enonic / app-guillotine

Apache License 2.0
2 stars 3 forks source link

Bump com.graphql-java:graphql-java from 21.3 to 21.4 #804

Closed dependabot[bot] closed 6 months ago

dependabot[bot] commented 6 months ago

Bumps com.graphql-java:graphql-java from 21.3 to 21.4.

Release notes

Sourced from com.graphql-java:graphql-java's releases.

21.4

This is a special release to help control introspection queries.

This release adds a default check for introspection queries, to check that they are sensible. This feature is a backport of graphql-java/graphql-java#3526 and graphql-java/graphql-java#3527.

This release also adds an optional maximum result nodes limit, which is a backport of graphql-java/graphql-java#3525.

What's Changed

Full Changelog: https://github.com/graphql-java/graphql-java/compare/v21.3...v21.4

Commits
  • 5876cc8 Merge pull request #3538 from graphql-java/21.x-pull-in-21.3-commits
  • a79bebf Merge commit '42efd9b23ef9ae7ba862d9affefe04a03a9b99cb' into 21.x-pull-in-21....
  • ddc53be Merge pull request #3528 from graphql-java/21.x-backport-3525-max-result-nodes
  • 990ee73 Merge pull request #3529 from graphql-java/21.x-backport-3526-disable-introsp...
  • bfd6478 Fix hanging test - must return completed ExecutionResult, not null
  • 81b41b0 Fix typo
  • 498f1eb Cherry pick GoodFaithIntrospection #3527
  • f1c4069 Backport PR 3526 with minor adjustments
  • fc5d4e5 Add cherry pick of PR 3525 and minor adjustments
  • See full diff in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)