Re: [PR] Bump org.eclipse.jetty:jetty-maven-plugin from 10.0.16 to 10.0.17 [logging-log4j-samples]

2023-10-11 Thread via GitHub


dependabot[bot] commented on PR #74:
URL: 
https://github.com/apache/logging-log4j-samples/pull/74#issuecomment-1757114640

   OK, I won't notify you again about this release, but will get in touch when 
a new version is available. If you'd rather skip all updates until the next 
major or minor version, let me know by commenting `@dependabot ignore this 
major version` or `@dependabot ignore this minor version`. You can also ignore 
all major, minor, or patch releases for a dependency by adding an [`ignore` 
condition](https://docs.github.com/en/code-security/supply-chain-security/configuration-options-for-dependency-updates#ignore)
 with the desired `update_types` to your config file.
   
   If you change your mind, just re-open this PR and I'll resolve any conflicts 
on it.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: notifications-unsubscr...@logging.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] Bump org.eclipse.jetty:jetty-maven-plugin from 10.0.16 to 10.0.17 [logging-log4j-samples]

2023-10-11 Thread via GitHub


github-actions[bot] closed pull request #74: Bump 
org.eclipse.jetty:jetty-maven-plugin from 10.0.16 to 10.0.17
URL: https://github.com/apache/logging-log4j-samples/pull/74


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: notifications-unsubscr...@logging.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] Bump org.eclipse.jetty:jetty-maven-plugin from 10.0.16 to 10.0.17 [logging-log4j-samples]

2023-10-11 Thread via GitHub


github-actions[bot] commented on PR #74:
URL: 
https://github.com/apache/logging-log4j-samples/pull/74#issuecomment-1757114512

   Changes are applied by CI in d94a0aeb48e9fea8256519ef527d47eaabd31cd1


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: notifications-unsubscr...@logging.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



Re: [PR] Bump org.eclipse.jetty:jetty-maven-plugin from 10.0.16 to 10.0.17 [logging-log4j-samples]

2023-10-11 Thread via GitHub


vy commented on PR #74:
URL: 
https://github.com/apache/logging-log4j-samples/pull/74#issuecomment-1757100613

   @dependabot rebase


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: notifications-unsubscr...@logging.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



[PR] Bump org.eclipse.jetty:jetty-maven-plugin from 10.0.16 to 10.0.17 [logging-log4j-samples]

2023-10-10 Thread via GitHub


dependabot[bot] opened a new pull request, #74:
URL: https://github.com/apache/logging-log4j-samples/pull/74

   Bumps 
[org.eclipse.jetty:jetty-maven-plugin](https://github.com/eclipse/jetty.project)
 from 10.0.16 to 10.0.17.
   
   Release notes
   Sourced from https://github.com/eclipse/jetty.project/releases;>org.eclipse.jetty:jetty-maven-plugin's
 releases.
   
   10.0.17
   Security Updates
   This release addresses:
   
   CVE-2023-44487
   
   Changelog
   
   https://redirect.github.com/eclipse/jetty.project/issues/10679;>#10679
 - Review HTTP/2 rate control
   https://redirect.github.com/eclipse/jetty.project/issues/10547;>#10547
 - Cannot customize Executor on WebSocketClient
   https://redirect.github.com/eclipse/jetty.project/issues/10545;>#10545
 - Fixed deadlock in class initialization seen on JDK21.
   https://redirect.github.com/eclipse/jetty.project/issues/10511;>#10511
 - Allow session idle timeout to be configured on authentication.
   https://redirect.github.com/eclipse/jetty.project/issues/10473;>#10473
 - Startup Script reports ok too fast, and doesn't wait for actual 
start of Jetty
   https://redirect.github.com/eclipse/jetty.project/issues/10365;>#10365
 - Cleanup of start properties usages in jetty-10.0.x
   
   
   
   
   Commits
   
   https://github.com/eclipse/jetty.project/commit/af15f12297adf5c5083e1f2f8f4c5974438bca25;>af15f12
 Updating to version 10.0.17
   https://github.com/eclipse/jetty.project/commit/f8b7f48d566ba2dabb70978eb521358da22a2a8b;>f8b7f48
 Merge remote-tracking branch 'origin/fix/10.0.x/rollback-jdk21-requirement' 
i...
   https://github.com/eclipse/jetty.project/commit/67b077847ad1d360585bbeea30afa9e8432b5480;>67b0778
 Issue https://redirect.github.com/eclipse/jetty.project/issues/9777;>#9777 
- CrossOriginFilter does not return Vary header on no-cors mode.
   https://github.com/eclipse/jetty.project/commit/dbb94514dc9d3fb21fe92080f57c314e7e06a148;>dbb9451
 Fixes https://redirect.github.com/eclipse/jetty.project/issues/10679;>#10679
 - Review HTTP/2 rate control. (https://redirect.github.com/eclipse/jetty.project/issues/10681;>#10681)
   https://github.com/eclipse/jetty.project/commit/4670d3e35b3b5899d21ac9a068effb4330581369;>4670d3e
 Rollback JDK21 requirements during Compile + Jar creation.
   https://github.com/eclipse/jetty.project/commit/90fdd4236dbb5d8d090da7763895e05e14b6c7ee;>90fdd42
 Update details on how to include dependabot PRs in a release (https://redirect.github.com/eclipse/jetty.project/issues/10659;>#10659)
   https://github.com/eclipse/jetty.project/commit/a22174cb76e3411ed0c11ec20ffea90771a0a248;>a22174c
 Merge pull request https://redirect.github.com/eclipse/jetty.project/issues/10632;>#10632
 from eclipse/dependabot/maven/jetty-10.0.x/org.apac...
   https://github.com/eclipse/jetty.project/commit/9c012d1666c7d15b3da8105081fb468a5ee0dcd2;>9c012d1
 Merge pull request https://redirect.github.com/eclipse/jetty.project/issues/10631;>#10631
 from eclipse/dependabot/maven/jetty-10.0.x/maven.re...
   https://github.com/eclipse/jetty.project/commit/0d730aaeab6ed81a09edffb4108aee2330ba1cb0;>0d730aa
 Bump org.apache.maven.plugins:maven-enforcer-plugin from 3.4.0 to 3.4.1
   https://github.com/eclipse/jetty.project/commit/b5ecca2a5fee9174b7e5dc506deafc6fc14cbd84;>b5ecca2
 Bump maven.resolver.version from 1.9.15 to 1.9.16
   Additional commits viewable in https://github.com/eclipse/jetty.project/compare/jetty-10.0.16...jetty-10.0.17;>compare
 view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.eclipse.jetty:jetty-maven-plugin=maven=10.0.16=10.0.17)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
   - `@dependabot show  ignore conditions` will show all of 
the ignore conditions of the specified dependency
   - `@dependabot ignore this major version` will close this PR and stop 
Dependabot creating