chore(deps): bump the low-risk group with 9 updates#346
Merged
RichardSlater merged 1 commit intomainfrom Feb 10, 2026
Merged
Conversation
Bumps the low-risk group with 9 updates: | Package | From | To | | --- | --- | --- | | [ch.qos.logback:logback-core](https://github.com/qos-ch/logback) | `1.5.27` | `1.5.28` | | [ch.qos.logback:logback-classic](https://github.com/qos-ch/logback) | `1.5.27` | `1.5.28` | | [org.pitest:pitest-parent](https://github.com/hcoles/pitest) | `1.22.0` | `1.22.1` | | [org.pitest:pitest-maven](https://github.com/hcoles/pitest) | `1.22.0` | `1.22.1` | | [com.nimbusds:oauth2-oidc-sdk](https://bitbucket.org/connect2id/oauth-2.0-sdk-with-openid-connect-extensions) | `11.32` | `11.33` | | [io.netty:netty-codec-http](https://github.com/netty/netty) | `4.2.9.Final` | `4.2.10.Final` | | [io.netty:netty-codec](https://github.com/netty/netty) | `4.2.9.Final` | `4.2.10.Final` | | [io.netty:netty-common](https://github.com/netty/netty) | `4.2.9.Final` | `4.2.10.Final` | | [io.netty:netty-handler](https://github.com/netty/netty) | `4.2.9.Final` | `4.2.10.Final` | Updates `ch.qos.logback:logback-core` from 1.5.27 to 1.5.28 - [Release notes](https://github.com/qos-ch/logback/releases) - [Commits](qos-ch/logback@v_1.5.27...v_1.5.28) Updates `ch.qos.logback:logback-classic` from 1.5.27 to 1.5.28 - [Release notes](https://github.com/qos-ch/logback/releases) - [Commits](qos-ch/logback@v_1.5.27...v_1.5.28) Updates `ch.qos.logback:logback-classic` from 1.5.27 to 1.5.28 - [Release notes](https://github.com/qos-ch/logback/releases) - [Commits](qos-ch/logback@v_1.5.27...v_1.5.28) Updates `org.pitest:pitest-parent` from 1.22.0 to 1.22.1 - [Release notes](https://github.com/hcoles/pitest/releases) - [Commits](hcoles/pitest@1.22.0...1.22.1) Updates `org.pitest:pitest-maven` from 1.22.0 to 1.22.1 - [Release notes](https://github.com/hcoles/pitest/releases) - [Commits](hcoles/pitest@1.22.0...1.22.1) Updates `com.nimbusds:oauth2-oidc-sdk` from 11.32 to 11.33 - [Changelog](https://bitbucket.org/connect2id/oauth-2.0-sdk-with-openid-connect-extensions/src/master/CHANGELOG.txt) - [Commits](https://bitbucket.org/connect2id/oauth-2.0-sdk-with-openid-connect-extensions/branches/compare/11.33..11.32) Updates `io.netty:netty-codec-http` from 4.2.9.Final to 4.2.10.Final - [Commits](netty/netty@netty-4.2.9.Final...netty-4.2.10.Final) Updates `io.netty:netty-codec` from 4.2.9.Final to 4.2.10.Final - [Commits](netty/netty@netty-4.2.9.Final...netty-4.2.10.Final) Updates `io.netty:netty-common` from 4.2.9.Final to 4.2.10.Final - [Commits](netty/netty@netty-4.2.9.Final...netty-4.2.10.Final) Updates `io.netty:netty-handler` from 4.2.9.Final to 4.2.10.Final - [Commits](netty/netty@netty-4.2.9.Final...netty-4.2.10.Final) Updates `io.netty:netty-codec` from 4.2.9.Final to 4.2.10.Final - [Commits](netty/netty@netty-4.2.9.Final...netty-4.2.10.Final) Updates `io.netty:netty-common` from 4.2.9.Final to 4.2.10.Final - [Commits](netty/netty@netty-4.2.9.Final...netty-4.2.10.Final) Updates `io.netty:netty-handler` from 4.2.9.Final to 4.2.10.Final - [Commits](netty/netty@netty-4.2.9.Final...netty-4.2.10.Final) Updates `org.pitest:pitest-maven` from 1.22.0 to 1.22.1 - [Release notes](https://github.com/hcoles/pitest/releases) - [Commits](hcoles/pitest@1.22.0...1.22.1) --- updated-dependencies: - dependency-name: ch.qos.logback:logback-core dependency-version: 1.5.28 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: ch.qos.logback:logback-classic dependency-version: 1.5.28 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: ch.qos.logback:logback-classic dependency-version: 1.5.28 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: org.pitest:pitest-parent dependency-version: 1.22.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: org.pitest:pitest-maven dependency-version: 1.22.1 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: com.nimbusds:oauth2-oidc-sdk dependency-version: '11.33' dependency-type: direct:production update-type: version-update:semver-minor dependency-group: low-risk - dependency-name: io.netty:netty-codec-http dependency-version: 4.2.10.Final dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.netty:netty-codec dependency-version: 4.2.10.Final dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.netty:netty-common dependency-version: 4.2.10.Final dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.netty:netty-handler dependency-version: 4.2.10.Final dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.netty:netty-codec dependency-version: 4.2.10.Final dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.netty:netty-common dependency-version: 4.2.10.Final dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.netty:netty-handler dependency-version: 4.2.10.Final dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: org.pitest:pitest-maven dependency-version: 1.22.1 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: low-risk ... Signed-off-by: dependabot[bot] <support@github.com>
Contributor
|
/azp run |
|
Azure Pipelines successfully started running 1 pipeline(s). |
Contributor
|
/azp run |
|
Azure Pipelines successfully started running 1 pipeline(s). |
Contributor
|
/azp run |
|
Azure Pipelines successfully started running 1 pipeline(s). |
|
RichardSlater
approved these changes
Feb 10, 2026
Contributor
RichardSlater
left a comment
There was a problem hiding this comment.
Patch bumps, low-risk, passing ci, standard pre-approved change.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.



Bumps the low-risk group with 9 updates:
1.5.271.5.281.5.271.5.281.22.01.22.11.22.01.22.111.3211.334.2.9.Final4.2.10.Final4.2.9.Final4.2.10.Final4.2.9.Final4.2.10.Final4.2.9.Final4.2.10.FinalUpdates
ch.qos.logback:logback-corefrom 1.5.27 to 1.5.28Release notes
Sourced from ch.qos.logback:logback-core's releases.
Commits
e7a1855prepare release 1.5.28e8dee44cosmetic changes onlyded504cminor refactoring8af5459fix NPE as reported in issues/10144f560a0appender names of references not subject to substitutioneab8e1dremove spurious Sytem.out, add javadoc9ff843dfix issues/1016769bce0add scanStr field to PropertiesConfiguratorAction, refactor ResourceAction6fd0943add missing package.html in logback-core5350e54add missing package.html in logback-classicUpdates
ch.qos.logback:logback-classicfrom 1.5.27 to 1.5.28Release notes
Sourced from ch.qos.logback:logback-classic's releases.
Commits
e7a1855prepare release 1.5.28e8dee44cosmetic changes onlyded504cminor refactoring8af5459fix NPE as reported in issues/10144f560a0appender names of references not subject to substitutioneab8e1dremove spurious Sytem.out, add javadoc9ff843dfix issues/1016769bce0add scanStr field to PropertiesConfiguratorAction, refactor ResourceAction6fd0943add missing package.html in logback-core5350e54add missing package.html in logback-classicUpdates
ch.qos.logback:logback-classicfrom 1.5.27 to 1.5.28Release notes
Sourced from ch.qos.logback:logback-classic's releases.
Commits
e7a1855prepare release 1.5.28e8dee44cosmetic changes onlyded504cminor refactoring8af5459fix NPE as reported in issues/10144f560a0appender names of references not subject to substitutioneab8e1dremove spurious Sytem.out, add javadoc9ff843dfix issues/1016769bce0add scanStr field to PropertiesConfiguratorAction, refactor ResourceAction6fd0943add missing package.html in logback-core5350e54add missing package.html in logback-classicUpdates
org.pitest:pitest-parentfrom 1.22.0 to 1.22.1Release notes
Sourced from org.pitest:pitest-parent's releases.
Commits
e195484Merge pull request #1452 from hcoles/feature/null_final_fields8b1781bdo not mutate null assignments to final fields5ec1570failing testedc45e6Merge pull request #1450 from hcoles/dependabot/maven/samples/org.assertj-ass...991e4fcMerge pull request #1451 from hcoles/dependabot/maven/org.assertj-assertj-cor...f3a3657Bump org.assertj:assertj-core from 3.27.3 to 3.27.70296b34Bump org.assertj:assertj-core from 3.14.0 to 3.27.7 in /samplesbfdeffeMerge pull request #1449 from hcoles/feature/bump_asm_9_9_192e8fe0bump asm to 9.9.18092404Merge pull request #1445 from mlachenmayr-celonis/feat/pin-github-actionsUpdates
org.pitest:pitest-mavenfrom 1.22.0 to 1.22.1Release notes
Sourced from org.pitest:pitest-maven's releases.
Commits
e195484Merge pull request #1452 from hcoles/feature/null_final_fields8b1781bdo not mutate null assignments to final fields5ec1570failing testedc45e6Merge pull request #1450 from hcoles/dependabot/maven/samples/org.assertj-ass...991e4fcMerge pull request #1451 from hcoles/dependabot/maven/org.assertj-assertj-cor...f3a3657Bump org.assertj:assertj-core from 3.27.3 to 3.27.70296b34Bump org.assertj:assertj-core from 3.14.0 to 3.27.7 in /samplesbfdeffeMerge pull request #1449 from hcoles/feature/bump_asm_9_9_192e8fe0bump asm to 9.9.18092404Merge pull request #1445 from mlachenmayr-celonis/feat/pin-github-actionsUpdates
com.nimbusds:oauth2-oidc-sdkfrom 11.32 to 11.33Changelog
Sourced from com.nimbusds:oauth2-oidc-sdk's changelog.
... (truncated)
Commits
2ade16b[maven-release-plugin] prepare for next development iteration22be156Fixes Issuer issues: replaces regex in equalsIgnoreTrailingSlash with simple ...113abfcAdds InvalidDPoPNonceException extends InvalidDPoPProofException, wires it to...c9691bd[maven-release-plugin] prepare release 11.33Updates
io.netty:netty-codec-httpfrom 4.2.9.Final to 4.2.10.FinalCommits
4cc9873[maven-release-plugin] prepare release netty-4.2.10.Final54b8663Remove unnecessary allocations and abstractions in HttpContentCompressor (#16...961f427Update to netty-tcnative 2.0.75.Final (#16227)3007ba9Use recommanded finalize chain pattern when override finalize() method (#16212)b918042Update some dependencies (#16198) (#16215)874c995Reduce allocations on DefaultHeaders::containsValue (#15843)e0fe794Remove unnecessary null check in WebSocketServerExtensionHandler (#16201)1b0636bMove default compression options into static variable in HttpContentCompresso...85a3a0ecodec-http2: move the accessors from Http2Headers to DefaultHttp2Headers (#16...f44a88dImprove chunk picking for the large-size buddy allocator (#16179)Updates
io.netty:netty-codecfrom 4.2.9.Final to 4.2.10.FinalCommits
4cc9873[maven-release-plugin] prepare release netty-4.2.10.Final54b8663Remove unnecessary allocations and abstractions in HttpContentCompressor (#16...961f427Update to netty-tcnative 2.0.75.Final (#16227)3007ba9Use recommanded finalize chain pattern when override finalize() method (#16212)b918042Update some dependencies (#16198) (#16215)874c995Reduce allocations on DefaultHeaders::containsValue (#15843)e0fe794Remove unnecessary null check in WebSocketServerExtensionHandler (#16201)1b0636bMove default compression options into static variable in HttpContentCompresso...85a3a0ecodec-http2: move the accessors from Http2Headers to DefaultHttp2Headers (#16...f44a88dImprove chunk picking for the large-size buddy allocator (#16179)Updates
io.netty:netty-commonfrom 4.2.9.Final to 4.2.10.FinalCommits
4cc9873[maven-release-plugin] prepare release netty-4.2.10.Final54b8663Remove unnecessary allocations and abstractions in HttpContentCompressor (#16...961f427Update to netty-tcnative 2.0.75.Final (#16227)3007ba9Use recommanded finalize chain pattern when override finalize() method (#16212)b918042Update some dependencies (#16198) (#16215)874c995Reduce allocations on DefaultHeaders::containsValue (#15843)e0fe794Remove unnecessary null check in WebSocketServerExtensionHandler (#16201)1b0636bMove default compression options into static variable in HttpContentCompresso...85a3a0ecodec-http2: move the accessors from Http2Headers to DefaultHttp2Headers (#16...f44a88dImprove chunk picking for the large-size buddy allocator (#16179)Updates
io.netty:netty-handlerfrom 4.2.9.Final to 4.2.10.FinalCommits
4cc9873[maven-release-plugin] prepare release netty-4.2.10.Final54b8663Remove unnecessary allocations and abstractions in HttpContentCompressor (#16...961f427Update to netty-tcnative 2.0.75.Final (#16227)3007ba9Use recommanded finalize chain pattern when override finalize() method (#16212)b918042Update some dependencies (#16198) (#16215)874c995Reduce allocations on DefaultHeaders::containsValue (#15843)e0fe794Remove unnecessary null check in WebSocketServerExtensionHandler (#16201)1b0636bMove default compression options into static variable in HttpContentCompresso...85a3a0ecodec-http2: move the accessors from Http2Headers to DefaultHttp2Headers (#16...f44a88dImprove chunk picking for the large-size buddy allocator (#16179)Updates
io.netty:netty-codecfrom 4.2.9.Final to 4.2.10.FinalCommits
4cc9873[maven-release-plugin] prepare release netty-4.2.10.Final54b8663Remove unnecessary allocations and abstractions in HttpContentCompressor (#16...961f427Update to netty-tcnative 2.0.75.Final (#16227)3007ba9Use recommanded finalize chain pattern when override finalize() method (#16212)b918042Update some dependencies (#16198) (#16215)874c995Reduce allocations on DefaultHeaders::containsValue (#15843)e0fe794Remove unnecessary null check in WebSocketServerExtensionHandler (#16201)1b0636bMove default compression options into static variable in HttpContentCompresso...85a3a0ecodec-http2: move the accessors from Http2Headers to DefaultHttp2Headers (#16...f44a88dImprove chunk picking for the large-size buddy allocator (#16179)Updates
io.netty:netty-commonfrom 4.2.9.Final to 4.2.10.FinalCommits
4cc9873[maven-release-plugin] prepare release netty-4.2.10.Final54b8663Remove unnecessary allocations and abstractions in HttpContentCompressor (#16...961f427Update to netty-tcnative 2.0.75.Final (#16227)3007ba9Use recommanded finalize chain pattern when override finalize() method (#16212)b918042Update some dependencies (#16198) (#16215)874c995Reduce allocations on DefaultHeaders::containsValue (#15843)e0fe794Remove unnecessary null check in WebSocketServerExtensionHandler (#16201)1b0636bMove default compression options into static variable in HttpContentCompresso...85a3a0ecodec-http2: move the accessors from Http2Headers to DefaultHttp2Headers (#16...f44a88dImprove chunk picking for the large-size buddy allocator (#16179)Updates
io.netty:netty-handlerfrom 4.2.9.Final to 4.2.10.FinalCommits
4cc9873[maven-release-plugin] prepare release netty-4.2.10.Final54b8663Remove unnecessary allocations and abstractions in HttpContentCompressor (#16...961f427Update to netty-tcnative 2.0.75.Final (#16227)3007ba9Use recommanded finalize chain pattern when override finalize() method (#16212)b918042Update some dependencies (#16198) (#16215)874c995Reduce allocations on DefaultHeaders::containsValue (#15843)e0fe794Remove unnecessary null check in WebSocketServerExtensionHandler (#16201)1b0636bMove default compression options into static variable in HttpContentCompresso...85a3a0ecodec-http2: move the accessors from Http2Headers to DefaultHttp2Headers (#16...f44a88dImprove chunk picking for the large-size buddy allocator (#16179)Updates
org.pitest:pitest-mavenfrom 1.22.0 to 1.22.1Release notes
Sourced from org.pitest:pitest-maven's releases.
Commits
e195484Merge pull request #1452 from hcoles/feature/null_final_fields8b1781bdo not mutate null assignments to final fields5ec1570failing testedc45e6Merge pull request #1450 from hcoles/dependabot/maven/samples/org.assertj-ass...991e4fcMerge pull request #1451 from hcoles/dependabot/maven/org.assertj-assertj-cor...f3a3657Bump org.assertj:assertj-core from 3.27.3 to 3.27.70296b34Bump org.assertj:assertj-core from 3.14.0 to 3.27.7 in /samplesbfdeffeMerge pull request #1449 from hcoles/feature/bump_asm_9_9_192e8fe0bump asm to 9.9.18092404Merge pull request #1445 from mlachenmayr-celonis/feat/pin-github-actionsYou can trigger a rebase of this PR by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions