[PR] Bump net.sourceforge.pmd:pmd-java from 6.55.0 to 7.3.0 [cxf-build-utils]

2024-07-02 Thread via GitHub


dependabot[bot] opened a new pull request, #103:
URL: https://github.com/apache/cxf-build-utils/pull/103

   Bumps [net.sourceforge.pmd:pmd-java](https://github.com/pmd/pmd) from 6.55.0 
to 7.3.0.
   
   Release notes
   Sourced from https://github.com/pmd/pmd/releases";>net.sourceforge.pmd:pmd-java's 
releases.
   
   PMD 7.3.0 (28-June-2024)
   28-June-2024 - 7.3.0
   The PMD team is pleased to announce PMD 7.3.0.
   This is a minor release.
   Table Of Contents
   
   https://github.com/pmd/pmd/blob/HEAD/#new-and-noteworthy";>🚀 New 
and noteworthy
   
   https://github.com/pmd/pmd/blob/HEAD/#new-rules";>✨ New 
Rules
   https://github.com/pmd/pmd/blob/HEAD/breaking";>💥 
pmd-compat6 removed (https://github.com/pmd/pmd/blob/HEAD/breaking)
   
   
   https://github.com/pmd/pmd/blob/HEAD/#fixed-issues";>🐛 Fixed 
Issues
   https://github.com/pmd/pmd/blob/HEAD/#api-changes";>🚨 API 
Changes
   
   https://github.com/pmd/pmd/blob/HEAD/#cpd-report-format-xml";>CPD Report 
Format XML
   https://github.com/pmd/pmd/blob/HEAD/#cli";>CLI
   https://github.com/pmd/pmd/blob/HEAD/#ant";>Ant
   https://github.com/pmd/pmd/blob/HEAD/#deprecated-api";>Deprecated 
API
   https://github.com/pmd/pmd/blob/HEAD/#breaking-changes-pmd-compat6-removed";>Breaking
 changes: pmd-compat6 removed
   
   
   https://github.com/pmd/pmd/blob/HEAD/#stats";>📈 Stats
   
   🚀 New and noteworthy
   ✨ New Rules
   
   The new Java rule https://docs.pmd-code.org/pmd-doc-7.3.0/pmd_rules_java_bestpractices.html#useenumcollections";>UseEnumCollections
 reports usages for HashSet and HashMap
   when the keys are of an enum type. The specialized enum collections are more 
space- and time-efficient.
   
   💥 pmd-compat6 removed (breaking)
   The already deprecated PMD 6 compatibility module (pmd-compat6) has been 
removed. It was intended to be used with
   older versions of the maven-pmd-plugin, but since maven-pmd-plugin 3.22.0, 
PMD 7 is supported directly and this
   module is not needed anymore.
   If you currently use this dependency 
(net.sourceforge.pmd:pmd-compat6), remove it and upgrade 
maven-pmd-plugin
   to the latest version (3.23.0 or newer).
   See also https://docs.pmd-code.org/pmd-doc-7.3.0/pmd_userdocs_tools_maven.html";>Maven
 PMD Plugin.
   🐛 Fixed Issues
   
   cli
   
   https://redirect.github.com/pmd/pmd/issues/2827";>#2827: 
[cli] Consider processing errors in exit status
   
   
   core
   
   https://redirect.github.com/pmd/pmd/issues/4396";>#4396: 
[core] CPD is always case sensitive
   https://redirect.github.com/pmd/pmd/pull/4992";>#4992: 
[core] CPD: Include processing errors in XML report
   https://redirect.github.com/pmd/pmd/issues/5066";>#5066: 
[core] CPD throws java.lang.OutOfMemoryError: Java heap space (since 7.1.0)
   
   
   
   
   
   ... (truncated)
   
   
   Commits
   
   https://github.com/pmd/pmd/commit/c5dbc29bea2769016dfb9949dd3a20f242b828f8";>c5dbc29
 [release] prepare release pmd_releases/7.3.0
   https://github.com/pmd/pmd/commit/2d07aa756161579b0316093a59fcab287a09bce9";>2d07aa7
 Prepare pmd release 7.3.0
   https://github.com/pmd/pmd/commit/93e3020a1d92a31b09b5c8a04b50a16a5df3b862";>93e3020
 [doc] Update all-contributors
   https://github.com/pmd/pmd/commit/52b2b52c5c0802326f96207c52ddfdc05095cb68";>52b2b52
 [plsql,tsql] Fix CPD being case sensitive in PLSQL and TSQL (https://redirect.github.com/pmd/pmd/issues/4943";>#4943)
   https://github.com/pmd/pmd/commit/3222807dec4269da021bd22082655703238378c4";>3222807
 [core] Fix memory usage regression in CPD (https://redirect.github.com/pmd/pmd/issues/5090";>#5090)
   https://github.com/pmd/pmd/commit/a9d43d0ad01702ade51c9f88b7ca86321c6fdafb";>a9d43d0
 [doc] Update release notes (https://redirect.github.com/pmd/pmd/issues/5090";>#5090, https://redirect.github.com/pmd/pmd/issues/5066";>#5066)
   https://github.com/pmd/pmd/commit/10bfa395e547e18e1fae47a88d731a34fdf5a5a3";>10bfa39
 Explicitely use no-arg constructor
   https://github.com/pmd/pmd/commit/12b9ecefb191eeadca3a886608a1b1d2fa462556";>12b9ece
 [doc] Update release notes (https://redirect.github.com/pmd/pmd/issues/4396";>#4396)
   https://github.com/pmd/pmd/commit/70296aeef640f698a82ce81232ceb867c946499a";>70296ae
 [plsql] Fix unit tests after KEYWORD_UNRESERVED is removed
   https://github.com/pmd/pmd/commit/9b20ec524af849b06fb8b30bfdd90f7e2198b743";>9b20ec5
 [core] Remove AntlrLexerBehavior
   Additional commits viewable in https://github.com/pmd/pmd/compare/pmd_releases/6.55.0...pmd_releases/7.3.0";>compare
 view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=net.sourceforge.pmd:pmd-java&package-manager=maven&previous-version=6.55.0&new-version=7.3.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a

Re: [PR] Bump net.sourceforge.pmd:pmd-java from 6.55.0 to 7.2.0 [cxf-build-utils]

2024-07-02 Thread via GitHub


dependabot[bot] commented on PR #89:
URL: https://github.com/apache/cxf-build-utils/pull/89#issuecomment-2197739501

   Superseded by #103.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] Bump net.sourceforge.pmd:pmd-java from 6.55.0 to 7.2.0 [cxf-build-utils]

2024-07-02 Thread via GitHub


dependabot[bot] closed pull request #89: Bump net.sourceforge.pmd:pmd-java from 
6.55.0 to 7.2.0
URL: https://github.com/apache/cxf-build-utils/pull/89


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] Bump org.jvnet.jaxb:jaxb-plugins from 4.0.6 to 4.0.7 [cxf]

2024-07-02 Thread via GitHub


reta merged PR #1947:
URL: https://github.com/apache/cxf/pull/1947


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



[PR] Bump org.jruby:jruby from 9.4.7.0 to 9.4.8.0 [cxf]

2024-07-02 Thread via GitHub


dependabot[bot] opened a new pull request, #1948:
URL: https://github.com/apache/cxf/pull/1948

   Bumps org.jruby:jruby from 9.4.7.0 to 9.4.8.0.
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.jruby:jruby&package-manager=maven&previous-version=9.4.7.0&new-version=9.4.8.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
   - `@dependabot show  ignore conditions` will show all of 
the ignore conditions of the specified dependency
   - `@dependabot ignore this major version` will close this PR and stop 
Dependabot creating any more for this major version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this minor version` will close this PR and stop 
Dependabot creating any more for this minor version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this dependency` will close this PR and stop 
Dependabot creating any more for this dependency (unless you reopen the PR or 
upgrade to it yourself)
   
   
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



[PR] Bump org.owasp:dependency-check-maven from 10.0.0 to 10.0.1 [cxf]

2024-07-02 Thread via GitHub


dependabot[bot] opened a new pull request, #1949:
URL: https://github.com/apache/cxf/pull/1949

   Bumps 
[org.owasp:dependency-check-maven](https://github.com/jeremylong/DependencyCheck)
 from 10.0.0 to 10.0.1.
   
