chore(deps): bump the low-risk group with 10 updates#334
Merged
RichardSlater merged 1 commit intomainfrom Dec 16, 2025
Merged
Conversation
Bumps the low-risk group with 10 updates: | Package | From | To | | --- | --- | --- | | [ch.qos.logback:logback-core](https://github.com/qos-ch/logback) | `1.5.21` | `1.5.22` | | [ch.qos.logback:logback-classic](https://github.com/qos-ch/logback) | `1.5.21` | `1.5.22` | | [org.mockito:mockito-junit-jupiter](https://github.com/mockito/mockito) | `5.20.0` | `5.21.0` | | [io.projectreactor:reactor-bom](https://github.com/reactor/reactor) | `2025.0.0` | `2025.0.1` | | [io.projectreactor.netty:reactor-netty-core](https://github.com/reactor/reactor-netty) | `1.3.0` | `1.3.1` | | [io.netty:netty-codec-http](https://github.com/netty/netty) | `4.2.7.Final` | `4.2.8.Final` | | [io.netty:netty-codec](https://github.com/netty/netty) | `4.2.7.Final` | `4.2.8.Final` | | [io.netty:netty-common](https://github.com/netty/netty) | `4.2.7.Final` | `4.2.8.Final` | | [io.netty:netty-handler](https://github.com/netty/netty) | `4.2.7.Final` | `4.2.8.Final` | | [com.puppycrawl.tools:checkstyle](https://github.com/checkstyle/checkstyle) | `12.2.0` | `12.3.0` | Updates `ch.qos.logback:logback-core` from 1.5.21 to 1.5.22 - [Release notes](https://github.com/qos-ch/logback/releases) - [Commits](qos-ch/logback@v_1.5.21...v_1.5.22) Updates `ch.qos.logback:logback-classic` from 1.5.21 to 1.5.22 - [Release notes](https://github.com/qos-ch/logback/releases) - [Commits](qos-ch/logback@v_1.5.21...v_1.5.22) Updates `ch.qos.logback:logback-classic` from 1.5.21 to 1.5.22 - [Release notes](https://github.com/qos-ch/logback/releases) - [Commits](qos-ch/logback@v_1.5.21...v_1.5.22) Updates `org.mockito:mockito-junit-jupiter` from 5.20.0 to 5.21.0 - [Release notes](https://github.com/mockito/mockito/releases) - [Commits](mockito/mockito@v5.20.0...v5.21.0) Updates `io.projectreactor:reactor-bom` from 2025.0.0 to 2025.0.1 - [Release notes](https://github.com/reactor/reactor/releases) - [Commits](reactor/reactor@2025.0.0...2025.0.1) Updates `io.projectreactor.netty:reactor-netty-core` from 1.3.0 to 1.3.1 - [Release notes](https://github.com/reactor/reactor-netty/releases) - [Commits](reactor/reactor-netty@v1.3.0...v1.3.1) Updates `io.netty:netty-codec-http` from 4.2.7.Final to 4.2.8.Final - [Commits](netty/netty@netty-4.2.7.Final...netty-4.2.8.Final) Updates `io.netty:netty-codec` from 4.2.7.Final to 4.2.8.Final - [Commits](netty/netty@netty-4.2.7.Final...netty-4.2.8.Final) Updates `io.netty:netty-common` from 4.2.7.Final to 4.2.8.Final - [Commits](netty/netty@netty-4.2.7.Final...netty-4.2.8.Final) Updates `io.netty:netty-handler` from 4.2.7.Final to 4.2.8.Final - [Commits](netty/netty@netty-4.2.7.Final...netty-4.2.8.Final) Updates `io.netty:netty-codec` from 4.2.7.Final to 4.2.8.Final - [Commits](netty/netty@netty-4.2.7.Final...netty-4.2.8.Final) Updates `io.netty:netty-common` from 4.2.7.Final to 4.2.8.Final - [Commits](netty/netty@netty-4.2.7.Final...netty-4.2.8.Final) Updates `io.netty:netty-handler` from 4.2.7.Final to 4.2.8.Final - [Commits](netty/netty@netty-4.2.7.Final...netty-4.2.8.Final) Updates `com.puppycrawl.tools:checkstyle` from 12.2.0 to 12.3.0 - [Release notes](https://github.com/checkstyle/checkstyle/releases) - [Commits](checkstyle/checkstyle@checkstyle-12.2.0...checkstyle-12.3.0) --- updated-dependencies: - dependency-name: ch.qos.logback:logback-core dependency-version: 1.5.22 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: ch.qos.logback:logback-classic dependency-version: 1.5.22 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: ch.qos.logback:logback-classic dependency-version: 1.5.22 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: org.mockito:mockito-junit-jupiter dependency-version: 5.21.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: low-risk - dependency-name: io.projectreactor:reactor-bom dependency-version: 2025.0.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.projectreactor.netty:reactor-netty-core dependency-version: 1.3.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.netty:netty-codec-http dependency-version: 4.2.8.Final dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.netty:netty-codec dependency-version: 4.2.8.Final dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.netty:netty-common dependency-version: 4.2.8.Final dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.netty:netty-handler dependency-version: 4.2.8.Final dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.netty:netty-codec dependency-version: 4.2.8.Final dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.netty:netty-common dependency-version: 4.2.8.Final dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.netty:netty-handler dependency-version: 4.2.8.Final dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: com.puppycrawl.tools:checkstyle dependency-version: 12.3.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: low-risk ... Signed-off-by: dependabot[bot] <support@github.com>
Contributor
|
/azp run |
|
Azure Pipelines successfully started running 1 pipeline(s). |
Contributor
|
/azp run |
|
Azure Pipelines successfully started running 1 pipeline(s). |
RichardSlater
approved these changes
Dec 16, 2025
Contributor
RichardSlater
left a comment
There was a problem hiding this comment.
Standard change, low risk group.
Contributor
|
/azp run |
|
Azure Pipelines successfully started running 1 pipeline(s). |
|
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.



Bumps the low-risk group with 10 updates:
1.5.211.5.221.5.211.5.225.20.05.21.02025.0.02025.0.11.3.01.3.14.2.7.Final4.2.8.Final4.2.7.Final4.2.8.Final4.2.7.Final4.2.8.Final4.2.7.Final4.2.8.Final12.2.012.3.0Updates
ch.qos.logback:logback-corefrom 1.5.21 to 1.5.22Release notes
Sourced from ch.qos.logback:logback-core's releases.
Commits
572379aprepare release 1.5.2239d17eafix status printing of variable substitution when the variable name contains ...75509a9fix PR 404, LOGBACK-5438eb9356remove unused import6131a3ause a slightly more sophisticated guard for printing status messages9efca21add no-args constructor to support various serialization frameworks1bea580minor comment editsbd07fddupdate angus, greenmail versionsaef993cstart work on 1.5.22-SNAPSHOTUpdates
ch.qos.logback:logback-classicfrom 1.5.21 to 1.5.22Release notes
Sourced from ch.qos.logback:logback-classic's releases.
Commits
572379aprepare release 1.5.2239d17eafix status printing of variable substitution when the variable name contains ...75509a9fix PR 404, LOGBACK-5438eb9356remove unused import6131a3ause a slightly more sophisticated guard for printing status messages9efca21add no-args constructor to support various serialization frameworks1bea580minor comment editsbd07fddupdate angus, greenmail versionsaef993cstart work on 1.5.22-SNAPSHOTUpdates
ch.qos.logback:logback-classicfrom 1.5.21 to 1.5.22Release notes
Sourced from ch.qos.logback:logback-classic's releases.
Commits
572379aprepare release 1.5.2239d17eafix status printing of variable substitution when the variable name contains ...75509a9fix PR 404, LOGBACK-5438eb9356remove unused import6131a3ause a slightly more sophisticated guard for printing status messages9efca21add no-args constructor to support various serialization frameworks1bea580minor comment editsbd07fddupdate angus, greenmail versionsaef993cstart work on 1.5.22-SNAPSHOTUpdates
org.mockito:mockito-junit-jupiterfrom 5.20.0 to 5.21.0Release notes
Sourced from org.mockito:mockito-junit-jupiter's releases.
Commits
09d2230Bump graalvm/setup-graalvm from 1.4.3 to 1.4.4 (#3768)df3e0ccBump graalvm/setup-graalvm from 1.4.2 to 1.4.3 (#3767)04a6e9fBump actions/checkout from 5 to 6 (#3765)756a3cfAdd description of matchers to potential mismatch (#3760)58ba445Forbid mocking WeakReference with inline mock maker (#3759)966d600Bump actions/upload-artifact from 4 to 5 (#3756)632bf7bBump graalvm/setup-graalvm from 1.4.1 to 1.4.2 (#3755)8564b43Fix primitives support in GenericArrayReturnType for Android (#3753)bf3a809Bump graalvm/setup-graalvm from 1.4.0 to 1.4.1 (#3744)cffddd4Bump gradle/actions from 4 to 5 (#3743)Updates
io.projectreactor:reactor-bomfrom 2025.0.0 to 2025.0.1Release notes
Sourced from io.projectreactor:reactor-bom's releases.
Commits
051dae8[release] Prepare and release BOM 2025.0.1d48ecd5Merge-ignore release 2024.0.13 into 2025.0.10f23353[release] Back to snapshots, next BOM will be SR 14f3080c8[release] Prepare and release BOM 2024.0.13efc1811Merge #772 into 2025.0.19a84f6fBump actions/setup-java from 5.0.0 to 5.1.0 (#772)193a8e6Merge #771 into 2025.0.14291d6eBump actions/checkout from 6.0.0 to 6.0.1 (#771)405aac6Merge #770 into 2025.0.1f16710cBump actions/checkout from 5.0.1 to 6.0.0 (#770)Updates
io.projectreactor.netty:reactor-netty-corefrom 1.3.0 to 1.3.1Release notes
Sourced from io.projectreactor.netty:reactor-netty-core's releases.
Commits
2c05ba7[release] Prepare and release 1.3.1a2e8f88Merge-ignore release 1.2.13 into 1.3.1bf40a0c[release] Back to snapshots, next is 1.2.14-SNAPSHOTbc2fb49[release] Prepare and release 1.2.1393c11c5Fix authenticator invoked on redirect after authentication (#4028)a1e1e95Merge #4027 into 1.3.10f08f5bBump org.apache.tomcat.embed:tomcat-embed-core from 9.0.112 to 9.0.113 (#4027)4634f6dMerge #4026 into 1.3.1226526dBump ruby/setup-ruby from 1.268.0 to 1.269.0 (#4026)10f4593[test] Remove duplications (#4025)Updates
io.netty:netty-codec-httpfrom 4.2.7.Final to 4.2.8.FinalCommits
e2d9d11[maven-release-plugin] prepare release netty-4.2.8.Final2f2e437Merge commit from forkd011634Build fixes to allow using the epoll native transport on Android (#16016)14fc741Correct codec-native-quic Fragment-Host (#16015)caa07bbFix Socket reading of abstract unix domain addresses (#16010)640b6b7Fix - Http3FrameCodec decode fail during unknown settings (#15998)35f6ad1Prevent ManualEventLoop to block on a racy task submission (#15937)2b29b5eUse exact length when allocating the acceptedAddress byte[] (#15973) (#15984)b1182edUpdate lz4-java version to 1.10.1 (#15978)debdc56Pcap: Fix possible buffer leak when initializion fails (#15975)Updates
io.netty:netty-codecfrom 4.2.7.Final to 4.2.8.FinalCommits
e2d9d11[maven-release-plugin] prepare release netty-4.2.8.Final2f2e437Merge commit from forkd011634Build fixes to allow using the epoll native transport on Android (#16016)14fc741Correct codec-native-quic Fragment-Host (#16015)caa07bbFix Socket reading of abstract unix domain addresses (#16010)640b6b7Fix - Http3FrameCodec decode fail during unknown settings (#15998)35f6ad1Prevent ManualEventLoop to block on a racy task submission (#15937)2b29b5eUse exact length when allocating the acceptedAddress byte[] (#15973) (#15984)b1182edUpdate lz4-java version to 1.10.1 (#15978)debdc56Pcap: Fix possible buffer leak when initializion fails (#15975)Updates
io.netty:netty-commonfrom 4.2.7.Final to 4.2.8.FinalCommits
e2d9d11[maven-release-plugin] prepare release netty-4.2.8.Final2f2e437Merge commit from forkd011634Build fixes to allow using the epoll native transport on Android (#16016)14fc741Correct codec-native-quic Fragment-Host (#16015)caa07bbFix Socket reading of abstract unix domain addresses (#16010)640b6b7Fix - Http3FrameCodec decode fail during unknown settings (#15998)35f6ad1Prevent ManualEventLoop to block on a racy task submission (#15937)2b29b5eUse exact length when allocating the acceptedAddress byte[] (#15973) (#15984)b1182edUpdate lz4-java version to 1.10.1 (#15978)debdc56Pcap: Fix possible buffer leak when initializion fails (#15975)Updates
