Re: [PR] Bump github/codeql-action from 3.25.5 to 3.25.6 [cxf]

2024-05-27 Thread via GitHub


reta merged PR #1895:
URL: https://github.com/apache/cxf/pull/1895


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] Bump org.webjars:swagger-ui from 5.17.2 to 5.17.11 [cxf]

2024-05-27 Thread via GitHub


reta merged PR #1896:
URL: https://github.com/apache/cxf/pull/1896


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] Bump org.codehaus.mojo:exec-maven-plugin from 3.2.0 to 3.3.0 [cxf]

2024-05-27 Thread via GitHub


reta merged PR #1897:
URL: https://github.com/apache/cxf/pull/1897


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] fips support [cxf]

2024-05-27 Thread via GitHub


jgoodyear commented on PR #1893:
URL: https://github.com/apache/cxf/pull/1893#issuecomment-2133386222

   Non-FIPS builds of CXF-9008 branch:
   
   Stream 9 OS with Eclipse Adoptium 17 on PPC64LE Passed.
   Ubuntu 22.04 LTS with Eclipse Adoptium 17 on x64 Passed.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] Bump github/codeql-action from 2.13.4 to 3.25.5 [cxf-fediz]

2024-05-27 Thread via GitHub


dependabot[bot] closed pull request #278: Bump github/codeql-action from 2.13.4 
to 3.25.5
URL: https://github.com/apache/cxf-fediz/pull/278


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



[PR] Bump github/codeql-action from 2.13.4 to 3.25.6 [cxf-fediz]

2024-05-27 Thread via GitHub


dependabot[bot] opened a new pull request, #281:
URL: https://github.com/apache/cxf-fediz/pull/281

   Bumps [github/codeql-action](https://github.com/github/codeql-action) from 
2.13.4 to 3.25.6.
   
   Release notes
   Sourced from https://github.com/github/codeql-action/releases";>github/codeql-action's 
releases.
   
   CodeQL Bundle v2.17.3
   Bundles CodeQL CLI v2.17.3
   
   (https://github.com/github/codeql-cli-binaries/blob/HEAD/CHANGELOG.md";>changelog,
 https://github.com/github/codeql-cli-binaries/releases/tag/v2.17.3";>release)
   
   Includes the following CodeQL language packs from https://github.com/github/codeql/tree/codeql-cli/v2.17.3";>github/codeql@codeql-cli/v2.17.3:
   
   codeql/cpp-queries (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/cpp/ql/src/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/cpp/ql/src";>source)
   codeql/cpp-all (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/cpp/ql/lib/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/cpp/ql/lib";>source)
   codeql/csharp-queries (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/csharp/ql/src/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/csharp/ql/src";>source)
   codeql/csharp-all (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/csharp/ql/lib/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/csharp/ql/lib";>source)
   codeql/go-queries (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/go/ql/src/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/go/ql/src";>source)
   codeql/go-all (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/go/ql/lib/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/go/ql/lib";>source)
   codeql/java-queries (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/java/ql/src/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/java/ql/src";>source)
   codeql/java-all (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/java/ql/lib/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/java/ql/lib";>source)
   codeql/javascript-queries (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/javascript/ql/src/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/javascript/ql/src";>source)
   codeql/javascript-all (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/javascript/ql/lib/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/javascript/ql/lib";>source)
   codeql/python-queries (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/python/ql/src/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/python/ql/src";>source)
   codeql/python-all (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/python/ql/lib/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/python/ql/lib";>source)
   codeql/ruby-queries (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/ruby/ql/src/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/ruby/ql/src";>source)
   codeql/ruby-all (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/ruby/ql/lib/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/ruby/ql/lib";>source)
   codeql/swift-queries (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/swift/ql/src/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/swift/ql/src";>source)
   codeql/swift-all (https://github.com/github/codeql/tree/codeql-cli/v2.17.3/swift/ql/lib/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.3/swift/ql/lib";>source)
   
   CodeQL Bundle v2.17.2
   Bundles CodeQL CLI v2.17.2
   
   (https://github.com/github/codeql-cli-binaries/blob/HEAD/CHANGELOG.md";>changelog,
 https://github.com/github/codeql-cli-binaries/releases/tag/v2.17.2";>release)
   
   Includes the following CodeQL language packs from https://github.com/github/codeql/tree/codeql-cli/v2.17.2";>github/codeql@codeql-cli/v2.17.2:
   
   codeql/cpp-queries (https://github.com/github/codeql/tree/codeql-cli/v2.17.2/cpp/ql/src/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.2/cpp/ql/src";>source)
   codeql/cpp-all (https://github.com/github/codeql/tree/codeql-cli/v2.17.2/cpp/ql/lib/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.2/cpp/ql/lib";>source)
   codeql/csharp-queries (https://github.com/github/codeql/tree/codeql-cli/v2.17.2/csharp/ql/src/CHANGELOG.md";>changelog,
 https://github.com/github/codeql/tree/codeql-cli/v2.17.2/csharp/ql/src";>source)
   codeql/csharp-all (https://github.com/github/codeql/tree/codeql-cli/v2.17.2/csharp/ql/lib/CHANGELOG.md";>changelog,
 h

Re: [PR] Bump github/codeql-action from 2.13.4 to 3.25.5 [cxf-fediz]

2024-05-27 Thread via GitHub


dependabot[bot] commented on PR #278:
URL: https://github.com/apache/cxf-fediz/pull/278#issuecomment-2133416948

   Superseded by #281.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] fips support [cxf]

