ImSejin / lezhin-comics-downloader

📥 Downloader for lezhin comics
https://www.lezhin.com
Apache License 2.0
56 stars 4 forks source link

chore(deps): update dependency org.codehaus.gmavenplus:gmavenplus-plugin to v3.0.2 #222

Closed renovate[bot] closed 9 months ago

renovate[bot] commented 10 months ago

Mend Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
org.codehaus.gmavenplus:gmavenplus-plugin (source) 3.0.0 -> 3.0.2 age adoption passing confidence

Release Notes

groovy/GMavenPlus (org.codehaus.gmavenplus:gmavenplus-plugin) ### [`v3.0.2`](https://togithub.com/groovy/GMavenPlus/releases/tag/3.0.2) [Compare Source](https://togithub.com/groovy/GMavenPlus/compare/3.0.1...3.0.2) #### Bugs \[[#​280](https://togithub.com/groovy/GMavenPlus/issues/280)] The 3.0.1 jar was corrupt (thanks [@​eugene-sadovsky](https://togithub.com/eugene-sadovsky) for reporting this!). #### Enhancements - \[[#​279](https://togithub.com/groovy/GMavenPlus/issues/279)] Fix CVE-2023-42503. #### Potentially breaking changes None. #### Notes The CVE fixed were related to dependencies of the plugin. While I haven't done an analysis of whether they were exploitable (since this is a Maven plugin and not an application), it seems unlikely. ### [`v3.0.1`](https://togithub.com/groovy/GMavenPlus/releases/tag/3.0.1) [Compare Source](https://togithub.com/groovy/GMavenPlus/compare/3.0.0...3.0.1) #### Bugs - \[[#​276](https://togithub.com/groovy/GMavenPlus/issues/276)] Fix that enabling `skipBytecodeCheck` causes the Groovy version to be reported as not supporting the goal (thanks for reporting this [@​jgenoctr](https://togithub.com/jgenoctr)!). #### Enhancements - \[[#​264](https://togithub.com/groovy/GMavenPlus/issues/264)] Support targeting Java 21 bytecode (thanks [@​bmarwell](https://togithub.com/bmarwell)!). - \[[#​253](https://togithub.com/groovy/GMavenPlus/issues/253)] Fix CVE-2020-8908 and CVE-2023-2976. - Fix CVE-2023-37460 ([`242baa8`](https://togithub.com/groovy/GMavenPlus/commit/242baa86cc3e900fdb47d4dc67db6c4932826645) and [`623a56f`](https://togithub.com/groovy/GMavenPlus/commit/623a56f6d8c3174f7618fc9c96d32b9e9d4186ac)). #### Potentially breaking changes None. #### Notes The CVEs fixed were related to dependencies of the plugin. While I haven't done an analysis of whether they were exploitable (since this is a Maven plugin and not an application), it seems unlikely.

Configuration

📅 Schedule: Branch creation - "before 7am on Sunday" in timezone Asia/Seoul, Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Mend Renovate. View repository job log here.

sonarcloud[bot] commented 10 months ago

Kudos, SonarCloud Quality Gate passed!    Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
0.0% 0.0% Duplication