elemento
elemento copied to clipboard
Bump com.github.eirslett:frontend-maven-plugin from 1.15.4 to 2.0.0
Bumps com.github.eirslett:frontend-maven-plugin from 1.15.4 to 2.0.0.
Changelog
Sourced from com.github.eirslett:frontend-maven-plugin's changelog.
2.0.0
This is a major version release, but there are no new features. Lots of dependencies and minimum version requirements have been upgraded, potentially breaking backwards compatibility.
- Updates
org.apache.commons:commons-compressto version1.28.0because of security issus found in version1.21Version1.21(GHSA-4g9r-vxhx-9pgx, GHSA-4265-ccf5-phj5).
Commits
2569405[maven-release-plugin] prepare release frontend-plugins-2.0.072d555aUpgrade frontend library versions and node/npm/pnpm versionsb085a45Merge branch with dependency updates'1a7009fApparently this should fix extraction on Windows with Java 251b899e7Update maven-invoker-plugina15add3Further dependency updatesde0bea4Update java versions in GitHub action1c72fbdchore: uses the configurationreleasefor themaven-compiler-plugin0ce69c7chore: switched to Java 17e962688chore: updates Maven dependencies- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebasewill rebase this PR -
@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it -
@dependabot mergewill merge this PR after your CI passes on it -
@dependabot squash and mergewill squash and merge this PR after your CI passes on it -
@dependabot cancel mergewill cancel a previously requested merge and block automerging -
@dependabot reopenwill reopen this PR if it is closed -
@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency -
@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)