Skip to content

Bump the maven-minor-patch group across 1 directory with 6 updates - #691

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/maven/flowable-extension/maven-minor-patch-ca18440c8c
Open

dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/maven/flowable-extension/maven-minor-patch-ca18440c8c

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 28, 2026

Copy link
Copy Markdown
Contributor

Bumps the maven-minor-patch group with 6 updates in the /flowable-extension directory:

Package From To
org.slf4j:slf4j-api 2.0.18 2.0.20
com.fasterxml.jackson.core:jackson-databind 2.22.2 2.22.3
com.fasterxml.jackson.datatype:jackson-datatype-jsr310 2.22.2 2.22.3
org.graalvm.js:js-scriptengine 25.3.4.1 25.4.4.1.1
org.apache.maven.plugins:maven-compiler-plugin 3.15.0 3.16.0
org.apache.maven.plugins:maven-surefire-plugin 3.5.6 3.6.0

Updates org.slf4j:slf4j-api from 2.0.18 to 2.0.20

Updates com.fasterxml.jackson.core:jackson-databind from 2.22.2 to 2.22.3

Commits
  • 4385c5f [maven-release-plugin] prepare release jackson-databind-2.22.3
  • ccb4fd0 Prep for 2.22.3 release
  • 2958412 Merge branch '2.21' into 2.22
  • 1215b94 Post-release dep version bump
  • 1f0df62 [maven-release-plugin] prepare for next development iteration
  • 13a9ff4 [maven-release-plugin] prepare release jackson-databind-2.21.7
  • d168f96 Prep for 2.21.7 release
  • eaf5c76 Merge branch '2.21' into 2.22
  • e05ef4c Merge branch '2.20' into 2.21
  • f6d4000 Merge branch '2.19' into 2.20
  • Additional commits viewable in compare view

Updates com.fasterxml.jackson.datatype:jackson-datatype-jsr310 from 2.22.2 to 2.22.3

Updates org.graalvm.js:js-scriptengine from 25.3.4.1 to 25.4.4.1.1

Release notes

Sourced from org.graalvm.js:js-scriptengine's releases.

GraalJS 25 Innovation 4 (25.4.4.1.1)

GraalJS is an ECMAScript-compliant runtime to execute JavaScript and Node.js applications. It is fully standard-compliant, executes applications with high performance, and provides all benefits from the GraalVM stack, including language interoperability and common tooling.

You can download GraalJS as a Native Standalone distribution for Oracle GraalVM or GraalVM Community Edition. Native Standalone contains a Native Image compiled launcher.

Starting with 25.0.3, JVM Standalone artifacts are no longer supported and are not included in this release.

To distinguish between Oracle GraalVM and GraalVM Community Edition, the Community Edition distribution has the suffix -community in its name.

Learn more about GraalJS and how to get started on the website at https://www.graalvm.org/javascript/.

Changelog

Sourced from org.graalvm.js:js-scriptengine's changelog.

GraalJS Changelog

This changelog summarizes major changes between GraalVM versions of the GraalVM JavaScript (ECMAScript) language runtime. The main focus is on user-observable behavior of the engine. Changelog may include unreleased versions. See release calendar for release dates.

Version 25.4.4

  • Implemented the Await Dictionary proposal. It is available in ECMAScript staging mode (--js.ecmascript-version=staging).

Version 25.3.4

  • Implemented the Iterator Includes proposal. It is available in ECMAScript staging mode (--js.ecmascript-version=staging).
  • Implemented the Iterator Join proposal. It is available in ECMAScript staging mode (--js.ecmascript-version=staging).
  • Implemented the Iterator Chunking proposal. It is available in ECMAScript staging mode (--js.ecmascript-version=staging).
  • Updated Node.js to version 24.18.1.

Version 25.2.4

  • Updated Node.js to version 24.17.0.

Version 25.1.3

  • ECMAScript 2026 mode/features enabled by default.
  • Removed support and builds for macOS x86-64 (darwin-amd64).
  • Added an experimental option js.crypto that provides getRandomValues() and randomUUID() from the Web Crypto API.
  • Added stable option js.performance that provides performance.now(), timeOrigin, and toJSON() from the Web High Resolution Time API.
  • Finished support for Temporal. It is available in ECMAScript 2027 mode (--js.ecmascript-version=2027).
  • Implemented the Immutable ArrayBuffers proposal. It is available in ECMAScript staging mode (--js.ecmascript-version=staging).
  • Implemented the Explicit Resource Management proposal. It is available behind the experimental option (--js.explicit-resource-management).
  • Updated Node.js to version 24.14.1.
  • Limited Chrome inspector remote debugging to localhost.
  • Implemented the Joint Iteration proposal. It is available in ECMAScript staging mode (--js.ecmascript-version=staging).
  • Implemented the Import Text proposal. It is available behind the experimental option (--js.import-text).
  • Implemented the Import Bytes proposal. It is available behind the experimental option (--js.import-bytes).
  • Implemented the Error Stack Accessor proposal. It is available behind the experimental option (--js.error-stack-accessor).
  • Removed support for legacy import assertions (import ... assert {type: "..."}) and the --js.import-assertions option; use import attributes (import ... with {type: "..."}, option --js.import-attributes) instead.

Version 25.0.0

  • ECMAScript 2025 mode/features enabled by default.
  • Updated Node.js to version 22.17.1.
  • Implemented the Intl.DurationFormat proposal.
  • Made option js.text-encoding stable and allowed in SandboxPolicy.CONSTRAINED.
  • Implemented the import defer proposal. It is available in ECMAScript staging mode (--js.ecmascript-version=staging).
  • Implemented the Upsert proposal. It is available in ECMAScript staging mode (--js.ecmascript-version=staging).
  • Enabled source phase imports from WebAssembly modules (import source mod from "./mod.wasm") by default if the js.webassembly option is enabled and the js.source-phase-imports option is not explicitly set to false.

Version 24.2.0

  • Updated Node.js to version 22.13.1.
  • Implemented the Error.isError proposal. It is available in ECMAScript staging mode (--js.ecmascript-version=staging).
  • Implemented the Math.sumPrecise proposal. It is available in ECMAScript staging mode (--js.ecmascript-version=staging).
  • Implemented the Promise.try proposal. It is available in ECMAScript staging mode (--js.ecmascript-version=staging).
  • Implemented the Atomics.pause proposal. It is available in ECMAScript staging mode (--js.ecmascript-version=staging).

... (truncated)

Commits
  • 58f1795 [GR-23997] Periodic update of the graal import (2026-09-04).
  • d5b0fde Update graal import.
  • fb21e3b [GR-64345] Update GraalJS site for Maven artifacts 25.3.4.1.
  • 565c952 Update Jekyll theme revision in Gemfile.lock
  • 2ef7b14 Update GraalJS site for Maven artifacts 25.3.4.1
  • 55734fa [GR-79202] Correction of Reflect.set for frozen arrays.
  • fca7cf3 Regression test of Reflect.set for frozen arrays.
  • 7193578 Correction of Reflect.set for frozen arrays.
  • 6f96bf3 [GR-79127] Proxy constructor should not read prototype of NewTarget.
  • e0a508e [GR-79125] Correction of StringToBigInt() conversion.
  • Additional commits viewable in compare view

Updates org.apache.maven.plugins:maven-compiler-plugin from 3.15.0 to 3.16.0

Release notes

Sourced from org.apache.maven.plugins:maven-compiler-plugin's releases.

3.16.0

🚀 New features and improvements

🐛 Bug Fixes

📝 Documentation updates

👻 Maintenance

📦 Dependency updates

Commits
  • e7bba6e [maven-release-plugin] prepare release maven-compiler-plugin-3.16.0
  • c906809 Avoid using deprecated method CompilerConfiguration.setCompilerVersion
  • ad74fee Replace adopt-openj9 by semeru JDK distribution on GH
  • beb0eda Recompile when dependencies change (#1102)
  • a0b689e [MCOMPILER-578] Track outputs across compiler executions (#1091)
  • 2e81228 Fix incremental detection of empty sources, 3.x (#1075)
  • 2132f5b configure ATR project
  • 5992b77 Build fails when annotation processor list is empty (but present) (#1077)
  • acccef7 Bump plexusCompilerVersion from 2.16.2 to 2.17.0
  • 72bc445 Bump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0
  • Additional commits viewable in compare view

Updates org.apache.maven.plugins:maven-surefire-plugin from 3.5.6 to 3.6.0

Release notes

Sourced from org.apache.maven.plugins:maven-surefire-plugin's releases.

