ArpNetworking / metrics-portal

2 stars 12 forks source link

Bump org.simplejavamail:simple-java-mail from 8.11.1 to 8.11.2 #714

Closed dependabot[bot] closed 3 months ago

dependabot[bot] commented 3 months ago

Bumps org.simplejavamail:simple-java-mail from 8.11.1 to 8.11.2.

Release notes

Sourced from org.simplejavamail:simple-java-mail's releases.

v8.11.2 Outlook support bug fix

#530: [Bug] After converting Outlook .msg to EML, bullet lists have duplicate numbering HTML converted from RTF

Changelog

Sourced from org.simplejavamail:simple-java-mail's changelog.

https://www.simplejavamail.org

v8.11.0 (25-May-2024)

v8.11.0 - v8.11.2

  • v8.11.2 (08-June-2024): #530: [Bug] After converting Outlook .msg to EML, bullet lists have duplicate numbering HTML converted from RTF
  • v8.11.1 (28-May-2024): #529: Bump smtp-connection-pool from 2.3.2 to 2.3.3 which improves performance and fixes a rare ConcurrentModificationException
  • v8.11.1 (28-May-2024): #527: Bump org.slf4j:slf4j-api from 2.0.9 to 2.0.13
  • v8.11.1 (28-May-2024): #523: Bump org.jacoco:jacoco-maven-plugin from 0.8.5 to 0.8.12
  • v8.11.0 (25-May-2024): #526: When reading .msg files the RTF converted to HTML is garbled in some cases where the appropriate charset is not detected properly

NOTE: v8.11.0 contains many (minor) dependency updates to resolve CVE issues, including: - parent POM upgrade: Upgrades test dependencies as well as SLF4J versions - outlook-message-parser 1.13.2 -> 1.14.0 - java-reflection 4.0.1 -> 4.0.2 - smtp-connection-pool 2.3.1 -> 2.3.2 - utils-mail-dkim 3.1.0 -> 3.2.0 - jakarta.mail-api 2.1.2 -> 2.1.3 - angus-mail 2.0.2 -> 2.0.3 - therapi-runtime-javadoc 0.13.0 -> 0.15.0 - kryo 5.0.0-RC1 -> 5.6.0 - maven-assembly-plugin 3.1.0 -> 3.7.1 (only for the CLI module during build)

v8.10.0 - v8.10.1

  • v8.10.1 (04-May-2024): #510: Update upstream dependency generic-object-pool, which solves a critical bug when there are exceptions during allocation
  • v8.10.0 (30-April-2024): #508: [enhancement+bug] Make EmailConverter API more consistent regarding Session parameter, don't use Session.getDefaultInstance anymore and fix bug where emlToEmailBuilder used emlToMimeMessage

v8.10.0 (30-April-2024)

  • #508: [enhancement+bug] Make EmailConverter API more consistent regarding Session parameter, don't use Session.getDefaultInstance anymore and fix bug where emlToEmailBuilder used emlToMimeMessage

v8.9.0 (26-April-2024)

  • #507: [security] Update 3rd party dependencies to get rid of all currently known CVE issues (see issue for details)

v8.8.0 - v8.8.4

  • v8.8.4 (23-April-2024): #506: Upgrade utils-mail-smime dependency to 2.3.2, to resolve CVE issue in bouncycastle

... (truncated)

Commits
  • cb2f7b2 released 8.11.2 [skip ci]
  • 902e53f Preparing release 8.11.2
  • 0ce3503 #530: upgraded outlook-message-parser 1.14.0 -> 1.14.1, which solves duplicat...
  • See full diff in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)