caf3129f956bc92543ee49d858fac"><code>e42d726</code></a> Remove unused import.</li> <li><a href="https://github.com/raphw/byte-buddy/commit/942efc47115a3aed2abe7396a38b373123cb2714"><code>942efc4</code></a> [release] Release new version</li> <li><a href="https://github.com/raphw/byte-buddy/commit/7cff8e9f2cf0a3008bc39d31b0c79bcd24bf4c16"><code>7cff8e9</code></a> [release] Release new version</li> <li><a href="https://github.com/raphw/byte-buddy/commit/6d6cd85d8eb4e06dc05f95edd9d4fb7a7dc6b4dd"><code>6d6cd85</code></a> feat(gradle/plugin): native kotlin support (<a href="https://redirect.github.com/raphw/byte-buddy/issues/1925">#1925</a>)</li> <li><a href="https://github.com/raphw/byte-buddy/commit/fe2f8d0f5542a6a5671fe2a97a4be080aaeade16"><code>fe2f8d0</code></a> Add reproducible builds badge to readme.</li> <li><a href="https://github.com/raphw/byte-buddy/commit/440fa0a8c9fbf13adee3be1d9166612daee849d1"><code>440fa0a</code></a> Add native attach library for Windows ARM64 to support dynamic attach.</li> <li><a href="https://github.com/raphw/byte-buddy/commit/373c52f007f01fc753ff78ff11ebcfba8cc208b6"><code>373c52f</code></a> Update internal Byte Buddy and release notes.</li> <li>Additional commits viewable in <a href="https://github.com/raphw/byte-buddy/compare/byte-buddy-1.18.11...byte-buddy-1.18.12">compare view</a></li> </ul> </details> <br /> Updates `org.springframework:spring-context` from 7.0.8 to 7.0.9 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/spring-projects/spring-framework/releases">org.springframework:spring-context's releases</a>.</em></p> <blockquote> <h2>v7.0.9</h2> <h2>:warning: Attention Required</h2> <ul> <li>In Spring Framework 7.0.9, <code>ForwardedHeaderFilter</code> (Spring MVC) and <code>ForwardedHeaderTransformer</code> (WebFlux) each provide a boolean constructor argument whether to use the standard "Forwarded" header or the "X-Forwarded" alternative headers. A separate property turns on and off use of "X-Forwarded-Prefix". While the default constructor preserves the existing behavior, we recommend to use the new constructor to explicitly specify which forwarded headers to use to make the processing more deterministic and aligned with what is expected from the proxy. Please, see the updated <a href="https://docs.spring.io/spring-framework/reference/7.0.9-SNAPSHOT/web/webmvc/filters.html#filters-forwarded-headers-security">Security Considerations</a> section for details. In 7.1 with <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37072">#37072</a> the default constructor is deprecated and marked for removal. <a href=" https://redirect.github.com/spring-projects/spring-framework/issues/37090">#37090</a></li> <li>In Spring Framework 7.0.9, <code>SimpleEvaluationContext</code> no longer supports expression compilation by default, regardless of the compiler mode configured via <code>SpelParserConfiguration</code> or the <code>spring.expression.compiler.mode</code> system property or Spring property. Applications that intentionally use <code>SimpleEvaluationContext</code> with trusted expressions and require compilation for performance reasons can opt in by calling <code>withCompilationSupported()</code> on the <code>SimpleEvaluationContext</code> builder. Care should be taken when opting in to compilation, as doing so removes the safety guards applied during interpreted evaluation. <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37035">#37035</a></li> </ul> <h2>:star: New Features</h2> <ul> <li>Ignore an empty port value in URI parsing <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37117">#37117</a></li> <li>Avoid retaining class files in annotation metadata <a href="https://redirect.github.com/spring-projects/spring-framework/pull/37112">#37112</a></li> <li>Add <code>@Nullable</code> annotations when treating <code>Map.remove()</code> as returning <code>@Nullable</code> <a href="https://redirect.github.com/spring-projects/spring-framework/pull/37067">#37067</a></li> <li>Revisit SSE view fragments handling <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37061">#37061</a></li> <li>Check list index after auto-grow in <code>AbstractNestablePropertyAccessor</code> <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37036">#37036</a></li> <li>Disable SpEL expression compilation by default in <code>SimpleEvaluationContext</code> <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37035">#37035</a></li> <li>Limit result size of <code>BigDecimal</code>/<code>BigInteger</code> power operations in SpEL <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37034">#37034</a></li> <li>Refactor redirect handling in UrlHandlerFilter <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37030">#37030</a></li> <li>Revise stylesheet source handling in XsltView <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37029">#37029</a></li> <li>Revise view name handling in UrlFilenameViewController <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37027">#37027</a></li> <li>Handle pre-flight requests in functional endpoint setup without DispatcherHandler <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37024">#37024</a></li> <li>Improve WebSocket handshake error logging <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37023">#37023</a></li> <li>Fix missing nullability in JdbcTemplate.batchUpdate <a href="https://redirect.github.com/spring-projects/spring-framework/pull/37012">#37012</a></li> <li>Timeout property in RetryPolicy does not have a default constant <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36983">#36983</a></li> <li>Write native configuration files as UTF-8 <a href="https://redirect.github.com/spring-projects/spring-framework/pull/36972">#36972</a></li> <li>DefaultServerRequest.ServletParametersMap.entrySet() does not retain HttpServletRequest.getParameterMap() order <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36966">#36966</a></li> <li>Perform nextKey within synchronization for SQLite as well <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36959">#36959</a></li> <li>Add support for custom ObjectInputFilter on DefaultDeserializer <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36958">#36958</a></li> <li>Revise resource bundle caching for common locales <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36957">#36957</a></li> <li>Improve nullability for <code>getSession(*)</code> in <code>MockHttpServletRequest</code> <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36926">#36926</a></li> <li>Improve fallback logic in ParameterContentNegotiationStrategy and ParameterContentTypeResolver <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36925">#36925</a></li> <li>Improve ambiguous match check on preflight request <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36903">#36903</a></li> <li>Improve Groovy markup template loading <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36902">#36902</a></li> <li>Improve request path handling on a Reactor Netty server <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36893">#36893</a></li> <li>Improve JettyWebSocketSession error handling <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36891">#36891</a></li> </ul> <h2>:lady_beetle: Bug Fixes</h2> <ul> <li>EclipseLinkJpaDialect singleton lock in EclipseLinkConnectionHandle.getConnection() serializes all JDBC connection acquisitions under load <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37085">#37085</a></li> <li>MetadataReader fails to read byte[] array from annotation <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37083">#37083</a></li> <li>Ensure parsing/tostring symmetry in ContentDisposition <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37064">#37064</a></li> <li>Character outside of permitted range in Content Disposition <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37062">#37062</a></li> <li>Release Jackson BufferRecycler to its pool in encoders <a href="https://redirect.github.com/spring-projects/spring-framework/pull/37059">#37059</a></li> <li>Ensure consistent error escaping <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37055">#37055</a></li> <li>Refine template name processing <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37054">#37054</a></li> <li>Reset TwoByteMatcher partial match on mismatching byte <a href="https://redirect.github.com/spring-projects/spring-framework/pull/37053">#37053</a></li> <li>Refactor async XML parsing limit checks <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37031">#37031</a></li> <li>Fix part constraint checks in PartEventHttpMessageReader <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37028">#37028</a></li> <li>Fix buffer leak in RSocket SETUP frame handling <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37026">#37026</a></li> <li>Ensure correct Jetty core response cookie handling <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37025">#37025</a></li> <li>Align <code>domainToAscii</code> with current WhatWG spec <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37018">#37018</a></li> <li>Ensure consistent <code>ButtonTag</code> value attribute processing <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37017">#37017</a></li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/spring-projects/spring-framework/commit/82a6b40b9366ec181ededdad282b307ee5381a52"><code>82a6b40</code></a> Release Spring Framework 7.0.9</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/a7b1b59cbd79175ed79b0f4aa967be70288bb2ee"><code>a7b1b59</code></a> Upgrade to Reactor 2025.0.7</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/996e3d3f18dbb13d92a2eaf988abfe77b06928d4"><code>996e3d3</code></a> Upgrade to Micrometer 1.16.7</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/73f5ddddcd4278580c9c879b2effdac29aa3bff5"><code>73f5ddd</code></a> Refactor maxInMemory limit handling for async XML parsing</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/675f25de72e7ac31db1ffe0dc324381d7cc1a308"><code>675f25d</code></a> Leading slash handling in UrlHandlerFilter</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/692dbc9160de3b5de50ccedeee014716d0cedb7b"><code>692dbc9</code></a> Apply ResourceHandlerUtils checks in XsltView</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/8647e90bc7b2da9b299566296f2b253a6fd9c128"><code>8647e90</code></a> Consistent maxPartSize check in PartEventHttpMessageReader</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/b9379e33d52b491e227715776a072d07bcccddab"><code>b9379e3</code></a> Check viewName for special prefixes in UrlFilenameViewController</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/a784dbe286beaa70e5a88638b6af7f58f458c07e"><code>a784dbe</code></a> Ensure Payload release on early error in createHeaders</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/3b492f3908df3fe0adc639b7da98f737d1ff7a02"><code>3b492f3</code></a> Return sameSite cookie value in Jetty response</li> <li>Additional commits viewable in <a href="https://github.com/spring-projects/spring-framework/compare/v7.0.8...v7.0.9">compare view</a></li> </ul> </details> <br /> Updates `org.springframework:spring-web` from 7.0.8 to 7.0.9 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/spring-projects/spring-framework/releases">org.springframework:spring-web's releases</a>.</em></p> <blockquote> <h2>v7.0.9</h2> <h2>:warning: Attention Required</h2> <ul> <li>In Spring Framework 7.0.9, <code>ForwardedHeaderFilter</code> (Spring MVC) and <code>ForwardedHeaderTransformer</code> (WebFlux) each provide a boolean constructor argument whether to use the standard "Forwarded" header or the "X-Forwarded" alternative headers. A separate property turns on and off use of "X-Forwarded-Prefix". While the default constructor preserves the existing behavior, we recommend to use the new constructor to explicitly specify which forwarded headers to use to make the processing more deterministic and aligned with what is expected from the proxy. Please, see the updated <a href="https://docs.spring.io/spring-framework/reference/7.0.9-SNAPSHOT/web/webmvc/filters.html#filters-forwarded-headers-security">Security Considerations</a> section for details. In 7.1 with <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37072">#37072</a> the default constructor is deprecated and marked for removal. <a href=" https://redirect.github.com/spring-projects/spring-framework/issues/37090">#37090</a></li> <li>In Spring Framework 7.0.9, <code>SimpleEvaluationContext</code> no longer supports expression compilation by default, regardless of the compiler mode configured via <code>SpelParserConfiguration</code> or the <code>spring.expression.compiler.mode</code> system property or Spring property. Applications that intentionally use <code>SimpleEvaluationContext</code> with trusted expressions and require compilation for performance reasons can opt in by calling <code>withCompilationSupported()</code> on the <code>SimpleEvaluationContext</code> builder. Care should be taken when opting in to compilation, as doing so removes the safety guards applied during interpreted evaluation. <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37035">#37035</a></li> </ul> <h2>:star: New Features</h2> <ul> <li>Ignore an empty port value in URI parsing <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37117">#37117</a></li> <li>Avoid retaining class files in annotation metadata <a href="https://redirect.github.com/spring-projects/spring-framework/pull/37112">#37112</a></li> <li>Add <code>@Nullable</code> annotations when treating <code>Map.remove()</code> as returning <code>@Nullable</code> <a href="https://redirect.github.com/spring-projects/spring-framework/pull/37067">#37067</a></li> <li>Revisit SSE view fragments handling <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37061">#37061</a></li> <li>Check list index after auto-grow in <code>AbstractNestablePropertyAccessor</code> <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37036">#37036</a></li> <li>Disable SpEL expression compilation by default in <code>SimpleEvaluationContext</code> <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37035">#37035</a></li> <li>Limit result size of <code>BigDecimal</code>/<code>BigInteger</code> power operations in SpEL <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37034">#37034</a></li> <li>Refactor redirect handling in UrlHandlerFilter <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37030">#37030</a></li> <li>Revise stylesheet source handling in XsltView <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37029">#37029</a></li> <li>Revise view name handling in UrlFilenameViewController <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37027">#37027</a></li> <li>Handle pre-flight requests in functional endpoint setup without DispatcherHandler <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37024">#37024</a></li> <li>Improve WebSocket handshake error logging <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37023">#37023</a></li> <li>Fix missing nullability in JdbcTemplate.batchUpdate <a href="https://redirect.github.com/spring-projects/spring-framework/pull/37012">#37012</a></li> <li>Timeout property in RetryPolicy does not have a default constant <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36983">#36983</a></li> <li>Write native configuration files as UTF-8 <a href="https://redirect.github.com/spring-projects/spring-framework/pull/36972">#36972</a></li> <li>DefaultServerRequest.ServletParametersMap.entrySet() does not retain HttpServletRequest.getParameterMap() order <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36966">#36966</a></li> <li>Perform nextKey within synchronization for SQLite as well <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36959">#36959</a></li> <li>Add support for custom ObjectInputFilter on DefaultDeserializer <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36958">#36958</a></li> <li>Revise resource bundle caching for common locales <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36957">#36957</a></li> <li>Improve