chore(deps): update dependency org.owasp:dependency-check-maven to v12 #12

Merged
oliver merged 1 commit from renovate/major-plugin.dependency-check.version into main 2025-01-15 16:01:33 +01:00
Member

This PR contains the following updates:

Package Type Update Change
org.owasp:dependency-check-maven (source) build major 11.1.1 -> 12.0.0

Release Notes

jeremylong/DependencyCheck (org.owasp:dependency-check-maven)

v12.0.0

Compare Source

  • feat: report on CVSS v4 (#​7204)
  • feat: show from which dependency the CVE comes in failure report (#​7224)
  • feat: Use Maven settings decryption API for decrypting secrets from settings.xml (#​7284)
  • feat: Extend authentication to support Bearer token for many resources (#​7277)
  • feat: Add a flag to fail when one or more suppression rules are not used (#​7244)
  • fix: add product evidence as vendor to reduce FN (#​7295)
  • fix: Make the HTTP-Client use pre-emptive authentication (#​7255)
  • fix: Add the missing proxy credentials for suppressionFileUser/Password authentication scenario
  • fix: increase max retry count (#​7252)
  • fix: Make the HTTP-Client use pre-emptive authentication for configured server credentials and extend HTTPClient usage to Nexus search
  • fix: Tranform into UTC the last modified date from database (#​7222)

See the full listing of changes.


Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Renovate Bot.

This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [org.owasp:dependency-check-maven](https://github.com/jeremylong/DependencyCheck.git) ([source](https://github.com/jeremylong/DependencyCheck/tree/HEAD/maven)) | build | major | `11.1.1` -> `12.0.0` | --- ### Release Notes <details> <summary>jeremylong/DependencyCheck (org.owasp:dependency-check-maven)</summary> ### [`v12.0.0`](https://github.com/jeremylong/DependencyCheck/blob/HEAD/CHANGELOG.md#Version-1200-2025-01-11) [Compare Source](https://github.com/jeremylong/DependencyCheck/compare/v11.1.1...v12.0.0) - feat: report on CVSS v4 ([#&#8203;7204](https://github.com/jeremylong/DependencyCheck/issues/7204)) - feat: show from which dependency the CVE comes in failure report ([#&#8203;7224](https://github.com/jeremylong/DependencyCheck/issues/7224)) - feat: Use Maven settings decryption API for decrypting secrets from settings.xml ([#&#8203;7284](https://github.com/jeremylong/DependencyCheck/issues/7284)) - feat: Extend authentication to support Bearer token for many resources ([#&#8203;7277](https://github.com/jeremylong/DependencyCheck/issues/7277)) - feat: Add a flag to fail when one or more suppression rules are not used ([#&#8203;7244](https://github.com/jeremylong/DependencyCheck/issues/7244)) - fix: add product evidence as vendor to reduce FN ([#&#8203;7295](https://github.com/jeremylong/DependencyCheck/issues/7295)) - fix: Make the HTTP-Client use pre-emptive authentication ([#&#8203;7255](https://github.com/jeremylong/DependencyCheck/issues/7255)) - fix: Add the missing proxy credentials for suppressionFileUser/Password authentication scenario - fix: increase max retry count ([#&#8203;7252](https://github.com/jeremylong/DependencyCheck/issues/7252)) - fix: Make the HTTP-Client use pre-emptive authentication for configured server credentials and extend HTTPClient usage to Nexus search - fix: Tranform into UTC the last modified date from database ([#&#8203;7222](https://github.com/jeremylong/DependencyCheck/issues/7222)) See the full listing of [changes](https://github.com/jeremylong/DependencyCheck/milestone/91?closed=1). </details> --- ### Configuration 📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined). 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiIzOS4xMDMuMCIsInVwZGF0ZWRJblZlciI6IjM5LjEwMy4wIiwidGFyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJyZW5vdmF0ZSJdfQ==-->
renovatebot added 1 commit 2025-01-11 19:01:54 +01:00
chore(deps): update dependency org.owasp:dependency-check-maven to v12
All checks were successful
SonarQube Scan / SonarQube Trigger (pull_request) Successful in 1m56s
SonarQube Scan / SonarQube Trigger (push) Successful in 1m42s
release / Release (push) Successful in 2m34s
7989bf0ecc
Signed-off-by: RenovateBot <renovatebot@w9r.dev>
oliver was assigned by renovatebot 2025-01-11 19:01:54 +01:00
requested review from oliver 2025-01-11 19:01:54 +01:00
Owner

This PR contains the following updates:

Package Type Update Change org.owasp:dependency-check-maven ( https://github.com/jeremylong/DependencyCheck.git ) ( source ( https://github.com/jeremylong/DependencyCheck/tree/HEAD/maven ) ) build major 11.1.1 -> 12.0.0

Release Notes

This PR contains the following updates: Package Type Update Change org.owasp:dependency-check-maven ( https://github.com/jeremylong/DependencyCheck.git ) ( source ( https://github.com/jeremylong/DependencyCheck/tree/HEAD/maven ) ) build major 11.1.1 -> 12.0.0 Release Notes
oliver merged commit 7989bf0ecc into main 2025-01-15 16:01:33 +01:00
oliver deleted branch renovate/major-plugin.dependency-check.version 2025-01-15 16:01:33 +01:00
Owner

@oliver hat #12 in main zusammengeführt.


Auf Forgejo: Beyond coding. We Forge. ansehen ( #12 ) oder antworte direkt auf diese E-Mail.

*@oliver* hat #12 in main zusammengeführt. --- Auf Forgejo: Beyond coding. We Forge. ansehen ( https://w9r.dev/pom/spring-boot-starter/pulls/12 ) oder antworte direkt auf diese E-Mail.
Sign in to join this conversation.
No reviewers
No labels
released
No milestone
No project
No assignees
2 participants
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference: pom/spring-boot-starter#12
No description provided.