Skip to content

Conversation

@dependabot
Copy link

@dependabot dependabot bot commented on behalf of github Mar 28, 2022

Bumps shiro-core from 1.6.0 to 1.9.0.

Changelog

Sourced from shiro-core's changelog.

1.9.0

###########################################################

Bug

[SHIRO-829] - beanPostProcessor and FactoryBean cause aop to fail in the same Configuration
[SHIRO-845] - Dependencies for test-jars missing

Improvement

[SHIRO-804] - Avoid conflicts with spring boot aop
[SHIRO-836] - Delete jsecurty-sample.jks
[SHIRO-838] - Create SHA512-Hashes
[SHIRO-846] - Creation of site takes very long time
[SHIRO-848] - Relative Path in pom.xml is not needed
[SHIRO-850] - The profile name jdk19-plus is misleading
[SHIRO-851] - Handling properties for compile/enconding vs. default configurations of plugins
[SHIRO-852] - Configuration for maven-release-plugin prepationGoal should be changed
[SHIRO-853] - Versions of maven-surefire/failsafe/report plugin are not in sync
[SHIRO-854] - Konfiguration includes/excludes maven-failsafe-plugin can be reduced to default
[SHIRO-860] - update logback to 1.2.10
[SHIRO-862] - Replace Google Analytics with Matomo for new Javadocs

Task

[SHIRO-841] - NullPointerException from SessionsSecurityManager.start()
[SHIRO-867] - Skip Deployment of integration-test and samples artifacts

Dependency upgrade

[SHIRO-828] - aspectj-maven-plugin 1.14.0
[SHIRO-842] - shiro-web depends on older log4j
[SHIRO-843] - Update maven-project-info-reports
[SHIRO-844] - Update maven-javadoc-plugin to 3.3.1

###########################################################

1.8.0

###########################################################

Bug

[SHIRO-678] - Strings garbled when POST without JSESSIONID cookie
[SHIRO-812] - Key value separator in config is broken with escape char
[SHIRO-825] - Trailing slash in URI results in "IllegalArgumentException: There is no configured chain under the name/key"

Improvement

[SHIRO-216] - Add @Documented to Shiro authorization annotations

... (truncated)

Commits
  • 83ab67f [maven-release-plugin] prepare release shiro-root-1.9.0
  • 0eb61dc Update release notes
  • a2a4716 Updating NOTICE year
  • 262eea1 Merge pull request #349 from apache/SHIRO-838_hashes_fix
  • 51dc6c1 [SHIRO-838] udpate parent pom for sha512 on source-release
  • 50f686a Revert "[maven-release-plugin] prepare release shiro-root-1.9.0"
  • 6bc43b3 Revert "[maven-release-plugin] prepare for next development iteration"
  • 31df330 [maven-release-plugin] prepare for next development iteration
  • 9c944ff [maven-release-plugin] prepare release shiro-root-1.9.0
  • 8aea58c [BUILD] fix hazelcast/powermock reflection in test.
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [shiro-core](https://github.com/apache/shiro) from 1.6.0 to 1.9.0.
- [Release notes](https://github.com/apache/shiro/releases)
- [Changelog](https://github.com/apache/shiro/blob/shiro-root-1.9.0/RELEASE-NOTES)
- [Commits](apache/shiro@shiro-root-1.6.0...shiro-root-1.9.0)

---
updated-dependencies:
- dependency-name: org.apache.shiro:shiro-core
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels Mar 28, 2022
@dependabot @github
Copy link
Author

dependabot bot commented on behalf of github Jul 4, 2022

Superseded by #27.

@dependabot dependabot bot closed this Jul 4, 2022
@dependabot dependabot bot deleted the dependabot/maven/org.apache.shiro-shiro-core-1.9.0 branch July 4, 2022 03:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update Java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant