jenkinsci / plasticscm-plugin

A plugin for Jenkins to be able to use Plastic SCM
MIT License
15 stars 31 forks source link

Bump credentials from 2.1.19 to 2.3.19 #46

Closed dependabot[bot] closed 2 years ago

dependabot[bot] commented 2 years ago

Bumps credentials from 2.1.19 to 2.3.19.

Release notes

Sourced from credentials's releases.

2.3.19

đź”’ Security fixes

2.3.18

📦 Dependency updates

đź“ť Documentation updates

2.3.17

Performance improvements

📦 Dependency updates

2.3.16

📦 Dependency updates

2.3.15

📦 Dependency updates

... (truncated)

Changelog

Sourced from credentials's changelog.

Version History

Moved to https://github.com/jenkinsci/credentials-plugin/releases starting in 2.3.8.

Version 2.3.7 (April 16th, 2020)

  • JCasC support for GlobalCredentialsConfiguration (JENKINS-61880)

Version 2.3.6 (April 15th, 2020)

  • JCasC support for CredentialsProvider extensions (JENKINS-61900).

Version 2.3.5 (March 23rd, 2020)

  • Add system property com.cloudbees.plugins.credentials.CredentialsProvider.fingerprintEnabled which can be set to false to disable credentials tracking using fingerprints.

Version 2.3.4 (March 18th, 2020)

  • Add category to system settings for modern Jenkins releases.

Version 2.3.3 (February 27th, 2020)

  • Use pass-through conversion for SecretBytes to avoid JCasC errors (PR-135).

Version 2.3.2 (February 27th, 2020)

  • Show credentials id in DomainWrapper view (PR-120).
  • Migrate changelog to repository (PR-134).

Version 2.3.1 (August 26th, 2019)

  • Use GitHub for documentation root instead of wiki ( PR-128 ).
  • Various code cleanups ( PR-133 - JCasC test harness, PR-132 - Use latest parent pom, PR-131 - Minor documentation grammar fix, PR-130 - Test with configuration as code plugin 1.34, PR-127 - Use try with resources and ACL.as, other cleanups ).

Version 2.3.0 (August 26th, 2019)

  • Allow credentials parameters to shadow credentials with the same id in credentials lookup (JENKINS-58170).
  • Various code cleanups ( PR-125 - Use Java 8 syntax more widely, other cleanup, PR-124 - Documentation updates ).

Version 2.2.1 (August 1st, 2019)

  • Fix incorrect permission check for MANAGE_DOMAINS (JENKINS-56607).
  • Fix memory leak in credentials fingerprint tracking

... (truncated)

Commits


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/jenkinsci/plasticscm-plugin/network/alerts).
mig42 commented 2 years ago

We're currently using Credentials plugin v2.1.19 because it's the most recent version still compatible with the minimum Jenkins version that we support (2.60.3). We need to target a newer Jenkins version to depend on Credentials plugin v2.3.19.

dependabot[bot] commented 2 years ago

Superseded by #49.