Re: [PR] build(deps): bump org.owasp:dependency-check-maven from 9.0.7 to 9.0.8 [myfaces-tobago]

2024-01-08 Thread via GitHub


henningn merged PR #4778:
URL: https://github.com/apache/myfaces-tobago/pull/4778


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@myfaces.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] build(deps): bump org.owasp:dependency-check-maven from 9.0.7 to 9.0.8 [myfaces-tobago]

2024-01-08 Thread via GitHub


henningn merged PR #4779:
URL: https://github.com/apache/myfaces-tobago/pull/4779


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@myfaces.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] build(deps): bump org.owasp:dependency-check-maven from 9.0.7 to 9.0.8 [myfaces-tobago]

2024-01-08 Thread via GitHub


henningn merged PR #4780:
URL: https://github.com/apache/myfaces-tobago/pull/4780


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@myfaces.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] build(deps): bump org.owasp:dependency-check-maven from 9.0.7 to 9.0.8 [myfaces-tobago]

2024-01-08 Thread via GitHub


henningn merged PR #4777:
URL: https://github.com/apache/myfaces-tobago/pull/4777


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@myfaces.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



[PR] build(deps): bump org.owasp:dependency-check-maven from 9.0.7 to 9.0.8 [myfaces-tobago]

2024-01-08 Thread via GitHub


dependabot[bot] opened a new pull request, #4780:
URL: https://github.com/apache/myfaces-tobago/pull/4780

   Bumps 
[org.owasp:dependency-check-maven](https://github.com/jeremylong/DependencyCheck)
 from 9.0.7 to 9.0.8.
   
   Release notes
   Sourced from https://github.com/jeremylong/DependencyCheck/releases";>org.owasp:dependency-check-maven's
 releases.
   
   Version 9.0.8
   Refer to the https://github.com/jeremylong/DependencyCheck/blob/main/CHANGELOG.md#change-log";>CHANGELOG.md
 for information about improvements and upgrade notes.
   
   
   
   Changelog
   Sourced from https://github.com/jeremylong/DependencyCheck/blob/main/CHANGELOG.md";>org.owasp:dependency-check-maven's
 changelog.
   
   https://github.com/jereong/DependencyCheck/releases/tag/v9.0.8";>Version 
9.0.8 (2024-01-06)
   
   fix: favor stability over performance (https://redirect.github.com/jeremylong/DependencyCheck/issues/6349";>#6349)
   chore: replace commons-io with core java calls (https://redirect.github.com/jeremylong/DependencyCheck/issues/6343";>#6343)
   fix: improve error reporting for invalid H2 database (https://redirect.github.com/jeremylong/DependencyCheck/issues/6339";>#6339)
   fix: rework fix for closing input streams on errors correctly (https://redirect.github.com/jeremylong/DependencyCheck/issues/6338";>#6338)
   fix: reduce chance NVD API block updates due to rate limit (https://redirect.github.com/jeremylong/DependencyCheck/issues/6333";>#6333)
   fix: ensure open handles will not leak on errors (https://redirect.github.com/jeremylong/DependencyCheck/issues/6326";>#6326)
   fix: improve error reporting (https://redirect.github.com/jeremylong/DependencyCheck/issues/6324";>#6324)
   
   See the full listing of https://github.com/jeremylong/DependencyCheck/milestone/78?closed=1";>changes.
   
   
   
   Commits
   
   https://github.com/jeremylong/DependencyCheck/commit/4a32ff15cda957354a23dfa6f8833f909e92d630";>4a32ff1
 build: prepare release v9.0.8
   https://github.com/jeremylong/DependencyCheck/commit/3d648c5a983fdefa6ae4a0af8a9b0b6508c88600";>3d648c5
 docs: release 9.0.8
   https://github.com/jeremylong/DependencyCheck/commit/293c98dc2b13f889e09933e1636f25a86effeb39";>293c98d
 build(deps): bump org.apache.maven.plugins:maven-project-info-reports-plugin 
...
   https://github.com/jeremylong/DependencyCheck/commit/361e255562af79fc5326151e9721d9ee3029bf6d";>361e255
 build(deps): bump org.codehaus.mojo:versions-maven-plugin from 2.16.1 to 
2.16...
   https://github.com/jeremylong/DependencyCheck/commit/be5c4a4f39d22c0557d62a3a29c09896b1caf4a9";>be5c4a4
 fix: favor stability over performance (https://redirect.github.com/jeremylong/DependencyCheck/issues/6349";>#6349)
   https://github.com/jeremylong/DependencyCheck/commit/a110bd05af93fe7e296f3b147ea29b7374ace721";>a110bd0
 chore: replace commons-io with core java calls (https://redirect.github.com/jeremylong/DependencyCheck/issues/6343";>#6343)
   https://github.com/jeremylong/DependencyCheck/commit/6146364740e2ccf037a8e5d8d8e39579e8326a53";>6146364
 build(deps): bump org.jetbrains:annotations from 24.0.1 to 24.1.0 (https://redirect.github.com/jeremylong/DependencyCheck/issues/6097";>#6097)
   https://github.com/jeremylong/DependencyCheck/commit/77adb076e13c4c4e02195c1b0ecbe53c6a550ae8";>77adb07
 build(deps): bump actions/setup-node from 4.0.0 to 4.0.1 (https://redirect.github.com/jeremylong/DependencyCheck/issues/6341";>#6341)
   https://github.com/jeremylong/DependencyCheck/commit/9199230b442340f1efcd99ffeaf05a8cbf1c9abb";>9199230
 fix: improve error reporting for invalid H2 database (https://redirect.github.com/jeremylong/DependencyCheck/issues/6339";>#6339)
   https://github.com/jeremylong/DependencyCheck/commit/401d031ead08f8aaa05ae4ec4a98c870648e916c";>401d031
 fix: rework fix for closing input streams on errors correctly (https://redirect.github.com/jeremylong/DependencyCheck/issues/6338";>#6338)
   Additional commits viewable in https://github.com/jeremylong/DependencyCheck/compare/v9.0.7...v9.0.8";>compare
 view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.owasp:dependency-check-maven&package-manager=maven&previous-version=9.0.7&new-version=9.0.8)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your

[PR] build(deps): bump org.owasp:dependency-check-maven from 9.0.7 to 9.0.8 [myfaces-tobago]

2024-01-08 Thread via GitHub


dependabot[bot] opened a new pull request, #4779:
URL: https://github.com/apache/myfaces-tobago/pull/4779

   Bumps 
[org.owasp:dependency-check-maven](https://github.com/jeremylong/DependencyCheck)
 from 9.0.7 to 9.0.8.
   
   Release notes
   Sourced from https://github.com/jeremylong/DependencyCheck/releases";>org.owasp:dependency-check-maven's
 releases.
   
   Version 9.0.8
   Refer to the https://github.com/jeremylong/DependencyCheck/blob/main/CHANGELOG.md#change-log";>CHANGELOG.md
 for information about improvements and upgrade notes.
   
   
   
   Changelog
   Sourced from https://github.com/jeremylong/DependencyCheck/blob/main/CHANGELOG.md";>org.owasp:dependency-check-maven's
 changelog.
   
   https://github.com/jereong/DependencyCheck/releases/tag/v9.0.8";>Version 
9.0.8 (2024-01-06)
   
   fix: favor stability over performance (https://redirect.github.com/jeremylong/DependencyCheck/issues/6349";>#6349)
   chore: replace commons-io with core java calls (https://redirect.github.com/jeremylong/DependencyCheck/issues/6343";>#6343)
   fix: improve error reporting for invalid H2 database (https://redirect.github.com/jeremylong/DependencyCheck/issues/6339";>#6339)
   fix: rework fix for closing input streams on errors correctly (https://redirect.github.com/jeremylong/DependencyCheck/issues/6338";>#6338)
   fix: reduce chance NVD API block updates due to rate limit (https://redirect.github.com/jeremylong/DependencyCheck/issues/6333";>#6333)
   fix: ensure open handles will not leak on errors (https://redirect.github.com/jeremylong/DependencyCheck/issues/6326";>#6326)
   fix: improve error reporting (https://redirect.github.com/jeremylong/DependencyCheck/issues/6324";>#6324)
   
   See the full listing of https://github.com/jeremylong/DependencyCheck/milestone/78?closed=1";>changes.
   
   
   
   Commits
   
   https://github.com/jeremylong/DependencyCheck/commit/4a32ff15cda957354a23dfa6f8833f909e92d630";>4a32ff1
 build: prepare release v9.0.8
   https://github.com/jeremylong/DependencyCheck/commit/3d648c5a983fdefa6ae4a0af8a9b0b6508c88600";>3d648c5
 docs: release 9.0.8
   https://github.com/jeremylong/DependencyCheck/commit/293c98dc2b13f889e09933e1636f25a86effeb39";>293c98d
 build(deps): bump org.apache.maven.plugins:maven-project-info-reports-plugin 
...
   https://github.com/jeremylong/DependencyCheck/commit/361e255562af79fc5326151e9721d9ee3029bf6d";>361e255
 build(deps): bump org.codehaus.mojo:versions-maven-plugin from 2.16.1 to 
2.16...
   https://github.com/jeremylong/DependencyCheck/commit/be5c4a4f39d22c0557d62a3a29c09896b1caf4a9";>be5c4a4
 fix: favor stability over performance (https://redirect.github.com/jeremylong/DependencyCheck/issues/6349";>#6349)
   https://github.com/jeremylong/DependencyCheck/commit/a110bd05af93fe7e296f3b147ea29b7374ace721";>a110bd0
 chore: replace commons-io with core java calls (https://redirect.github.com/jeremylong/DependencyCheck/issues/6343";>#6343)
   https://github.com/jeremylong/DependencyCheck/commit/6146364740e2ccf037a8e5d8d8e39579e8326a53";>6146364
 build(deps): bump org.jetbrains:annotations from 24.0.1 to 24.1.0 (https://redirect.github.com/jeremylong/DependencyCheck/issues/6097";>#6097)
   https://github.com/jeremylong/DependencyCheck/commit/77adb076e13c4c4e02195c1b0ecbe53c6a550ae8";>77adb07
 build(deps): bump actions/setup-node from 4.0.0 to 4.0.1 (https://redirect.github.com/jeremylong/DependencyCheck/issues/6341";>#6341)
   https://github.com/jeremylong/DependencyCheck/commit/9199230b442340f1efcd99ffeaf05a8cbf1c9abb";>9199230
 fix: improve error reporting for invalid H2 database (https://redirect.github.com/jeremylong/DependencyCheck/issues/6339";>#6339)
   https://github.com/jeremylong/DependencyCheck/commit/401d031ead08f8aaa05ae4ec4a98c870648e916c";>401d031
 fix: rework fix for closing input streams on errors correctly (https://redirect.github.com/jeremylong/DependencyCheck/issues/6338";>#6338)
   Additional commits viewable in https://github.com/jeremylong/DependencyCheck/compare/v9.0.7...v9.0.8";>compare
 view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.owasp:dependency-check-maven&package-manager=maven&previous-version=9.0.7&new-version=9.0.8)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your

[PR] build(deps): bump org.owasp:dependency-check-maven from 9.0.7 to 9.0.8 [myfaces-tobago]

2024-01-08 Thread via GitHub


dependabot[bot] opened a new pull request, #4778:
URL: https://github.com/apache/myfaces-tobago/pull/4778

   Bumps 
[org.owasp:dependency-check-maven](https://github.com/jeremylong/DependencyCheck)
 from 9.0.7 to 9.0.8.
   
   Release notes
   Sourced from https://github.com/jeremylong/DependencyCheck/releases";>org.owasp:dependency-check-maven's
 releases.
   
   Version 9.0.8
   Refer to the https://github.com/jeremylong/DependencyCheck/blob/main/CHANGELOG.md#change-log";>CHANGELOG.md
 for information about improvements and upgrade notes.
   
   
   
   Changelog
   Sourced from https://github.com/jeremylong/DependencyCheck/blob/main/CHANGELOG.md";>org.owasp:dependency-check-maven's
 changelog.
   
   https://github.com/jereong/DependencyCheck/releases/tag/v9.0.8";>Version 
9.0.8 (2024-01-06)
   
   fix: favor stability over performance (https://redirect.github.com/jeremylong/DependencyCheck/issues/6349";>#6349)
   chore: replace commons-io with core java calls (https://redirect.github.com/jeremylong/DependencyCheck/issues/6343";>#6343)
   fix: improve error reporting for invalid H2 database (https://redirect.github.com/jeremylong/DependencyCheck/issues/6339";>#6339)
   fix: rework fix for closing input streams on errors correctly (https://redirect.github.com/jeremylong/DependencyCheck/issues/6338";>#6338)
   fix: reduce chance NVD API block updates due to rate limit (https://redirect.github.com/jeremylong/DependencyCheck/issues/6333";>#6333)
   fix: ensure open handles will not leak on errors (https://redirect.github.com/jeremylong/DependencyCheck/issues/6326";>#6326)
   fix: improve error reporting (https://redirect.github.com/jeremylong/DependencyCheck/issues/6324";>#6324)
   
   See the full listing of https://github.com/jeremylong/DependencyCheck/milestone/78?closed=1";>changes.
   
   
   
   Commits
   
   https://github.com/jeremylong/DependencyCheck/commit/4a32ff15cda957354a23dfa6f8833f909e92d630";>4a32ff1
 build: prepare release v9.0.8
   https://github.com/jeremylong/DependencyCheck/commit/3d648c5a983fdefa6ae4a0af8a9b0b6508c88600";>3d648c5
 docs: release 9.0.8
   https://github.com/jeremylong/DependencyCheck/commit/293c98dc2b13f889e09933e1636f25a86effeb39";>293c98d
 build(deps): bump org.apache.maven.plugins:maven-project-info-reports-plugin 
...
   https://github.com/jeremylong/DependencyCheck/commit/361e255562af79fc5326151e9721d9ee3029bf6d";>361e255
 build(deps): bump org.codehaus.mojo:versions-maven-plugin from 2.16.1 to 
2.16...
   https://github.com/jeremylong/DependencyCheck/commit/be5c4a4f39d22c0557d62a3a29c09896b1caf4a9";>be5c4a4
 fix: favor stability over performance (https://redirect.github.com/jeremylong/DependencyCheck/issues/6349";>#6349)
   https://github.com/jeremylong/DependencyCheck/commit/a110bd05af93fe7e296f3b147ea29b7374ace721";>a110bd0
 chore: replace commons-io with core java calls (https://redirect.github.com/jeremylong/DependencyCheck/issues/6343";>#6343)
   https://github.com/jeremylong/DependencyCheck/commit/6146364740e2ccf037a8e5d8d8e39579e8326a53";>6146364
 build(deps): bump org.jetbrains:annotations from 24.0.1 to 24.1.0 (https://redirect.github.com/jeremylong/DependencyCheck/issues/6097";>#6097)
   https://github.com/jeremylong/DependencyCheck/commit/77adb076e13c4c4e02195c1b0ecbe53c6a550ae8";>77adb07
 build(deps): bump actions/setup-node from 4.0.0 to 4.0.1 (https://redirect.github.com/jeremylong/DependencyCheck/issues/6341";>#6341)
   https://github.com/jeremylong/DependencyCheck/commit/9199230b442340f1efcd99ffeaf05a8cbf1c9abb";>9199230
 fix: improve error reporting for invalid H2 database (https://redirect.github.com/jeremylong/DependencyCheck/issues/6339";>#6339)
   https://github.com/jeremylong/DependencyCheck/commit/401d031ead08f8aaa05ae4ec4a98c870648e916c";>401d031
 fix: rework fix for closing input streams on errors correctly (https://redirect.github.com/jeremylong/DependencyCheck/issues/6338";>#6338)
   Additional commits viewable in https://github.com/jeremylong/DependencyCheck/compare/v9.0.7...v9.0.8";>compare
 view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.owasp:dependency-check-maven&package-manager=maven&previous-version=9.0.7&new-version=9.0.8)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your

[PR] build(deps): bump org.owasp:dependency-check-maven from 9.0.7 to 9.0.8 [myfaces-tobago]

2024-01-08 Thread via GitHub


dependabot[bot] opened a new pull request, #4777:
URL: https://github.com/apache/myfaces-tobago/pull/4777

   Bumps 
[org.owasp:dependency-check-maven](https://github.com/jeremylong/DependencyCheck)
 from 9.0.7 to 9.0.8.
   
   Release notes
   Sourced from https://github.com/jeremylong/DependencyCheck/releases";>org.owasp:dependency-check-maven's
 releases.
   
   Version 9.0.8
   Refer to the https://github.com/jeremylong/DependencyCheck/blob/main/CHANGELOG.md#change-log";>CHANGELOG.md
 for information about improvements and upgrade notes.
   
   
   
   Changelog
   Sourced from https://github.com/jeremylong/DependencyCheck/blob/main/CHANGELOG.md";>org.owasp:dependency-check-maven's
 changelog.
   
   https://github.com/jereong/DependencyCheck/releases/tag/v9.0.8";>Version 
9.0.8 (2024-01-06)
   
   fix: favor stability over performance (https://redirect.github.com/jeremylong/DependencyCheck/issues/6349";>#6349)
   chore: replace commons-io with core java calls (https://redirect.github.com/jeremylong/DependencyCheck/issues/6343";>#6343)
   fix: improve error reporting for invalid H2 database (https://redirect.github.com/jeremylong/DependencyCheck/issues/6339";>#6339)
   fix: rework fix for closing input streams on errors correctly (https://redirect.github.com/jeremylong/DependencyCheck/issues/6338";>#6338)
   fix: reduce chance NVD API block updates due to rate limit (https://redirect.github.com/jeremylong/DependencyCheck/issues/6333";>#6333)
   fix: ensure open handles will not leak on errors (https://redirect.github.com/jeremylong/DependencyCheck/issues/6326";>#6326)
   fix: improve error reporting (https://redirect.github.com/jeremylong/DependencyCheck/issues/6324";>#6324)
   
   See the full listing of https://github.com/jeremylong/DependencyCheck/milestone/78?closed=1";>changes.
   
   
   
   Commits
   
   https://github.com/jeremylong/DependencyCheck/commit/4a32ff15cda957354a23dfa6f8833f909e92d630";>4a32ff1
 build: prepare release v9.0.8
   https://github.com/jeremylong/DependencyCheck/commit/3d648c5a983fdefa6ae4a0af8a9b0b6508c88600";>3d648c5
 docs: release 9.0.8
   https://github.com/jeremylong/DependencyCheck/commit/293c98dc2b13f889e09933e1636f25a86effeb39";>293c98d
 build(deps): bump org.apache.maven.plugins:maven-project-info-reports-plugin 
...
   https://github.com/jeremylong/DependencyCheck/commit/361e255562af79fc5326151e9721d9ee3029bf6d";>361e255
 build(deps): bump org.codehaus.mojo:versions-maven-plugin from 2.16.1 to 
2.16...
   https://github.com/jeremylong/DependencyCheck/commit/be5c4a4f39d22c0557d62a3a29c09896b1caf4a9";>be5c4a4
 fix: favor stability over performance (https://redirect.github.com/jeremylong/DependencyCheck/issues/6349";>#6349)
   https://github.com/jeremylong/DependencyCheck/commit/a110bd05af93fe7e296f3b147ea29b7374ace721";>a110bd0
 chore: replace commons-io with core java calls (https://redirect.github.com/jeremylong/DependencyCheck/issues/6343";>#6343)
   https://github.com/jeremylong/DependencyCheck/commit/6146364740e2ccf037a8e5d8d8e39579e8326a53";>6146364
 build(deps): bump org.jetbrains:annotations from 24.0.1 to 24.1.0 (https://redirect.github.com/jeremylong/DependencyCheck/issues/6097";>#6097)
   https://github.com/jeremylong/DependencyCheck/commit/77adb076e13c4c4e02195c1b0ecbe53c6a550ae8";>77adb07
 build(deps): bump actions/setup-node from 4.0.0 to 4.0.1 (https://redirect.github.com/jeremylong/DependencyCheck/issues/6341";>#6341)
   https://github.com/jeremylong/DependencyCheck/commit/9199230b442340f1efcd99ffeaf05a8cbf1c9abb";>9199230
 fix: improve error reporting for invalid H2 database (https://redirect.github.com/jeremylong/DependencyCheck/issues/6339";>#6339)
   https://github.com/jeremylong/DependencyCheck/commit/401d031ead08f8aaa05ae4ec4a98c870648e916c";>401d031
 fix: rework fix for closing input streams on errors correctly (https://redirect.github.com/jeremylong/DependencyCheck/issues/6338";>#6338)
   Additional commits viewable in https://github.com/jeremylong/DependencyCheck/compare/v9.0.7...v9.0.8";>compare
 view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.owasp:dependency-check-maven&package-manager=maven&previous-version=9.0.7&new-version=9.0.8)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your

[jira] [Resolved] (MYFACES-4623) DuplicateIdException when adding component with resource in JSTL tag handler

2024-01-08 Thread Thomas Andraschko (Jira)


 [ 
https://issues.apache.org/jira/browse/MYFACES-4623?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Thomas Andraschko resolved MYFACES-4623.

Resolution: Fixed

> DuplicateIdException when adding component with resource in JSTL tag handler
> 
>
> Key: MYFACES-4623
> URL: https://issues.apache.org/jira/browse/MYFACES-4623
> Project: MyFaces Core
>  Issue Type: Bug
>  Components: General
>Affects Versions: 4.0.1
>Reporter: Manuel K
>Priority: Major
> Fix For: 4.0.2, 4.1.0, 5.0.0
>
>
> The following error occurs when a JSF component adding a resource is added in 
> a JSTL tag handler:
> {code:java}
> org.apache.myfaces.view.facelets.compiler.DuplicateIdException: Component 
> with duplicate id "j_id__rd_5" found. The first component is {Component-Path 
> : [Class: jakarta.faces.component.UIViewRoot,ViewId: /test.xhtml][Class: 
> org.apache.myfaces.component.ComponentResourceContainer,Id: 
> jakarta_faces_location_head][Class: jakarta.faces.component.UIOutput,Id: 
> j_id__rd_5]}
>     at 
> org.apache.myfaces.view.facelets.compiler.CheckDuplicateIdFaceletUtils.createAndQueueException(CheckDuplicateIdFaceletUtils.java:139)
>     at 
> org.apache.myfaces.view.facelets.compiler.CheckDuplicateIdFaceletUtils.checkIds(CheckDuplicateIdFaceletUtils.java:95)
>     at 
> org.apache.myfaces.view.facelets.compiler.CheckDuplicateIdFaceletUtils.checkIds(CheckDuplicateIdFaceletUtils.java:109)
>     at 
> org.apache.myfaces.view.facelets.compiler.CheckDuplicateIdFaceletUtils.checkIds(CheckDuplicateIdFaceletUtils.java:103)
>     at 
> org.apache.myfaces.view.facelets.compiler.CheckDuplicateIdFaceletUtils.checkIds(CheckDuplicateIdFaceletUtils.java:81)
>     at 
> org.apache.myfaces.view.facelets.PartialStateManagementStrategy.saveView(PartialStateManagementStrategy.java:701)
>     at 
> jakarta.faces.application.StateManager.getViewState(StateManager.java:147)
> [...]{code}
> In our example, the resource that is apparently added to the component tree 
> twice is _inputmask/inputmask.js_ of the _p:calendar_ component when using it 
> in a {_}c:forEach{_}.
> The error only happens if _STRICT_JSF_2_FACELETS_COMPATIBILITY_ is enabled, 
> but that is a requirement for our application. The error does not occur in 
> Mojarra.
> I would appreciate you looking into this, as it is a pretty big problem for 
> us. And before you ask: We're using c:forEach because in our application 
> changing from c:forEach/c:if to ui:repeat/ui:fragment would result in an 
> increase of components in the component tree by a factor of about 5 on some 
> sites.
> I could copy and paste more of the code here, but I think it's easier to just 
> look at the reproducer: 
> [https://github.com/mkomko/primefaces-test/tree/inputmask-duplicateid]
> The error occurs when opening the dialog using the button and then clicking 
> "Cancel".
> Thank you very much in advance!



--
This message was sent by Atlassian Jira
(v8.20.10#820010)