dependabot[bot] opened a new pull request, #573: URL: https://github.com/apache/opennlp-sandbox/pull/573
Bumps [org.docx4j:docx4j-core](https://github.com/plutext/docx4j) from 11.5.14 to 17.1.0. <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/plutext/docx4j/blob/VERSION_17_1_1/CHANGELOG.md">org.docx4j:docx4j-core's changelog</a>.</em></p> <blockquote> <h1>Version 17.1.0</h1> <h2>Release date</h2> <p>7 September 2026</p> <h2>Contributors to this release</h2> <p>Jason Harrop</p> <p>Claude Fable 5.1 supervising Opus 5.</p> <h2>Changes in Version 17.1.0</h2> <p>Labeled 17.1.0 because:</p> <ul> <li>New public surfaces: <ul> <li>two new exported packages (org.docx4j.org.apache.poi.hwmf and .hemf), MetafileRenderer, the parts' toSVG/toPNG API,</li> <li>Docx4J.updateToc and FLAG_EXPORT_UPDATE_TOC</li> <li>CompatibilityOptions.</li> </ul> </li> <li>Dependency changes: wmf2svg is gone from docx4j-core; batik-svggen and batik-gvt are added to docx4j-export-fo; the module descriptors changed accordingly.</li> <li>Substantial improvements to PDF via XSL FO, including default behaviour changes</li> </ul> <p>Further substantial improvements to PDF via XSL FO - far too many to itemise here, but includes tab support and better handling of text boxes etc etc. Each rule, with the Word measurement behind it, is in docx4j-export-fo/docs/word-layout-rules.md; the document settings it depends on are in docx4j-export-fo/docs/word-layout-settings.md. Every rule which changes the default output has an opt-out property, documented in docx4j-samples-resources/src/main/resources/docx4j.properties and in word-layout-rules.md section 1.5. Many fixes in other parts of docx4j to achieve this.</p> <p>Apache POI 5.5.1's HWMF/HEMF (WMF/EMF/EMF+ parsing and Graphics2D rendering) repackaged into org.docx4j.org.apache.poi.{hwmf,hemf}, and wired into the PDF and HTML output (CR-011 phases 1 and 2)</p> <ul> <li>docx4j wmf2svg dependency is dropped</li> </ul> <p>WMF, EMF and EMF+ pictures are now drawn, in pure Java, as vectors: docx4j replays the metafile's GDI records (repackaged Apache POI HWMF/HEMF) onto Batik's SVGGraphics2D and puts the SVG in an fo:instream-foreign-object. Their text stays text in the PDF, so an equation or chart preview is searchable. Inline, anchored and VML w:pict pictures alike; the ImageMagick and transparent-placeholder fallbacks now apply only to a metafile the renderer cannot draw (CR-011 phase 2)</p> <ul> <li>FOP could not paint SVG at all: batik-gvt was excluded from docx4j-export-fo's dependencies, so an fo:instream-foreign-object holding SVG came out blank. Restored</li> <li>an embedded object's preview picture (w:object/v:shape/v:imagedata - an Equation Editor or</li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/plutext/docx4j/commit/4842f99dd3fd554d54b69102b14c49d7b95df6be"><code>4842f99</code></a> Tests: RunFontSelectorJapaneseTest asserts coverage, not Century, where MS Mi...</li> <li><a href="https://github.com/plutext/docx4j/commit/f18b95cea274e3dfb95359ddf0c926d7dc7fd5ec"><code>f18b95c</code></a> Tests: Windows-only CJK RunFontSelector tests accept the kerned twin's font-f...</li> <li><a href="https://github.com/plutext/docx4j/commit/f69ecc644ae01350d72c46caaff796968b6f1d64"><code>f69ecc6</code></a> prepare for 17.1.0 release</li> <li><a href="https://github.com/plutext/docx4j/commit/0c9bba234d9665de01281b83949462c67b0b4e2c"><code>0c9bba2</code></a> Release renamed 17.0.6 -> 17.1.0 (new metafile rendering, layout-fidelity def...</li> <li><a href="https://github.com/plutext/docx4j/commit/dbefe01d0993390371f5b80b26def6b81e99c75d"><code>dbefe01</code></a> Getting Started: hyphenation in PDF output via XSL FO (document-driven; net.s...</li> <li><a href="https://github.com/plutext/docx4j/commit/41b7010837e018eaae616d58536ce338b5d42b4a"><code>41b7010</code></a> Getting Started: the guide is for docx4j 17.0.6</li> <li><a href="https://github.com/plutext/docx4j/commit/24ecdcf4f8d9c3e2f495560dd8028334a3afc850"><code>24ecdcf</code></a> Getting Started: Windows metafiles (WMF, EMF, EMF+) subsection; html/md/pdf r...</li> <li><a href="https://github.com/plutext/docx4j/commit/c4d27f2c28482680ff0e2344bf101264c875010c"><code>c4d27f2</code></a> PDF via FO: allowSpaceOfSameStyleInTable is resolved but not applied - Word 3...</li> <li><a href="https://github.com/plutext/docx4j/commit/1bb51ca14e5e08434e416c8915c7f98499ce2615"><code>1bb51ca</code></a> PDF via FO: compatibility flags resolved per document (CompatibilityOptions),...</li> <li><a href="https://github.com/plutext/docx4j/commit/bcd92b3bf773c9212050cb48fcf6376d9d07adcd"><code>bcd92b3</code></a> PDF via FO: legacy form fields painted, the symbol range gets a font, infeasi...</li> <li>Additional commits viewable in <a href="https://github.com/plutext/docx4j/compare/docx4j-11.5.14...docx4j-17.1.0">compare view</a></li> </ul> </details> <br /> [](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details> -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: [email protected] For queries about this service, please contact Infrastructure at: [email protected]
