johanhaleby / occurrent

Unintrusive Event Sourcing Library for the JVM
https://occurrent.org
120 stars 16 forks source link

Bump spring-boot-autoconfigure from 3.0.6 to 3.0.7 #137

Closed dependabot[bot] closed 1 year ago

dependabot[bot] commented 1 year ago

Bumps spring-boot-autoconfigure from 3.0.6 to 3.0.7.

Release notes

Sourced from spring-boot-autoconfigure's releases.

v3.0.7

:lady_beetle: Bug Fixes

  • Welcome page may return a 404 when an acceptable response cannot be produced #35553
  • Defining a zipkin2.reporter.Reporter results in two reporter beans as the auto-configured AsyncReporter does not back off #35455
  • developmentOnly dependencies are included in the AOT processing classpath #35433
  • Hibernate 6.2 doesn't work in native-image: No available JtaPlatform candidates #35423
  • In a native image, configuration property binding fails when the target has package-private getters and setters #35397
  • Invalid reference format error when tagging images using Podman #35395
  • WebClient auto-configuration tries to use HttpComponentsClientHttpConnector when all required classes are not present #35380
  • MinIdle and MaxValidationTime properties missing for R2DBC pools #35378
  • Can't use PEM encoded PKCS#8 EC keys with server.ssl.certificate-private-key #35364
  • FactoryBean.getObject for non-singleton executed when resetting mocks #35329
  • Webflux server gracefulshutdown throws NullPointerException #35269
  • Health actuator mail details shows the port as -1 when using the default port #35254
  • SessionRepositoryFilterConfiguration can cause early initialization of SessionRepository beans including Redis #35241
  • Liveness and readiness probes return down when lazy initialization is enabled #35235
  • Devtools main method search algorithm can find incorrect main method #35220
  • When a WebFlux app is deployed to Cloud Foundry some metrics are lost and numerous beans are ineligible for post-processing #35170
  • Treating a null Flyway-specific password as an empty string prevents the use of PGPASS for authentication #35131
  • DisableObservabilityContextCustomizer can't be switched off through properties #35009
  • Application yaml files cannot be loaded when they exceed 3mb #34743
  • @ServletComponentScan causes AOT processing to fail with "Code generation is not supported for bean definitions declaring an instance supplier callback" #34563
  • Tracking of artifact dependency coordinates by BootJar and BootWar may break artifact transforms in sub-projects #31216

:notebook_with_decorative_cover: Documentation

  • Polish formatting of permitAll() endpoint security Kotlin example #35456
  • Wrong anchors in Maven plugin documentation #35372
  • Clarify profile support when using AOT #35262
  • Add reference to Tor Spring Boot Starter #35256
  • Correct list of annotations that are equivalent to @SpringBootApplication #35230
  • Harmonize references to application.yaml files in reference docs #35129

:hammer: Dependency Upgrades

  • Upgrade to Couchbase Client 3.4.6 #35341
  • Upgrade to Groovy 4.0.12 #35342
  • Upgrade to Hazelcast 5.1.6 #35427
  • Upgrade to Infinispan 14.0.9.Final #35343
  • Upgrade to Jackson Bom 2.14.3 #35344
  • Upgrade to Jakarta Activation 2.1.2 #35345
  • Upgrade to Jersey 3.1.2 #35550
  • Upgrade to jOOQ 3.17.13 #35428
  • Upgrade to Json-smart 2.4.11 #35551
  • Upgrade to JUnit Jupiter 5.9.3 #35346
  • Upgrade to Micrometer 1.10.7 #35298
  • Upgrade to Micrometer Tracing 1.0.6 #35420
  • Upgrade to Native Build Tools Plugin 0.9.22 #35406
  • Upgrade to Neo4j Java Driver 5.8.0 #35347

... (truncated)

Commits


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/johanhaleby/occurrent/network/alerts).
dependabot[bot] commented 1 year ago

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.