build(deps): bump the safe-patch-updates group with 5 updates#73
Merged
khalilmalla95 merged 2 commits intoJun 2, 2026
Merged
Conversation
Bumps the safe-patch-updates group with 5 updates: | Package | From | To | | --- | --- | --- | | [org.apache.maven.plugins:maven-surefire-plugin](https://github.com/apache/maven-surefire) | `3.5.4` | `3.5.6` | | [org.apache.maven.plugins:maven-shade-plugin](https://github.com/apache/maven-shade-plugin) | `3.6.1` | `3.6.2` | | [jakarta.xml.bind:jakarta.xml.bind-api](https://github.com/jakartaee/jaxb-api) | `4.0.2` | `4.0.5` | | org.glassfish.jaxb:jaxb-runtime | `4.0.5` | `4.0.9` | | [info.picocli:picocli](https://github.com/remkop/picocli) | `4.7.4` | `4.7.7` | Updates `org.apache.maven.plugins:maven-surefire-plugin` from 3.5.4 to 3.5.6 - [Release notes](https://github.com/apache/maven-surefire/releases) - [Commits](apache/maven-surefire@surefire-3.5.4...surefire-3.5.6) Updates `org.apache.maven.plugins:maven-shade-plugin` from 3.6.1 to 3.6.2 - [Release notes](https://github.com/apache/maven-shade-plugin/releases) - [Commits](apache/maven-shade-plugin@maven-shade-plugin-3.6.1...maven-shade-plugin-3.6.2) Updates `jakarta.xml.bind:jakarta.xml.bind-api` from 4.0.2 to 4.0.5 - [Release notes](https://github.com/jakartaee/jaxb-api/releases) - [Commits](jakartaee/jaxb-api@4.0.2...4.0.5) Updates `org.glassfish.jaxb:jaxb-runtime` from 4.0.5 to 4.0.9 Updates `info.picocli:picocli` from 4.7.4 to 4.7.7 - [Release notes](https://github.com/remkop/picocli/releases) - [Changelog](https://github.com/remkop/picocli/blob/main/RELEASE-NOTES.md) - [Commits](remkop/picocli@v4.7.4...v4.7.7) --- updated-dependencies: - dependency-name: org.apache.maven.plugins:maven-surefire-plugin dependency-version: 3.5.6 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: safe-patch-updates - dependency-name: org.apache.maven.plugins:maven-shade-plugin dependency-version: 3.6.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: safe-patch-updates - dependency-name: jakarta.xml.bind:jakarta.xml.bind-api dependency-version: 4.0.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: safe-patch-updates - dependency-name: org.glassfish.jaxb:jaxb-runtime dependency-version: 4.0.9 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: safe-patch-updates - dependency-name: info.picocli:picocli dependency-version: 4.7.7 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: safe-patch-updates ... Signed-off-by: dependabot[bot] <support@github.com>
khalilmalla95
approved these changes
Jun 2, 2026
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the safe-patch-updates group with 5 updates:
3.5.43.5.63.6.13.6.24.0.24.0.54.0.54.0.94.7.44.7.7Updates
org.apache.maven.plugins:maven-surefire-pluginfrom 3.5.4 to 3.5.6Release notes
Sourced from org.apache.maven.plugins:maven-surefire-plugin's releases.
... (truncated)
Commits
25ea054[maven-release-plugin] prepare release surefire-3.5.6e5f374cBump org.fusesource.jansi:jansi from 2.4.2 to 2.4.3dadd55bIssue #2613 Debugging failsafe tests: Message 'Listening for transport dt_soc...39dd250Bump commons-io:commons-io from 2.21.0 to 2.22.02774273Ensure that the statistics filename is calculated only once. (#3326) (#3327)0d5df8a3.5.x/bug/cherry pick embedded mode its (#3328)04ad9a2Use surefire 3.5.5 by project itself for testing37e8f69Addflakesattribute to use intestsuitereport (#3306) (#3308)a970fefIntroduce reportTestTimestamp option and include timestamp for test sets and ...e838393deploy 3.5.x branch to nexusUpdates
org.apache.maven.plugins:maven-shade-pluginfrom 3.6.1 to 3.6.2Release notes
Sourced from org.apache.maven.plugins:maven-shade-plugin's releases.
Commits
ad8de59[maven-release-plugin] prepare release maven-shade-plugin-3.6.28eb19dcDrop unneeded dependencies (#788)397b2cdDrop excessive dependencies (#786)eca6398Bug: Extra JARs and Artifacts were not subjected to filtering (#785)7edce17Update to parent POM v 47 (#781)3171a34Mockito improvements (#783)678844bBump org.apache.maven.plugin-testing:maven-plugin-testing-harness (#782)73ec909Bump org.codehaus.mojo:mrm-maven-plugin from 1.7.0 to 1.7.1 (#780)5f7a877Bump org.apache.maven.plugin-testing:maven-plugin-testing-harness (#778)73c5247chore: remove junit3 reference (#762)Updates
jakarta.xml.bind:jakarta.xml.bind-apifrom 4.0.2 to 4.0.5Release notes
Sourced from jakarta.xml.bind:jakarta.xml.bind-api's releases.
Commits
33af600Update API version of : to 4.0.5e8bc066Bump the maven-plugins group across 2 directories with 15 updates5884465Bump the dependencies group across 1 directory with 2 updatesa12f7b7Bump the actions-dependencies group with 2 updates1375104move dependabot config to the right location7680773add dependabotcd71d76#330 fixes documentation4d531bd#325 restore permissive base64 decoding31505d0Merge pull request #324 from jakartaee/4.0.4-RELEASEc3f3109Update API version of : to 4.0.5-SNAPSHOTUpdates
org.glassfish.jaxb:jaxb-runtimefrom 4.0.5 to 4.0.9Updates
info.picocli:picoclifrom 4.7.4 to 4.7.7Release notes
Sourced from info.picocli:picocli's releases.
... (truncated)
Changelog
Sourced from info.picocli:picocli's changelog.
... (truncated)
Commits
5fcd441BUILD: use JReleaser for publishing to Maven Central7f14debRelease picocli version 4.7.7feae94eBump net.ltgt.gradle:gradle-errorprone-plugin from 4.1.0 to 4.2.0cacb0e7Bump org.jetbrains.kotlin:kotlin-script-runtime from 2.0.0 to 2.1.2044de141Bump org.jetbrains.kotlin:kotlin-gradle-plugin from 2.0.0 to 2.1.208440061Bump jakarta.validation:jakarta.validation-api from 3.1.0 to 3.1.1f5b9590Bump org.jline:jline from 3.26.1 to 3.29.09d94fa6DOC update RELEASE-NOTES for dependency updates5bfb673Revert "Bump org.hamcrest:hamcrest-core from 2.2 to 3.0"1afa344Bump org.hibernate.validator:hibernate-validatorDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions