Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update all non-major dependencies - autoclosed #332

Conversation

renovate-bot
Copy link
Contributor

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
com.google.cloud:google-cloud-logging 3.21.0 -> 3.21.1 age adoption passing confidence
com.google.cloud:google-cloud-datastore 2.25.2 -> 2.25.3 age adoption passing confidence
com.google.cloud:google-cloud-bigquery 2.45.0 -> 2.46.0 age adoption passing confidence
io.netty:netty-transport-native-unix-common (source) 4.1.116.Final -> 4.1.117.Final age adoption passing confidence
io.netty:netty-transport (source) 4.1.116.Final -> 4.1.117.Final age adoption passing confidence
io.netty:netty-handler (source) 4.1.116.Final -> 4.1.117.Final age adoption passing confidence
io.netty:netty-common (source) 4.1.116.Final -> 4.1.117.Final age adoption passing confidence
io.netty:netty-codec-http2 (source) 4.1.116.Final -> 4.1.117.Final age adoption passing confidence
io.netty:netty-codec-http (source) 4.1.116.Final -> 4.1.117.Final age adoption passing confidence
io.netty:netty-codec (source) 4.1.116.Final -> 4.1.117.Final age adoption passing confidence
io.netty:netty-buffer (source) 4.1.116.Final -> 4.1.117.Final age adoption passing confidence
io.grpc:grpc-netty 1.69.0 -> 1.69.1 age adoption passing confidence
io.grpc:grpc-protobuf 1.69.0 -> 1.69.1 age adoption passing confidence
io.grpc:grpc-api 1.69.0 -> 1.69.1 age adoption passing confidence

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

googleapis/java-logging (com.google.cloud:google-cloud-logging)

v3.21.1

Compare Source

Bug Fixes
  • deps: Update the Java code generator (gapic-generator-java) to 2.51.1 (705dba2)
Dependencies
  • Update dependency com.google.cloud:sdk-platform-java-config to v3.41.1 (#​1745) (6a7280d)
  • Update dependency org.easymock:easymock to v5.5.0 (#​1639) (f559d89)
  • Update googleapis/sdk-platform-java action to v2.51.1 (#​1742) (3c7a2c7)
googleapis/java-datastore (com.google.cloud:google-cloud-datastore)

v2.25.3

Compare Source

Dependencies
  • Update dependency com.google.cloud:gapic-libraries-bom to v1.50.0 (#​1708) (b78660f)
googleapis/java-bigquery (com.google.cloud:google-cloud-bigquery)

v2.46.0

Compare Source

Features
  • bigquery: Support IAM conditions in datasets in Java client. (#​3602) (6696a9c)
Bug Fixes
Dependencies
  • Update actions/upload-artifact action to v4.5.0 (#​3620) (cc25099)
  • Update actions/upload-artifact action to v4.6.0 (#​3633) (ca20aa4)
  • Update dependency com.google.api.grpc:proto-google-cloud-bigqueryconnection-v1 to v2.57.0 (#​3617) (51370a9)
  • Update dependency com.google.api.grpc:proto-google-cloud-bigqueryconnection-v1 to v2.58.0 (#​3631) (b0ea0d5)
  • Update dependency com.google.apis:google-api-services-bigquery to v2-rev20241222-2.0.0 (#​3623) (4061922)
  • Update dependency com.google.cloud:google-cloud-datacatalog-bom to v1.61.0 (#​3618) (6cba626)
  • Update dependency com.google.cloud:google-cloud-datacatalog-bom to v1.62.0 (#​3632) (e9ff265)
  • Update dependency com.google.cloud:sdk-platform-java-config to v3.41.1 (#​3628) (442d217)
  • Update dependency com.google.oauth-client:google-oauth-client-java6 to v1.37.0 (#​3614) (f5faa69)
  • Update dependency com.google.oauth-client:google-oauth-client-jetty to v1.37.0 (#​3615) (a6c7944)
  • Update github/codeql-action action to v2.27.9 (#​3608) (567ce01)
  • Update github/codeql-action action to v2.28.0 (#​3621) (e0e09ec)
grpc/grpc-java (io.grpc:grpc-netty)

v1.69.1

Bug Fixes
  • okhttp: Improve certificate handling by rejecting non-ASCII subject alternative names and hostnames as seen in CVE-2021-0341 (#​11749) (a0982ca). Hostnames are considered trusted and CAs are required to use punycode for non-ASCII hostnames, so this is expected to provide defense-in-depth. See also the related GoSecure blog post and the AOSP fix
  • xds: Preserve nonce when unsubscribing last watcher of a particular type so that new discovery requests of that type are handled correctly (1cf1927). This (along with 1cf1927) fixes a nonce-handling regression introduced in 1.66.0 that could cause resources to appear to not exist until re-creating the ADS stream. Triggering the behavior required specific config changes. It is easiest to trigger when clusters use EDS and routes are changed from one cluster to another. The error “found 0 leaf (logical DNS or EDS) clusters for root cluster” might then be seen
  • xds: Remember nonces for unknown types (6c12c2b)
  • xds: Unexpected types in the bootstrap’s server_features should be ignored (e8ff6da). They were previously required to be strings
  • xds: Fixed unsupported unsigned 32 bits issue for circuit breaker (#​11735) (f8f6139). This fixes clients treating large max_requests as “no requests” and failing all requests
  • xds: Remove xds authority label from metric registration (#​11760) (6516c73). This fixes the error “Incorrect number of required labels provided. Expected: 4” introduced in 1.69.0

Configuration

📅 Schedule: Branch creation - "* 0-3 * * 1" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@forking-renovate forking-renovate bot added the dependencies Pull requests that update a dependency file label Jan 20, 2025
Copy link

@code-review-assist code-review-assist bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Hi team,

I'm currently reviewing this pull request and will provide feedback shortly. In the meantime, I'm providing a summary of the pull request's content to help you and other reviewers quickly understand the changes and their intent.

This pull request, submitted by renovate-bot, aims to update all non-major dependencies. The changes include updating several Google Cloud and Netty libraries to their latest non-major versions. Here's a breakdown:

  • Google Cloud Libraries:
    • com.google.cloud:google-cloud-logging: Updated from 3.21.0 to 3.21.1 (Includes dependency updates and bug fixes for the Java code generator).
    • com.google.cloud:google-cloud-datastore: Updated from 2.25.2 to 2.25.3 (Includes dependency updates).
    • com.google.cloud:google-cloud-bigquery: Updated from 2.45.0 to 2.46.0 (Includes new features like IAM condition support and bug fixes).
  • Netty Libraries: Several Netty libraries (e.g., netty-transport, netty-handler, netty-codec) were updated from 4.1.116.Final to 4.1.117.Final.
  • gRPC Libraries: io.grpc:grpc-netty, io.grpc:grpc-protobuf, and io.grpc:grpc-api were updated from 1.69.0 to 1.69.1 (Includes several bug fixes related to OkHttp certificate handling and XDS).

The changes are reflected in applications/proberapp/pom.xml (lines 116-137) and pom.xml (lines 66-70 and 726-730). Specific details about each library's updates can be found in the release notes included in the pull request description.

Note: The Renovate bot indicates some dependencies could not be looked up. It's recommended to check the Dependency Dashboard for more information.


Here's a little haiku to lighten the mood:

Dependencies flow,
Version numbers gently rise,
Codebase refreshed.

Thanks,
Gemini

Copy link

@code-review-assist code-review-assist bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This pull request updates several non-major dependencies, which is good practice for keeping the project up-to-date with bug fixes and performance improvements. The provided dependency dashboard and release notes offer valuable insights into the changes introduced by each update.

I recommend testing the application thoroughly after merging this PR to ensure that the updated dependencies do not introduce any regressions.

copybara-service bot pushed a commit that referenced this pull request Jan 20, 2025
--
c67d792 by Mend Renovate <[email protected]>:

Update all non-major dependencies

COPYBARA_INTEGRATE_REVIEW=#332 from renovate-bot:renovate/all-minor-patch c67d792
PiperOrigin-RevId: 717385674
Change-Id: I8d2280c49d08f8e8fa98f5f4af0ee3707d68b35e
@renovate-bot renovate-bot changed the title Update all non-major dependencies Update all non-major dependencies - autoclosed Jan 20, 2025
@renovate-bot renovate-bot deleted the renovate/all-minor-patch branch January 20, 2025 05:18
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file ready to pull
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants