Skip to content

Commit

Permalink
Bump org.cyclonedx:cyclonedx-maven-plugin from 2.8.2 to 2.9.0 (#4814)
Browse files Browse the repository at this point in the history
Bumps
[org.cyclonedx:cyclonedx-maven-plugin](https://github.com/CycloneDX/cyclonedx-maven-plugin)
from 2.8.2 to 2.9.0.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/CycloneDX/cyclonedx-maven-plugin/releases">org.cyclonedx:cyclonedx-maven-plugin's
releases</a>.</em></p>
<blockquote>
<h2>2.9.0</h2>
<!-- raw HTML omitted -->
<h2>:tada: Major features and improvements</h2>
<ul>
<li>Support 1.6 spec (<a
href="https://redirect.github.com/CycloneDX/cyclonedx-maven-plugin/pull/556">#556</a>)
<a
href="https://github.com/thesurlydev"><code>@​thesurlydev</code></a></li>
</ul>
<h2>🔧 Build</h2>
<ul>
<li>run mvn verify in CI instead of package (<a
href="https://redirect.github.com/CycloneDX/cyclonedx-maven-plugin/pull/560">#560</a>)
<a href="https://github.com/hboutemy"><code>@​hboutemy</code></a></li>
<li>Avoid resources filtering warning (<a
href="https://redirect.github.com/CycloneDX/cyclonedx-maven-plugin/pull/543">#543</a>)
<a
href="https://github.com/Bananeweizen"><code>@​Bananeweizen</code></a></li>
<li>fix site issues created by upgrades <a
href="https://redirect.github.com/CycloneDX/cyclonedx-maven-plugin/issues/553">#553</a>
and <a
href="https://redirect.github.com/CycloneDX/cyclonedx-maven-plugin/issues/552">#552</a>
(<a
href="https://redirect.github.com/CycloneDX/cyclonedx-maven-plugin/pull/559">#559</a>)
<a href="https://github.com/hboutemy"><code>@​hboutemy</code></a></li>
<li>Bump org.apache.maven.plugins:maven-site-plugin from 3.12.1 to
3.20.0 (<a
href="https://redirect.github.com/CycloneDX/cyclonedx-maven-plugin/pull/553">#553</a>)
<a
href="https://github.com/dependabot"><code>@​dependabot</code></a></li>
<li>Bump actions/checkout from 4.1.7 to 4.2.0 (<a
href="https://redirect.github.com/CycloneDX/cyclonedx-maven-plugin/pull/555">#555</a>)
<a
href="https://github.com/dependabot"><code>@​dependabot</code></a></li>
<li>Bump org.apache.maven.plugins:maven-javadoc-plugin from 3.8.0 to
3.10.1 (<a
href="https://redirect.github.com/CycloneDX/cyclonedx-maven-plugin/pull/558">#558</a>)
<a
href="https://github.com/dependabot"><code>@​dependabot</code></a></li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/CycloneDX/cyclonedx-maven-plugin/commit/4a217a993923c7f19453d7e531c0f5002c04d07d"><code>4a217a9</code></a>
[maven-release-plugin] prepare release cyclonedx-maven-plugin-2.9.0</li>
<li><a
href="https://github.com/CycloneDX/cyclonedx-maven-plugin/commit/2ffab8df291dfd4db3002d707824ddf612ea38ac"><code>2ffab8d</code></a>
run mvn verify in CI instead of package</li>
<li><a
href="https://github.com/CycloneDX/cyclonedx-maven-plugin/commit/072dcd7b53b8d6a67c1b73639b97f1e5739e9aef"><code>072dcd7</code></a>
Avoid resources filtering warning</li>
<li><a
href="https://github.com/CycloneDX/cyclonedx-maven-plugin/commit/be23759e53fd9263085e7cd8578d6c0c263874cd"><code>be23759</code></a>
fix site issues created by upgrades <a
href="https://redirect.github.com/CycloneDX/cyclonedx-maven-plugin/issues/553">#553</a>
and <a
href="https://redirect.github.com/CycloneDX/cyclonedx-maven-plugin/issues/552">#552</a></li>
<li><a
href="https://github.com/CycloneDX/cyclonedx-maven-plugin/commit/999d5fb882c7675d707548eed0f30ef4028397c8"><code>999d5fb</code></a>
Bump org.apache.maven.plugins:maven-site-plugin from 3.12.1 to
3.20.0</li>
<li><a
href="https://github.com/CycloneDX/cyclonedx-maven-plugin/commit/69d3cfddd4278444be23c120d7f558748bf2f93e"><code>69d3cfd</code></a>
Bump actions/checkout from 4.1.7 to 4.2.0</li>
<li><a
href="https://github.com/CycloneDX/cyclonedx-maven-plugin/commit/73a108d654d0c7dbfbc6c97581eaa89e13fd6c1f"><code>73a108d</code></a>
Bump org.apache.maven.plugins:maven-javadoc-plugin from 3.8.0 to
3.10.1</li>
<li><a
href="https://github.com/CycloneDX/cyclonedx-maven-plugin/commit/a86023a0cdd10686e8caff13586fa6eb4e3bc5b5"><code>a86023a</code></a>
Merge pull request <a
href="https://redirect.github.com/CycloneDX/cyclonedx-maven-plugin/issues/556">#556</a>
from thesurlydev/support-1.6-spec</li>
<li><a
href="https://github.com/CycloneDX/cyclonedx-maven-plugin/commit/567818d3050e84972b3bde2fa66d92c1d8692f20"><code>567818d</code></a>
Add support for 1.6 specification</li>
<li><a
href="https://github.com/CycloneDX/cyclonedx-maven-plugin/commit/dce6ee28ab7e1e1fbcbacf0fd987b71a6c5bd7ef"><code>dce6ee2</code></a>
[maven-release-plugin] prepare for next development iteration</li>
<li>See full diff in <a
href="https://github.com/CycloneDX/cyclonedx-maven-plugin/compare/cyclonedx-maven-plugin-2.8.2...cyclonedx-maven-plugin-2.9.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.cyclonedx:cyclonedx-maven-plugin&package-manager=maven&previous-version=2.8.2&new-version=2.9.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <[email protected]>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
  • Loading branch information
dependabot[bot] authored Oct 9, 2024
1 parent 3683dc9 commit 327ccf0
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion pom.xml
Original file line number Diff line number Diff line change
Expand Up @@ -587,7 +587,7 @@
<!-- For å få dependency graph i SLSA som pushes av docker-build-push parameter byosbom -->
<groupId>org.cyclonedx</groupId>
<artifactId>cyclonedx-maven-plugin</artifactId>
<version>2.8.2</version>
<version>2.9.0</version>
<executions>
<execution>
<phase>package</phase>
Expand Down

0 comments on commit 327ccf0

Please sign in to comment.