3.6.0

Please refer to the main page for what's new https://maven.apache.org/surefire/ And the migration page https://maven.apache.org/surefire/maven-surefire-plugin/whats-new-3-6-0.html

🚀 New features and improvements

🐛 Bug Fixes

📝 Documentation updates

👻 Maintenance

... (truncated)

Commits
  • 0ff622b [maven-release-plugin] prepare release surefire-3.6.0
  • bb3932a Let's go for 3.6.0 release
  • 3002a16 Bump mavenVersion from 3.9.14 to 3.9.16
  • 61a531d Bump Maven parent version from 47 to 49 (#3449)
  • e52ead4 [SUREFIRE-523] Link all reported tests to source XRef (#3445)
  • 45102fa [SUREFIRE-3446] Fix direct selection of JUnit Jupiter @​Nested classes (#3447)
  • b2e1f70 Fix #3303: distinguish JUnit 6 ParameterizedClass invocations (#3432)
  • c051938 Discover tests in a fork when a toolchain JDK is used (#3444)
  • db75df8 Bump org.codehaus.plexus:plexus-java from 1.5.2 to 1.6.0 (#3441)
  • 77f2759 Bump org.codehaus.plexus:plexus-interpolation from 1.29 to 1.30.0
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the maven-minor-patch group with 6 updates in the /flowable-extension directory:

| Package | From | To |
| --- | --- | --- |
| org.slf4j:slf4j-api | `2.0.18` | `2.0.20` |
| [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson-databind) | `2.22.2` | `2.22.3` |
| com.fasterxml.jackson.datatype:jackson-datatype-jsr310 | `2.22.2` | `2.22.3` |
| [org.graalvm.js:js-scriptengine](https://github.com/oracle/graaljs) | `25.3.4.1` | `25.4.4.1.1` |
| [org.apache.maven.plugins:maven-compiler-plugin](https://github.com/apache/maven-compiler-plugin) | `3.15.0` | `3.16.0` |
| [org.apache.maven.plugins:maven-surefire-plugin](https://github.com/apache/maven-surefire) | `3.5.6` | `3.6.0` |



Updates `org.slf4j:slf4j-api` from 2.0.18 to 2.0.20

Updates `com.fasterxml.jackson.core:jackson-databind` from 2.22.2 to 2.22.3
- [Commits](FasterXML/jackson-databind@jackson-databind-2.22.2...jackson-databind-2.22.3)

Updates `com.fasterxml.jackson.datatype:jackson-datatype-jsr310` from 2.22.2 to 2.22.3

Updates `org.graalvm.js:js-scriptengine` from 25.3.4.1 to 25.4.4.1.1
- [Release notes](https://github.com/oracle/graaljs/releases)
- [Changelog](https://github.com/oracle/graaljs/blob/master/CHANGELOG.md)
- [Commits](oracle/graaljs@vm-25.3.4.1...vm-25.4.4.1.1)

Updates `org.apache.maven.plugins:maven-compiler-plugin` from 3.15.0 to 3.16.0
- [Release notes](https://github.com/apache/maven-compiler-plugin/releases)
- [Commits](apache/maven-compiler-plugin@maven-compiler-plugin-3.15.0...maven-compiler-plugin-3.16.0)

Updates `org.apache.maven.plugins:maven-surefire-plugin` from 3.5.6 to 3.6.0
- [Release notes](https://github.com/apache/maven-surefire/releases)
- [Commits](apache/maven-surefire@surefire-3.5.6...surefire-3.6.0)

---
updated-dependencies:
- dependency-name: org.slf4j:slf4j-api
  dependency-version: 2.0.20
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-minor-patch
- dependency-name: com.fasterxml.jackson.core:jackson-databind
  dependency-version: 2.22.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-minor-patch
- dependency-name: com.fasterxml.jackson.datatype:jackson-datatype-jsr310
  dependency-version: 2.22.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: maven-minor-patch
- dependency-name: org.graalvm.js:js-scriptengine
  dependency-version: 25.4.4.1.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: maven-minor-patch
- dependency-name: org.apache.maven.plugins:maven-compiler-plugin
  dependency-version: 3.16.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: maven-minor-patch
- dependency-name: org.apache.maven.plugins:maven-surefire-plugin
  dependency-version: 3.6.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: maven-minor-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels Sep 28, 2026
@github-actions

Copy link
Copy Markdown

Coverage

metric value
line coverage 68.99% (73,608 / 106,690 lines)
branch coverage 47.13%
threshold (line) 65.50%
result PASS

+3.49% against the threshold.

Line coverage is gated; branch coverage is reported because it is what tells you whether the gated number is telling the truth. Merged across all backend shards.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants