dbmdz / iiif-server-hymir

Hymir is a Java based IIIF Server. It is based on "IIIF Image API Java Libraries" and "IIIF Presentation API Java Libraries" projects (see https://github.com/dbmdz)
MIT License
27 stars 7 forks source link

Bump version.spotbugs from 4.0.3 to 4.0.4 #151

Closed dependabot-preview[bot] closed 4 years ago

dependabot-preview[bot] commented 4 years ago

Bumps version.spotbugs from 4.0.3 to 4.0.4. Updates spotbugs-annotations from 4.0.3 to 4.0.4

Release notes

Sourced from spotbugs-annotations's releases.

SpotBugs 4.0.4

CHANGELOG

CHECKSUM

file checksum (sha256)
spotbugs-4.0.4-javadoc.jar 1662005c2ba2e8c9b4eff2e9c8554d61575271ec273dfccad66bcf115e4f4bea
spotbugs-4.0.4-sources.jar ae6f7109565e4c5a5b204569b41954bcd2f8d9badca2fc3e5cfdffe53576336f
spotbugs-4.0.4.tgz eff36aff1ce8d3326d317919aa0d7e92361d535b823befc26b7cf8e598ca660d
spotbugs-4.0.4.zip 204adbdaa0fa51fedf738b405a1fda65c693f39c66f754e8c4f93323a2c77a8d
spotbugs-annotations-4.0.4-javadoc.jar 9eea9f952c3e23e53479c4249318f219d188533eb43457a62d47f1c6c367a0cc
spotbugs-annotations-4.0.4-sources.jar b338136e3e82d585348cde58a8fe3a678e16f51a35c31c1463e05fefef557aad
spotbugs-annotations.jar 460da898f7696e40b109687a0099240ab36e8b442987df222454b0e5595f3c9d
spotbugs-ant-4.0.4-javadoc.jar 6b8b2d738e38fb0744e53b5480d7077b5076723f8c0fd08e9cff4a57bb0997f3
spotbugs-ant-4.0.4-sources.jar c74dec42c0ed0dd1ae02a7410d8e0f0dbbee23e8e7da4a21910863677fcdbc8e
spotbugs-ant.jar a9f1c4ea228ce3c4bb11065b26806f5e2d4ffe457a95a012166b11a58164cc19
spotbugs.jar 1388a164d1129508e780c9ba76f58c3ce8e36fa65d6824c4bbcbafe8e60dbf51
test-harness-4.0.4-javadoc.jar dacb076e59e912be320cc269bb8a8411de8ccb156fb7017663bb748dc84cc559
test-harness-4.0.4-sources.jar 2c1f5ef929453f3b682c7eb7c1e22db3082b5f74c5a5be439be5dc31dd7a31aa
test-harness-4.0.4.jar e6d72665dcaed1afd413541f211992924ffc2d4d64dc54f1a8f0bfa494853596
test-harness-core-4.0.4-javadoc.jar 205a3a90820f4c4f6fb78ea061b56dd077eb7b9097dfe2c34e30bc7cc4b62b47
test-harness-core-4.0.4-sources.jar f320f5eb4069e9686b760b2a6a0760989753225f9e9ce1226e3258ec64795d8a
test-harness-core-4.0.4.jar de97934146238f9ae23707bd14e3cea3f12bd89f3dde2b6b0648e41f11815418
test-harness-jupiter-4.0.4-javadoc.jar 2cc61d478c2683a78f32323221b56b0154da5f46a66309a7dc953acd9592f6f4
test-harness-jupiter-4.0.4-sources.jar 210353a57016e26b1a654d936a15f039613fa1ac532d485c1b1d03902f6c6315
test-harness-jupiter-4.0.4.jar 17e8d78d1868f86e63f3e5e3d878e86f3d7fb1b8cf1a8d5f893333c982bfd3e2
Changelog

Sourced from spotbugs-annotations's changelog.

4.0.4 - 2020-06-09

Security

  • Update dom4j to 2.1.3 to fix security vulnerability. (#1122)
Commits
  • 249e1a7 release SpotBugs v4.0.4
  • 9696e40 ci: create GitHub Release only for tagged commits
  • 5e9ed91 explain about tasks generated to each sourceSet
  • 2bbcbfc ci: fix release build in the master branch
  • 19968a0 ci: Automate the process to create a GitHub Release page (#1132)
  • bd8eda0 ci: Move more process from Travis to GitHub Actions (#1133)
  • 8a0c728 Fix documented parameter
  • d813e67 Remove tags not matching any actual parameter
  • 0817ee8 Fix the XML External Entity (XXE) Injection Vulnerability (#1131)
  • bd35f9b prepare for the next development
  • See full diff in compare view


Updates spotbugs from 4.0.3 to 4.0.4

Release notes

Sourced from spotbugs's releases.

SpotBugs 4.0.4

CHANGELOG

CHECKSUM

file checksum (sha256)
spotbugs-4.0.4-javadoc.jar 1662005c2ba2e8c9b4eff2e9c8554d61575271ec273dfccad66bcf115e4f4bea
spotbugs-4.0.4-sources.jar ae6f7109565e4c5a5b204569b41954bcd2f8d9badca2fc3e5cfdffe53576336f
spotbugs-4.0.4.tgz eff36aff1ce8d3326d317919aa0d7e92361d535b823befc26b7cf8e598ca660d
spotbugs-4.0.4.zip 204adbdaa0fa51fedf738b405a1fda65c693f39c66f754e8c4f93323a2c77a8d
spotbugs-annotations-4.0.4-javadoc.jar 9eea9f952c3e23e53479c4249318f219d188533eb43457a62d47f1c6c367a0cc
spotbugs-annotations-4.0.4-sources.jar b338136e3e82d585348cde58a8fe3a678e16f51a35c31c1463e05fefef557aad
spotbugs-annotations.jar 460da898f7696e40b109687a0099240ab36e8b442987df222454b0e5595f3c9d
spotbugs-ant-4.0.4-javadoc.jar 6b8b2d738e38fb0744e53b5480d7077b5076723f8c0fd08e9cff4a57bb0997f3
spotbugs-ant-4.0.4-sources.jar c74dec42c0ed0dd1ae02a7410d8e0f0dbbee23e8e7da4a21910863677fcdbc8e
spotbugs-ant.jar a9f1c4ea228ce3c4bb11065b26806f5e2d4ffe457a95a012166b11a58164cc19
spotbugs.jar 1388a164d1129508e780c9ba76f58c3ce8e36fa65d6824c4bbcbafe8e60dbf51
test-harness-4.0.4-javadoc.jar dacb076e59e912be320cc269bb8a8411de8ccb156fb7017663bb748dc84cc559
test-harness-4.0.4-sources.jar 2c1f5ef929453f3b682c7eb7c1e22db3082b5f74c5a5be439be5dc31dd7a31aa
test-harness-4.0.4.jar e6d72665dcaed1afd413541f211992924ffc2d4d64dc54f1a8f0bfa494853596
test-harness-core-4.0.4-javadoc.jar 205a3a90820f4c4f6fb78ea061b56dd077eb7b9097dfe2c34e30bc7cc4b62b47
test-harness-core-4.0.4-sources.jar f320f5eb4069e9686b760b2a6a0760989753225f9e9ce1226e3258ec64795d8a
test-harness-core-4.0.4.jar de97934146238f9ae23707bd14e3cea3f12bd89f3dde2b6b0648e41f11815418
test-harness-jupiter-4.0.4-javadoc.jar 2cc61d478c2683a78f32323221b56b0154da5f46a66309a7dc953acd9592f6f4
test-harness-jupiter-4.0.4-sources.jar 210353a57016e26b1a654d936a15f039613fa1ac532d485c1b1d03902f6c6315
test-harness-jupiter-4.0.4.jar 17e8d78d1868f86e63f3e5e3d878e86f3d7fb1b8cf1a8d5f893333c982bfd3e2
Changelog

Sourced from spotbugs's changelog.

4.0.4 - 2020-06-09

Security

  • Update dom4j to 2.1.3 to fix security vulnerability. (#1122)
Commits
  • 249e1a7 release SpotBugs v4.0.4
  • 9696e40 ci: create GitHub Release only for tagged commits
  • 5e9ed91 explain about tasks generated to each sourceSet
  • 2bbcbfc ci: fix release build in the master branch
  • 19968a0 ci: Automate the process to create a GitHub Release page (#1132)
  • bd8eda0 ci: Move more process from Travis to GitHub Actions (#1133)
  • 8a0c728 Fix documented parameter
  • d813e67 Remove tags not matching any actual parameter
  • 0817ee8 Fix the XML External Entity (XXE) Injection Vulnerability (#1131)
  • bd35f9b prepare for the next development
  • See full diff in compare view


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language - `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com): - Update frequency (including time of day and day of week) - Pull request limits (per update run and/or open at any time) - Automerge options (never/patch/minor, and dev/runtime dependencies) - Out-of-range updates (receive only lockfile updates, if desired) - Security updates (receive only security updates, if desired)