-
Notifications
You must be signed in to change notification settings - Fork 3
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
PR for v1.5.0 #132
PR for v1.5.0 #132
Conversation
…LOW_ENCODED_SLASH=true at startup
…ing_with_escaped_slashes_in_request_URL Improper dealing with escaped slashes in request URL
Sonatype Lift is retiringSonatype Lift will be retiring on Sep 12, 2023, with its analysis stopping on Aug 12, 2023. We understand that this news may come as a disappointment, and Sonatype is committed to helping you transition off it seamlessly. If you’d like to retain your data, please export your issues from the web console. |
Update Java build version to 17
src/main/java/edu/kit/datamanager/repo/configuration/WebSecurityConfig.java
Show resolved
Hide resolved
…rom_v1_to_v2 Bump CodeQL from v1 to v2.
Codecov ReportAttention:
Additional details and impacted files@@ Coverage Diff @@
## main #132 +/- ##
============================================
+ Coverage 46.61% 49.08% +2.46%
- Complexity 91 107 +16
============================================
Files 16 17 +1
Lines 680 709 +29
Branches 70 78 +8
============================================
+ Hits 317 348 +31
+ Misses 341 338 -3
- Partials 22 23 +1 ☔ View full report in Codecov by Sentry. |
Update CodeQL to v2
src/main/java/edu/kit/datamanager/repo/configuration/WebSecurityConfig.java
Dismissed
Show dismissed
Hide dismissed
Bumps [com.bazaarvoice.jolt:json-utils](https://github.com/bazaarvoice/jolt) from 0.1.7 to 0.1.8. - [Release notes](https://github.com/bazaarvoice/jolt/releases) - [Commits](bazaarvoice/jolt@jolt-0.1.7...jolt-0.1.8) --- updated-dependencies: - dependency-name: com.bazaarvoice.jolt:json-utils dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps [com.h2database:h2](https://github.com/h2database/h2database) from 2.1.214 to 2.2.224. - [Release notes](https://github.com/h2database/h2database/releases) - [Commits](h2database/h2database@version-2.1.214...version-2.2.224) --- updated-dependencies: - dependency-name: com.h2database:h2 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps [de.codecentric:spring-boot-admin-starter-client](https://github.com/codecentric/spring-boot-admin) from 3.1.0 to 3.1.7. - [Release notes](https://github.com/codecentric/spring-boot-admin/releases) - [Commits](codecentric/spring-boot-admin@3.1.0...3.1.7) --- updated-dependencies: - dependency-name: de.codecentric:spring-boot-admin-starter-client dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps [com.nimbusds:nimbus-jose-jwt](https://bitbucket.org/connect2id/nimbus-jose-jwt) from 9.24.3 to 9.37. - [Changelog](https://bitbucket.org/connect2id/nimbus-jose-jwt/src/master/CHANGELOG.txt) - [Commits](https://bitbucket.org/connect2id/nimbus-jose-jwt/branches/compare/9.37..9.24.3) --- updated-dependencies: - dependency-name: com.nimbusds:nimbus-jose-jwt dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
…opment/org.owasp.dependencycheck-8.4.2
…opment/org.springframework-spring-messaging-6.0.13
Bumps [org.springframework.security:spring-security-config](https://github.com/spring-projects/spring-security) from 6.1.1 to 6.1.5. - [Release notes](https://github.com/spring-projects/spring-security/releases) - [Changelog](https://github.com/spring-projects/spring-security/blob/main/RELEASE.adoc) - [Commits](spring-projects/spring-security@6.1.1...6.1.5) --- updated-dependencies: - dependency-name: org.springframework.security:spring-security-config dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps [org.springframework.data:spring-data-elasticsearch](https://github.com/spring-projects/spring-data-elasticsearch) from 5.1.2 to 5.2.0. - [Release notes](https://github.com/spring-projects/spring-data-elasticsearch/releases) - [Commits](spring-projects/spring-data-elasticsearch@5.1.2...5.2.0) --- updated-dependencies: - dependency-name: org.springframework.data:spring-data-elasticsearch dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
…opment/org.springframework.security-spring-security-config-6.1.5
…opment/org.springframework.data-spring-data-elasticsearch-5.2.0
Bumps org.owasp.dependencycheck from 8.4.2 to 8.4.3. --- updated-dependencies: - dependency-name: org.owasp.dependencycheck dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps [org.springframework.security:spring-security-web](https://github.com/spring-projects/spring-security) from 6.1.1 to 6.2.0. - [Release notes](https://github.com/spring-projects/spring-security/releases) - [Changelog](https://github.com/spring-projects/spring-security/blob/main/RELEASE.adoc) - [Commits](spring-projects/spring-security@6.1.1...6.2.0) --- updated-dependencies: - dependency-name: org.springframework.security:spring-security-web dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps [de.codecentric:spring-boot-admin-starter-client](https://github.com/codecentric/spring-boot-admin) from 3.1.7 to 3.1.8. - [Release notes](https://github.com/codecentric/spring-boot-admin/releases) - [Commits](codecentric/spring-boot-admin@3.1.7...3.1.8) --- updated-dependencies: - dependency-name: de.codecentric:spring-boot-admin-starter-client dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps [org.postgresql:postgresql](https://github.com/pgjdbc/pgjdbc) from 42.6.0 to 42.7.0. - [Release notes](https://github.com/pgjdbc/pgjdbc/releases) - [Changelog](https://github.com/pgjdbc/pgjdbc/blob/master/CHANGELOG.md) - [Commits](pgjdbc/pgjdbc@REL42.6.0...REL42.7.0) --- updated-dependencies: - dependency-name: org.postgresql:postgresql dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
…opment/org.postgresql-postgresql-42.7.0
…opment/de.codecentric-spring-boot-admin-starter-client-3.1.8
…opment/org.springframework.security-spring-security-web-6.2.0
Bumps [org.springframework:spring-messaging](https://github.com/spring-projects/spring-framework) from 6.0.13 to 6.1.0. - [Release notes](https://github.com/spring-projects/spring-framework/releases) - [Commits](spring-projects/spring-framework@v6.0.13...v6.1.0) --- updated-dependencies: - dependency-name: org.springframework:spring-messaging dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
…opment/org.owasp.dependencycheck-8.4.3
…opment/org.springframework-spring-messaging-6.1.0
Bumps [org.springframework.cloud:spring-cloud-starter-config](https://github.com/spring-cloud/spring-cloud-config) from 4.0.3 to 4.0.4. - [Release notes](https://github.com/spring-cloud/spring-cloud-config/releases) - [Commits](spring-cloud/spring-cloud-config@v4.0.3...v4.0.4) --- updated-dependencies: - dependency-name: org.springframework.cloud:spring-cloud-starter-config dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]>
Bumps [io.freefair.maven-publish-java](https://github.com/freefair/gradle-plugins) from 8.0.1 to 8.4. - [Release notes](https://github.com/freefair/gradle-plugins/releases) - [Commits](freefair/gradle-plugins@8.0.1...8.4) --- updated-dependencies: - dependency-name: io.freefair.maven-publish-java dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
…opment/io.freefair.maven-publish-java-8.4
Bumps [io.freefair.lombok](https://github.com/freefair/gradle-plugins) from 8.0.1 to 8.4. - [Release notes](https://github.com/freefair/gradle-plugins/releases) - [Commits](freefair/gradle-plugins@8.0.1...8.4) --- updated-dependencies: - dependency-name: io.freefair.lombok dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
…opment/org.springframework.cloud-spring-cloud-starter-config-4.0.4
…opment/io.freefair.lombok-8.4
Bumps org.owasp.dependencycheck from 8.4.3 to 9.0.2. --- updated-dependencies: - dependency-name: org.owasp.dependencycheck dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <[email protected]>
…opment/org.owasp.dependencycheck-9.0.2
No description provided.