Skip to content

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Apr 4, 2022

WhiteSource Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
org.springframework:spring-aop 5.3.17 -> 5.3.18 age adoption passing confidence

This PR upgrades one or more Spring framework packages to fix a critical vulnerability.


Release Notes

spring-projects/spring-framework

v5.3.18

Compare Source

⭐ New Features
  • Restrict access to property paths on Class references #​28261
  • Introduce cancel(boolean mayInterruptIfRunning) in ScheduledTask #​28233
🐞 Bug Fixes
  • Move off deprecated API in SessionTransactionData #​28234
📔 Documentation
  • Introduce warnings in documentation of SerializationUtils #​28246
  • Update copyright date in reference manual #​28237
  • @Transactional test does not execute all JPA lifecycle callback methods #​28228
❤️ Contributors

We'd like to thank all the contributors who worked on this release!


Configuration

📅 Schedule: "" (UTC).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, click this checkbox.

This PR has been generated by WhiteSource Renovate. View repository job log here.

@renovate renovate bot added the dependencies Pull requests that update a dependency file label Apr 4, 2022
@renovate renovate bot force-pushed the renovate/vulnerable-spring-framework-packages branch from 7a3a85f to 7a2be3e Compare April 25, 2022 14:32
@oryan-block oryan-block merged commit 990e69b into master Apr 25, 2022
@oryan-block oryan-block deleted the renovate/vulnerable-spring-framework-packages branch April 25, 2022 14:38
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants