Request for Apache CXF 3.5.9 release timelines

2024-06-03 Thread somasani nikhil
HI Team, We have recently figured out a critical security vulnerability for spring-framework that is embedded within CXF package - the same has been addressed via ticket https://issues.apache.org/jira/browse/CXF-9016 which is expected to be available in next release versions 3.5.9

Re: [PR] Bump github/codeql-action from 3.25.6 to 3.25.7 [cxf]

2024-06-03 Thread via GitHub
reta merged PR #1907: URL: https://github.com/apache/cxf/pull/1907 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org For q

Re: [PR] Bump org.apache.maven.plugins:maven-plugin-plugin from 3.13.0 to 3.13.1 [cxf]

2024-06-03 Thread via GitHub
reta merged PR #1909: URL: https://github.com/apache/cxf/pull/1909 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org For q

Re: [PR] Bump org.apache.maven.plugins:maven-javadoc-plugin from 3.6.3 to 3.7.0 [cxf]

2024-06-03 Thread via GitHub
reta merged PR #1910: URL: https://github.com/apache/cxf/pull/1910 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org For q

Re: Request for Apache CXF 3.5.9 release timelines

2024-06-03 Thread Andriy Redko
Hi Nikhil, Although dependencies in question were updated, there is no reason to wait for release: you could always provide dependency overrides for the ones affected using the build tool of your choice. Thank you. Best Regards, Andriy Redko Monday, June 3, 2024, 5:52:50 AM, you wrote:

[PR] Bump github/codeql-action from 2.13.4 to 3.25.7 [cxf-fediz]

2024-06-03 Thread via GitHub
dependabot[bot] opened a new pull request, #282: URL: https://github.com/apache/cxf-fediz/pull/282 Bumps [github/codeql-action](https://github.com/github/codeql-action) from 2.13.4 to 3.25.7. Release notes Sourced from https://github.com/github/codeql-action/releases";>github/codeq

Re: [PR] Bump github/codeql-action from 2.13.4 to 3.25.6 [cxf-fediz]

2024-06-03 Thread via GitHub
dependabot[bot] closed pull request #281: Bump github/codeql-action from 2.13.4 to 3.25.6 URL: https://github.com/apache/cxf-fediz/pull/281 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specif

Re: [PR] Bump github/codeql-action from 2.13.4 to 3.25.6 [cxf-fediz]

2024-06-03 Thread via GitHub
dependabot[bot] commented on PR #281: URL: https://github.com/apache/cxf-fediz/pull/281#issuecomment-2145037127 Superseded by #282. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific co

Re: Deprecate aegis databinding ?

2024-06-03 Thread Matt Pavlovich
Solving the map-of-maps or map of collections, often requires creation of custom data model classes that fit into the json/xml/xsd paradigms. In xml, a map can be represented as a sequence of complex types that have a key and some other structure for a value (primitive or otherwise).

Re: [PR] CXF-9009: Async operations fails (netty-conduit) [cxf]

2024-06-03 Thread via GitHub
reta merged PR #1868: URL: https://github.com/apache/cxf/pull/1868 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.org For q

[PR] Bump org.apache.maven.plugins:maven-javadoc-plugin from 3.6.3 to 3.7.0 [cxf-xjc-utils]

2024-06-03 Thread via GitHub
dependabot[bot] opened a new pull request, #148: URL: https://github.com/apache/cxf-xjc-utils/pull/148 Bumps [org.apache.maven.plugins:maven-javadoc-plugin](https://github.com/apache/maven-javadoc-plugin) from 3.6.3 to 3.7.0. Commits https://github.com/apache/maven-javadoc-plu

[PR] Bump cxf.jetty.version from 12.0.9 to 12.0.10 [cxf]

2024-06-03 Thread via GitHub
dependabot[bot] opened a new pull request, #1912: URL: https://github.com/apache/cxf/pull/1912 Bumps `cxf.jetty.version` from 12.0.9 to 12.0.10. Updates `org.eclipse.jetty:jetty-server` from 12.0.9 to 12.0.10 Updates `org.eclipse.jetty.ee10:jetty-ee10-webapp` from 12.0.9 to 12.0.10

Re: [PR] Bump org.apache.maven.plugins:maven-javadoc-plugin from 3.6.3 to 3.7.0 [cxf-xjc-utils]

2024-06-03 Thread via GitHub
reta merged PR #148: URL: https://github.com/apache/cxf-xjc-utils/pull/148 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: dev-unsubscr...@cxf.apache.or

[PR] Bump org.hsqldb:hsqldb from 2.7.2 to 2.7.3 [cxf]

2024-06-03 Thread via GitHub
dependabot[bot] opened a new pull request, #1913: URL: https://github.com/apache/cxf/pull/1913 Bumps org.hsqldb:hsqldb from 2.7.2 to 2.7.3. [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.hsqldb:hsqldb&packa