io.netty:netty-handlerfrom 4.2.7.Final to 4.2.8.FinalCommits
e2d9d11[maven-release-plugin] prepare release netty-4.2.8.Final2f2e437Merge commit from forkd011634Build fixes to allow using the epoll native transport on Android (#16016)14fc741Correct codec-native-quic Fragment-Host (#16015)caa07bbFix Socket reading of abstract unix domain addresses (#16010)640b6b7Fix - Http3FrameCodec decode fail during unknown settings (#15998)35f6ad1Prevent ManualEventLoop to block on a racy task submission (#15937)2b29b5eUse exact length when allocating the acceptedAddress byte[] (#15973) (#15984)b1182edUpdate lz4-java version to 1.10.1 (#15978)debdc56Pcap: Fix possible buffer leak when initializion fails (#15975)Updates
io.netty:netty-codecfrom 4.2.7.Final to 4.2.8.FinalCommits
e2d9d11[maven-release-plugin] prepare release netty-4.2.8.Final2f2e437Merge commit from forkd011634Build fixes to allow using the epoll native transport on Android (#16016)14fc741Correct codec-native-quic Fragment-Host (#16015)caa07bbFix Socket reading of abstract unix domain addresses (#16010)640b6b7Fix - Http3FrameCodec decode fail during unknown settings (#15998)35f6ad1Prevent ManualEventLoop to block on a racy task submission (#15937)2b29b5eUse exact length when allocating the acceptedAddress byte[] (#15973) (#15984)b1182edUpdate lz4-java version to 1.10.1 (#15978)debdc56Pcap: Fix possible buffer leak when initializion fails (#15975)Updates
io.netty:netty-commonfrom 4.2.7.Final to 4.2.8.FinalCommits
e2d9d11[maven-release-plugin] prepare release netty-4.2.8.Final2f2e437Merge commit from forkd011634Build fixes to allow using the epoll native transport on Android (#16016)14fc741Correct codec-native-quic Fragment-Host (#16015)caa07bbFix Socket reading of abstract unix domain addresses (#16010)640b6b7Fix - Http3FrameCodec decode fail during unknown settings (#15998)35f6ad1Prevent ManualEventLoop to block on a racy task submission (#15937)2b29b5eUse exact length when allocating the acceptedAddress byte[] (#15973) (#15984)b1182edUpdate lz4-java version to 1.10.1 (#15978)debdc56Pcap: Fix possible buffer leak when initializion fails (#15975)Updates
io.netty:netty-handlerfrom 4.2.7.Final to 4.2.8.FinalCommits
e2d9d11[maven-release-plugin] prepare release netty-4.2.8.Final2f2e437Merge commit from forkd011634Build fixes to allow using the epoll native transport on Android (#16016)14fc741Correct codec-native-quic Fragment-Host (#16015)caa07bbFix Socket reading of abstract unix domain addresses (#16010)640b6b7Fix - Http3FrameCodec decode fail during unknown settings (#15998)35f6ad1Prevent ManualEventLoop to block on a racy task submission (#15937)2b29b5eUse exact length when allocating the acceptedAddress byte[] (#15973) (#15984)b1182edUpdate lz4-java version to 1.10.1 (#15978)debdc56Pcap: Fix possible buffer leak when initializion fails (#15975)Updates
com.puppycrawl.tools:checkstylefrom 12.2.0 to 12.3.0Release notes
Sourced from com.puppycrawl.tools:checkstyle's releases.
Commits
7cd24ce[maven-release-plugin] prepare release checkstyle-12.3.066da258doc: release notes for 12.3.0f5bcfd8Issue #18283: allow unnamed variables (_) in naming patterns25322e2Issue #17882: Update LITERAL_INLINE_TAG AST format98c66e6Issue #18272: Clone apache/kafka once KAFKA-19809 is merged2cca325dependency: bump actions/upload-artifact from 5 to 6e2c6a48dependency: bump org.eclipse.jgit:org.eclipse.jgitf264b99dependency: bump actions/cache from 4 to 5fbbddc0Issue #17882: Update LEADING_ASTERISK of Javadoc CommentTokenTypes into AST f...4d23c0binfra: move no-error-trino to no-error-workflow.ymlYou can trigger a rebase of this PR by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions