From 66768125ba8efadba5bfd962c317113937fe59cd Mon Sep 17 00:00:00 2001
From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com>
Date: Wed, 28 Aug 2024 11:06:26 +0800
Subject: [PATCH] ORC-1765: Upgrade `maven-dependency-plugin` to 3.8.0
Bumps [org.apache.maven.plugins:maven-dependency-plugin](https://github.com/apache/maven-dependency-plugin) from 3.7.1 to 3.8.0.
Commits
75814c7
[maven-release-plugin] prepare release maven-dependency-plugin-3.8.0
50397c4
[MDEP-903] Upgrade to Doxia 2.0.0 Milestone Stack
1115ecb
Bump org.codehaus.plexus:plexus-archiver from 4.9.2 to 4.10.0
5288cec
Bump org.apache.maven.plugins:maven-plugins from 42 to 43
ea4d8e2
Bump jettyVersion from 9.4.54.v20240208 to 9.4.55.v20240627
2d0b82a
Bump org.codehaus.plexus:plexus-io from 3.4.2 to 3.5.0
86b7772
(doc) Remove repeated word
94e1caf
Bump org.jsoup:jsoup from 1.17.2 to 1.18.1
06b4273
Bump org.assertj:assertj-core from 3.26.0 to 3.26.3
71cee33
Remove outdated invoker conditions
- Additional commits viewable in compare view
[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.apache.maven.plugins:maven-dependency-plugin&package-manager=maven&previous-version=3.7.1&new-version=3.8.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `dependabot rebase`.
[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)
---
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- `dependabot rebase` will rebase this PR
- `dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `dependabot merge` will merge this PR after your CI passes on it
- `dependabot squash and merge` will squash and merge this PR after your CI passes on it
- `dependabot cancel merge` will cancel a previously requested merge and block automerging
- `dependabot reopen` will reopen this PR if it is closed
- `dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
- `dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency
- `dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
- `dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
- `dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Closes #2013 from dependabot[bot]/dependabot/maven/java/org.apache.maven.plugins-maven-dependency-plugin-3.8.0.
Authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Signed-off-by: Shaoyun Chen
---
java/pom.xml | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/java/pom.xml b/java/pom.xml
index 0a512fee53..12cb333d75 100644
--- a/java/pom.xml
+++ b/java/pom.xml
@@ -69,7 +69,7 @@
${project.basedir}/../target/javadoc
5.11.0
3.7.1
- 3.7.1
+ 3.8.0
3.6.0
17
false