   Release notes
   Sourced from https://github.com/jeremylong/DependencyCheck/releases";>org.owasp:dependency-check-maven's
 releases.
   
   Version 10.0.1
   Refer to the https://github.com/jeremylong/DependencyCheck/blob/main/CHANGELOG.md#change-log";>CHANGELOG.md
 for information about improvements and upgrade notes.
   
   
   
   Changelog
   Sourced from https://github.com/jeremylong/DependencyCheck/blob/main/CHANGELOG.md";>org.owasp:dependency-check-maven's
 changelog.
   
   https://github.com/jeremylong/DependencyCheck/releases/tag/v10.0.1";>Version
 10.0.1 (2024-07-02)
   
   build(deps): bump open-vulnerability-client (https://redirect.github.com/jeremylong/DependencyCheck/issues/6772";>#6772)
   fix: remove debug logging (https://redirect.github.com/jeremylong/DependencyCheck/issues/6770";>#6770)
   fix: postgresql column count error (https://redirect.github.com/jeremylong/DependencyCheck/issues/6773";>#6773)
   fix: mssql column name and version (https://redirect.github.com/jeremylong/DependencyCheck/issues/6761";>#6761)
   docs: update supported versions (https://redirect.github.com/jeremylong/DependencyCheck/issues/6771";>#6771)
   
   See the full listing of https://github.com/jeremylong/DependencyCheck/milestone/85?closed=1";>changes.
   
   
   
   Commits
   
   https://github.com/jeremylong/DependencyCheck/commit/4d47fb91f53df538670f433b6017653efcca5fbc";>4d47fb9
 build: prepare release v10.0.1
   https://github.com/jeremylong/DependencyCheck/commit/934a3070ab348caae38ceeb41a45c315517e2f40";>934a307
 docs: release 10.0.1
   https://github.com/jeremylong/DependencyCheck/commit/763fe31cbf33ed521e0dfde84f8a1bc46dea3317";>763fe31
 fix: postgresql error (https://redirect.github.com/jeremylong/DependencyCheck/issues/6773";>#6773)
   https://github.com/jeremylong/DependencyCheck/commit/cab586e3058c2fa24bb3e9da4cc81e09846dc5a1";>cab586e
 build(deps): bump open-vulnerability-client (https://redirect.github.com/jeremylong/DependencyCheck/issues/6772";>#6772)
   https://github.com/jeremylong/DependencyCheck/commit/a8128a411fd48083828085f3f24a23fc242c008b";>a8128a4
 docs: update supported versions (https://redirect.github.com/jeremylong/DependencyCheck/issues/6771";>#6771)
   https://github.com/jeremylong/DependencyCheck/commit/8c731cd63f6323a2be072c31530df0284e387f4d";>8c731cd
 fix: remove debug logging (https://redirect.github.com/jeremylong/DependencyCheck/issues/6770";>#6770)
   https://github.com/jeremylong/DependencyCheck/commit/214bdd94b4131260729d0d8243b93533a8ab4180";>214bdd9
 fix: Fix column name and version (https://redirect.github.com/jeremylong/DependencyCheck/issues/6761";>#6761)
   https://github.com/jeremylong/DependencyCheck/commit/c0da58e132107858b466c34f4dcfb3a9041bd944";>c0da58e
 Update initialize_mssql.sql
   https://github.com/jeremylong/DependencyCheck/commit/1d6bd7a437159e436d8848a0d8cd19cc5a3a18de";>1d6bd7a
 build: Release 10.0.0 (https://redirect.github.com/jeremylong/DependencyCheck/issues/6759";>#6759)
   https://github.com/jeremylong/DependencyCheck/commit/e31d456ec564e5e7bfdf0a23f0ae3b7663d5b48f";>e31d456
 Update CHANGELOG.md
   Additional commits viewable in https://github.com/jeremylong/DependencyCheck/compare/v10.0.0...v10.0.1";>compare
 view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.owasp:dependency-check-maven&package-manager=maven&previous-version=10.0.0&new-version=10.0.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
   - `@dependabot show  ignore conditions` will show all of 
the ignore conditions of the specified dependency
   - `@dependabot ignore this major version` will close this PR and

Re: CXF JAX-RS: working with multipart form-data

2024-07-02 Thread Andriy Redko
Hi Jean Pierre,
 
I suspect the @Multipart annotation is coming from CXF 
(org.apache.cxf.jaxrs.ext.multipart.Multipart), right? If yes,
this is not a part of JAX-RS specification but CXF specific extension. You may 
need to add Swagger API annotation to
the parameters in question:

   @Parameter(schema = @Schema(type = "string", format = "binary"))

Hope it helps.
Thank you.

Best Regards,
Andriy Redko

Monday, July 1, 2024, 12:09:17 PM, you wrote:

> Hi all,
> I am having problems to correctly annotate service methods which consumes 
> multipart/form-data that contains attachments next to other model objects.
> I’ve an openapi specification that contains following requestBody definition:
> /messages:
> post:
>   tags:
> - "messages"
>   summary: "Send a message, using a channel (email, paper mail, ebox) and 
> delivery method (registered or normal) of your choice. More than 6 upfiles 
> only supported for PAPER delivery."
>   operationId: createMessage
>   parameters:
> - $ref: '#/components/parameters/CorrelationId'
> - $ref: '#/components/parameters/Idempotency-Key'
>   requestBody:
> content:
>   multipart/form-data:
> schema:
>   type: object
>   required:
> - messageToSend
>   properties:
> messageToSend:
>   $ref: '#/components/schemas/MessageToSend'
> upfile1:
>   type: string
>   format: binary
>   nullable: true
> upfile2:
>   type: string
>   format: binary
>   nullable: true
> upfile3:
>   type: string
>   format: binary
>   nullable: true
> upfile4:
>   type: string
>   format: binary
>   nullable: true
> upfile5:
>   type: string
>   format: binary
>   nullable: true
> upfile6:
>   type: string
>   format: binary
>   nullable: true
> upfile7:
>   type: string
>   format: binary
>   nullable: true
> upfile8:
>   type: string
>   format: binary
>   nullable: true
> upfile9:
>   type: string
>   format: binary
>   nullable: true
> upfile10:
>   type: string
>   format: binary
>   nullable: true
> upfile11:
>   type: string
>   format: binary
>   nullable: true
> upfile12:
>   type: string
>   format: binary
>   nullable: true
> upfile13:
>   type: string
>   format: binary
>   nullable: true
> upfile14:
>   type: string
>   format: binary
>   nullable: true
> upfile15:
>   type: string
>   format: binary
>   nullable: true
> upfile16:
>   type: string
>   format: binary
>   nullable: true
> upfile17:
>   type: string
>   format: binary
>   nullable: true
> upfile18:
>   type: string
>   format: binary
>   nullable: true
> upfile19:
>   type: string
>   format: binary
>   nullable: true
> upfile20:
>   type: string
>   format: binary
>   nullable: true
> qrfile:
>   type: string
>   format: binary
>   nullable: true
> required: true
> When using the openapi-generator-maven-plugin v7.6.0 it generates following 
> method signature:
> @POST
> @Path("/messages")
> @Consumes("multipart/form-data")
> @Produces({ "application/json" })
> @Operation(
> summary = "Send a message, using a channel (email, 
> paper mail, ebox) and delivery method (registered or normal) of your choice. 
> More than 6 upfiles only supported for PAPER delivery.",
> tags = {"messages" },
> operationId="createMessage",
> 
> security=@SecurityRequirement(name="BearerAuthentication"),
> responses= {
> @ApiResponse(
> 

Re: [PR] Bump org.jruby:jruby from 9.4.7.0 to 9.4.8.0 [cxf]

2024-07-02 Thread via GitHub


reta merged PR #1948:
URL: https://github.com/apache/cxf/pull/1948


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org