Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependencies & add Dependabot into ci #22

Merged
merged 88 commits into from
May 6, 2022
Merged

Update dependencies & add Dependabot into ci #22

merged 88 commits into from
May 6, 2022

Conversation

diegogomez-zf
Copy link
Contributor

Add dependabot.yml to look for build.gradle.kts files

diegogomez-zf and others added 27 commits April 21, 2022 15:59
Bumps [jakarta.ws.rs-api](https://github.com/eclipse-ee4j/jaxrs-api) from 3.0.0 to 3.1.0.
- [Release notes](https://github.com/eclipse-ee4j/jaxrs-api/releases)
- [Commits](https://github.com/eclipse-ee4j/jaxrs-api/commits)

---
updated-dependencies:
- dependency-name: jakarta.ws.rs:jakarta.ws.rs-api
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps com.github.johnrengelman.shadow from 7.0.0 to 7.1.2.

---
updated-dependencies:
- dependency-name: com.github.johnrengelman.shadow
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [spring-boot-starter-parent](https://github.com/spring-projects/spring-boot) from 2.5.6 to 2.6.7.
- [Release notes](https://github.com/spring-projects/spring-boot/releases)
- [Commits](spring-projects/spring-boot@v2.5.6...v2.6.7)

---
updated-dependencies:
- dependency-name: org.springframework.boot:spring-boot-starter-parent
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps `feign-version` from 11.7 to 11.8.

Updates `feign-core` from 11.7 to 11.8
- [Release notes](https://github.com/openfeign/feign/releases)
- [Changelog](https://github.com/OpenFeign/feign/blob/master/CHANGELOG.md)
- [Commits](OpenFeign/feign@11.7...11.8)

Updates `feign-jackson` from 11.7 to 11.8
- [Release notes](https://github.com/openfeign/feign/releases)
- [Changelog](https://github.com/OpenFeign/feign/blob/master/CHANGELOG.md)
- [Commits](OpenFeign/feign@11.7...11.8)

Updates `feign-slf4j` from 11.7 to 11.8
- [Release notes](https://github.com/openfeign/feign/releases)
- [Changelog](https://github.com/OpenFeign/feign/blob/master/CHANGELOG.md)
- [Commits](OpenFeign/feign@11.7...11.8)

---
updated-dependencies:
- dependency-name: io.github.openfeign:feign-core
  dependency-type: direct:production
  update-type: version-update:semver-minor
- dependency-name: io.github.openfeign:feign-jackson
  dependency-type: direct:production
  update-type: version-update:semver-minor
- dependency-name: io.github.openfeign:feign-slf4j
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [jakarta.annotation-api](https://github.com/eclipse-ee4j/common-annotations-api) from 1.3.5 to 2.1.0.
- [Release notes](https://github.com/eclipse-ee4j/common-annotations-api/releases)
- [Commits](jakartaee/common-annotations-api@1.3.5...2.1.0)

---
updated-dependencies:
- dependency-name: jakarta.annotation:jakarta.annotation-api
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps jackson-datatype-jsr310 from 2.13.1 to 2.13.2.

---
updated-dependencies:
- dependency-name: com.fasterxml.jackson.datatype:jackson-datatype-jsr310
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [spring-cloud-starter-openfeign](https://github.com/spring-cloud/spring-cloud-openfeign) from 3.0.5 to 3.1.1.
- [Release notes](https://github.com/spring-cloud/spring-cloud-openfeign/releases)
- [Commits](spring-cloud/spring-cloud-openfeign@v3.0.5...v3.1.1)

---
updated-dependencies:
- dependency-name: org.springframework.cloud:spring-cloud-starter-openfeign
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [org.springframework.boot](https://github.com/spring-projects/spring-boot) from 2.6.6 to 2.6.7.
- [Release notes](https://github.com/spring-projects/spring-boot/releases)
- [Commits](spring-projects/spring-boot@v2.6.6...v2.6.7)

---
updated-dependencies:
- dependency-name: org.springframework.boot
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>
…apper/services/api-wrapper/jakarta.ws.rs-jakarta.ws.rs-api-3.1.0

Bump jakarta.ws.rs-api from 3.0.0 to 3.1.0 in /api-wrapper/services/api-wrapper
…apper/services/api-wrapper/com.github.johnrengelman.shadow-7.1.2

Bump com.github.johnrengelman.shadow from 7.0.0 to 7.1.2 in /api-wrapper/services/api-wrapper
Bumps com.github.johnrengelman.shadow from 7.0.0 to 7.1.2.

---
updated-dependencies:
- dependency-name: com.github.johnrengelman.shadow
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
…apper/services/control-plane/com.github.johnrengelman.shadow-7.1.2

Bump com.github.johnrengelman.shadow from 7.0.0 to 7.1.2 in /api-wrapper/services/control-plane
Bumps com.github.johnrengelman.shadow from 7.0.0 to 7.1.2.

---
updated-dependencies:
- dependency-name: com.github.johnrengelman.shadow
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
…apper/services/data-plane/com.github.johnrengelman.shadow-7.1.2

Bump com.github.johnrengelman.shadow from 7.0.0 to 7.1.2 in /api-wrapper/services/data-plane
…rapper/services/backend-data-service/org.springframework.boot-2.6.7

Bump org.springframework.boot from 2.6.6 to 2.6.7 in /api-wrapper/services/backend-data-service
…pper/services/semantics/org.springframework.cloud-spring-cloud-starter-openfeign-3.1.1

Bump spring-cloud-starter-openfeign from 3.0.5 to 3.1.1 in /api-wrapper/services/semantics
Bumps [assertj-core](https://github.com/assertj/assertj-core) from 3.18.1 to 3.22.0.
- [Release notes](https://github.com/assertj/assertj-core/releases)
- [Commits](assertj/assertj@assertj-core-3.18.1...assertj-core-3.22.0)

---
updated-dependencies:
- dependency-name: org.assertj:assertj-core
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
…pper/services/semantics/feign-version-11.8

Bump feign-version from 11.7 to 11.8 in /api-wrapper/services/semantics
…pper/services/semantics/jakarta.annotation-jakarta.annotation-api-2.1.0

Bump jakarta.annotation-api from 1.3.5 to 2.1.0 in /api-wrapper/services/semantics
…apper/services/semantics/org.assertj-assertj-core-3.22.0

Bump assertj-core from 3.18.1 to 3.22.0 in /api-wrapper/services/semantics
…pper/services/semantics/com.fasterxml.jackson.datatype-jackson-datatype-jsr310-2.13.2

Bump jackson-datatype-jsr310 from 2.13.1 to 2.13.2 in /api-wrapper/services/semantics
Bumps `spring.version` from 5.3.18 to 5.3.19.

Updates `spring-test` from 5.3.18 to 5.3.19
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v5.3.18...v5.3.19)

Updates `spring-webmvc` from 5.3.18 to 5.3.19
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v5.3.18...v5.3.19)

---
updated-dependencies:
- dependency-name: org.springframework:spring-test
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: org.springframework:spring-webmvc
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>
…apper/services/semantics/spring.version-5.3.19

Bump spring.version from 5.3.18 to 5.3.19 in /api-wrapper/services/semantics
diegogomez-zf and others added 23 commits April 25, 2022 10:59
…apper/services/semantics/io.openmanufacturing-sds-aspect-model-starter-1.0.2

Bump sds-aspect-model-starter from 1.0.1 to 1.0.2 in /api-wrapper/services/semantics
…apper/services/semantics/com.github.joschi.jackson-jackson-datatype-threetenbp-2.12.5

Bump jackson-datatype-threetenbp from 2.9.10 to 2.12.5 in /api-wrapper/services/semantics
Bumps [slf4j-simple](https://github.com/qos-ch/slf4j) from 1.7.32 to 1.7.36.
- [Release notes](https://github.com/qos-ch/slf4j/releases)
- [Commits](qos-ch/slf4j@v_1.7.32...v_1.7.36)

---
updated-dependencies:
- dependency-name: org.slf4j:slf4j-simple
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps `jackson-version` from 2.13.1 to 2.13.2.

Updates `jackson-core` from 2.13.1 to 2.13.2
- [Release notes](https://github.com/FasterXML/jackson-core/releases)
- [Commits](FasterXML/jackson-core@jackson-core-2.13.1...jackson-core-2.13.2)

Updates `jackson-annotations` from 2.13.1 to 2.13.2
- [Release notes](https://github.com/FasterXML/jackson/releases)
- [Commits](https://github.com/FasterXML/jackson/commits)

---
updated-dependencies:
- dependency-name: com.fasterxml.jackson.core:jackson-core
  dependency-type: direct:production
  update-type: version-update:semver-patch
- dependency-name: com.fasterxml.jackson.core:jackson-annotations
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>
…apper/services/semantics/org.postgresql-postgresql-42.3.4

Bump postgresql from 42.3.3 to 42.3.4 in /api-wrapper/services/semantics
…apper/services/semantics/org.openapitools-jackson-databind-nullable-0.2.2

Bump jackson-databind-nullable from 0.1.0 to 0.2.2 in /api-wrapper/services/semantics
…apper/services/semantics/org.apache.maven.plugins-maven-surefire-plugin-3.0.0-M6

Bump maven-surefire-plugin from 3.0.0-M5 to 3.0.0-M6 in /api-wrapper/services/semantics
Bumps [h2](https://github.com/h2database/h2database) from 2.1.210 to 2.1.212.
- [Release notes](https://github.com/h2database/h2database/releases)
- [Commits](h2database/h2database@version-2.1.210...version-2.1.212)

---
updated-dependencies:
- dependency-name: com.h2database:h2
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>
…apper/services/semantics/com.google.guava-guava-31.1-jre

Bump guava from 31.0.1-jre to 31.1-jre in /api-wrapper/services/semantics
…apper/services/semantics/com.h2database-h2-2.1.212

Bump h2 from 2.1.210 to 2.1.212 in /api-wrapper/services/semantics
…apper/services/semantics/jackson-version-2.13.2

Bump jackson-version from 2.13.1 to 2.13.2 in /api-wrapper/services/semantics
Bumps [liquibase-core](https://github.com/liquibase/liquibase) from 4.8.0 to 4.9.1.
- [Release notes](https://github.com/liquibase/liquibase/releases)
- [Changelog](https://github.com/liquibase/liquibase/blob/master/changelog.txt)
- [Commits](liquibase/liquibase@v4.8.0...v4.9.1)

---
updated-dependencies:
- dependency-name: org.liquibase:liquibase-core
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
…apper/services/semantics/io.swagger.codegen.v3-swagger-codegen-maven-plugin-3.0.34

Bump swagger-codegen-maven-plugin from 3.0.33 to 3.0.34 in /api-wrapper/services/semantics
…apper/services/semantics/org.springdoc-springdoc-openapi-ui-1.6.8

Bump springdoc-openapi-ui from 1.6.6 to 1.6.8 in /api-wrapper/services/semantics
Bumps `springfox.version` from 2.9.2 to 3.0.0.

Updates `springfox-swagger2` from 2.9.2 to 3.0.0
- [Release notes](https://github.com/springfox/springfox/releases)
- [Changelog](https://github.com/springfox/springfox/blob/master/docs/release-notes.md)
- [Commits](springfox/springfox@2.9.2...3.0.0)

Updates `springfox-swagger-ui` from 2.9.2 to 3.0.0
- [Release notes](https://github.com/springfox/springfox/releases)
- [Changelog](https://github.com/springfox/springfox/blob/master/docs/release-notes.md)
- [Commits](springfox/springfox@2.9.2...3.0.0)

---
updated-dependencies:
- dependency-name: io.springfox:springfox-swagger2
  dependency-type: direct:production
  update-type: version-update:semver-major
- dependency-name: io.springfox:springfox-swagger-ui
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
…apper/services/semantics/org.slf4j-slf4j-simple-1.7.36

Bump slf4j-simple from 1.7.32 to 1.7.36 in /api-wrapper/services/semantics
…apper/services/semantics/org.liquibase-liquibase-core-4.9.1

Bump liquibase-core from 4.8.0 to 4.9.1 in /api-wrapper/services/semantics
…apper/services/semantics/springfox.version-3.0.0

Bump springfox.version from 2.9.2 to 3.0.0 in /api-wrapper/services/semantics
…apper/services/semantics/org.junit.jupiter-junit-jupiter-5.8.2

Bump junit-jupiter from 5.6.3 to 5.8.2 in /api-wrapper/services/semantics
…apper/services/semantics/org.apache.maven.plugins-maven-compiler-plugin-3.10.1

Bump maven-compiler-plugin from 3.8.1 to 3.10.1 in /api-wrapper/services/semantics
…apper/services/semantics/org.apache.commons-commons-text-1.9

Bump commons-text from 1.6 to 1.9 in /api-wrapper/services/semantics
…apper/services/semantics/com.github.scribejava-scribejava-core-8.3.1

Bump scribejava-core from 8.0.0 to 8.3.1 in /api-wrapper/services/semantics
…apper/services/semantics/io.github.openfeign.form-feign-form-3.8.0

Bump feign-form from 2.1.0 to 3.8.0 in /api-wrapper/services/semantics
@florianrusch-zf
Copy link
Contributor

We should talk with the semantics team regarding the semantics framework or get rid of it...let us discuss this before we merge this.

@florianrusch-zf florianrusch-zf linked an issue May 5, 2022 that may be closed by this pull request
@florianrusch-zf florianrusch-zf changed the title Add dependabot file Update dependencies & add Dependabot into ci May 6, 2022
@florianrusch-zf florianrusch-zf merged commit a12cbdb into catenax-ng:main May 6, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Configure Dependabot to also scan gradle projects
2 participants