chore(deps): bump the low-risk group across 1 directory with 6 updates#351
Merged
RichardSlater merged 1 commit intomainfrom Mar 18, 2026
Merged
Conversation
Bumps the low-risk group with 6 updates in the / directory: | Package | From | To | | --- | --- | --- | | [org.yaml:snakeyaml](https://bitbucket.org/snakeyaml/snakeyaml) | `2.5` | `2.6` | | [org.projectlombok:lombok](https://github.com/projectlombok/lombok) | `1.18.42` | `1.18.44` | | [org.mockito:mockito-junit-jupiter](https://github.com/mockito/mockito) | `5.21.0` | `5.23.0` | | [io.projectreactor:reactor-bom](https://github.com/reactor/reactor) | `2025.0.3` | `2025.0.4` | | [io.projectreactor.netty:reactor-netty-core](https://github.com/reactor/reactor-netty) | `1.3.3` | `1.3.4` | | [com.nimbusds:oauth2-oidc-sdk](https://bitbucket.org/connect2id/oauth-2.0-sdk-with-openid-connect-extensions) | `11.33` | `11.34` | Updates `org.yaml:snakeyaml` from 2.5 to 2.6 - [Commits](https://bitbucket.org/snakeyaml/snakeyaml/branches/compare/snakeyaml-2.6..snakeyaml-2.5) Updates `org.projectlombok:lombok` from 1.18.42 to 1.18.44 - [Changelog](https://github.com/projectlombok/lombok/blob/master/doc/changelog.markdown) - [Commits](projectlombok/lombok@v1.18.42...v1.18.44) Updates `org.mockito:mockito-junit-jupiter` from 5.21.0 to 5.23.0 - [Release notes](https://github.com/mockito/mockito/releases) - [Commits](mockito/mockito@v5.21.0...v5.23.0) Updates `io.projectreactor:reactor-bom` from 2025.0.3 to 2025.0.4 - [Release notes](https://github.com/reactor/reactor/releases) - [Commits](reactor/reactor@2025.0.3...2025.0.4) Updates `io.projectreactor.netty:reactor-netty-core` from 1.3.3 to 1.3.4 - [Release notes](https://github.com/reactor/reactor-netty/releases) - [Commits](reactor/reactor-netty@v1.3.3...v1.3.4) Updates `com.nimbusds:oauth2-oidc-sdk` from 11.33 to 11.34 - [Changelog](https://bitbucket.org/connect2id/oauth-2.0-sdk-with-openid-connect-extensions/src/master/CHANGELOG.txt) - [Commits](https://bitbucket.org/connect2id/oauth-2.0-sdk-with-openid-connect-extensions/branches/compare/11.34..11.33) --- updated-dependencies: - dependency-name: org.yaml:snakeyaml dependency-version: '2.6' dependency-type: direct:production update-type: version-update:semver-minor dependency-group: low-risk - dependency-name: org.projectlombok:lombok dependency-version: 1.18.44 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: org.mockito:mockito-junit-jupiter dependency-version: 5.23.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: low-risk - dependency-name: io.projectreactor:reactor-bom dependency-version: 2025.0.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: io.projectreactor.netty:reactor-netty-core dependency-version: 1.3.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: low-risk - dependency-name: com.nimbusds:oauth2-oidc-sdk dependency-version: '11.34' dependency-type: direct:production update-type: version-update:semver-minor dependency-group: low-risk ... Signed-off-by: dependabot[bot] <support@github.com>
RichardSlater
approved these changes
Mar 16, 2026
Contributor
RichardSlater
left a comment
There was a problem hiding this comment.
Minor bump, standard pre-approved change.
Contributor
|
/azp run |
|
Azure Pipelines successfully started running 1 pipeline(s). |
RichardSlater
approved these changes
Mar 16, 2026
Contributor
RichardSlater
left a comment
There was a problem hiding this comment.
Minor bump, standard pre-approved change.
Contributor
|
/azp run |
|
Azure Pipelines successfully started running 1 pipeline(s). |
Contributor
|
/azp run |
|
Azure Pipelines successfully started running 1 pipeline(s). |
Contributor
|
/azp run |
|
Azure Pipelines successfully started running 1 pipeline(s). |
|
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.



Bumps the low-risk group with 6 updates in the / directory:
2.52.61.18.421.18.445.21.05.23.02025.0.32025.0.41.3.31.3.411.3311.34Updates
org.yaml:snakeyamlfrom 2.5 to 2.6Commits
cc19a61[maven-release-plugin] prepare for next development iterationbc4a8f4Minor fixes in Javadocf18203aAdd a test for Y79Y-003ad1fcebLess output in tests1db66b7Add (failing) build with JDK 2588ebaa8build: fix JKD 25 tests compilation6af8790Update Javadoca006b7aUpdate Javadocc143db2Update changesd78d11fUpdate changesUpdates
org.projectlombok:lombokfrom 1.18.42 to 1.18.44Changelog
Sourced from org.projectlombok:lombok's changelog.
Commits
17c78fe[version] pre-release version bump1edca70[test][@Jacksonized] Test emission of warning when not choosing jackson ver...e789e82[test] Update the generation of eclipse test targets from JDK14 to JDK25.a54cecd[trivial][changelog]3db0a6c[bugfix][@Jacksonized] javac handler of jacksonized checked for existing ja...12572fc[test] Adjusted tests to the new 'jackson version is a list' config key setup.0e9699c[changelog] Document implementation of Jackson3 support: #3950.d441be1[jacksonized] infrastructure for previous merge resolution: Changed to the co...d62b2d5Merge branch 'master' into cachescrubber-gh-3950f49f0fe[test] Remove tests for deprecated@Logger(access = MODULE). They're deprec...Updates
org.mockito:mockito-junit-jupiterfrom 5.21.0 to 5.23.0Release notes
Sourced from org.mockito:mockito-junit-jupiter's releases.
Commits
a231205Fix StackOverflowError with AbstractList after using mockSingleton (#3790)f6a91a6Replace mockito-android mock maker implementation with dexmaker-mockito-inlin...aa2298afix: make spotless happya6729d6chore: update BDDMockito with jspecify annotationbb83c92chore: move jspecify as a compile only dependency47a4695chore: add jspecify with minimal change. Fixes #350325f1395Add core API to enable Kotlin singleton mocking (#3762)ef9ee55Avoids mocking private static methods, as well as package-private static meth...d16fcfcBump graalvm/setup-graalvm from 1.4.4 to 1.4.5 (#3780)27eb8a3ClarifyRETURNS_MOCKSbehavior with sealed abstract enums (Java 15+) (#3773)Updates
io.projectreactor:reactor-bomfrom 2025.0.3 to 2025.0.4Release notes
Sourced from io.projectreactor:reactor-bom's releases.
Commits
6f9cbb5[release] Prepare and release BOM 2025.0.4dd0bbaaMerge-ignore release 2024.0.16 into 2025.0.44542001[release] Back to snapshots, next BOM will be SR 179bf3a91[release] Prepare and release BOM 2024.0.167610166[release] Back to snapshots, next BOM will be SR 4Updates
io.projectreactor.netty:reactor-netty-corefrom 1.3.3 to 1.3.4Release notes
Sourced from io.projectreactor.netty:reactor-netty-core's releases.
Commits
53e8319[release] Prepare and release 1.3.4aa4dc0eMerge-ignore release 1.2.16 into 1.3.4b8db392[release] Back to snapshots, next is 1.2.17-SNAPSHOT98eb271[release] Prepare and release 1.2.16d64826c[test] By default connection eviction happens on release or on acquire (#4127)902ae00Suppress issue reported by errorpronee507934Merge a839725f3 into 1.3.4a839725Suppress issue reported by errorprone8fffa1aMerge #4125 into 1.3.4ac6c7f8Bump ruby/setup-ruby from 1.289.0 to 1.290.0 (#4125)Updates
com.nimbusds:oauth2-oidc-sdkfrom 11.33 to 11.34Changelog
Sourced from com.nimbusds:oauth2-oidc-sdk's changelog.
... (truncated)
Commits
17a2f1c[maven-release-plugin] prepare for next development iterationb59da22Support multiple client auth candidates in TokenRequest and PushedAuthorizati...1a9194dEdits release notes (iss #524)3c7f184TokenIntrospectionRequest gets client auth candidates support, parse method m...97c607fTokenRevocationRequest receives constructor and parse method support for mult...f12bfd0[maven-release-plugin] prepare release 11.34You can trigger a rebase of this PR by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions