Skip to content

build(deps): bump the maven-dependencies group with 7 updates - #4926

Open
dependabot[bot] wants to merge 2 commits into
masterfrom
dependabot/maven/maven-dependencies-f246cf07f0
Open

dependabot[bot] wants to merge 2 commits into
masterfrom
dependabot/maven/maven-dependencies-f246cf07f0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 29, 2026

Copy link
Copy Markdown
Contributor

Bumps the maven-dependencies group with 7 updates:

Package From To
software.amazon.awssdk:sts 2.55.5 2.55.6
software.amazon.awssdk:auth 2.55.5 2.55.6
software.amazon.awssdk:http-auth-aws 2.55.5 2.55.6
software.amazon.awssdk:http-auth-spi 2.55.5 2.55.6
software.amazon.awssdk:http-client-spi 2.55.5 2.55.6
software.amazon.awssdk:utils 2.55.5 2.55.6
com.diffplug.spotless:spotless-maven-plugin 3.10.2 3.10.3

Updates software.amazon.awssdk:sts from 2.55.5 to 2.55.6

Updates software.amazon.awssdk:auth from 2.55.5 to 2.55.6

Updates software.amazon.awssdk:http-auth-aws from 2.55.5 to 2.55.6

Updates software.amazon.awssdk:http-auth-spi from 2.55.5 to 2.55.6

Updates software.amazon.awssdk:http-client-spi from 2.55.5 to 2.55.6

Updates software.amazon.awssdk:utils from 2.55.5 to 2.55.6

Updates software.amazon.awssdk:auth from 2.55.5 to 2.55.6

Updates software.amazon.awssdk:http-auth-aws from 2.55.5 to 2.55.6

Updates software.amazon.awssdk:http-auth-spi from 2.55.5 to 2.55.6

Updates software.amazon.awssdk:http-client-spi from 2.55.5 to 2.55.6

Updates software.amazon.awssdk:utils from 2.55.5 to 2.55.6

Updates com.diffplug.spotless:spotless-maven-plugin from 3.10.2 to 3.10.3

Release notes

Sourced from com.diffplug.spotless:spotless-maven-plugin's releases.

Maven Plugin v3.10.3

Changes

  • Generate formatter defaults from version catalog. (#3045)
  • Bump default gson version 2.13.2 -> 2.14.0. (#3045)
  • Bump default zjsonpatch version 0.4.14 -> 0.4.16. (#3045)
  • Bump default jackson-dataformat-yaml version 2.14.1 -> 2.20.1. (#3045)
  • Bump default ktfmt version 0.63 -> 0.64. (2988)
  • Bump default cleanthat version 2.25 -> 2.26. (#2882)
  • Bump default jackson version 2.20.1 -> 2.22.2. (#2819)
  • Bump default javaparser version 3.27.1 -> 3.28.2. (#3065)
  • Bump default palantir-java-format version 2.80.0 -> 2.98.0. (#3068)
  • Bump default scalafmt version 3.8.1 -> 3.11.5. (#2173)
  • Bump default google-java-format version 1.30.0 -> 1.36.1. (#3075)
  • Bump default gherkin-utils version 10.0.0 -> 12.0.2. (#2979)

Fixed

  • Fix release signing by using Gradle's required eight-digit signing subkey ID. (#3105)
  • Fix race when creating the npm install cache directory. ((#3096)
  • GrEclipse no longer emits expected OSGi and nested-jar warnings during initialization. (#2445)
  • typescript prettier() no longer emits a warning when its parser is already set to typescript. (#3098)
  • <versionCatalog> preserves standalone comments at section boundaries and the end of the file. (#3048)
  • <versionCatalog> preserves entries when comments contain unmatched brackets, preserves commas inside quoted strings, and keeps significant line boundaries in multiline entries. (#3042)
  • <versionCatalog> now reports unfinished entries as lints at their starting line. These fail formatting by default, so upgrading may expose catalog errors that previously caused silent data loss. (#3042)
  • Eclipse JDT formatter step no longer fails with NoClassDefFoundError or NoSuchMethodError when lombok is active as a JVM agent (e.g. -javaagent:lombok.jar in Eclipse/VS Code/Cursor). (#2795)
Commits
  • 61e2016 Published maven/3.10.3
  • 49e0b07 Published lib/4.10.3
  • b7a7748 Fix release signing key ID format (#3105)
  • be8005a Document release signing correction (#3105)
  • 073fe61 Use short signing subkey ID for release publishing
  • 8ac44c7 Fix race when creating the npm install cache directory (#3096)
  • 3f2d955 Update dependency org.slf4j:slf4j-api to v2.0.20 (#3100)
  • 0c70ca8 Merge branch 'main' into fix/npm-cache-directory-race
  • bbf44a4 Fix GrEclipse initialization warnings (#3097)
  • b6bdcd0 Update dependency org.slf4j:slf4j-api to v2.0.20
  • Additional commits viewable in compare view

Most Recent Ignore Conditions Applied to This Pull Request
Dependency Name Ignore Conditions
com.diffplug.spotless:spotless-maven-plugin [>= 2.4.a, < 2.5]
com.diffplug.spotless:spotless-maven-plugin [>= 2.3.a, < 2.4]

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the maven-dependencies group with 7 updates:

| Package | From | To |
| --- | --- | --- |
| software.amazon.awssdk:sts | `2.55.5` | `2.55.6` |
| software.amazon.awssdk:auth | `2.55.5` | `2.55.6` |
| software.amazon.awssdk:http-auth-aws | `2.55.5` | `2.55.6` |
| software.amazon.awssdk:http-auth-spi | `2.55.5` | `2.55.6` |
| software.amazon.awssdk:http-client-spi | `2.55.5` | `2.55.6` |
| software.amazon.awssdk:utils | `2.55.5` | `2.55.6` |
| [com.diffplug.spotless:spotless-maven-plugin](https://github.com/diffplug/spotless) | `3.10.2` | `3.10.3` |


Updates `software.amazon.awssdk:sts` from 2.55.5 to 2.55.6

Updates `software.amazon.awssdk:auth` from 2.55.5 to 2.55.6

Updates `software.amazon.awssdk:http-auth-aws` from 2.55.5 to 2.55.6

Updates `software.amazon.awssdk:http-auth-spi` from 2.55.5 to 2.55.6

Updates `software.amazon.awssdk:http-client-spi` from 2.55.5 to 2.55.6

Updates `software.amazon.awssdk:utils` from 2.55.5 to 2.55.6

Updates `software.amazon.awssdk:auth` from 2.55.5 to 2.55.6

Updates `software.amazon.awssdk:http-auth-aws` from 2.55.5 to 2.55.6

Updates `software.amazon.awssdk:http-auth-spi` from 2.55.5 to 2.55.6

Updates `software.amazon.awssdk:http-client-spi` from 2.55.5 to 2.55.6

Updates `software.amazon.awssdk:utils` from 2.55.5 to 2.55.6

Updates `com.diffplug.spotless:spotless-maven-plugin` from 3.10.2 to 3.10.3
- [Release notes](https://github.com/diffplug/spotless/releases)
- [Changelog](https://github.com/diffplug/spotless/blob/main/CHANGES.md)
- [Commits](diffplug/spotless@maven/3.10.2...maven/3.10.3)

---
updated-dependencies:
- dependency-name: software.amazon.awssdk:sts
  dependency-version: 2.55.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-dependencies
- dependency-name: software.amazon.awssdk:auth
  dependency-version: 2.55.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-dependencies
- dependency-name: software.amazon.awssdk:http-auth-aws
  dependency-version: 2.55.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-dependencies
- dependency-name: software.amazon.awssdk:http-auth-spi
  dependency-version: 2.55.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-dependencies
- dependency-name: software.amazon.awssdk:http-client-spi
  dependency-version: 2.55.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-dependencies
- dependency-name: software.amazon.awssdk:utils
  dependency-version: 2.55.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-dependencies
- dependency-name: software.amazon.awssdk:auth
  dependency-version: 2.55.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-dependencies
- dependency-name: software.amazon.awssdk:http-auth-aws
  dependency-version: 2.55.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-dependencies
- dependency-name: software.amazon.awssdk:http-auth-spi
  dependency-version: 2.55.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-dependencies
- dependency-name: software.amazon.awssdk:http-client-spi
  dependency-version: 2.55.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-dependencies
- dependency-name: software.amazon.awssdk:utils
  dependency-version: 2.55.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-dependencies
- dependency-name: com.diffplug.spotless:spotless-maven-plugin
  dependency-version: 3.10.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels Sep 29, 2026
@kubernetes-prow

Copy link
Copy Markdown
Contributor

[APPROVALNOTIFIER] This PR is NOT APPROVED

This pull-request has been approved by: dependabot[bot]
Once this PR has been reviewed and has the lgtm label, please assign yue9944882 for approval. For more information see the Code Review Process.

The full list of commands accepted by this bot can be found here.

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@kubernetes-prow kubernetes-prow Bot added cncf-cla: yes Indicates the PR's author has signed the CNCF CLA. size/XS Denotes a PR that changes 0-9 lines, ignoring generated files. labels Sep 29, 2026
@kubernetes-prow kubernetes-prow Bot added size/L Denotes a PR that changes 100-499 lines, ignoring generated files. and removed size/XS Denotes a PR that changes 0-9 lines, ignoring generated files. labels Sep 29, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

cncf-cla: yes Indicates the PR's author has signed the CNCF CLA. dependencies Pull requests that update a dependency file java Pull requests that update Java code size/L Denotes a PR that changes 100-499 lines, ignoring generated files.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants