Skip to content

chore(deps): bump the minor-patch group across 1 directory with 9 updates - #843

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/maven/minor-patch-0103331d38
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/maven/minor-patch-0103331d38

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 1, 2026

Copy link
Copy Markdown
Contributor

Bumps the minor-patch group with 9 updates in the / directory:

Package From To
org.apache.commons:commons-lang3 3.20.0 3.21.0
com.tngtech.archunit:archunit-junit5 1.4.2 1.5.1
org.mockito:mockito-core 5.23.0 5.24.0
org.slf4j:slf4j-nop 2.0.18 2.0.20
org.pitest:pitest-maven 1.25.7 1.30.0
org.apache.maven.plugins:maven-compiler-plugin 3.15.0 3.16.0
com.github.spotbugs:spotbugs-maven-plugin 4.10.2.0 4.10.4.1
org.apache.maven.plugins:maven-surefire-plugin 3.5.6 3.6.0
org.apache.maven:apache-maven 3.9.9 3.10.0

Updates org.apache.commons:commons-lang3 from 3.20.0 to 3.21.0

Updates com.tngtech.archunit:archunit-junit5 from 1.4.2 to 1.5.1

Release notes

Sourced from com.tngtech.archunit:archunit-junit5's releases.

ArchUnit 1.5.1

Bug fixes

Core

Internal Improvements

ArchUnit 1.5.0

Enhancements

Core

  • Support Java 27 / class file major version 71 (#1618)
  • Improve descriptions of JavaAccess.Predicates.originOwner and JavaAccess.Predicates.targetOwner (#1603; thanks to @​StefanGraeber 👋)
  • Expose information on sealed classes via JavaClass: isSealed() and getPermittedSubclasses() (#1677)
  • Consider dependencies from caught exceptions (#1555; thanks to @​bannmann 👋)
  • ImportOption.DoNotIncludeTests and OnlyIncludeTests consider tests in custom Gradle source sets (#1660; thanks to @​Develop-KIM 👋)

Lang

  • ArchConditions offers new ArchCondition<JavaClass> haveAnyDependenciesThat(DescribedPredicate<Dependency>) (#1580; thanks to @​wakingrufus 👋)

Library

  • ArchitectureMetrics.lakosMetrics is computed much more performantly (#1629; thanks to @​ThanosTsiamis 👋)
  • TextFileBasedViolationStore is now thread-safe under parallel test execution (#1656; thanks to @​kelunik 👋)
  • ModuleDependency now provides stable descriptions (#1648; thanks to @​DragonFSKY 👋)

JUnit

Documentation

Internal Improvements

Commits
  • 6c2d659 prepare release 1.5.1
  • d5ff417 set snapshot version to 1.5.1 in preparation of release
  • aee04c5 Update Gradle Wrapper from 9.7.1 to 9.8.0 (#1727)
  • 73535af Update Gradle Wrapper from 9.7.1 to 9.8.0
  • 058f709 Count caught exception types as type dependencies (#1732) (#1725)
  • fbcc47c Count caught exception types as type dependencies (#1732)
  • e78e136 Bump io.github.ben-manes.versions from 0.63.0 to 0.64.0
  • a0a8aff Bump io.github.ben-manes.versions from 0.62.0 to 0.63.0
  • d30f80d Bump io.github.ben-manes.versions from 0.61.0 to 0.62.0
  • 22c0f6a Bump actions/setup-java from 6.0.0 to 6.0.1
  • Additional commits viewable in compare view

Updates org.mockito:mockito-core from 5.23.0 to 5.24.0

Release notes

Sourced from org.mockito:mockito-core's releases.

