Codearte / gradle-nexus-staging-plugin

Automatize releasing Gradle projects to Maven Central.
Apache License 2.0
172 stars 26 forks source link

Bump byte-buddy from 1.10.6 to 1.10.9 #161

Closed dependabot-preview[bot] closed 4 years ago

dependabot-preview[bot] commented 4 years ago

Bumps byte-buddy from 1.10.6 to 1.10.9.

Release notes

Sourced from byte-buddy's releases.

Byte Buddy 1.10.9

  • Add validation for interface method modifiers.
  • Correct discovery of MacOs temp directory for Byte Buddy Agent VirtualMachine.
  • Add parallel processor for Byte Buddy build engine.
  • Add preprocessor for Byte Buddy build engine.
  • Explicitly load Java's Module from boot loader to avoid loading pseudo compiler target bundled with NetBeans.
  • Add convenience method for creating lookup-based class loading strategy with fallback to Unsafe for Java 8 and older.
  • Add caching for method, field and parameter description hashCode methods.

Byte Buddy 1.10.8

  • Adjust use of types of the java.instrument module to avoid errors if the module is not present on a JVM.

Byte Buddy 1.10.7

  • Correct discovery of old J9 VMs.
  • Correct invocation of AgentBuilder.Listener during retransformation.
  • Allow forbidding self-attachment using own artifact.
  • Add possibility to patch class file transformers.
  • Fix equality check for float and double primitives.
  • Add guards for annotation API to handle buggy reflection API with mandated parameters.
  • Update ASM.
Changelog

Sourced from byte-buddy's changelog.

29. March 2020: version 1.10.9

  • Add validation for interface method modifiers.
  • Correct discovery of MacOs temp directory for Byte Buddy Agent VirtualMachine.
  • Add parallel processor for Byte Buddy build engine.
  • Add preprocessor for Byte Buddy build engine.
  • Explicitly load Java's Module from boot loader to avoid loading pseudo compiler target bundled with NetBeans.
  • Add convenience method for creating lookup-based class loading strategy with fallback to Unsafe for Java 8 and older.
  • Add caching for method, field and parameter description hashCode methods.

16. February 2020: version 1.10.8

  • Adjust use of types of the java.instrument module to avoid errors if the module is not present on a JVM.

21. January 2020: version 1.10.7

  • Correct discovery of old J9 VMs.
  • Correct invocation of AgentBuilder.Listener during retransformation.
  • Allow forbidding self-attachment using own artifact.
  • Add possibility to patch class file transformers.
  • Fix equality check for float and double primitives.
  • Add guards for annotation API to handle buggy reflection API with mandated parameters.
  • Update ASM.
Commits
  • ff68036 [maven-release-plugin] prepare release byte-buddy-1.10.9
  • 0017237 [release] Fix Gradle plugin version
  • 886c192 [maven-release-plugin] prepare for next development iteration
  • 949e344 [maven-release-plugin] prepare release byte-buddy-1.10.9
  • 34dd51a [release] New release
  • 6f5ff83 Extend javadoc.
  • fd579fa Add convenience method for resolving a lookup based class loading strategy.
  • 1eba9dd Add caching for expensive methods.
  • 6193017 Avoid security exception capture by specifying target loader.
  • c4a2cb6 Merge pull request #827 from dinix2008/master
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme Additionally, you can set the following in the `.dependabot/config.yml` file in this repo: - Update frequency - Automerge options (never/patch/minor, and dev/runtime dependencies) - Out-of-range updates (receive only lockfile updates, if desired) - Security updates (receive only security updates, if desired)
dependabot-preview[bot] commented 4 years ago

Superseded by #163.