Skip to content

build(deps): bump the maven-plugins group with 4 updates - #985

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/maven/maven-plugins-3ad648b05c
Closed

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/maven/maven-plugins-3ad648b05c

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 19, 2026

Copy link
Copy Markdown
Contributor

Bumps the maven-plugins group with 4 updates: org.apache.maven.plugins:maven-deploy-plugin, org.apache.maven.plugins:maven-install-plugin, org.codehaus.mojo:properties-maven-plugin and org.codehaus.mojo:versions-maven-plugin.

Updates org.apache.maven.plugins:maven-deploy-plugin from 3.1.4 to 3.2.0

Release notes

Sourced from org.apache.maven.plugins:maven-deploy-plugin's releases.

3.2.0

🚀 New features and improvements

🐛 Bug Fixes

  • Backport security audit fixes to 3.x (f004-f008, f010, f012) (#701) @​gnodet

📝 Documentation updates

👻 Maintenance

🔧 Build

📦 Dependency updates

... (truncated)

Commits
  • 7aab9fb [maven-release-plugin] prepare release maven-deploy-plugin-3.2.0
  • 1f3eef5 Backport security audit fixes to 3.x (f004-f008, f010, f012)
  • 307f328 Simplify remote repository creation
  • 7b1bbc4 Cache projectsWithDeployExecution to fix O(N²) reactor scan
  • a9177c6 Clarify deploy without editing this projects POM
  • 7c40513 Restore the plain form of the ASF licence header
  • 5969234 Update Release Drafter configuration to use custom tag template and remove un...
  • df7b3fa Bump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml
  • b4e8aed work around Maven 4 CLI lack of interpolation
  • d634bb4 enable build with Maven 4
  • Additional commits viewable in compare view

Updates org.apache.maven.plugins:maven-install-plugin from 3.1.4 to 3.2.0

Release notes

Sourced from org.apache.maven.plugins:maven-install-plugin's releases.

3.2.0

🚀 New features and improvements

🐛 Bug Fixes

  • chore: harden embedded-POM trust boundary in install:install-file (3.x backport) (#447) @​gnodet

📝 Documentation updates

  • Restore the common wording on the download page (#438) @​slachiewicz
  • Add AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (#416) @​potiuk

👻 Maintenance

📦 Dependency updates

Commits
  • bcf484d [maven-release-plugin] prepare release maven-install-plugin-3.2.0
  • 5703691 chore: harden embedded-POM trust boundary in install:install-file (3.x backpo...
  • 9148a8f Cache projectsUsingPlugin to fix O(N²) reactor scan
  • 7465779 Fix workflow_dispatch indentation in release-drafter configuration
  • 7d4334d Use JSR-330 for component injection
  • bbcb1e7 Restore the common wording on the download page
  • 11f7073 Restore the document metadata dropped when the pages were ported
  • 9b34ac2 Port the site documentation from APT to Markdown
  • 510f48f Rename the site documents ahead of converting them
  • 26e0afc Bump apache/maven-gh-actions-shared/.github/workflows/pr-automation.yml
  • Additional commits viewable in compare view

Updates org.codehaus.mojo:properties-maven-plugin from 1.3.0 to 1.3.1

Release notes

Sourced from org.codehaus.mojo:properties-maven-plugin's releases.

1.3.1

📦 Dependency updates

Commits
  • 3480bb6 [maven-release-plugin] prepare release properties-maven-plugin-1.3.1
  • 63debbe Bump org.yaml:snakeyaml from 2.6 to 2.7
  • c8247fa Bump org.codehaus.plexus:plexus-utils from 4.0.3 to 4.1.0
  • 01103fd Bump release-drafter/release-drafter from 7.6.0 to 7.7.0
  • 0861437 Bump org.codehaus.mojo:mojo-parent from 96 to 97
  • c73907b Bump release-drafter/release-drafter from 7 to 7.6.0
  • f5783c4 Bump apache/maven-gh-actions-shared/.github/workflows/maven-verify.yml
  • e695673 Bump org.codehaus.plexus:plexus-utils from 4.0.2 to 4.0.3
  • 35bc443 Delete .github/release-drafter.yml
  • 2d94fb0 Bump release-drafter/release-drafter from 6 to 7
  • Additional commits viewable in compare view

Updates org.codehaus.mojo:versions-maven-plugin from 2.21.0 to 2.22.0

Release notes

Sourced from org.codehaus.mojo:versions-maven-plugin's releases.

2.22.0

🚀 New features and improvements

🐛 Bug Fixes

📝 Documentation updates

👻 Maintenance

📦 Dependency updates

... (truncated)

Commits
  • 7329d7e [maven-release-plugin] prepare release 2.22.0
  • 99bbbb9 Bump byteBuddyVersion from 1.18.12 to 1.18.13
  • b943679 Add artifact classifier to ChangeRocorderXML
  • 0cbb8fd Bump org.mariadb.jdbc:mariadb-java-client
  • 03390a5 Bump org.codehaus.plexus:plexus-utils from 4.0.3 to 4.1.0
  • b7fe8c6 Bump org.codehaus.plexus:plexus-archiver from 4.13.0 to 4.14.0
  • db72fa6 Bump org.codehaus.plexus:plexus-archiver from 4.12.0 to 4.13.0
  • e7c0958 Bump org.codehaus.plexus:plexus-interactivity-api from 1.5.1 to 1.6.0
  • 4c0693b Bump org.codehaus.plexus:plexus-i18n from 1.1.0 to 1.2.0
  • 80329a0 Bump byteBuddyVersion from 1.18.11 to 1.18.12
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the maven-plugins group with 4 updates: [org.apache.maven.plugins:maven-deploy-plugin](https://github.com/apache/maven-deploy-plugin), [org.apache.maven.plugins:maven-install-plugin](https://github.com/apache/maven-install-plugin), [org.codehaus.mojo:properties-maven-plugin](https://github.com/mojohaus/properties-maven-plugin) and [org.codehaus.mojo:versions-maven-plugin](https://github.com/mojohaus/versions).


Updates `org.apache.maven.plugins:maven-deploy-plugin` from 3.1.4 to 3.2.0
- [Release notes](https://github.com/apache/maven-deploy-plugin/releases)
- [Commits](apache/maven-deploy-plugin@maven-deploy-plugin-3.1.4...maven-deploy-plugin-3.2.0)

Updates `org.apache.maven.plugins:maven-install-plugin` from 3.1.4 to 3.2.0
- [Release notes](https://github.com/apache/maven-install-plugin/releases)
- [Commits](apache/maven-install-plugin@maven-install-plugin-3.1.4...maven-install-plugin-3.2.0)

Updates `org.codehaus.mojo:properties-maven-plugin` from 1.3.0 to 1.3.1
- [Release notes](https://github.com/mojohaus/properties-maven-plugin/releases)
- [Commits](mojohaus/properties-maven-plugin@properties-maven-plugin-1.3.0...properties-maven-plugin-1.3.1)

Updates `org.codehaus.mojo:versions-maven-plugin` from 2.21.0 to 2.22.0
- [Release notes](https://github.com/mojohaus/versions/releases)
- [Changelog](https://github.com/mojohaus/versions/blob/master/ReleaseNotes.md)
- [Commits](mojohaus/versions@2.21.0...2.22.0)

---
updated-dependencies:
- dependency-name: org.apache.maven.plugins:maven-deploy-plugin
  dependency-version: 3.2.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: maven-plugins
- dependency-name: org.apache.maven.plugins:maven-install-plugin
  dependency-version: 3.2.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: maven-plugins
- dependency-name: org.codehaus.mojo:properties-maven-plugin
  dependency-version: 1.3.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-plugins
- dependency-name: org.codehaus.mojo:versions-maven-plugin
  dependency-version: 2.22.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: maven-plugins
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels Sep 19, 2026
@coderabbitai

coderabbitai Bot commented Sep 19, 2026

Copy link
Copy Markdown

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration

Configuration used: Repository: dbunit/dbunit-extension/.coderabbit.yml

Review profile: ASSERTIVE

Plan: Advanced

Run ID: 7ff0cea6-23e9-4ed3-9804-4adda6118ba3

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@jeffjensen jeffjensen closed this Sep 20, 2026
@dependabot @github

dependabot Bot commented on behalf of github Sep 20, 2026

Copy link
Copy Markdown
Contributor Author

This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.

To ignore these dependencies, configure ignore rules in dependabot.yml

@dependabot
dependabot Bot deleted the dependabot/maven/maven-plugins-3ad648b05c branch September 20, 2026 18:16
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant