Skip to content

[pull] master from apache:master#231

Open
pull[bot] wants to merge 839 commits intoxiaoxiaopingzi:masterfrom
apache:master
Open

[pull] master from apache:master#231
pull[bot] wants to merge 839 commits intoxiaoxiaopingzi:masterfrom
apache:master

Conversation

@pull
Copy link

@pull pull bot commented Mar 8, 2023

See Commits and Changes for more details.


Created by pull[bot]

Can you help keep this open source service alive? 💖 Please sponsor : )

@pull pull bot added the ⤵️ pull label Mar 8, 2023
@bipinprasad bipinprasad force-pushed the master branch 3 times, most recently from 08413fc to 20fae02 Compare July 24, 2023 15:01
rzo1 and others added 25 commits August 9, 2025 21:38
…ons-commons-compress-1.28.0' into license-updates
…ons-commons-text-1.14.0' into license-updates

# Conflicts:
#	pom.xml
…ersey-jersey-bom-3.1.11' into license-updates

# Conflicts:
#	pom.xml
 Update Java dependencies to latest versions
Bumps [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin) from 3.11.0 to 3.14.0.
- [Release notes](https://github.com/apache/maven-compiler-plugin/releases)
- [Commits](apache/maven-compiler-plugin@maven-compiler-plugin-3.11.0...maven-compiler-plugin-3.14.0)

---
updated-dependencies:
- dependency-name: org.apache.maven.plugins:maven-compiler-plugin
  dependency-version: 3.14.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.254.0 to 1.255.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](ruby/setup-ruby@2a7b300...829114f)

---
updated-dependencies:
- dependency-name: ruby/setup-ruby
  dependency-version: 1.255.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Bumps [actions/checkout](https://github.com/actions/checkout) from 4.2.2 to 5.0.0.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](actions/checkout@11bd719...08c6903)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-version: 5.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Bumps `jetty.version` from 11.0.25 to 11.0.26.

Updates `org.eclipse.jetty:jetty-bom` from 11.0.25 to 11.0.26
- [Release notes](https://github.com/jetty/jetty.project/releases)
- [Commits](jetty/jetty.project@jetty-11.0.25...jetty-11.0.26)

Updates `org.eclipse.jetty:jetty-servlet` from 11.0.25 to 11.0.26

Updates `org.eclipse.jetty:jetty-servlets` from 11.0.25 to 11.0.26

---
updated-dependencies:
- dependency-name: org.eclipse.jetty:jetty-bom
  dependency-version: 11.0.26
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.eclipse.jetty:jetty-servlet
  dependency-version: 11.0.26
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.eclipse.jetty:jetty-servlets
  dependency-version: 11.0.26
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Bumps [io.netty:netty-bom](https://github.com/netty/netty) from 4.2.3.Final to 4.2.4.Final.
- [Commits](netty/netty@netty-4.2.3.Final...netty-4.2.4.Final)

---
updated-dependencies:
- dependency-name: io.netty:netty-bom
  dependency-version: 4.2.4.Final
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Bumps `spring.version` from 6.2.9 to 6.2.10.

Updates `org.springframework:spring-beans` from 6.2.9 to 6.2.10
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v6.2.9...v6.2.10)

Updates `org.springframework:spring-core` from 6.2.9 to 6.2.10
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v6.2.9...v6.2.10)

Updates `org.springframework:spring-context` from 6.2.9 to 6.2.10
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v6.2.9...v6.2.10)

Updates `org.springframework:spring-jms` from 6.2.9 to 6.2.10
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v6.2.9...v6.2.10)

---
updated-dependencies:
- dependency-name: org.springframework:spring-beans
  dependency-version: 6.2.10
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.springframework:spring-core
  dependency-version: 6.2.10
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.springframework:spring-context
  dependency-version: 6.2.10
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.springframework:spring-jms
  dependency-version: 6.2.10
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
…1.3 (#8223)

Bumps [org.apache.maven.plugins:maven-javadoc-plugin](https://github.com/apache/maven-javadoc-plugin) from 3.11.2 to 3.11.3.
- [Release notes](https://github.com/apache/maven-javadoc-plugin/releases)
- [Commits](apache/maven-javadoc-plugin@maven-javadoc-plugin-3.11.2...maven-javadoc-plugin-3.11.3)

---
updated-dependencies:
- dependency-name: org.apache.maven.plugins:maven-javadoc-plugin
  dependency-version: 3.11.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps `byte-buddy.version` from 1.17.6 to 1.17.7.

Updates `net.bytebuddy:byte-buddy` from 1.17.6 to 1.17.7
- [Release notes](https://github.com/raphw/byte-buddy/releases)
- [Changelog](https://github.com/raphw/byte-buddy/blob/master/release-notes.md)
- [Commits](raphw/byte-buddy@byte-buddy-1.17.6...byte-buddy-1.17.7)

Updates `net.bytebuddy:byte-buddy-agent` from 1.17.6 to 1.17.7
- [Release notes](https://github.com/raphw/byte-buddy/releases)
- [Changelog](https://github.com/raphw/byte-buddy/blob/master/release-notes.md)
- [Commits](raphw/byte-buddy@byte-buddy-1.17.6...byte-buddy-1.17.7)

---
updated-dependencies:
- dependency-name: net.bytebuddy:byte-buddy
  dependency-version: 1.17.7
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: net.bytebuddy:byte-buddy-agent
  dependency-version: 1.17.7
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Update Jetty (11.0.26), Netty (4.2.4.Final), Spring (6.2.10)
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.255.0 to 1.256.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](ruby/setup-ruby@829114f...efbf473)

---
updated-dependencies:
- dependency-name: ruby/setup-ruby
  dependency-version: 1.256.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [actions/setup-java](https://github.com/actions/setup-java) from 4.7.1 to 5.0.0.
- [Release notes](https://github.com/actions/setup-java/releases)
- [Commits](actions/setup-java@c5195ef...dded088)

---
updated-dependencies:
- dependency-name: actions/setup-java
  dependency-version: 5.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
* Bump com.zaxxer:HikariCP from 7.0.1 to 7.0.2

Bumps [com.zaxxer:HikariCP](https://github.com/brettwooldridge/HikariCP) from 7.0.1 to 7.0.2.
- [Changelog](https://github.com/brettwooldridge/HikariCP/blob/dev/CHANGES)
- [Commits](brettwooldridge/HikariCP@HikariCP-7.0.1...HikariCP-7.0.2)

---
updated-dependencies:
- dependency-name: com.zaxxer:HikariCP
  dependency-version: 7.0.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

* Update DEPENDENCY-LICENSES

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: reiabreu <rui.abreu@gmail.com>
dependabot bot and others added 30 commits March 4, 2026 15:42
Bumps [actions/setup-node](https://github.com/actions/setup-node) from 6.2.0 to 6.3.0.
- [Release notes](https://github.com/actions/setup-node/releases)
- [Commits](actions/setup-node@6044e13...53b8394)

---
updated-dependencies:
- dependency-name: actions/setup-node
  dependency-version: 6.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.288.0 to 1.289.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](ruby/setup-ruby@09a7688...19a43a6)

---
updated-dependencies:
- dependency-name: ruby/setup-ruby
  dependency-version: 1.289.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…8.0 (#8412)

* Bump com.google.errorprone:error_prone_annotations from 2.46.0 to 2.48.0

Bumps [com.google.errorprone:error_prone_annotations](https://github.com/google/error-prone) from 2.46.0 to 2.48.0.
- [Release notes](https://github.com/google/error-prone/releases)
- [Commits](google/error-prone@v2.46.0...v2.48.0)

---
updated-dependencies:
- dependency-name: com.google.errorprone:error_prone_annotations
  dependency-version: 2.48.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

* Fixing licenses

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rui Abreu <rui.abreu@gmail.com>
* Bump maven-resolver.version from 1.9.25 to 1.9.27

Bumps `maven-resolver.version` from 1.9.25 to 1.9.27.

Updates `org.apache.maven.resolver:maven-resolver-api` from 1.9.25 to 1.9.27
- [Release notes](https://github.com/apache/maven-resolver/releases)
- [Commits](apache/maven-resolver@maven-resolver-1.9.25...maven-resolver-1.9.27)

Updates `org.apache.maven.resolver:maven-resolver-spi` from 1.9.25 to 1.9.27
- [Release notes](https://github.com/apache/maven-resolver/releases)
- [Commits](apache/maven-resolver@maven-resolver-1.9.25...maven-resolver-1.9.27)

Updates `org.apache.maven.resolver:maven-resolver-util` from 1.9.25 to 1.9.27
- [Release notes](https://github.com/apache/maven-resolver/releases)
- [Commits](apache/maven-resolver@maven-resolver-1.9.25...maven-resolver-1.9.27)

Updates `org.apache.maven.resolver:maven-resolver-impl` from 1.9.25 to 1.9.27
- [Release notes](https://github.com/apache/maven-resolver/releases)
- [Commits](apache/maven-resolver@maven-resolver-1.9.25...maven-resolver-1.9.27)

Updates `org.apache.maven.resolver:maven-resolver-connector-basic` from 1.9.25 to 1.9.27
- [Release notes](https://github.com/apache/maven-resolver/releases)
- [Commits](apache/maven-resolver@maven-resolver-1.9.25...maven-resolver-1.9.27)

Updates `org.apache.maven.resolver:maven-resolver-transport-file` from 1.9.25 to 1.9.27
- [Release notes](https://github.com/apache/maven-resolver/releases)
- [Commits](apache/maven-resolver@maven-resolver-1.9.25...maven-resolver-1.9.27)

Updates `org.apache.maven.resolver:maven-resolver-transport-http` from 1.9.25 to 1.9.27

---
updated-dependencies:
- dependency-name: org.apache.maven.resolver:maven-resolver-api
  dependency-version: 1.9.27
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.maven.resolver:maven-resolver-spi
  dependency-version: 1.9.27
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.maven.resolver:maven-resolver-util
  dependency-version: 1.9.27
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.maven.resolver:maven-resolver-impl
  dependency-version: 1.9.27
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.maven.resolver:maven-resolver-connector-basic
  dependency-version: 1.9.27
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.maven.resolver:maven-resolver-transport-file
  dependency-version: 1.9.27
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.maven.resolver:maven-resolver-transport-http
  dependency-version: 1.9.27
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

* Fixing licenses

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rui Abreu <rui.abreu@gmail.com>
* Bump org.jctools:jctools-core from 4.0.5 to 4.0.6

Bumps [org.jctools:jctools-core](https://github.com/JCTools/JCTools) from 4.0.5 to 4.0.6.
- [Release notes](https://github.com/JCTools/JCTools/releases)
- [Changelog](https://github.com/JCTools/JCTools/blob/master/RELEASE-NOTES.md)
- [Commits](JCTools/JCTools@v4.0.5...v4.0.6)

---
updated-dependencies:
- dependency-name: org.jctools:jctools-core
  dependency-version: 4.0.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rui Abreu <rui.abreu@gmail.com>
* Bump spring.version from 7.0.3 to 7.0.5

Bumps `spring.version` from 7.0.3 to 7.0.5.

Updates `org.springframework:spring-beans` from 7.0.3 to 7.0.5
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v7.0.3...v7.0.5)

Updates `org.springframework:spring-core` from 7.0.3 to 7.0.5
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v7.0.3...v7.0.5)

Updates `org.springframework:spring-context` from 7.0.3 to 7.0.5
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v7.0.3...v7.0.5)

Updates `org.springframework:spring-jms` from 7.0.3 to 7.0.5
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v7.0.3...v7.0.5)

---
updated-dependencies:
- dependency-name: org.springframework:spring-beans
  dependency-version: 7.0.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.springframework:spring-core
  dependency-version: 7.0.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.springframework:spring-context
  dependency-version: 7.0.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.springframework:spring-jms
  dependency-version: 7.0.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rui Abreu <rui.abreu@gmail.com>
* Bump activemq.version from 6.2.0 to 6.2.1

Bumps `activemq.version` from 6.2.0 to 6.2.1.

Updates `org.apache.activemq:activemq-client` from 6.2.0 to 6.2.1
- [Commits](apache/activemq@activemq-6.2.0...activemq-6.2.1)

Updates `org.apache.activemq:activemq-broker` from 6.2.0 to 6.2.1
- [Commits](apache/activemq@activemq-6.2.0...activemq-6.2.1)

Updates `org.apache.activemq:activemq-mqtt` from 6.2.0 to 6.2.1
- [Commits](apache/activemq@activemq-6.2.0...activemq-6.2.1)

Updates `org.apache.activemq:activemq-kahadb-store` from 6.2.0 to 6.2.1
- [Commits](apache/activemq@activemq-6.2.0...activemq-6.2.1)

Updates `org.apache.activemq:activemq-all` from 6.2.0 to 6.2.1
- [Commits](apache/activemq@activemq-6.2.0...activemq-6.2.1)

---
updated-dependencies:
- dependency-name: org.apache.activemq:activemq-client
  dependency-version: 6.2.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.activemq:activemq-broker
  dependency-version: 6.2.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.activemq:activemq-mqtt
  dependency-version: 6.2.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.activemq:activemq-kahadb-store
  dependency-version: 6.2.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.activemq:activemq-all
  dependency-version: 6.2.1
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rui Abreu <rui.abreu@gmail.com>
* Bump jakarta.xml.bind:jakarta.xml.bind-api from 4.0.4 to 4.0.5

Bumps [jakarta.xml.bind:jakarta.xml.bind-api](https://github.com/jakartaee/jaxb-api) from 4.0.4 to 4.0.5.
- [Release notes](https://github.com/jakartaee/jaxb-api/releases)
- [Commits](jakartaee/jaxb-api@4.0.4...4.0.5)

---
updated-dependencies:
- dependency-name: jakarta.xml.bind:jakarta.xml.bind-api
  dependency-version: 4.0.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

* Fixing licenses

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rui Abreu <rui.abreu@gmail.com>
* Bump hadoop.version from 3.4.2 to 3.4.3

Bumps `hadoop.version` from 3.4.2 to 3.4.3.

Updates `org.apache.hadoop:hadoop-auth` from 3.4.2 to 3.4.3

Updates `org.apache.hadoop:hadoop-hdfs` from 3.4.2 to 3.4.3

Updates `org.apache.hadoop:hadoop-common` from 3.4.2 to 3.4.3

Updates `org.apache.hadoop:hadoop-annotations` from 3.4.2 to 3.4.3

Updates `org.apache.hadoop:hadoop-mapreduce-client-core` from 3.4.2 to 3.4.3

Updates `org.apache.hadoop:hadoop-yarn-common` from 3.4.2 to 3.4.3

Updates `org.apache.hadoop:hadoop-yarn-server-resourcemanager` from 3.4.2 to 3.4.3

Updates `org.apache.hadoop:hadoop-yarn-server-applicationhistoryservice` from 3.4.2 to 3.4.3

Updates `org.apache.hadoop:hadoop-yarn-server-web-proxy` from 3.4.2 to 3.4.3

Updates `org.apache.hadoop:hadoop-yarn-registry` from 3.4.2 to 3.4.3

Updates `org.apache.hadoop:hadoop-archives` from 3.4.2 to 3.4.3

Updates `org.apache.hadoop:hadoop-client-api` from 3.4.2 to 3.4.3

Updates `org.apache.hadoop:hadoop-client-runtime` from 3.4.2 to 3.4.3

Updates `org.apache.hadoop:hadoop-client-minicluster` from 3.4.2 to 3.4.3

---
updated-dependencies:
- dependency-name: org.apache.hadoop:hadoop-auth
  dependency-version: 3.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.hadoop:hadoop-hdfs
  dependency-version: 3.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.hadoop:hadoop-common
  dependency-version: 3.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.hadoop:hadoop-annotations
  dependency-version: 3.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.hadoop:hadoop-mapreduce-client-core
  dependency-version: 3.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.hadoop:hadoop-yarn-common
  dependency-version: 3.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.hadoop:hadoop-yarn-server-resourcemanager
  dependency-version: 3.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.hadoop:hadoop-yarn-server-applicationhistoryservice
  dependency-version: 3.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.hadoop:hadoop-yarn-server-web-proxy
  dependency-version: 3.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.hadoop:hadoop-yarn-registry
  dependency-version: 3.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.hadoop:hadoop-archives
  dependency-version: 3.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.hadoop:hadoop-client-api
  dependency-version: 3.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.hadoop:hadoop-client-runtime
  dependency-version: 3.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.apache.hadoop:hadoop-client-minicluster
  dependency-version: 3.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

* Fixing licenses

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rui Abreu <rui.abreu@gmail.com>
* Bump prometheus.client.version from 1.4.3 to 1.5.0

Bumps `prometheus.client.version` from 1.4.3 to 1.5.0.

Updates `io.prometheus:prometheus-metrics-core` from 1.4.3 to 1.5.0

Updates `io.prometheus:prometheus-metrics-exporter-pushgateway` from 1.4.3 to 1.5.0

---
updated-dependencies:
- dependency-name: io.prometheus:prometheus-metrics-core
  dependency-version: 1.5.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
- dependency-name: io.prometheus:prometheus-metrics-exporter-pushgateway
  dependency-version: 1.5.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rui Abreu <rui.abreu@gmail.com>
* Bump netty-tcnative.version from 2.0.74.Final to 2.0.75.Final

Bumps `netty-tcnative.version` from 2.0.74.Final to 2.0.75.Final.

Updates `io.netty:netty-tcnative` from 2.0.74.Final to 2.0.75.Final
- [Release notes](https://github.com/netty/netty-tcnative/releases)
- [Commits](netty/netty-tcnative@netty-tcnative-parent-2.0.74.Final...netty-tcnative-parent-2.0.75.Final)

Updates `io.netty:netty-tcnative-boringssl-static` from 2.0.74.Final to 2.0.75.Final
- [Release notes](https://github.com/netty/netty-tcnative/releases)
- [Commits](netty/netty-tcnative@netty-tcnative-parent-2.0.74.Final...netty-tcnative-parent-2.0.75.Final)

---
updated-dependencies:
- dependency-name: io.netty:netty-tcnative
  dependency-version: 2.0.75.Final
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: io.netty:netty-tcnative-boringssl-static
  dependency-version: 2.0.75.Final
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

* Fixing licenses

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rui Abreu <rui.abreu@gmail.com>
* Bump redis.clients:jedis from 7.2.1 to 7.3.0

Bumps [redis.clients:jedis](https://github.com/redis/jedis) from 7.2.1 to 7.3.0.
- [Release notes](https://github.com/redis/jedis/releases)
- [Commits](redis/jedis@v7.2.1...v7.3.0)

---
updated-dependencies:
- dependency-name: redis.clients:jedis
  dependency-version: 7.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rui Abreu <rui.abreu@gmail.com>
* Bump com.fasterxml.jackson:jackson-bom from 2.21.0 to 2.21.1

Bumps [com.fasterxml.jackson:jackson-bom](https://github.com/FasterXML/jackson-bom) from 2.21.0 to 2.21.1.
- [Commits](FasterXML/jackson-bom@jackson-bom-2.21.0...jackson-bom-2.21.1)

---
updated-dependencies:
- dependency-name: com.fasterxml.jackson:jackson-bom
  dependency-version: 2.21.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

* Fixing licenses

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rui Abreu <rui.abreu@gmail.com>
* Bump io.netty:netty-bom from 4.2.9.Final to 4.2.10.Final

Bumps [io.netty:netty-bom](https://github.com/netty/netty) from 4.2.9.Final to 4.2.10.Final.
- [Commits](netty/netty@netty-4.2.9.Final...netty-4.2.10.Final)

---
updated-dependencies:
- dependency-name: io.netty:netty-bom
  dependency-version: 4.2.10.Final
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

* Fixing licenses

* Fixing licenses

* Fixing licenses

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rui Abreu <rui.abreu@gmail.com>
#8403)

* Bump com.fasterxml.jackson.core:jackson-databind from 2.20.1 to 2.21.1

Bumps [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson) from 2.20.1 to 2.21.1.
- [Commits](https://github.com/FasterXML/jackson/commits)

---
updated-dependencies:
- dependency-name: com.fasterxml.jackson.core:jackson-databind
  dependency-version: 2.21.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

* Fixing licenses

* Fixing licenses

* Bump com.fasterxml.jackson.core:jackson-databind from 2.20.1 to 2.21.1

Bumps [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson) from 2.20.1 to 2.21.1.
- [Commits](https://github.com/FasterXML/jackson/commits)

---
updated-dependencies:
- dependency-name: com.fasterxml.jackson.core:jackson-databind
  dependency-version: 2.21.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rui Abreu <rui.abreu@gmail.com>
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.289.0 to 1.290.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](ruby/setup-ruby@19a43a6...6ca151f)

---
updated-dependencies:
- dependency-name: ruby/setup-ruby
  dependency-version: 1.290.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.290.0 to 1.292.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](ruby/setup-ruby@6ca151f...4eb9f11)

---
updated-dependencies:
- dependency-name: ruby/setup-ruby
  dependency-version: 1.292.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
* Bump org.apache.zookeeper:zookeeper from 3.9.4 to 3.9.5

Bumps org.apache.zookeeper:zookeeper from 3.9.4 to 3.9.5.

---
updated-dependencies:
- dependency-name: org.apache.zookeeper:zookeeper
  dependency-version: 3.9.5
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>

* Fixing licenses

* Fixing licenses

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rui Abreu <rui.abreu@gmail.com>
* Migrate project from commons-lang to commons-lang3

* Migrate project from commons-lang to commons-lang3
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.292.0 to 1.293.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](ruby/setup-ruby@4eb9f11...dffb23f)

---
updated-dependencies:
- dependency-name: ruby/setup-ruby
  dependency-version: 1.293.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [ruby/setup-ruby](https://github.com/ruby/setup-ruby) from 1.293.0 to 1.295.0.
- [Release notes](https://github.com/ruby/setup-ruby/releases)
- [Changelog](https://github.com/ruby/setup-ruby/blob/master/release.rb)
- [Commits](ruby/setup-ruby@dffb23f...319994f)

---
updated-dependencies:
- dependency-name: ruby/setup-ruby
  dependency-version: 1.295.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
* #7815 - Use package manager for 3rd party JS in Storm-UI

  Replace vendored JS/CSS libraries with npm + webpack build pipeline

  Removes 19 vendored JavaScript and CSS files from WEB-INF that were
  checked directly into VCS and replaces them with proper npm dependency
  management and webpack bundling.

  Changes:
  - Add package.json with all UI dependencies (jQuery, Bootstrap, DataTables,
    Mustache, Moment.js, vis.js, Cytoscape, etc.) managed via npm
  - Add webpack.config.js producing 3 minified bundles: main, visualize, flux
  - Integrate frontend-maven-plugin to run npm install + webpack during
    Maven generate-resources phase
  - Update all 10 HTML pages to reference webpack bundles instead of
    individual script/link tags
  - Add Cypress E2E test suite (35 tests across 7 specs) with mocked
    Storm REST API to verify all UI pages render correctly
  - Add WebappBundleTest.java to verify webpack bundles exist on classpath
  - Update RAT exclusions for npm/webpack artifacts
  - Upgrade DataTables to 2.x and Cytoscape to 3.x for proper module support

* #7815 - Use package manager for 3rd party JS in Storm-UI

    - Replace third-party jsonFormatter plugin with ASF-licensed
      reimplementation (uses JSON.parse instead of eval)
    - Update LICENSE-binary paths and versions for npm packages

* #7815 - Upgrade Storm UI npm dependencies to latest versions

  Upgrade all frontend dependencies to their latest compatible versions:
  - jQuery 3.5.1 -> 4.0.0 (with compatibility shims for removed APIs)
  - js-yaml 3.14.1 -> 4.1.1
  - moment 2.29.4 -> 2.30.1
  - cytoscape 3.30.4 -> 3.33.1
  - cypress 13.x -> 15.x, express 4.x -> 5.x, webpack-cli 5.x -> 7.x,
    css-minimizer-webpack-plugin 7.x -> 8.x

  jQuery 4 removed several legacy APIs ($.parseJSON, $.trim, $.isArray,
  $.isFunction, $.isNumeric, $.type) that are still used by inline HTML
  scripts and the jquery-blockui plugin. Added compatibility shims in
  main-entry.js so all existing UI code continues to work.

  Bootstrap stays at 3.3.1 — upgrading to 5.x would require rewriting
  all HTML templates.

* Apply some fixes in Cypress and Viz, so topology is rendering correctly
Bumps [actions/cache](https://github.com/actions/cache) from 5.0.3 to 5.0.4.
- [Release notes](https://github.com/actions/cache/releases)
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md)
- [Commits](actions/cache@cdf6c1f...6682284)

---
updated-dependencies:
- dependency-name: actions/cache
  dependency-version: 5.0.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
* STORM-4079: Add SSL setup documentation

* STORM-3879: Add Kafka monitor README to distribution

* STORM-4079: Remove incorrect SSL setup section and keep valid configuration

* Remove incorrect SSL section and update TLS docs

* Improve docs: add overview for TLS configuration
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

7 participants