2024-05-27 Thread via GitHub


jgoodyear commented on PR #1893:
URL: https://github.com/apache/cxf/pull/1893#issuecomment-2133445445

   FIPS mode enabled on Stream 9 OS:
   
   `
   [jgoodyear@localhost cxf]$ fips-mode-setup --check
   FIPS mode is enabled.
   [jgoodyear@localhost ~]$ uname -a
   Linux localhost.localdomain 5.14.0-447.el9.ppc64le #1 SMP Tue May 7 10:29:50 
UTC 2024 ppc64le ppc64le ppc64le GNU/Linux
   `
   
   Invocation:
   
   `
   [jgoodyear@localhost cxf]$ mvn clean install -Dsemeru.fips=true -Pfips
   `
   
   Error Message:
   
   `
   [INFO] 
   [INFO] --- surefire:3.2.5:test (default-test) @ cxf-core ---
   [INFO] Using auto detected provider 
org.apache.maven.surefire.junit4.JUnit4Provider
   [INFO] 
   [INFO] ---
   [INFO]  T E S T S
   [INFO] ---
   java.lang.RuntimeException: Restricted security mode is not supported on 
this platform.
   `
   
   Maven/Java versions:
   
   `
   [jgoodyear@localhost cxf]$ mvn -version
   Apache Maven 3.9.6 (bc0240f3c744dd6b6ec2920b3cd08dcc295161ae)
   Maven home: /home/jgoodyear/Documents/x1/maven/apache-maven-3.9.6
   Java version: 17.0.8.1, vendor: IBM Corporation, runtime: 
/usr/lib/jvm/ibm-semeru-open-17-jdk
   Default locale: en_US, platform encoding: UTF-8
   OS name: "linux", version: "5.14.0-447.el9.ppc64le", arch: "ppc64le", 
family: "unix"
   `
   
   Its very possible I do not have a complete FIPS configuration for this 
system, that being said, enabling FIPS on the OS, and passing to Semeru 
fips=true should be the out of the box requirement for basic use.  Any pointers 
welcome :) 
   
   This is a very cool feature to support for CXF. 


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] fips support [cxf]

2024-05-27 Thread via GitHub


ffang commented on PR #1893:
URL: https://github.com/apache/cxf/pull/1893#issuecomment-2133605678

   > FIPS mode enabled on Stream 9 OS:
   > 
   > ` [jgoodyear@localhost cxf]$ fips-mode-setup --check
   > 
   > FIPS mode is enabled.
   > 
   > [jgoodyear@localhost ~]$ uname -a
   > 
   > Linux localhost.localdomain 5.14.0-447.el9.ppc64le #1 SMP Tue May 7 
10:29:50 UTC 2024 ppc64le ppc64le ppc64le GNU/Linux `
   > 
   > Invocation:
   > 
   > `[jgoodyear@localhost cxf]$ mvn clean install -Dsemeru.fips=true -Pfips`
   > 
   > Error Message:
   > 
   > ` [INFO]
   > 
   > [INFO] --- surefire:3.2.5:test (default-test) @ cxf-core ---
   > 
   > [INFO] Using auto detected provider 
org.apache.maven.surefire.junit4.JUnit4Provider
   > 
   > [INFO]
   > 
   > [INFO] ---
   > 
   > [INFO] T E S T S
   > 
   > [INFO] ---
   > 
   > java.lang.RuntimeException: Restricted security mode is not supported on 
this platform. `
   > 
   > Maven/Java versions:
   > 
   > ` [jgoodyear@localhost cxf]$ mvn -version
   > 
   > Apache Maven 3.9.6 (bc0240f3c744dd6b6ec2920b3cd08dcc295161ae)
   > 
   > Maven home: /home/jgoodyear/Documents/x1/maven/apache-maven-3.9.6
   > 
   > Java version: 17.0.8.1, vendor: IBM Corporation, runtime: 
/usr/lib/jvm/ibm-semeru-open-17-jdk
   > 
   > Default locale: en_US, platform encoding: UTF-8
   > 
   > OS name: "linux", version: "5.14.0-447.el9.ppc64le", arch: "ppc64le", 
family: "unix" `
   > 
   > Its very possible I do not have a complete FIPS configuration for this 
system, that being said, enabling FIPS on the OS, and passing to Semeru 
fips=true should be the out of the box requirement for basic use. Any pointers 
welcome :)
   > 
   > This is a very cool feature to support for CXF.
   
   Hi @jgoodyear ,
   
   Thanks for testing with this PR.
   
   I'm not sure how to configure the environment you are using. Just FYI, my 
FIPS testing machine is like
   Maven home: /tools/opt/apache-maven-3.8.6
   Java version: 21.0.2, vendor: Red Hat, Inc., runtime: 
/usr/lib/jvm/java-21-openjdk-21.0.2.0.13-1.el8.x86_64
   Default locale: en_CA, platform encoding: UTF-8
   OS name: "linux", version: "4.18.0-477.27.1.el8_8.x86_64", arch: "amd64", 
family: "unix"
   
   And If I do "mvn clean install -Pfips" I get a green build on that machine
   
   Freeman


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] fips support [cxf]

2024-05-27 Thread via GitHub


jgoodyear commented on PR #1893:
URL: https://github.com/apache/cxf/pull/1893#issuecomment-2133754462

   No additions to your settings xml ?
   
   I'll try the older Maven version, and RH OpenJDK 17 (want to verify using 
FIPS doesn't require a higher version than main builds).


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] fips support [cxf]

2024-05-27 Thread via GitHub


ffang commented on PR #1893:
URL: https://github.com/apache/cxf/pull/1893#issuecomment-2133770470

   > No additions to your settings xml ?
   > 
   > I'll try the older Maven version, and RH OpenJDK 17 (want to verify using 
FIPS doesn't require a higher version than main builds).
   
   No additions to my settings.xml.
   
   And I think you need to use JDK21(LTS version) to get all tests passed with 
FIPS mode, because KW and KWP were added  to PKCS11 provider(this is the FIPS 
compliant security provider) since JDK18, JDK17 missed this part.
   
   Please see 
   https://bugs.openjdk.org/browse/JDK-8264849
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] fips support [cxf]

2024-05-27 Thread via GitHub


jgoodyear commented on PR #1893:
URL: https://github.com/apache/cxf/pull/1893#issuecomment-2133774170

   Interesting, thanks for that heads up -- will re-try Semeru on version 21 as 
well.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] fips support [cxf]

2024-05-27 Thread via GitHub


jgoodyear commented on PR #1893:
URL: https://github.com/apache/cxf/pull/1893#issuecomment-2133857896

   As a heads up, IBM Semeru 17.0.10 is where FIPS support begins - i had 
17.0.8.
   I have a build currently in flight, will update when complete.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] fips support [cxf]

2024-05-27 Thread via GitHub


jgoodyear commented on PR #1893:
URL: https://github.com/apache/cxf/pull/1893#issuecomment-2133868515

   Using Semeru 17.0.10 I got to :
   `
   [INFO] Apache CXF Runtime WS Security . FAILURE [ 35.135 
s]
   `
   
   In which the error messages were of the form:
   
   `
   NoSuchAlgorithmException: PKCS11 SecureRandom not available
   
   or 
   
   org.apache.cxf.binding.soap.SoapFault: Security processing failed.
   `
   
   
   `[ERROR] Tests run: 228, Failures: 3, Errors: 60, Skipped: 19`
   
   Will try Semeru 21 now


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] fips support [cxf]

2024-05-27 Thread via GitHub


jgoodyear commented on PR #1893:
URL: https://github.com/apache/cxf/pull/1893#issuecomment-2133895313

   Semeru 21 had class not found error, 
   RH OpenJDK 22 (latest) was not happy either.
   
   `
   [INFO] 
   
   [INFO] Apache CXF . SUCCESS [  0.217 
s]
   
   [INFO] Apache CXF BOM . SUCCESS [  0.011 
s]
   
   [INFO] Apache CXF Parent .. SUCCESS [  1.125 
s]
   
   [INFO] Apache CXF Core  FAILURE [ 19.362 
s]
   `
   
   I'll take a deeper look on Semeru 17 tomorrow.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] fips support [cxf]

2024-05-27 Thread via GitHub


ffang commented on PR #1893:
URL: https://github.com/apache/cxf/pull/1893#issuecomment-2133906524

   > Semeru 21 had class not found error, RH OpenJDK 22 (latest) was not happy 
either.
   > 
   > ` [INFO]
   > 
   > [INFO] Apache CXF . SUCCESS [ 
0.217 s]
   > 
   > [INFO] Apache CXF BOM . SUCCESS [ 
0.011 s]
   > 
   > [INFO] Apache CXF Parent .. SUCCESS [ 
1.125 s]
   > 
   > [INFO] Apache CXF Core  FAILURE [ 
19.362 s] `
   > 
   > I'll take a deeper look on Semeru 17 tomorrow.
   
   A quick question, did you manually  applied this PR to WSS4J first and build 
locally
   https://github.com/apache/ws-wss4j/pull/313
   This CXF PR relies on the WSS4J PR


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] fips support [cxf]

2024-05-27 Thread via GitHub


ffang commented on PR #1893:
URL: https://github.com/apache/cxf/pull/1893#issuecomment-2133909101

   > Using Semeru 17.0.10 I got to : `[INFO] Apache CXF Runtime WS Security 
. FAILURE [ 35.135 s]`
   > 
   > In which the error messages were of the form:
   > 
   > ` NoSuchAlgorithmException: PKCS11 SecureRandom not available
   > 
   > or
   > 
   > org.apache.cxf.binding.soap.SoapFault: Security processing failed. `
   > 
   > `[ERROR] Tests run: 228, Failures: 3, Errors: 60, Skipped: 19`
   > 
   > Will try Semeru 21 now
   
   Hi @jgoodyear ,
   
   Not an expert for IBM JDK configuration, but per the IBM doc here 
   
https://www.ibm.com/support/pages/fips-certified-cryptography-ibm-semeru-runtimes
   PKCS11 SecureRandom should be available with IBM fips certified JDK.
   
   I guess somehow the testing environment/machine/jdk isn't fully FIPS ready?
   
   Best Regards
   Freeman


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] fips support [cxf]

2024-05-27 Thread via GitHub


jgoodyear commented on PR #1893:
URL: https://github.com/apache/cxf/pull/1893#issuecomment-2133909153

   Ah, no - will update for that tomorrow :) 
   Thanks for the catch


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



[PR] Bump org.apache.maven:maven-model from 3.9.6 to 3.9.7 [cxf-build-utils]

2024-05-27 Thread via GitHub


dependabot[bot] opened a new pull request, #85:
URL: https://github.com/apache/cxf-build-utils/pull/85

   Bumps [org.apache.maven:maven-model](https://github.com/apache/maven) from 
3.9.6 to 3.9.7.
   
   Release notes
   Sourced from https://github.com/apache/maven/releases";>org.apache.maven:maven-model's 
releases.
   
   3.9.7
   https://issues.apache.org/jira/secure/ReleaseNote.jspa?projectId=12316922&version=12353964";>Release
 Notes - Maven - Version 3.9.7
   
   
   
   
   
   
   ... (truncated)
   
   
   Commits
   
   https://github.com/apache/maven/commit/8b094c9513efc1b9ce2d952b3b9c8eaedaf8cbf0";>8b094c9
 [maven-release-plugin] prepare release maven-3.9.7
   https://github.com/apache/maven/commit/6ff3a821e73ad5fa3fa30e40c51b161139573c15";>6ff3a82
 [MNG-8125][MNG-8126][MNG-8127] Mild updates (https://redirect.github.com/apache/maven/issues/1533";>#1533)
   https://github.com/apache/maven/commit/73bc6caec7fb46d20aeefb29bc6bd00d39fb007e";>73bc6ca
 [MNG-8121] Fix NPE in metadata merge (https://redirect.github.com/apache/maven/issues/1508";>#1508)
   https://github.com/apache/maven/commit/558ae8a924440c57d7033ce039246d9b176d572b";>558ae8a
 [MNG-8115] Upgrade minimal set of dependencies (https://redirect.github.com/apache/maven/issues/1496";>#1496)
   https://github.com/apache/maven/commit/c44304fe33e091be2a4b6a5d65f06ba777a692a0";>c44304f
 [MNG-8118] Backport to Maven 3.9.x (https://redirect.github.com/apache/maven/issues/1505";>#1505)
   https://github.com/apache/maven/commit/c1c114dbf98f77eefacb5aa6887645e4de9f069c";>c1c114d
 [MNG-8081] Interpolate available properties during default profile selection 
...
   https://github.com/apache/maven/commit/b4cbda8cb98ed1e72119d41095b9831ebd0fba86";>b4cbda8
 [3.9.x][MNG-8109] Resolver 1.9.20 (https://redirect.github.com/apache/maven/issues/1490";>#1490)
   https://github.com/apache/maven/commit/bc52363d402f14043e2e4efed40799044cdf531b";>bc52363
 [3.9.x][MNG-8106] Fix metadata merge (https://redirect.github.com/apache/maven/issues/1480";>#1480)
   https://github.com/apache/maven/commit/587e99bc70132f71d69305bcb7217ec5e151c25e";>587e99b
 [MNG-8094] Resolver 1.9.19 (https://redirect.github.com/apache/maven/issues/1468";>#1468)
   https://github.com/apache/maven/commit/548459b1a96b79d5e5917af17a0248954deaaa3f";>548459b
 [MNG-8011] Neuter the README (https://redirect.github.com/apache/maven/issues/1470";>#1470)
   Additional commits viewable in https://github.com/apache/maven/compare/maven-3.9.6...maven-3.9.7";>compare
 view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.apache.maven:maven-model&package-manager=maven&previous-version=3.9.6&new-version=3.9.7)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
   - `@dependabot show  ignore conditions` will show all of 
the ignore conditions of the specified dependency
   - `@dependabot ignore this major version` will close this PR and stop 
Dependabot creating any more for this major version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this minor version` will close this PR and stop 
Dependabot creating any more for this minor version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this dependency` will close this PR and stop 
Dependabot creating any more for this dependency (unless you reopen the PR or 
upgrade to it yourself)
   
   
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



[PR] Bump org.apache.maven:maven-plugin-api from 3.9.6 to 3.9.7 [cxf-build-utils]

2024-05-27 Thread via GitHub


dependabot[bot] opened a new pull request, #86:
URL: https://github.com/apache/cxf-build-utils/pull/86

   Bumps [org.apache.maven:maven-plugin-api](https://github.com/apache/maven) 
from 3.9.6 to 3.9.7.
   
   Release notes
   Sourced from https://github.com/apache/maven/releases";>org.apache.maven:maven-plugin-api's
 releases.
   
   3.9.7
   https://issues.apache.org/jira/secure/ReleaseNote.jspa?projectId=12316922&version=12353964";>Release
 Notes - Maven - Version 3.9.7
   
   
   
   
   
   
   ... (truncated)
   
   
   Commits
   
   https://github.com/apache/maven/commit/8b094c9513efc1b9ce2d952b3b9c8eaedaf8cbf0";>8b094c9
 [maven-release-plugin] prepare release maven-3.9.7
   https://github.com/apache/maven/commit/6ff3a821e73ad5fa3fa30e40c51b161139573c15";>6ff3a82
 [MNG-8125][MNG-8126][MNG-8127] Mild updates (https://redirect.github.com/apache/maven/issues/1533";>#1533)
   https://github.com/apache/maven/commit/73bc6caec7fb46d20aeefb29bc6bd00d39fb007e";>73bc6ca
 [MNG-8121] Fix NPE in metadata merge (https://redirect.github.com/apache/maven/issues/1508";>#1508)
   https://github.com/apache/maven/commit/558ae8a924440c57d7033ce039246d9b176d572b";>558ae8a
 [MNG-8115] Upgrade minimal set of dependencies (https://redirect.github.com/apache/maven/issues/1496";>#1496)
   https://github.com/apache/maven/commit/c44304fe33e091be2a4b6a5d65f06ba777a692a0";>c44304f
 [MNG-8118] Backport to Maven 3.9.x (https://redirect.github.com/apache/maven/issues/1505";>#1505)
   https://github.com/apache/maven/commit/c1c114dbf98f77eefacb5aa6887645e4de9f069c";>c1c114d
 [MNG-8081] Interpolate available properties during default profile selection 
...
   https://github.com/apache/maven/commit/b4cbda8cb98ed1e72119d41095b9831ebd0fba86";>b4cbda8
 [3.9.x][MNG-8109] Resolver 1.9.20 (https://redirect.github.com/apache/maven/issues/1490";>#1490)
   https://github.com/apache/maven/commit/bc52363d402f14043e2e4efed40799044cdf531b";>bc52363
 [3.9.x][MNG-8106] Fix metadata merge (https://redirect.github.com/apache/maven/issues/1480";>#1480)
   https://github.com/apache/maven/commit/587e99bc70132f71d69305bcb7217ec5e151c25e";>587e99b
 [MNG-8094] Resolver 1.9.19 (https://redirect.github.com/apache/maven/issues/1468";>#1468)
   https://github.com/apache/maven/commit/548459b1a96b79d5e5917af17a0248954deaaa3f";>548459b
 [MNG-8011] Neuter the README (https://redirect.github.com/apache/maven/issues/1470";>#1470)
   Additional commits viewable in https://github.com/apache/maven/compare/maven-3.9.6...maven-3.9.7";>compare
 view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.apache.maven:maven-plugin-api&package-manager=maven&previous-version=3.9.6&new-version=3.9.7)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
   - `@dependabot show  ignore conditions` will show all of 
the ignore conditions of the specified dependency
   - `@dependabot ignore this major version` will close this PR and stop 
Dependabot creating any more for this major version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this minor version` will close this PR and stop 
Dependabot creating any more for this minor version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this dependency` will close this PR and stop 
Dependabot creating any more for this dependency (unless you reopen the PR or 
upgrade to it yourself)
   
   
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



[PR] Bump org.apache.maven:maven-artifact from 3.9.6 to 3.9.7 [cxf-build-utils]

2024-05-27 Thread via GitHub


dependabot[bot] opened a new pull request, #87:
URL: https://github.com/apache/cxf-build-utils/pull/87

   Bumps [org.apache.maven:maven-artifact](https://github.com/apache/maven) 
from 3.9.6 to 3.9.7.
   
   Release notes
   Sourced from https://github.com/apache/maven/releases";>org.apache.maven:maven-artifact's
 releases.
   
   3.9.7
   https://issues.apache.org/jira/secure/ReleaseNote.jspa?projectId=12316922&version=12353964";>Release
 Notes - Maven - Version 3.9.7
   
   
   
   
   
   
   ... (truncated)
   
   
   Commits
   
   https://github.com/apache/maven/commit/8b094c9513efc1b9ce2d952b3b9c8eaedaf8cbf0";>8b094c9
 [maven-release-plugin] prepare release maven-3.9.7
   https://github.com/apache/maven/commit/6ff3a821e73ad5fa3fa30e40c51b161139573c15";>6ff3a82
 [MNG-8125][MNG-8126][MNG-8127] Mild updates (https://redirect.github.com/apache/maven/issues/1533";>#1533)
   https://github.com/apache/maven/commit/73bc6caec7fb46d20aeefb29bc6bd00d39fb007e";>73bc6ca
 [MNG-8121] Fix NPE in metadata merge (https://redirect.github.com/apache/maven/issues/1508";>#1508)
   https://github.com/apache/maven/commit/558ae8a924440c57d7033ce039246d9b176d572b";>558ae8a
 [MNG-8115] Upgrade minimal set of dependencies (https://redirect.github.com/apache/maven/issues/1496";>#1496)
   https://github.com/apache/maven/commit/c44304fe33e091be2a4b6a5d65f06ba777a692a0";>c44304f
 [MNG-8118] Backport to Maven 3.9.x (https://redirect.github.com/apache/maven/issues/1505";>#1505)
   https://github.com/apache/maven/commit/c1c114dbf98f77eefacb5aa6887645e4de9f069c";>c1c114d
 [MNG-8081] Interpolate available properties during default profile selection 
...
   https://github.com/apache/maven/commit/b4cbda8cb98ed1e72119d41095b9831ebd0fba86";>b4cbda8
 [3.9.x][MNG-8109] Resolver 1.9.20 (https://redirect.github.com/apache/maven/issues/1490";>#1490)
   https://github.com/apache/maven/commit/bc52363d402f14043e2e4efed40799044cdf531b";>bc52363
 [3.9.x][MNG-8106] Fix metadata merge (https://redirect.github.com/apache/maven/issues/1480";>#1480)
   https://github.com/apache/maven/commit/587e99bc70132f71d69305bcb7217ec5e151c25e";>587e99b
 [MNG-8094] Resolver 1.9.19 (https://redirect.github.com/apache/maven/issues/1468";>#1468)
   https://github.com/apache/maven/commit/548459b1a96b79d5e5917af17a0248954deaaa3f";>548459b
 [MNG-8011] Neuter the README (https://redirect.github.com/apache/maven/issues/1470";>#1470)
   Additional commits viewable in https://github.com/apache/maven/compare/maven-3.9.6...maven-3.9.7";>compare
 view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.apache.maven:maven-artifact&package-manager=maven&previous-version=3.9.6&new-version=3.9.7)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
   - `@dependabot show  ignore conditions` will show all of 
the ignore conditions of the specified dependency
   - `@dependabot ignore this major version` will close this PR and stop 
Dependabot creating any more for this major version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this minor version` will close this PR and stop 
Dependabot creating any more for this minor version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this dependency` will close this PR and stop 
Dependabot creating any more for this dependency (unless you reopen the PR or 
upgrade to it yourself)
   
   
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] Bump org.apache.maven:maven-plugin-api from 3.9.6 to 3.9.7 [cxf-build-utils]

2024-05-27 Thread via GitHub


reta merged PR #86:
URL: https://github.com/apache/cxf-build-utils/pull/86


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] Bump org.apache.maven:maven-artifact from 3.9.6 to 3.9.7 [cxf-build-utils]

2024-05-27 Thread via GitHub


reta merged PR #87:
URL: https://github.com/apache/cxf-build-utils/pull/87


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] Bump org.apache.maven:maven-model from 3.9.6 to 3.9.7 [cxf-build-utils]

2024-05-27 Thread via GitHub


reta merged PR #85:
URL: https://github.com/apache/cxf-build-utils/pull/85


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



[PR] Bump com.puppycrawl.tools:checkstyle from 10.16.0 to 10.17.0 [cxf-xjc-utils]

2024-05-27 Thread via GitHub


dependabot[bot] opened a new pull request, #143:
URL: https://github.com/apache/cxf-xjc-utils/pull/143

   Bumps 
[com.puppycrawl.tools:checkstyle](https://github.com/checkstyle/checkstyle) 
from 10.16.0 to 10.17.0.
   
   Release notes
   Sourced from https://github.com/checkstyle/checkstyle/releases";>com.puppycrawl.tools:checkstyle's
 releases.
   
   checkstyle-10.17.0
   Checkstyle 10.17.0 - https://checkstyle.org/releasenotes.html#Release_10.17.0";>https://checkstyle.org/releasenotes.html#Release_10.17.0
   Breaking backward compatibility:
   https://redirect.github.com/checkstyle/checkstyle/issues/13758";>#13758
 - ImportOrder: replace Pattern[] with String[] type for properties 
staticGroups and groups
   New:
   https://redirect.github.com/checkstyle/checkstyle/issues/14726";>#14726
 - new Check: ConstructorsDeclarationGrouping to check the grouping of 
overloaded constructors
   Bug fixes:
   https://redirect.github.com/checkstyle/checkstyle/issues/13012";>#13012
 - Checkstyle fails with "Path contains invalid character" if path to 
config file contains non-ascii characters
   https://redirect.github.com/checkstyle/checkstyle/issues/13167";>#13167
 - Null pointer Exception in UnusedLocalVariableCheck
   https://redirect.github.com/checkstyle/checkstyle/issues/14506";>#14506
 - False positive for UnusedLocalVariable
   https://redirect.github.com/checkstyle/checkstyle/issues/14825";>#14825
 - WhitespaceAround reports a violation when switch expression is passed as a 
method argument
   https://redirect.github.com/checkstyle/checkstyle/issues/13086";>#13086
 - InnerAssignmentCheck failed for one line code in Java 14 switch 
expression
   
   
   
   
   Commits
   
   https://github.com/checkstyle/checkstyle/commit/b2703848dbdbeeecb53bfaa702d5cfe84261db87";>b270384
 [maven-release-plugin] prepare release checkstyle-10.17.0
   https://github.com/checkstyle/checkstyle/commit/da11a8df0c11e4bcc8f3a29dce449c7c69fe1eb4";>da11a8d
 doc: release notes for 10.17.0
   https://github.com/checkstyle/checkstyle/commit/15e0c7e82d090e93ad3deaddb4fea22e6a1dd866";>15e0c7e
 Issue https://redirect.github.com/checkstyle/checkstyle/issues/14877";>#14877:
 drop java 14 build
   https://github.com/checkstyle/checkstyle/commit/8a4b40600c1c772a591744875af9e9d09c7b884d";>8a4b406
 Issue https://redirect.github.com/checkstyle/checkstyle/issues/13012";>#13012:
 fix loading with non-ascii symbols in path
   https://github.com/checkstyle/checkstyle/commit/96eeed50f00d9c1facecc8e1f20d0113456b7469";>96eeed5
 Pull https://redirect.github.com/checkstyle/checkstyle/issues/14662";>#14662:
 shallowClone in checkstyle-tester with SHA checkout
   https://github.com/checkstyle/checkstyle/commit/c15242f7fd5ddcae56e868bec3e8431693716e01";>c15242f
 Issue https://redirect.github.com/checkstyle/checkstyle/issues/13167";>#13167:
 Fix NPE in UnusedLocalVariable check
   https://github.com/checkstyle/checkstyle/commit/8605dd8f98514addafaa379eb376f3355957cebd";>8605dd8
 dependency: bump org.gaul:modernizer-maven-plugin from 2.7.0 to 2.9.0
   https://github.com/checkstyle/checkstyle/commit/c5a873b11bd1797971f30dae955be3fa8dd460eb";>c5a873b
 ---
   https://github.com/checkstyle/checkstyle/commit/9d9aad443b7aca54789dcf7917fb3c919f15f098";>9d9aad4
 ---
   https://github.com/checkstyle/checkstyle/commit/b8615479028fb40523376d6093db01df9db6876a";>b861547
 Issue https://redirect.github.com/checkstyle/checkstyle/issues/14726";>#14726:
 new check: ConstructorsDeclarationGroupingCheck
   Additional commits viewable in https://github.com/checkstyle/checkstyle/compare/checkstyle-10.16.0...checkstyle-10.17.0";>compare
 view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.puppycrawl.tools:checkstyle&package-manager=maven&previous-version=10.16.0&new-version=10.17.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
 

[PR] Bump org.apache.maven:maven-core from 3.9.6 to 3.9.7 [cxf-xjc-utils]

2024-05-27 Thread via GitHub


dependabot[bot] opened a new pull request, #144:
URL: https://github.com/apache/cxf-xjc-utils/pull/144

   Bumps [org.apache.maven:maven-core](https://github.com/apache/maven) from 
3.9.6 to 3.9.7.
   
   Release notes
   Sourced from https://github.com/apache/maven/releases";>org.apache.maven:maven-core's 
releases.
   
   3.9.7
   https://issues.apache.org/jira/secure/ReleaseNote.jspa?projectId=12316922&version=12353964";>Release
 Notes - Maven - Version 3.9.7
   
   
   
   
   
   
   ... (truncated)
   
   
   Commits
   
   https://github.com/apache/maven/commit/8b094c9513efc1b9ce2d952b3b9c8eaedaf8cbf0";>8b094c9
 [maven-release-plugin] prepare release maven-3.9.7
   https://github.com/apache/maven/commit/6ff3a821e73ad5fa3fa30e40c51b161139573c15";>6ff3a82
 [MNG-8125][MNG-8126][MNG-8127] Mild updates (https://redirect.github.com/apache/maven/issues/1533";>#1533)
   https://github.com/apache/maven/commit/73bc6caec7fb46d20aeefb29bc6bd00d39fb007e";>73bc6ca
 [MNG-8121] Fix NPE in metadata merge (https://redirect.github.com/apache/maven/issues/1508";>#1508)
   https://github.com/apache/maven/commit/558ae8a924440c57d7033ce039246d9b176d572b";>558ae8a
 [MNG-8115] Upgrade minimal set of dependencies (https://redirect.github.com/apache/maven/issues/1496";>#1496)
   https://github.com/apache/maven/commit/c44304fe33e091be2a4b6a5d65f06ba777a692a0";>c44304f
 [MNG-8118] Backport to Maven 3.9.x (https://redirect.github.com/apache/maven/issues/1505";>#1505)
   https://github.com/apache/maven/commit/c1c114dbf98f77eefacb5aa6887645e4de9f069c";>c1c114d
 [MNG-8081] Interpolate available properties during default profile selection 
...
   https://github.com/apache/maven/commit/b4cbda8cb98ed1e72119d41095b9831ebd0fba86";>b4cbda8
 [3.9.x][MNG-8109] Resolver 1.9.20 (https://redirect.github.com/apache/maven/issues/1490";>#1490)
   https://github.com/apache/maven/commit/bc52363d402f14043e2e4efed40799044cdf531b";>bc52363
 [3.9.x][MNG-8106] Fix metadata merge (https://redirect.github.com/apache/maven/issues/1480";>#1480)
   https://github.com/apache/maven/commit/587e99bc70132f71d69305bcb7217ec5e151c25e";>587e99b
 [MNG-8094] Resolver 1.9.19 (https://redirect.github.com/apache/maven/issues/1468";>#1468)
   https://github.com/apache/maven/commit/548459b1a96b79d5e5917af17a0248954deaaa3f";>548459b
 [MNG-8011] Neuter the README (https://redirect.github.com/apache/maven/issues/1470";>#1470)
   Additional commits viewable in https://github.com/apache/maven/compare/maven-3.9.6...maven-3.9.7";>compare
 view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.apache.maven:maven-core&package-manager=maven&previous-version=3.9.6&new-version=3.9.7)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
   - `@dependabot show  ignore conditions` will show all of 
the ignore conditions of the specified dependency
   - `@dependabot ignore this major version` will close this PR and stop 
Dependabot creating any more for this major version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this minor version` will close this PR and stop 
Dependabot creating any more for this minor version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this dependency` will close this PR and stop 
Dependabot creating any more for this dependency (unless you reopen the PR or 
upgrade to it yourself)
   
   
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] Bump org.apache.maven:maven-core from 3.9.6 to 3.9.7 [cxf-xjc-utils]

2024-05-27 Thread via GitHub


reta merged PR #144:
URL: https://github.com/apache/cxf-xjc-utils/pull/144


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] Bump com.puppycrawl.tools:checkstyle from 10.16.0 to 10.17.0 [cxf-xjc-utils]

2024-05-27 Thread via GitHub


reta merged PR #143:
URL: https://github.com/apache/cxf-xjc-utils/pull/143


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



[PR] Bump cxf.xnio.version from 3.8.14.Final to 3.8.15.Final [cxf]

2024-05-27 Thread via GitHub


dependabot[bot] opened a new pull request, #1898:
URL: https://github.com/apache/cxf/pull/1898

   Bumps `cxf.xnio.version` from 3.8.14.Final to 3.8.15.Final.
   Updates `org.jboss.xnio:xnio-nio` from 3.8.14.Final to 3.8.15.Final
   
   Updates `org.jboss.xnio:xnio-api` from 3.8.14.Final to 3.8.15.Final
   
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
   - `@dependabot show  ignore conditions` will show all of 
the ignore conditions of the specified dependency
   - `@dependabot ignore this major version` will close this PR and stop 
Dependabot creating any more for this major version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this minor version` will close this PR and stop 
Dependabot creating any more for this minor version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this dependency` will close this PR and stop 
Dependabot creating any more for this dependency (unless you reopen the PR or 
upgrade to it yourself)
   
   
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



[PR] Bump org.assertj:assertj-core from 3.25.3 to 3.26.0 [cxf]

2024-05-27 Thread via GitHub


dependabot[bot] opened a new pull request, #1899:
URL: https://github.com/apache/cxf/pull/1899

   Bumps [org.assertj:assertj-core](https://github.com/assertj/assertj) from 
3.25.3 to 3.26.0.
   
   Release notes
   Sourced from https://github.com/assertj/assertj/releases";>org.assertj:assertj-core's 
releases.
   
   v.3.26.0
   :boom: Breaking Changes
   Core
   
   
   Delegate OptionalDouble value comparison to 
Double.compare in hasValue assertion https://redirect.github.com/assertj/assertj/issues/3411";>#3411
   
   This fixes the comparison of NaN values which wasn't working 
the way the hasValue Javadoc describes.
   The previous behavior can be obtained with getAsDouble:
   assertThat(OptionalDouble.of(Double.NaN).getAsDouble()).isSameAs(Double.NaN);
   
   
   
   
   :no_entry_sign: Deprecated
   Core
   
   Deprecate ObjectAssertFactory in favor of 
Assertions.assertThat(Object)
   Deprecate AssertionErrorFactory in favor of 
AssertionErrorCreator
   Deprecate catchThrowableOfType(ThrowingCallable, Class) in 
favor of  catchThrowableOfType(Class, ThrowingCallable) https://redirect.github.com/assertj/assertj/issues/2823";>#2823
   Deprecate assertThat(Iterable, AssertFactory), 
assertThat(Iterable, Class) and their respective then 
variants https://redirect.github.com/assertj/assertj/issues/3453";>#3453
   
   :sparkles: New Features
   Core
   
   Support multiple AfterAssertionErrorCollected callbacks https://redirect.github.com/assertj/assertj/issues/3313";>#3313
   Add InstanceOfAssertFactory for Set instances 
https://redirect.github.com/assertj/assertj/issues/3325";>#3325
   Add doesNotContainKey and doesNotContainKeys 
to Guava Multimap assertions https://redirect.github.com/assertj/assertj/issues/3334";>#3334
   Add assertions for JDK YearMonth type https://redirect.github.com/assertj/assertj/issues/3142";>#3142
   Add TemporalAssert type https://redirect.github.com/assertj/assertj/issues/3404";>#3404
   Add ignoringFieldsOfTypesMatchingRegexes https://redirect.github.com/assertj/assertj/issues/3369";>#3369
   Add fail(Throwable) and fail() variants https://redirect.github.com/assertj/assertj/issues/3204";>#3204
   Add isPrivate to Class assertions
   Add doesNot[Start/End]WithWhitespace methods to 
CharSequence assertions https://redirect.github.com/assertj/assertj/issues/3441";>#3441
   Add createAssert(ValueProvider) to 
AssertFactory https://redirect.github.com/assertj/assertj/issues/3377";>#3377
   Add values() navigation method to 
AbstractMapAssert https://redirect.github.com/assertj/assertj/issues/3297";>#3297
   Add 
bytes()/bytes(Charset)/bytes(String) 
navigation methods to AbstractStringAssert https://redirect.github.com/assertj/assertj/issues/3232";>#3232
   Add doesNotThrowAnyExceptionExcept to 
AbstractThrowableAssert https://redirect.github.com/assertj/assertj/issues/3261";>#3261
   Add hasPermittedSubclasses to Class assertions 
https://redirect.github.com/assertj/assertj/issues/3316";>#3316
   Add isUnmodifiable to Iterator assertions https://redirect.github.com/assertj/assertj/issues/3477";>#3477
   
   :bug: Bug Fixes
   Core
   
   
   ... (truncated)
   
   
   Commits
   
   https://github.com/assertj/assertj/commit/b7aae0383d4a06b9f7e3ee82aa94039e4ce49711";>b7aae03
 [maven-release-plugin] prepare release assertj-build-3.26.0
   https://github.com/assertj/assertj/commit/be4cf7cea4d703a76107217afc2083dbe015b7a4";>be4cf7c
 Add isUnmodifiable to Iterator assertions (https://redirect.github.com/assertj/assertj/issues/3477";>#3477)
   https://github.com/assertj/assertj/commit/6e760db4f2288f9de0f88a874273bdcfda072cb4";>6e760db
 chore(deps-dev): bump org.springframework:spring-core from 5.3.35 to 5.3.36 
(...
   https://github.com/assertj/assertj/commit/29d2bbeb5c5ba640ce73f63f717719044a5efeff";>29d2bbe
 chore(deps): bump byte-buddy.version from 1.14.15 to 1.14.16 (https://redirect.github.com/assertj/assertj/issues/3487";>#3487)
   https://github.com/assertj/assertj/commit/97b642a0b462fe0ad25255800f9531eaa44c4c15";>97b642a
 Rebuild default date formats used to parse string as dates when the default 
t...
   https://github.com/assertj/assertj/commit/9eeb352e1188b8398a952fc9819a5173d44f8fe0";>9eeb352
 Refactor tests covering date string conversion
   https://github.com/assertj/assertj/commit/9707d51dae690505f6bd25102a6dd3f70800923d";>9707d51
 chore(deps): bump kotlin.version from 1.9.24 to 2.0.0 (https://redirect.github.com/assertj/assertj/issues/3484";>#3484)
   https://github.com/assertj/assertj/commit/6bab51761c59a25ec933baad919236d3f45bea6d";>6bab517
 chore(deps-dev): bump org.hibernate.orm:hibernate-core from 6.5.1.Final to 
6
   https://github.com/assertj/assertj/commit/5f70fec3ec07e19b032aeb821710f08e1de326c1";>5f70fec
 Reduce Qodana verbosity in PRs
   https://github.com/assertj/assertj/commit/99f2991a15323a3e4afe009d62aac43cca589067";>99f2991
 Fix Instant conversion with Date assertions (https://redirect.github.com/assertj/assertj/issues/3467";>#3467)
   Addi