nullability for <code>getSession(*)</code> in <code>MockHttpServletRequest</code> <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36926">#36926</a></li> <li>Improve fallback logic in ParameterContentNegotiationStrategy and ParameterContentTypeResolver <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36925">#36925</a></li> <li>Improve ambiguous match check on preflight request <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36903">#36903</a></li> <li>Improve Groovy markup template loading <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36902">#36902</a></li> <li>Improve request path handling on a Reactor Netty server <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36893">#36893</a></li> <li>Improve JettyWebSocketSession error handling <a href="https://redirect.github.com/spring-projects/spring-framework/issues/36891">#36891</a></li> </ul> <h2>:lady_beetle: Bug Fixes</h2> <ul> <li>EclipseLinkJpaDialect singleton lock in EclipseLinkConnectionHandle.getConnection() serializes all JDBC connection acquisitions under load <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37085">#37085</a></li> <li>MetadataReader fails to read byte[] array from annotation <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37083">#37083</a></li> <li>Ensure parsing/tostring symmetry in ContentDisposition <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37064">#37064</a></li> <li>Character outside of permitted range in Content Disposition <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37062">#37062</a></li> <li>Release Jackson BufferRecycler to its pool in encoders <a href="https://redirect.github.com/spring-projects/spring-framework/pull/37059">#37059</a></li> <li>Ensure consistent error escaping <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37055">#37055</a></li> <li>Refine template name processing <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37054">#37054</a></li> <li>Reset TwoByteMatcher partial match on mismatching byte <a href="https://redirect.github.com/spring-projects/spring-framework/pull/37053">#37053</a></li> <li>Refactor async XML parsing limit checks <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37031">#37031</a></li> <li>Fix part constraint checks in PartEventHttpMessageReader <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37028">#37028</a></li> <li>Fix buffer leak in RSocket SETUP frame handling <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37026">#37026</a></li> <li>Ensure correct Jetty core response cookie handling <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37025">#37025</a></li> <li>Align <code>domainToAscii</code> with current WhatWG spec <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37018">#37018</a></li> <li>Ensure consistent <code>ButtonTag</code> value attribute processing <a href="https://redirect.github.com/spring-projects/spring-framework/issues/37017">#37017</a></li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/spring-projects/spring-framework/commit/82a6b40b9366ec181ededdad282b307ee5381a52"><code>82a6b40</code></a> Release Spring Framework 7.0.9</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/a7b1b59cbd79175ed79b0f4aa967be70288bb2ee"><code>a7b1b59</code></a> Upgrade to Reactor 2025.0.7</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/996e3d3f18dbb13d92a2eaf988abfe77b06928d4"><code>996e3d3</code></a> Upgrade to Micrometer 1.16.7</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/73f5ddddcd4278580c9c879b2effdac29aa3bff5"><code>73f5ddd</code></a> Refactor maxInMemory limit handling for async XML parsing</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/675f25de72e7ac31db1ffe0dc324381d7cc1a308"><code>675f25d</code></a> Leading slash handling in UrlHandlerFilter</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/692dbc9160de3b5de50ccedeee014716d0cedb7b"><code>692dbc9</code></a> Apply ResourceHandlerUtils checks in XsltView</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/8647e90bc7b2da9b299566296f2b253a6fd9c128"><code>8647e90</code></a> Consistent maxPartSize check in PartEventHttpMessageReader</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/b9379e33d52b491e227715776a072d07bcccddab"><code>b9379e3</code></a> Check viewName for special prefixes in UrlFilenameViewController</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/a784dbe286beaa70e5a88638b6af7f58f458c07e"><code>a784dbe</code></a> Ensure Payload release on early error in createHeaders</li> <li><a href="https://github.com/spring-projects/spring-framework/commit/3b492f3908df3fe0adc639b7da98f737d1ff7a02"><code>3b492f3</code></a> Return sameSite cookie value in Jetty response</li> <li>Additional commits viewable in <a href="https://github.com/spring-projects/spring-framework/compare/v7.0.8...v7.0.9">compare view</a></li> </ul> </details> <br /> Updates `org.springframework:spring-jdbc` from 7.0.8 to 7.0.9 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/spring-projects/spring-framework/releases">org.springframework:spring-jdbc's releases</a>.</em></p> <blockquote> <h2>v7.0.9</h2> <h2>:warning: Attention Required</h2> <ul> <li>In Spring Framework 7.... _Description has been truncated_ -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: [email protected] For queries about this service, please contact Infrastructure at: [email protected]
