Bump org.sonarsource.scanner.maven:sonar-maven-plugin from 5.5.0.6356 to 5.7.0.6970 in /clamp-parent/dependencies - #25
Open
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps [org.sonarsource.scanner.maven:sonar-maven-plugin](https://github.com/SonarSource/sonar-scanner-maven) from 5.5.0.6356 to 5.7.0.6970. - [Release notes](https://github.com/SonarSource/sonar-scanner-maven/releases) - [Commits](SonarSource/sonar-scanner-maven@5.5.0.6356...5.7.0.6970) --- updated-dependencies: - dependency-name: org.sonarsource.scanner.maven:sonar-maven-plugin dependency-version: 5.7.0.6970 dependency-type: direct:development update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
|
PR: #25 Note: This metadata is also included in the Gerrit commit message for reconciliation. |
|
Change raised in Gerrit by GitHub2Gerrit: https://gerrit.onap.org/r/c/policy/clamp/+/145006 |
onap-github
pushed a commit
that referenced
this pull request
Jun 12, 2026
… to 5.7.0.6970 in /clamp-parent/dependencies Bumps org.sonarsource.scanner.maven:sonar-maven-plugin from 5.5.0.6356 to 5.7.0.6970. ## Release notes Sourced from org.sonarsource.scanner.maven:sonar-maven-plugin's releases. 5.7.0.6970 Release notes - Sonar Scanner for Maven - 5.7 Feature SCANMAVEN-317 Support encryption of sonar.token, and other new secure properties SCANMAVEN-332 support modular-jar artifact type SCANMAVEN-341 Rework the support of encrypted properties Maintenance SCANMAVEN-370 Prepare next development iteration 5.7.0 SCANMAVEN-372 Configure Renovate for sonar-scanner-maven SCANMAVEN-373 SubmitReview: Use Vault token SCANMAVEN-374 Unpin internal GitHub actions SCANMAVEN-376 Use SonarSource/.../sonar-update-center-release@v1 instead of @master SCANMAVEN-377 Update dependency org.assertj:assertj-core to v3.27.7 [SECURITY] 5.6.0.6792 Release notes - Sonar Scanner for Maven - 5.6 Maintenance SCANMAVEN-318 Update Orchestrator and fix e2e matrix SCANMAVEN-324 Convert e2e tests to invoker SCANMAVEN-346 Fix CI failure SCANMAVEN-347 Automate detection of sonar:sonar shorthand failure SCANMAVEN-348 Bump org.assertj:assertj-core from 3.26.3 to 3.27.7 in /sonar-maven-plugin SCANMAVEN-349 Remove Maven 4 e2e tests from promotion requirements SCANMAVEN-356 Add automated release workflow SCANMAVEN-357 Licence packaging standard - Maven Scanner SCANMAVEN-358 Create SonarUpdateCenterRelease.yml SCANMAVEN-361 Add issue-categories in automated release SCANMAVEN-363 Fix e2e tests with Maven 4 SCANMAVEN-364 Do not run nightly builds on weekends SCANMAVEN-365 Set up orchestrator cache SCANMAVEN-366 Update sonar-scanner-java-library to 4.1.0.1619 SCANMAVEN-367 Update sonar-scanner-java-library to 4.1.1.1633 SCANMAVEN-369 Update parent pom to 87.0.0.3057 Feature SCANMAVEN-281 Irrelevant encrypted properties are not filtered out in multi-module project with "sonar" in the name ## Commits 9e114d7 SCANMAVEN-332 Support modular-jar (#402) 7424fe5 SCANMAVEN-317 - Support encryption of sonar.token, and other new secure prope b8ff39f SCANMAVEN-341 Fix regex for encrypted property filtering for mvn4 and add tes b4c0b4a SCANMAVEN-377 Update dependency org.assertj:assertj-core to v3.27.7 SECURITY cd19506 SCANMAVEN-372 Configure Renovate (#393) 944f552 SCANMAVEN-376 Use SonarSource/.../sonar-update-center-release@v1 instead of @ 2832b8a SCANMAVEN-374 Unpin internal GitHub actions (#396) 81caeeb SCANMAVEN-373 SubmitReview: Use Vault token (#395) c62dd74 SCANMAVEN-370 Prepare next development iteration 5.7.0 (#392) 8f1042a SCANMAVEN-369 Update parent pom to 87.0.0.3057 (#391) Additional commits viewable in compare view [ Issue-ID: CIMAN-33 Signed-off-by: dependabot[bot] <support@github.com> Change-Id: Ic59073acb788c7a39c93ee2bae8b8976f4417b55 GitHub-PR: #25 GitHub-Hash: 3a10b5e8c66fa547 Signed-off-by: onap.gh2gerrit <releng+onap-gh2gerrit@linuxfoundation.org>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps org.sonarsource.scanner.maven:sonar-maven-plugin from 5.5.0.6356 to 5.7.0.6970.
Release notes
Sourced from org.sonarsource.scanner.maven:sonar-maven-plugin's releases.
Commits
9e114d7SCANMAVEN-332 Support modular-jar (#402)7424fe5SCANMAVEN-317 - Support encryption of sonar.token, and other new secure prope...b8ff39fSCANMAVEN-341 Fix regex for encrypted property filtering for mvn4 and add tes...b4c0b4aSCANMAVEN-377 Update dependency org.assertj:assertj-core to v3.27.7 [SECURITY...cd19506SCANMAVEN-372 Configure Renovate (#393)944f552SCANMAVEN-376 Use SonarSource/.../sonar-update-center-release@v1 instead of @...2832b8aSCANMAVEN-374 Unpin internal GitHub actions (#396)81caeebSCANMAVEN-373 SubmitReview: Use Vault token (#395)c62dd74SCANMAVEN-370 Prepare next development iteration 5.7.0 (#392)8f1042aSCANMAVEN-369 Update parent pom to 87.0.0.3057 (#391)You can trigger a rebase of this PR by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)