v5.24.0

Changelog generated by Shipkit Changelog Gradle Plugin

5.24.0

Commits
  • 5a2f0f8 Fix Mockito docs for -javaagent flag with Gradle (#3866)
  • 9c5f36f Bump graalvm/setup-graalvm from 1.6.3 to 1.6.6 (#3862)
  • e7fd06d Preserve method parameters when clearing inline mocks (#3847)
  • 5a676bc Bump gradle/actions from 6.2.0 to 6.3.0 (#3852)
  • 508f8e7 Bump gradle/actions from 5 to 6.2.0 (#3851)
  • ee8a330 Print object fields via reflection when toString() is not implemented (#3844)
  • 39b1aba Bump graalvm/setup-graalvm from 1.6.0 to 1.6.3 (#3845)
  • d8638e1 Migrate extensions-tests to JUnit Jupiter (#3840)
  • 0aab922 Bump graalvm/setup-graalvm from 1.5.6 to 1.6.0 (#3839)
  • f3cf74c docs(when-verify): fixes to explanations about redundancy (#3838)
  • Additional commits viewable in compare view

Updates org.slf4j:slf4j-nop from 2.0.18 to 2.0.20

Updates org.pitest:pitest-maven from 1.25.7 to 1.30.0

Release notes

Sourced from org.pitest:pitest-maven's releases.

1.30.0

  • #1492 Bump jackson version
  • #1493 Sheck directories populated when checking for empty projects
  • #1494 Accept comma separated feature parameters (thanks @​lino)
  • #1496 Check non jvm lang dirs

Note, version bump from 1.25.x series made due to mislabelling of release as 1.29.10.

1.25.9

  • #1486 normalise record attribute order on first load
  • #1488 rework record interceptor to filter based on a marker line number
  • #1490 filter mutants in enum switch default block

1.25.8

Commits
  • 6f65499 finally automate release branch numbering
  • 90a208d Merge pull request #1496 from hcoles/feature/check_non_jvm_lang_dirs
  • db6c804 tweak
  • 0a44517 check existence of groovy dirs
  • 95163c1 Merge pull request #1494 from lino/config-parser-fix
  • 2c3a24e Accept comma separated feature parameters
  • ba0cfdc Merge pull request #1493 from hcoles/feature/improve_empty_project_check
  • e0fc2f8 Merge pull request #1492 from hcoles/chore/bump_jackson_version
  • 24f5805 check directories populated when checking for empty projects
  • 5d9d8a1 bump jackson version
  • Additional commits viewable in compare view

Updates org.apache.maven.plugins:maven-compiler-plugin from 3.15.0 to 3.16.0

Release notes

Sourced from org.apache.maven.plugins:maven-compiler-plugin's releases.

3.16.0

🚀 New features and improvements

🐛 Bug Fixes

📝 Documentation updates

👻 Maintenance

📦 Dependency updates

Commits
  • e7bba6e [maven-release-plugin] prepare release maven-compiler-plugin-3.16.0
  • c906809 Avoid using deprecated method CompilerConfiguration.setCompilerVersion
  • ad74fee Replace adopt-openj9 by semeru JDK distribution on GH
  • beb0eda Recompile when dependencies change (#1102)
  • a0b689e [MCOMPILER-578] Track outputs across compiler executions (#1091)
  • 2e81228 Fix incremental detection of empty sources, 3.x (#1075)
  • 2132f5b configure ATR project
  • 5992b77 Build fails when annotation processor list is empty (but present) (#1077)
  • acccef7 Bump plexusCompilerVersion from 2.16.2 to 2.17.0
  • 72bc445 Bump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0
  • Additional commits viewable in compare view

Updates com.github.spotbugs:spotbugs-maven-plugin from 4.10.2.0 to 4.10.4.1

Release notes

Sourced from com.github.spotbugs:spotbugs-maven-plugin's releases.

spotbugs-maven-plugin-4.10.4.1

BREAKING

In 2014, maven reporting added various settings that should have resulted in removal here but had gone unseen. These are now applied and therefore the state changed to immutable which will cause plugin to fail if users do not adjust configuration as noted here.

Users who previously configured outputEncoding directly on the SpotBugs Maven Plugin must configure project.reporting.outputEncoding instead and remove it to avoid errors. Users passing fork option should remove it to avoid warnings as support was gone in last release and it does nothing. Users who previously configured outputDirectory directly on the SpotBugs Maven Plugin must configure project.reporting.outputDirectory instead and remove it to avoid errors.

What's Changed

Full Changelog: spotbugs/spotbugs-maven-plugin@spotbugs-maven-plugin-4.10.4.0...spotbugs-maven-plugin-4.10.4.1

spotbugs-maven-plugin-4.10.4.0

What's Changed

New Contributors

Full Changelog: spotbugs/spotbugs-maven-plugin@spotbugs-maven-plugin-4.10.3.0...spotbugs-maven-plugin-4.10.4.0

Spotbugs Maven Plugin 4.10.3.0

Summary

This release delivers improvements to reliability, maintainability, and reproducibility. The SpotBugs execution path has been modernized by replacing the Ant-based launcher with ProcessBuilder, temporary auxiliary classpath handling has been improved, and toolchain detection has been made more robust. Build tooling has also been cleaned up with Maven modernization efforts, improved reproducible artifact generation, and updated documentation. Additional fixes include improved artifact handling, test coverage improvements, and dependency updates.

What's Changed

... (truncated)

Commits
  • 59f4efc [maven-release-plugin] prepare release spotbugs-maven-plugin-4.10.4.1
  • 1081359 Merge pull request #1519 from spotbugs/renovate/byte-buddy.version
  • 23caeff Merge pull request #1520 from spotbugs/renovate/slf4j-monorepo
  • 8a5d7f0 Update dependency org.slf4j:slf4j-bom to v2.0.19
  • 8be188f Update byte-buddy.version to v1.18.13
  • 742e10c Merge pull request #1518 from hazendaz/master
  • d7f6a56 Cleanup groovy in the trait
  • eda58b6 Cleanup groovy within report generator
  • a518d7b Cleanup xdocs reporter groovy each usage
  • 4c94029 Merge pull request #1517 from hazendaz/master
  • Additional commits viewable in compare view

Updates org.apache.maven.plugins:maven-surefire-plugin from 3.5.6 to 3.6.0

Release notes

Sourced from org.apache.maven.plugins:maven-surefire-plugin's releases.

3.6.0

Please refer to the main page for what's new https://maven.apache.org/surefire/ And the migration page https://maven.apache.org/surefire/maven-surefire-plugin/whats-new-3-6-0.html

🚀 New features and improvements

🐛 Bug Fixes

📝 Documentation updates

👻 Maintenance

... (truncated)

Commits
  • 0ff622b [maven-release-plugin] prepare release surefire-3.6.0
  • bb3932a Let's go for 3.6.0 release
  • 3002a16 Bump mavenVersion from 3.9.14 to 3.9.16
  • 61a531d Bump Maven parent version from 47 to 49 (#3449)
  • e52ead4 [SUREFIRE-523] Link all reported tests to source XRef (#3445)
  • 45102fa [SUREFIRE-3446] Fix direct selection of JUnit Jupiter @​Nested classes (#3447)
  • b2e1f70 Fix #3303: distinguish JUnit 6 ParameterizedClass invocations (#3432)
  • c051938 Discover tests in a fork when a toolchain JDK is used (#3444)
  • db75df8 Bump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0 (#3441)
  • 77f2759 Bump org.codehaus.plexus:plexus-interpolation from 1.29 to 1.30.0
  • Additional commits viewable in compare view

Updates org.apache.maven:apache-maven from 3.9.9 to 3.10.0

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

…ates

Bumps the minor-patch group with 9 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| org.apache.commons:commons-lang3 | `3.20.0` | `3.21.0` |
| [com.tngtech.archunit:archunit-junit5](https://github.com/TNG/ArchUnit) | `1.4.2` | `1.5.1` |
| [org.mockito:mockito-core](https://github.com/mockito/mockito) | `5.23.0` | `5.24.0` |
| org.slf4j:slf4j-nop | `2.0.18` | `2.0.20` |
| [org.pitest:pitest-maven](https://github.com/hcoles/pitest) | `1.25.7` | `1.30.0` |
| [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin) | `3.15.0` | `3.16.0` |
| [com.github.spotbugs:spotbugs-maven-plugin](https://github.com/spotbugs/spotbugs-maven-plugin) | `4.10.2.0` | `4.10.4.1` |
| [org.apache.maven.plugins:maven-surefire-plugin](https://github.com/apache/maven-surefire) | `3.5.6` | `3.6.0` |
| org.apache.maven:apache-maven | `3.9.9` | `3.10.0` |



Updates `org.apache.commons:commons-lang3` from 3.20.0 to 3.21.0

Updates `com.tngtech.archunit:archunit-junit5` from 1.4.2 to 1.5.1
- [Release notes](https://github.com/TNG/ArchUnit/releases)
- [Commits](TNG/ArchUnit@v1.4.2...v1.5.1)

Updates `org.mockito:mockito-core` from 5.23.0 to 5.24.0
- [Release notes](https://github.com/mockito/mockito/releases)
- [Commits](mockito/mockito@v5.23.0...v5.24.0)

Updates `org.slf4j:slf4j-nop` from 2.0.18 to 2.0.20

Updates `org.pitest:pitest-maven` from 1.25.7 to 1.30.0
- [Release notes](https://github.com/hcoles/pitest/releases)
- [Commits](hcoles/pitest@1.25.7...1.30.0)

Updates `org.apache.maven.plugins:maven-compiler-plugin` from 3.15.0 to 3.16.0
- [Release notes](https://github.com/apache/maven-compiler-plugin/releases)
- [Commits](apache/maven-compiler-plugin@maven-compiler-plugin-3.15.0...maven-compiler-plugin-3.16.0)

Updates `com.github.spotbugs:spotbugs-maven-plugin` from 4.10.2.0 to 4.10.4.1
- [Release notes](https://github.com/spotbugs/spotbugs-maven-plugin/releases)
- [Commits](spotbugs/spotbugs-maven-plugin@spotbugs-maven-plugin-4.10.2.0...spotbugs-maven-plugin-4.10.4.1)

Updates `org.apache.maven.plugins:maven-surefire-plugin` from 3.5.6 to 3.6.0
- [Release notes](https://github.com/apache/maven-surefire/releases)
- [Commits](apache/maven-surefire@surefire-3.5.6...surefire-3.6.0)

Updates `org.apache.maven:apache-maven` from 3.9.9 to 3.10.0

---
updated-dependencies:
- dependency-name: org.apache.commons:commons-lang3
  dependency-version: 3.21.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: minor-patch
- dependency-name: com.tngtech.archunit:archunit-junit5
  dependency-version: 1.5.1
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-patch
- dependency-name: org.mockito:mockito-core
  dependency-version: 5.24.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-patch
- dependency-name: org.slf4j:slf4j-nop
  dependency-version: 2.0.20
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: minor-patch
- dependency-name: org.pitest:pitest-maven
  dependency-version: 1.30.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: minor-patch
- dependency-name: org.apache.maven.plugins:maven-compiler-plugin
  dependency-version: 3.16.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-patch
- dependency-name: com.github.spotbugs:spotbugs-maven-plugin
  dependency-version: 4.10.4.1
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: minor-patch
- dependency-name: org.apache.maven.plugins:maven-surefire-plugin
  dependency-version: 3.6.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-patch
- dependency-name: org.apache.maven:apache-maven
  dependency-version: 3.10.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: minor-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels Oct 1, 2026
@github-actions

github-actions Bot commented Oct 1, 2026

Copy link
Copy Markdown

Please check on sonarcloud https://sonarcloud.io/project/pull_requests_list?id=io.github.mivek%3AmetarParser that the PR does not add any issue.

@sonarqubecloud

sonarqubecloud Bot commented Oct 1, 2026

Copy link
Copy Markdown

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update Java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants