Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump the dependencies group with 2 updates #2516

Closed
wants to merge 1 commit into from

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Feb 3, 2025

Bumps the dependencies group with 2 updates: com.microsoft.sqlserver:mssql-jdbc and com.google.code.gson:gson.

Updates com.microsoft.sqlserver:mssql-jdbc from 12.8.1.jre8 to 12.9.0.jre8-preview

Release notes

Sourced from com.microsoft.sqlserver:mssql-jdbc's releases.

[12.8.1] Hotfix & Stable Release

Changed

  • Changed MSAL logging from FINER to FINEST #2491

Fixed issues

  • Adjusted DESTINATION_COL_METADATA_LOCK, in SQLServerBulkCopy, so that is properly released in all cases #2492
  • Reverted "Execute Stored Procedures Directly" feature, as well as subsequent changes related to the feature. #2493
  • Changed driver behavior to allow prepared statement objects to be reused, preventing a "multiple queries are not allowed" error #2494
Commits

Updates com.google.code.gson:gson from 2.11.0 to 2.12.1

Release notes

Sourced from com.google.code.gson:gson's releases.

Gson 2.11.1

The only difference between this release and 2.11.0 is that OSGi declarations in the Gson jar now specify that com.google.errorprone.annotations is an optional dependency, not a required one. If you do not use OSGi then there is no effective change.

Gson 2.12.0

What's Changed

The biggest change is that we no longer support Java 7. People who still need to run on Java 7 will need to use an earlier version of Gson.

Other changes:

New Contributors

Full Changelog: google/gson@gson-parent-2.11.0...gson-parent-2.12.0

Commits
  • 29e3d1d [maven-release-plugin] prepare release gson-parent-2.12.1
  • be456cf Make the import of com.google.errorprone optional (#2795)
  • b2e26fa Bump the github-actions group with 3 updates (#2785)
  • 10bdd6d Simplify collection type adapters slightly. (#2791)
  • ab9c54f [maven-release-plugin] prepare for next development iteration
  • aaf7a12 [maven-release-plugin] prepare release gson-parent-2.12.0
  • a2b1c3c Allow registering adapters for JsonElement again (#2789)
  • e5dce84 Bump the maven group with 8 updates (#2784)
  • 84e5f16 Bump the maven group with 7 updates (#2777)
  • 9f3e577 Bump the github-actions group with 2 updates (#2778)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the dependencies group with 2 updates: [com.microsoft.sqlserver:mssql-jdbc](https://github.com/Microsoft/mssql-jdbc) and [com.google.code.gson:gson](https://github.com/google/gson).


Updates `com.microsoft.sqlserver:mssql-jdbc` from 12.8.1.jre8 to 12.9.0.jre8-preview
- [Release notes](https://github.com/Microsoft/mssql-jdbc/releases)
- [Changelog](https://github.com/microsoft/mssql-jdbc/blob/main/CHANGELOG.md)
- [Commits](https://github.com/Microsoft/mssql-jdbc/commits)

Updates `com.google.code.gson:gson` from 2.11.0 to 2.12.1
- [Release notes](https://github.com/google/gson/releases)
- [Changelog](https://github.com/google/gson/blob/main/CHANGELOG.md)
- [Commits](google/gson@gson-parent-2.11.0...gson-parent-2.12.1)

---
updated-dependencies:
- dependency-name: com.microsoft.sqlserver:mssql-jdbc
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dependencies
- dependency-name: com.google.code.gson:gson
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dependencies
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels Feb 3, 2025
@dependabot dependabot bot requested review from a team, komamitsu, brfrn169, feeblefakie and Torch3333 and removed request for a team February 3, 2025 19:47
@@ -32,7 +32,7 @@ subprojects {
mysqlDriverVersion = '8.4.0'
postgresqlDriverVersion = '42.7.5'
oracleDriverVersion = '23.6.0.24.10'
sqlserverDriverVersion = '12.8.1.jre8'
sqlserverDriverVersion = '12.9.0.jre8-preview'
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Not sure whether to use the preview version...

Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

We discussed that before and concluded we should not.
The only way to ignore a specific version for a Dependabot group update is to add this version to ignore 12.9.0.jre8-preview to the dependabot.yaml, which is a bit troublesome.
I was hoping the stable version 12.9.0.jre8 would be released quickly but since it is not the case, I will resort to update the dependabot.yaml

Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I see. Thanks!

Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copy link
Contributor Author

dependabot bot commented on behalf of github Feb 4, 2025

This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.

To ignore these dependencies, configure ignore rules in dependabot.yml

@dependabot dependabot bot deleted the dependabot/gradle/dependencies-75873820a0 branch February 4, 2025 02:33
@Torch3333
Copy link
Contributor

@dependabot reopen

@dependabot dependabot bot restored the dependabot/gradle/dependencies-75873820a0 branch February 4, 2025 07:00
@dependabot dependabot bot reopened this Feb 4, 2025
@Torch3333
Copy link
Contributor

@dependabot ignore com.microsoft.sqlserver:mssql-jdbc patch version

Copy link
Contributor Author

dependabot bot commented on behalf of github Feb 4, 2025

OK, I won't notify you about version 12.9.0 of com.microsoft.sqlserver:mssql-jdbc again, unless you unignore it.

@Torch3333
Copy link
Contributor

@dependabot show com.microsoft.sqlserver:mssql-jdbc ignore conditions

Copy link
Contributor Author

dependabot bot commented on behalf of github Feb 4, 2025

Ignore Conditions
Dependency Ignore Condition
com.microsoft.sqlserver:mssql-jdbc [>= 12.9.0.a, < 12.9.1]

@Torch3333
Copy link
Contributor

@dependabot ignore com.microsoft.sqlserver:mssql-jdbc minor version

Copy link
Contributor Author

dependabot bot commented on behalf of github Feb 4, 2025

OK, I won't notify you about version 12.9.x of com.microsoft.sqlserver:mssql-jdbc again, unless you unignore it.

@Torch3333
Copy link
Contributor

@dependabot unignore com.microsoft.sqlserver:mssql-jdbc minor version)

Copy link
Contributor Author

dependabot bot commented on behalf of github Feb 4, 2025

OK, I will stop ignoring the com.microsoft.sqlserver:mssql-jdbc dependency.

@Torch3333
Copy link
Contributor

@dependabot show com.microsoft.sqlserver:mssql-jdbc ignore conditions

Copy link
Contributor Author

dependabot bot commented on behalf of github Feb 4, 2025

No ignore conditions found for the dependency com.microsoft.sqlserver:mssql-jdbc

@Torch3333
Copy link
Contributor

@dependabot ignore com.microsoft.sqlserver:mssql-jdbc patch version

Copy link
Contributor Author

dependabot bot commented on behalf of github Feb 4, 2025

OK, I won't notify you about version 12.9.0 of com.microsoft.sqlserver:mssql-jdbc again, unless you unignore it.

@Torch3333
Copy link
Contributor

@dependabot recreate

@Torch3333
Copy link
Contributor

@dependabot close

@dependabot dependabot bot closed this Feb 4, 2025
Copy link
Contributor Author

dependabot bot commented on behalf of github Feb 4, 2025

This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.

To ignore these dependencies, configure ignore rules in dependabot.yml

@dependabot dependabot bot deleted the dependabot/gradle/dependencies-75873820a0 branch February 4, 2025 07:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file java Pull requests that update Java code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants