jenkinsci / plasticscm-plugin

A plugin for Jenkins to be able to use Plastic SCM
MIT License
15 stars 31 forks source link

Bump credentials from 2.1.19 to 2.6.1.1 #49

Closed dependabot[bot] closed 3 months ago

dependabot[bot] commented 2 years ago

Bumps credentials from 2.1.19 to 2.6.1.1.

Release notes

Sourced from credentials's releases.

2.6.1

Clean version of 2.6 (correct checksum).

2.6

What's Changed

⚠️ This release should not be used, the binaries were corrupted during the release process (I forgot to change my password on LDAP after the reset), please use the 2.6.1 instead that is clean.

2.5

🚀 New features and improvements

📦 Dependency updates

2.4.1

  • Using BOM version for JCasC dependency

2.4

🐛 Bug fixes

📦 Dependency updates

2.3.19

🔒 Security fixes

2.3.18

📦 Dependency updates

... (truncated)

Changelog

Sourced from credentials's changelog.

Version History

Moved to https://github.com/jenkinsci/credentials-plugin/releases starting in 2.3.8.

Version 2.3.7 (April 16th, 2020)

  • JCasC support for GlobalCredentialsConfiguration (JENKINS-61880)

Version 2.3.6 (April 15th, 2020)

  • JCasC support for CredentialsProvider extensions (JENKINS-61900).

Version 2.3.5 (March 23rd, 2020)

  • Add system property com.cloudbees.plugins.credentials.CredentialsProvider.fingerprintEnabled which can be set to false to disable credentials tracking using fingerprints.

Version 2.3.4 (March 18th, 2020)

  • Add category to system settings for modern Jenkins releases.

Version 2.3.3 (February 27th, 2020)

  • Use pass-through conversion for SecretBytes to avoid JCasC errors (PR-135).

Version 2.3.2 (February 27th, 2020)

  • Show credentials id in DomainWrapper view (PR-120).
  • Migrate changelog to repository (PR-134).

Version 2.3.1 (August 26th, 2019)

  • Use GitHub for documentation root instead of wiki ( PR-128 ).
  • Various code cleanups ( PR-133 - JCasC test harness, PR-132 - Use latest parent pom, PR-131 - Minor documentation grammar fix, PR-130 - Test with configuration as code plugin 1.34, PR-127 - Use try with resources and ACL.as, other cleanups ).

Version 2.3.0 (August 26th, 2019)

  • Allow credentials parameters to shadow credentials with the same id in credentials lookup (JENKINS-58170).
  • Various code cleanups ( PR-125 - Use Java 8 syntax more widely, other cleanup, PR-124 - Documentation updates ).

Version 2.2.1 (August 1st, 2019)

  • Fix incorrect permission check for MANAGE_DOMAINS (JENKINS-56607).
  • Fix memory leak in credentials fingerprint tracking

... (truncated)

Commits


Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/jenkinsci/plasticscm-plugin/network/alerts).

Note Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

mig42 commented 2 years ago

We're currently using Credentials plugin v2.1.19 because it's the most recent version still compatible with the minimum Jenkins version that we support (2.60.3). We need to target a newer Jenkins version to depend on Credentials plugin v2.3.19.

mig42 commented 3 months ago

Changes are unneeded at this point after #76.

dependabot[bot] commented 3 months ago

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.