Skip to content

Bump the gradle group across 1 directory with 2 updates - #36

Merged
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c
May 14, 2026
Merged

Bump the gradle group across 1 directory with 2 updates#36
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c

Conversation

@dependabot

@dependabotdependabotBot commented on behalf of githubMay 14, 2026

Copy link
Copy Markdown

Bumps the gradle group with 2 updates in the / directory: org.springframework:spring-webmvc and io.undertow:undertow-core.

Updates org.springframework:spring-webmvc from 6.2.17 to 6.2.18

Release notes

Sourced from org.springframework:spring-webmvc's releases.

v6.2.18

⭐ New Features

  • Improve SpringValidatorAdapter and MethodValidationAdapter performance #36624
  • Add missing @Deprecated(forRemoval = true) for deleted in 7.0 #36591
  • Deprecate methodIdentification() in CacheAspectSupport for removal #36576
  • Improve error handling in multipart codecs #36564
  • LazyConnectionDataSourceProxy does not work well with Hibernate's multi-tenancy by schema strategy #36529
  • MySQL Error 149 (Galera/WSREP conflict) not translated to ConcurrencyFailureException in Spring JDBC/ORM #36510

🐞 Bug Fixes

  • Handle Kotlin nullable value class param correctly in CoroutineUtils#36643
  • NullPointerException in ServerSentEvent when trying to set id or event properties #36634
  • @Sql fails if DataSource is wrapped in a TransactionAwareDataSourceProxy#36630
  • WebDataBinder unnecessarily instantiates collections when using the "!" and "_" prefixes #36627
  • Cache pollution from high-cardinality FieldError default messages in MessageSourceSupport #36623
  • ContentCachingRequestWrapper does not allow unlimited content caching #36620
  • MergedAnnotation does not use ClassLoader for method or field #36614
  • AnnotationBeanNameGenerator fails when an annotation references a non-existent class #36588
  • FileSystemResource does not strictly follow the Resource#isReadable() contract #36585
  • Query not hidden in DefaultClientResponse checkpoint #36571
  • LazyConnectionDataSourceProxy does not pass on holdability to target Connection #36530
  • DefaultJmsListenerContainer may hang in an endless loop in doShutdown#36511
  • Inconsistent codings resolution in resource resolvers #36508

📔 Documentation

  • Clarify semantics of HttpMethod.valueOf() #36653
  • Document that spring.profiles.active is ignored by @ActiveProfiles#36636
  • Document whitespace semantics in SpEL expressions #36629
  • MergedAnnotation.asAnnotationAttributes() Javadoc incorrectly states that it creates an immutable map #36568
  • Introduce Kotlin examples for Bean Overrides (@MockitoBean, etc.) #36542
  • Fix incorrect cross-reference links in AbstractEnvironment Javadoc #36517

🔨 Dependency Upgrades

  • Upgrade to Micrometer 1.15.11 #36661
  • Upgrade to Reactor 2024.0.17 #36660
Commits
  • 6b11724 Release v6.2.18
  • f6671e7 Upgrade to Reactor 2024.0.17 and Micrometer 1.15.11
  • b338fdd Add doOnDiscard in MultipartHttpMessageReader
  • 4e3f264 Add missing tests for WebRequestDataBinder
  • 9e0b83e Polish WebRequestDataBinderTests
  • af4b122 Extract ServletRequestParameterPropertyValuesTests
  • 623ccd1 Revise "Skip binding entirely when field is not allowed"
  • 69068ba Further clarify semantics of HttpMethod.valueOf()
  • f182f9a Clarify semantics of HttpMethod.valueOf()
  • 9d14448 Improve SpEL tests for Elvis and Ternary operators
  • Additional commits viewable in compare view

Updates io.undertow:undertow-core from 2.3.21.Final to 2.4.0.Final

Release notes

Sourced from io.undertow:undertow-core's releases.

v.2.4.0.Beta1

Release 2.4.0.Beta1 Fixes CVE-2024-3884CVE-2024-4027CVE-2025-12543 Full list of Jiras: view in Jira

 Release Notes - Undertow - Version 2.4.0.Beta1

... (truncated)

Commits
  • e2ae24e Prepare 2.4.0.Final
  • 3ece0bf Merge pull request #1947 from fl4via/UNDERTOW-2594_2.4.x
  • 4d35436 Merge pull request #3 from ropalka/UNDERTOW-1875_2.4.x
  • 0431672 [UNDERTOW-1875] Fix matrix parameters processing with comma
  • 335d198 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] At RequestParser, make sure the...
  • 14072a2 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] CVE-2026-28368CVE-2026-28369 C...
  • 2e643b8 Next is 2.4.0.RC5
  • 15fc158 Prepare 2.4.0.RC4
  • 569361c Merge pull request #1942 from fl4via/UNDERTOW-2743
  • 6166aa9 [UNDERTOW-2743] At Cookies.parseCookie, remove the quotes from the cookie val...
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps the gradle group with 2 updates in the / directory: [org.springframework:spring-webmvc](https://github.com/spring-projects/spring-framework) and [io.undertow:undertow-core](https://github.com/undertow-io/undertow).
Updates `org.springframework:spring-webmvc` from 6.2.17 to 6.2.18
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v6.2.17...v6.2.18)
Updates `io.undertow:undertow-core` from 2.3.21.Final to 2.4.0.Final
- [Release notes](https://github.com/undertow-io/undertow/releases)
- [Commits](undertow-io/undertow@2.3.21.Final...2.4.0.Final)
---
updated-dependencies:
- dependency-name: org.springframework:spring-webmvc
dependency-version: 6.2.18
dependency-type: direct:production
dependency-group: gradle
- dependency-name: io.undertow:undertow-core
dependency-version: 2.4.0.Final
dependency-type: direct:production
dependency-group: gradle
...
Signed-off-by: dependabot[bot] <support@github.com>
@dependabotdependabotBot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels May 14, 2026
@dependabot
dependabotBot requested a review from a team as a code ownerMay 14, 2026 20:05
@countableSet
countableSet merged commit 0174eb4 into masterMay 14, 2026
5 checks passed
@countableSet
countableSet deleted the dependabot/gradle/gradle-f31c6a3a3c branch May 14, 2026 21:35
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependenciesPull requests that update a dependency filejavaPull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant

@countableSet
, 'i'); if (__m === '*' || __re.test(location.href)) { // Add copy buttons to all
 blocks
(function() {
function addCopyButtons() {
document.querySelectorAll('pre code').forEach(function(codeBlock) {
if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;
codeBlock.parentElement.setAttribute('data-copy-added', 'true');
var btn = document.createElement('button');
btn.textContent = 'Copy';
btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';
btn.onmouseover = function() { this.style.opacity = '1'; };
btn.onmouseout = function() { this.style.opacity = '0.7'; };
btn.onclick = function() {
navigator.clipboard.writeText(codeBlock.textContent).then(function() {
btn.textContent = 'Copied!';
setTimeout(function() { btn.textContent = 'Copy'; }, 1500);
});
};
codeBlock.parentElement.style.position = 'relative';
codeBlock.parentElement.appendChild(btn);
});
}
addCopyButtons();
// Re-run on dynamic content
var observer = new MutationObserver(addCopyButtons);
observer.observe(document.body, { childList: true, subtree: true });
})();
}
} catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); }
})();
(function(){
try {
var __m = "github.com";
var __re = new RegExp('^' + "github\\.com" + '
Bump the gradle group across 1 directory with 2 updates by dependabot[bot] · Pull Request #36 · github/flit · GitHub
Skip to content

Bump the gradle group across 1 directory with 2 updates - #36

Merged
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c
May 14, 2026
Merged

Bump the gradle group across 1 directory with 2 updates#36
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c

Conversation

@dependabot

@dependabotdependabotBot commented on behalf of githubMay 14, 2026

Copy link
Copy Markdown

Bumps the gradle group with 2 updates in the / directory: org.springframework:spring-webmvc and io.undertow:undertow-core.

Updates org.springframework:spring-webmvc from 6.2.17 to 6.2.18

Release notes

Sourced from org.springframework:spring-webmvc's releases.

v6.2.18

⭐ New Features

  • Improve SpringValidatorAdapter and MethodValidationAdapter performance #36624
  • Add missing @Deprecated(forRemoval = true) for deleted in 7.0 #36591
  • Deprecate methodIdentification() in CacheAspectSupport for removal #36576
  • Improve error handling in multipart codecs #36564
  • LazyConnectionDataSourceProxy does not work well with Hibernate's multi-tenancy by schema strategy #36529
  • MySQL Error 149 (Galera/WSREP conflict) not translated to ConcurrencyFailureException in Spring JDBC/ORM #36510

🐞 Bug Fixes

  • Handle Kotlin nullable value class param correctly in CoroutineUtils#36643
  • NullPointerException in ServerSentEvent when trying to set id or event properties #36634
  • @Sql fails if DataSource is wrapped in a TransactionAwareDataSourceProxy#36630
  • WebDataBinder unnecessarily instantiates collections when using the "!" and "_" prefixes #36627
  • Cache pollution from high-cardinality FieldError default messages in MessageSourceSupport #36623
  • ContentCachingRequestWrapper does not allow unlimited content caching #36620
  • MergedAnnotation does not use ClassLoader for method or field #36614
  • AnnotationBeanNameGenerator fails when an annotation references a non-existent class #36588
  • FileSystemResource does not strictly follow the Resource#isReadable() contract #36585
  • Query not hidden in DefaultClientResponse checkpoint #36571
  • LazyConnectionDataSourceProxy does not pass on holdability to target Connection #36530
  • DefaultJmsListenerContainer may hang in an endless loop in doShutdown#36511
  • Inconsistent codings resolution in resource resolvers #36508

📔 Documentation

  • Clarify semantics of HttpMethod.valueOf() #36653
  • Document that spring.profiles.active is ignored by @ActiveProfiles#36636
  • Document whitespace semantics in SpEL expressions #36629
  • MergedAnnotation.asAnnotationAttributes() Javadoc incorrectly states that it creates an immutable map #36568
  • Introduce Kotlin examples for Bean Overrides (@MockitoBean, etc.) #36542
  • Fix incorrect cross-reference links in AbstractEnvironment Javadoc #36517

🔨 Dependency Upgrades

  • Upgrade to Micrometer 1.15.11 #36661
  • Upgrade to Reactor 2024.0.17 #36660
Commits
  • 6b11724 Release v6.2.18
  • f6671e7 Upgrade to Reactor 2024.0.17 and Micrometer 1.15.11
  • b338fdd Add doOnDiscard in MultipartHttpMessageReader
  • 4e3f264 Add missing tests for WebRequestDataBinder
  • 9e0b83e Polish WebRequestDataBinderTests
  • af4b122 Extract ServletRequestParameterPropertyValuesTests
  • 623ccd1 Revise "Skip binding entirely when field is not allowed"
  • 69068ba Further clarify semantics of HttpMethod.valueOf()
  • f182f9a Clarify semantics of HttpMethod.valueOf()
  • 9d14448 Improve SpEL tests for Elvis and Ternary operators
  • Additional commits viewable in compare view

Updates io.undertow:undertow-core from 2.3.21.Final to 2.4.0.Final

Release notes

Sourced from io.undertow:undertow-core's releases.

v.2.4.0.Beta1

Release 2.4.0.Beta1 Fixes CVE-2024-3884CVE-2024-4027CVE-2025-12543 Full list of Jiras: view in Jira

 Release Notes - Undertow - Version 2.4.0.Beta1

... (truncated)

Commits
  • e2ae24e Prepare 2.4.0.Final
  • 3ece0bf Merge pull request #1947 from fl4via/UNDERTOW-2594_2.4.x
  • 4d35436 Merge pull request #3 from ropalka/UNDERTOW-1875_2.4.x
  • 0431672 [UNDERTOW-1875] Fix matrix parameters processing with comma
  • 335d198 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] At RequestParser, make sure the...
  • 14072a2 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] CVE-2026-28368CVE-2026-28369 C...
  • 2e643b8 Next is 2.4.0.RC5
  • 15fc158 Prepare 2.4.0.RC4
  • 569361c Merge pull request #1942 from fl4via/UNDERTOW-2743
  • 6166aa9 [UNDERTOW-2743] At Cookies.parseCookie, remove the quotes from the cookie val...
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps the gradle group with 2 updates in the / directory: [org.springframework:spring-webmvc](https://github.com/spring-projects/spring-framework) and [io.undertow:undertow-core](https://github.com/undertow-io/undertow).
Updates `org.springframework:spring-webmvc` from 6.2.17 to 6.2.18
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v6.2.17...v6.2.18)
Updates `io.undertow:undertow-core` from 2.3.21.Final to 2.4.0.Final
- [Release notes](https://github.com/undertow-io/undertow/releases)
- [Commits](undertow-io/undertow@2.3.21.Final...2.4.0.Final)
---
updated-dependencies:
- dependency-name: org.springframework:spring-webmvc
dependency-version: 6.2.18
dependency-type: direct:production
dependency-group: gradle
- dependency-name: io.undertow:undertow-core
dependency-version: 2.4.0.Final
dependency-type: direct:production
dependency-group: gradle
...
Signed-off-by: dependabot[bot] <support@github.com>
@dependabotdependabotBot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels May 14, 2026
@dependabot
dependabotBot requested a review from a team as a code ownerMay 14, 2026 20:05
@countableSet
countableSet merged commit 0174eb4 into masterMay 14, 2026
5 checks passed
@countableSet
countableSet deleted the dependabot/gradle/gradle-f31c6a3a3c branch May 14, 2026 21:35
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependenciesPull requests that update a dependency filejavaPull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant

@countableSet
, 'i'); if (__m === '*' || __re.test(location.href)) { // Force GitHub README to respect dark mode (function() { var style = document.createElement('style'); style.textContent = ' .markdown-body { color-scheme: dark light; } .markdown-body pre { background: #161b22 !important; } .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; } .markdown-body table th, .markdown-body table td { border-color: #30363d !important; } .markdown-body img { background: #0d1117; } .markdown-body blockquote { border-left-color: #8b949e; } .markdown-body hr { border-color: #30363d; } '; document.head.appendChild(style); })(); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' Bump the gradle group across 1 directory with 2 updates by dependabot[bot] · Pull Request #36 · github/flit · GitHub
Skip to content

Bump the gradle group across 1 directory with 2 updates - #36

Merged
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c
May 14, 2026
Merged

Bump the gradle group across 1 directory with 2 updates#36
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c

Conversation

@dependabot

@dependabotdependabotBot commented on behalf of githubMay 14, 2026

Copy link
Copy Markdown

Bumps the gradle group with 2 updates in the / directory: org.springframework:spring-webmvc and io.undertow:undertow-core.

Updates org.springframework:spring-webmvc from 6.2.17 to 6.2.18

Release notes

Sourced from org.springframework:spring-webmvc's releases.

v6.2.18

⭐ New Features

  • Improve SpringValidatorAdapter and MethodValidationAdapter performance #36624
  • Add missing @Deprecated(forRemoval = true) for deleted in 7.0 #36591
  • Deprecate methodIdentification() in CacheAspectSupport for removal #36576
  • Improve error handling in multipart codecs #36564
  • LazyConnectionDataSourceProxy does not work well with Hibernate's multi-tenancy by schema strategy #36529
  • MySQL Error 149 (Galera/WSREP conflict) not translated to ConcurrencyFailureException in Spring JDBC/ORM #36510

🐞 Bug Fixes

  • Handle Kotlin nullable value class param correctly in CoroutineUtils#36643
  • NullPointerException in ServerSentEvent when trying to set id or event properties #36634
  • @Sql fails if DataSource is wrapped in a TransactionAwareDataSourceProxy#36630
  • WebDataBinder unnecessarily instantiates collections when using the "!" and "_" prefixes #36627
  • Cache pollution from high-cardinality FieldError default messages in MessageSourceSupport #36623
  • ContentCachingRequestWrapper does not allow unlimited content caching #36620
  • MergedAnnotation does not use ClassLoader for method or field #36614
  • AnnotationBeanNameGenerator fails when an annotation references a non-existent class #36588
  • FileSystemResource does not strictly follow the Resource#isReadable() contract #36585
  • Query not hidden in DefaultClientResponse checkpoint #36571
  • LazyConnectionDataSourceProxy does not pass on holdability to target Connection #36530
  • DefaultJmsListenerContainer may hang in an endless loop in doShutdown#36511
  • Inconsistent codings resolution in resource resolvers #36508

📔 Documentation

  • Clarify semantics of HttpMethod.valueOf() #36653
  • Document that spring.profiles.active is ignored by @ActiveProfiles#36636
  • Document whitespace semantics in SpEL expressions #36629
  • MergedAnnotation.asAnnotationAttributes() Javadoc incorrectly states that it creates an immutable map #36568
  • Introduce Kotlin examples for Bean Overrides (@MockitoBean, etc.) #36542
  • Fix incorrect cross-reference links in AbstractEnvironment Javadoc #36517

🔨 Dependency Upgrades

  • Upgrade to Micrometer 1.15.11 #36661
  • Upgrade to Reactor 2024.0.17 #36660
Commits
  • 6b11724 Release v6.2.18
  • f6671e7 Upgrade to Reactor 2024.0.17 and Micrometer 1.15.11
  • b338fdd Add doOnDiscard in MultipartHttpMessageReader
  • 4e3f264 Add missing tests for WebRequestDataBinder
  • 9e0b83e Polish WebRequestDataBinderTests
  • af4b122 Extract ServletRequestParameterPropertyValuesTests
  • 623ccd1 Revise "Skip binding entirely when field is not allowed"
  • 69068ba Further clarify semantics of HttpMethod.valueOf()
  • f182f9a Clarify semantics of HttpMethod.valueOf()
  • 9d14448 Improve SpEL tests for Elvis and Ternary operators
  • Additional commits viewable in compare view

Updates io.undertow:undertow-core from 2.3.21.Final to 2.4.0.Final

Release notes

Sourced from io.undertow:undertow-core's releases.

v.2.4.0.Beta1

Release 2.4.0.Beta1 Fixes CVE-2024-3884CVE-2024-4027CVE-2025-12543 Full list of Jiras: view in Jira

 Release Notes - Undertow - Version 2.4.0.Beta1

... (truncated)

Commits
  • e2ae24e Prepare 2.4.0.Final
  • 3ece0bf Merge pull request #1947 from fl4via/UNDERTOW-2594_2.4.x
  • 4d35436 Merge pull request #3 from ropalka/UNDERTOW-1875_2.4.x
  • 0431672 [UNDERTOW-1875] Fix matrix parameters processing with comma
  • 335d198 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] At RequestParser, make sure the...
  • 14072a2 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] CVE-2026-28368CVE-2026-28369 C...
  • 2e643b8 Next is 2.4.0.RC5
  • 15fc158 Prepare 2.4.0.RC4
  • 569361c Merge pull request #1942 from fl4via/UNDERTOW-2743
  • 6166aa9 [UNDERTOW-2743] At Cookies.parseCookie, remove the quotes from the cookie val...
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps the gradle group with 2 updates in the / directory: [org.springframework:spring-webmvc](https://github.com/spring-projects/spring-framework) and [io.undertow:undertow-core](https://github.com/undertow-io/undertow).
Updates `org.springframework:spring-webmvc` from 6.2.17 to 6.2.18
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v6.2.17...v6.2.18)
Updates `io.undertow:undertow-core` from 2.3.21.Final to 2.4.0.Final
- [Release notes](https://github.com/undertow-io/undertow/releases)
- [Commits](undertow-io/undertow@2.3.21.Final...2.4.0.Final)
---
updated-dependencies:
- dependency-name: org.springframework:spring-webmvc
dependency-version: 6.2.18
dependency-type: direct:production
dependency-group: gradle
- dependency-name: io.undertow:undertow-core
dependency-version: 2.4.0.Final
dependency-type: direct:production
dependency-group: gradle
...
Signed-off-by: dependabot[bot] <support@github.com>
@dependabotdependabotBot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels May 14, 2026
@dependabot
dependabotBot requested a review from a team as a code ownerMay 14, 2026 20:05
@countableSet
countableSet merged commit 0174eb4 into masterMay 14, 2026
5 checks passed
@countableSet
countableSet deleted the dependabot/gradle/gradle-f31c6a3a3c branch May 14, 2026 21:35
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependenciesPull requests that update a dependency filejavaPull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant

@countableSet
, 'i'); if (__m === '*' || __re.test(location.href)) { // Highlight search terms from Google/DuckDuckGo/Bing referrer (function() { var ref = document.referrer; var terms = []; if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) { var url = new URL(ref); var q = url.searchParams.get('q') || url.searchParams.get('p'); if (q) { terms = q.split(/\s+/).filter(function(t) { return t.length > 2; }); } } if (terms.length === 0) return; var style = document.createElement('style'); style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }'; document.head.appendChild(style); function highlight(node) { if (node.nodeType === 3) { // text node var text = node.textContent; var found = false; terms.forEach(function(term) { var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\]\\]/g, '\\') + ')', 'gi'); if (regex.test(text)) { found = true; var frag = document.createDocumentFragment(); var parts = text.split(regex); parts.forEach(function(part, i) { if (i % 2 === 0) { frag.appendChild(document.createTextNode(part)); } else { var span = document.createElement('span'); span.className = 'userscript-highlight'; span.textContent = part; frag.appendChild(span); } }); node.parentNode.replaceChild(frag, node); } }); } else if (node.nodeType === 1 && node.childNodes) { // element var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT']; if (!skipTags.includes(node.tagName)) { Array.from(node.childNodes).forEach(highlight); } } } highlight(document.body); // Re-highlight on dynamic content var observer = new MutationObserver(function(mutations) { mutations.forEach(function(m) { m.addedNodes.forEach(function(node) { if (node.nodeType === 1 || node.nodeType === 3) highlight(node); }); }); }); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' Bump the gradle group across 1 directory with 2 updates by dependabot[bot] · Pull Request #36 · github/flit · GitHub
Skip to content

Bump the gradle group across 1 directory with 2 updates - #36

Merged
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c
May 14, 2026
Merged

Bump the gradle group across 1 directory with 2 updates#36
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c

Conversation

@dependabot

@dependabotdependabotBot commented on behalf of githubMay 14, 2026

Copy link
Copy Markdown

Bumps the gradle group with 2 updates in the / directory: org.springframework:spring-webmvc and io.undertow:undertow-core.

Updates org.springframework:spring-webmvc from 6.2.17 to 6.2.18

Release notes

Sourced from org.springframework:spring-webmvc's releases.

v6.2.18

⭐ New Features

  • Improve SpringValidatorAdapter and MethodValidationAdapter performance #36624
  • Add missing @Deprecated(forRemoval = true) for deleted in 7.0 #36591
  • Deprecate methodIdentification() in CacheAspectSupport for removal #36576
  • Improve error handling in multipart codecs #36564
  • LazyConnectionDataSourceProxy does not work well with Hibernate's multi-tenancy by schema strategy #36529
  • MySQL Error 149 (Galera/WSREP conflict) not translated to ConcurrencyFailureException in Spring JDBC/ORM #36510

🐞 Bug Fixes

  • Handle Kotlin nullable value class param correctly in CoroutineUtils#36643
  • NullPointerException in ServerSentEvent when trying to set id or event properties #36634
  • @Sql fails if DataSource is wrapped in a TransactionAwareDataSourceProxy#36630
  • WebDataBinder unnecessarily instantiates collections when using the "!" and "_" prefixes #36627
  • Cache pollution from high-cardinality FieldError default messages in MessageSourceSupport #36623
  • ContentCachingRequestWrapper does not allow unlimited content caching #36620
  • MergedAnnotation does not use ClassLoader for method or field #36614
  • AnnotationBeanNameGenerator fails when an annotation references a non-existent class #36588
  • FileSystemResource does not strictly follow the Resource#isReadable() contract #36585
  • Query not hidden in DefaultClientResponse checkpoint #36571
  • LazyConnectionDataSourceProxy does not pass on holdability to target Connection #36530
  • DefaultJmsListenerContainer may hang in an endless loop in doShutdown#36511
  • Inconsistent codings resolution in resource resolvers #36508

📔 Documentation

  • Clarify semantics of HttpMethod.valueOf() #36653
  • Document that spring.profiles.active is ignored by @ActiveProfiles#36636
  • Document whitespace semantics in SpEL expressions #36629
  • MergedAnnotation.asAnnotationAttributes() Javadoc incorrectly states that it creates an immutable map #36568
  • Introduce Kotlin examples for Bean Overrides (@MockitoBean, etc.) #36542
  • Fix incorrect cross-reference links in AbstractEnvironment Javadoc #36517

🔨 Dependency Upgrades

  • Upgrade to Micrometer 1.15.11 #36661
  • Upgrade to Reactor 2024.0.17 #36660
Commits
  • 6b11724 Release v6.2.18
  • f6671e7 Upgrade to Reactor 2024.0.17 and Micrometer 1.15.11
  • b338fdd Add doOnDiscard in MultipartHttpMessageReader
  • 4e3f264 Add missing tests for WebRequestDataBinder
  • 9e0b83e Polish WebRequestDataBinderTests
  • af4b122 Extract ServletRequestParameterPropertyValuesTests
  • 623ccd1 Revise "Skip binding entirely when field is not allowed"
  • 69068ba Further clarify semantics of HttpMethod.valueOf()
  • f182f9a Clarify semantics of HttpMethod.valueOf()
  • 9d14448 Improve SpEL tests for Elvis and Ternary operators
  • Additional commits viewable in compare view

Updates io.undertow:undertow-core from 2.3.21.Final to 2.4.0.Final

Release notes

Sourced from io.undertow:undertow-core's releases.

v.2.4.0.Beta1

Release 2.4.0.Beta1 Fixes CVE-2024-3884CVE-2024-4027CVE-2025-12543 Full list of Jiras: view in Jira

 Release Notes - Undertow - Version 2.4.0.Beta1

... (truncated)

Commits
  • e2ae24e Prepare 2.4.0.Final
  • 3ece0bf Merge pull request #1947 from fl4via/UNDERTOW-2594_2.4.x
  • 4d35436 Merge pull request #3 from ropalka/UNDERTOW-1875_2.4.x
  • 0431672 [UNDERTOW-1875] Fix matrix parameters processing with comma
  • 335d198 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] At RequestParser, make sure the...
  • 14072a2 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] CVE-2026-28368CVE-2026-28369 C...
  • 2e643b8 Next is 2.4.0.RC5
  • 15fc158 Prepare 2.4.0.RC4
  • 569361c Merge pull request #1942 from fl4via/UNDERTOW-2743
  • 6166aa9 [UNDERTOW-2743] At Cookies.parseCookie, remove the quotes from the cookie val...
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps the gradle group with 2 updates in the / directory: [org.springframework:spring-webmvc](https://github.com/spring-projects/spring-framework) and [io.undertow:undertow-core](https://github.com/undertow-io/undertow).
Updates `org.springframework:spring-webmvc` from 6.2.17 to 6.2.18
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v6.2.17...v6.2.18)
Updates `io.undertow:undertow-core` from 2.3.21.Final to 2.4.0.Final
- [Release notes](https://github.com/undertow-io/undertow/releases)
- [Commits](undertow-io/undertow@2.3.21.Final...2.4.0.Final)
---
updated-dependencies:
- dependency-name: org.springframework:spring-webmvc
dependency-version: 6.2.18
dependency-type: direct:production
dependency-group: gradle
- dependency-name: io.undertow:undertow-core
dependency-version: 2.4.0.Final
dependency-type: direct:production
dependency-group: gradle
...
Signed-off-by: dependabot[bot] <support@github.com>
@dependabotdependabotBot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels May 14, 2026
@dependabot
dependabotBot requested a review from a team as a code ownerMay 14, 2026 20:05
@countableSet
countableSet merged commit 0174eb4 into masterMay 14, 2026
5 checks passed
@countableSet
countableSet deleted the dependabot/gradle/gradle-f31c6a3a3c branch May 14, 2026 21:35
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependenciesPull requests that update a dependency filejavaPull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant

@countableSet
, 'i'); if (__m === '*' || __re.test(location.href)) { // Strip utm_, fbclid, gclid, etc. from all links on page (function() { var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content', 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid', 'ref', 'ref_src', 'source', 'medium', 'campaign']; function cleanUrl(url) { try { var u = new URL(url, window.location.origin); var changed = false; trackingParams.forEach(function(p) { if (u.searchParams.has(p)) { u.searchParams.delete(p); changed = true; } }); return changed ? u.toString() : url; } catch (e) { return url; } } function cleanLinks() { document.querySelectorAll('a[href]').forEach(function(a) { var clean = cleanUrl(a.href); if (clean !== a.href) a.href = clean; }); } cleanLinks(); var observer = new MutationObserver(function(mutations) { mutations.forEach(function(m) { m.addedNodes.forEach(function(node) { if (node.nodeType === 1) { if (node.tagName === 'A') cleanLinks(); node.querySelectorAll('a[href]').forEach(function(a) { var clean = cleanUrl(a.href); if (clean !== a.href) a.href = clean; }); } }); }); }); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + ' Bump the gradle group across 1 directory with 2 updates by dependabot[bot] · Pull Request #36 · github/flit · GitHub
Skip to content

Bump the gradle group across 1 directory with 2 updates - #36

Merged
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c
May 14, 2026
Merged

Bump the gradle group across 1 directory with 2 updates#36
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c

Conversation

@dependabot

@dependabotdependabotBot commented on behalf of githubMay 14, 2026

Copy link
Copy Markdown

Bumps the gradle group with 2 updates in the / directory: org.springframework:spring-webmvc and io.undertow:undertow-core.

Updates org.springframework:spring-webmvc from 6.2.17 to 6.2.18

Release notes

Sourced from org.springframework:spring-webmvc's releases.

v6.2.18

⭐ New Features

  • Improve SpringValidatorAdapter and MethodValidationAdapter performance #36624
  • Add missing @Deprecated(forRemoval = true) for deleted in 7.0 #36591
  • Deprecate methodIdentification() in CacheAspectSupport for removal #36576
  • Improve error handling in multipart codecs #36564
  • LazyConnectionDataSourceProxy does not work well with Hibernate's multi-tenancy by schema strategy #36529
  • MySQL Error 149 (Galera/WSREP conflict) not translated to ConcurrencyFailureException in Spring JDBC/ORM #36510

🐞 Bug Fixes

  • Handle Kotlin nullable value class param correctly in CoroutineUtils#36643
  • NullPointerException in ServerSentEvent when trying to set id or event properties #36634
  • @Sql fails if DataSource is wrapped in a TransactionAwareDataSourceProxy#36630
  • WebDataBinder unnecessarily instantiates collections when using the "!" and "_" prefixes #36627
  • Cache pollution from high-cardinality FieldError default messages in MessageSourceSupport #36623
  • ContentCachingRequestWrapper does not allow unlimited content caching #36620
  • MergedAnnotation does not use ClassLoader for method or field #36614
  • AnnotationBeanNameGenerator fails when an annotation references a non-existent class #36588
  • FileSystemResource does not strictly follow the Resource#isReadable() contract #36585
  • Query not hidden in DefaultClientResponse checkpoint #36571
  • LazyConnectionDataSourceProxy does not pass on holdability to target Connection #36530
  • DefaultJmsListenerContainer may hang in an endless loop in doShutdown#36511
  • Inconsistent codings resolution in resource resolvers #36508

📔 Documentation

  • Clarify semantics of HttpMethod.valueOf() #36653
  • Document that spring.profiles.active is ignored by @ActiveProfiles#36636
  • Document whitespace semantics in SpEL expressions #36629
  • MergedAnnotation.asAnnotationAttributes() Javadoc incorrectly states that it creates an immutable map #36568
  • Introduce Kotlin examples for Bean Overrides (@MockitoBean, etc.) #36542
  • Fix incorrect cross-reference links in AbstractEnvironment Javadoc #36517

🔨 Dependency Upgrades

  • Upgrade to Micrometer 1.15.11 #36661
  • Upgrade to Reactor 2024.0.17 #36660
Commits
  • 6b11724 Release v6.2.18
  • f6671e7 Upgrade to Reactor 2024.0.17 and Micrometer 1.15.11
  • b338fdd Add doOnDiscard in MultipartHttpMessageReader
  • 4e3f264 Add missing tests for WebRequestDataBinder
  • 9e0b83e Polish WebRequestDataBinderTests
  • af4b122 Extract ServletRequestParameterPropertyValuesTests
  • 623ccd1 Revise "Skip binding entirely when field is not allowed"
  • 69068ba Further clarify semantics of HttpMethod.valueOf()
  • f182f9a Clarify semantics of HttpMethod.valueOf()
  • 9d14448 Improve SpEL tests for Elvis and Ternary operators
  • Additional commits viewable in compare view

Updates io.undertow:undertow-core from 2.3.21.Final to 2.4.0.Final

Release notes

Sourced from io.undertow:undertow-core's releases.

v.2.4.0.Beta1

Release 2.4.0.Beta1 Fixes CVE-2024-3884CVE-2024-4027CVE-2025-12543 Full list of Jiras: view in Jira

 Release Notes - Undertow - Version 2.4.0.Beta1

... (truncated)

Commits
  • e2ae24e Prepare 2.4.0.Final
  • 3ece0bf Merge pull request #1947 from fl4via/UNDERTOW-2594_2.4.x
  • 4d35436 Merge pull request #3 from ropalka/UNDERTOW-1875_2.4.x
  • 0431672 [UNDERTOW-1875] Fix matrix parameters processing with comma
  • 335d198 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] At RequestParser, make sure the...
  • 14072a2 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] CVE-2026-28368CVE-2026-28369 C...
  • 2e643b8 Next is 2.4.0.RC5
  • 15fc158 Prepare 2.4.0.RC4
  • 569361c Merge pull request #1942 from fl4via/UNDERTOW-2743
  • 6166aa9 [UNDERTOW-2743] At Cookies.parseCookie, remove the quotes from the cookie val...
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps the gradle group with 2 updates in the / directory: [org.springframework:spring-webmvc](https://github.com/spring-projects/spring-framework) and [io.undertow:undertow-core](https://github.com/undertow-io/undertow).
Updates `org.springframework:spring-webmvc` from 6.2.17 to 6.2.18
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v6.2.17...v6.2.18)
Updates `io.undertow:undertow-core` from 2.3.21.Final to 2.4.0.Final
- [Release notes](https://github.com/undertow-io/undertow/releases)
- [Commits](undertow-io/undertow@2.3.21.Final...2.4.0.Final)
---
updated-dependencies:
- dependency-name: org.springframework:spring-webmvc
dependency-version: 6.2.18
dependency-type: direct:production
dependency-group: gradle
- dependency-name: io.undertow:undertow-core
dependency-version: 2.4.0.Final
dependency-type: direct:production
dependency-group: gradle
...
Signed-off-by: dependabot[bot] <support@github.com>
@dependabotdependabotBot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels May 14, 2026
@dependabot
dependabotBot requested a review from a team as a code ownerMay 14, 2026 20:05
@countableSet
countableSet merged commit 0174eb4 into masterMay 14, 2026
5 checks passed
@countableSet
countableSet deleted the dependabot/gradle/gradle-f31c6a3a3c branch May 14, 2026 21:35
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependenciesPull requests that update a dependency filejavaPull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant

@countableSet
, 'i'); if (__m === '*' || __re.test(location.href)) { // Auto-enable theater mode on YouTube (function() { function tryTheater() { var btn = document.querySelector('button[aria-label="Theater mode"], ytd-player #player button[title="Theater mode"]'); if (btn && !btn.classList.contains('activated')) { btn.click(); } } // Try immediately tryTheater(); // Try after navigation (SPA) var lastUrl = location.href; setInterval(function() { if (location.href !== lastUrl) { lastUrl = location.href; setTimeout(tryTheater, 500); } }, 1000); // Also try on player load var observer = new MutationObserver(tryTheater); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' Bump the gradle group across 1 directory with 2 updates by dependabot[bot] · Pull Request #36 · github/flit · GitHub
Skip to content

Bump the gradle group across 1 directory with 2 updates - #36

Merged
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c
May 14, 2026
Merged

Bump the gradle group across 1 directory with 2 updates#36
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c

Conversation

@dependabot

@dependabotdependabotBot commented on behalf of githubMay 14, 2026

Copy link
Copy Markdown

Bumps the gradle group with 2 updates in the / directory: org.springframework:spring-webmvc and io.undertow:undertow-core.

Updates org.springframework:spring-webmvc from 6.2.17 to 6.2.18

Release notes

Sourced from org.springframework:spring-webmvc's releases.

v6.2.18

⭐ New Features

  • Improve SpringValidatorAdapter and MethodValidationAdapter performance #36624
  • Add missing @Deprecated(forRemoval = true) for deleted in 7.0 #36591
  • Deprecate methodIdentification() in CacheAspectSupport for removal #36576
  • Improve error handling in multipart codecs #36564
  • LazyConnectionDataSourceProxy does not work well with Hibernate's multi-tenancy by schema strategy #36529
  • MySQL Error 149 (Galera/WSREP conflict) not translated to ConcurrencyFailureException in Spring JDBC/ORM #36510

🐞 Bug Fixes

  • Handle Kotlin nullable value class param correctly in CoroutineUtils#36643
  • NullPointerException in ServerSentEvent when trying to set id or event properties #36634
  • @Sql fails if DataSource is wrapped in a TransactionAwareDataSourceProxy#36630
  • WebDataBinder unnecessarily instantiates collections when using the "!" and "_" prefixes #36627
  • Cache pollution from high-cardinality FieldError default messages in MessageSourceSupport #36623
  • ContentCachingRequestWrapper does not allow unlimited content caching #36620
  • MergedAnnotation does not use ClassLoader for method or field #36614
  • AnnotationBeanNameGenerator fails when an annotation references a non-existent class #36588
  • FileSystemResource does not strictly follow the Resource#isReadable() contract #36585
  • Query not hidden in DefaultClientResponse checkpoint #36571
  • LazyConnectionDataSourceProxy does not pass on holdability to target Connection #36530
  • DefaultJmsListenerContainer may hang in an endless loop in doShutdown#36511
  • Inconsistent codings resolution in resource resolvers #36508

📔 Documentation

  • Clarify semantics of HttpMethod.valueOf() #36653
  • Document that spring.profiles.active is ignored by @ActiveProfiles#36636
  • Document whitespace semantics in SpEL expressions #36629
  • MergedAnnotation.asAnnotationAttributes() Javadoc incorrectly states that it creates an immutable map #36568
  • Introduce Kotlin examples for Bean Overrides (@MockitoBean, etc.) #36542
  • Fix incorrect cross-reference links in AbstractEnvironment Javadoc #36517

🔨 Dependency Upgrades

  • Upgrade to Micrometer 1.15.11 #36661
  • Upgrade to Reactor 2024.0.17 #36660
Commits
  • 6b11724 Release v6.2.18
  • f6671e7 Upgrade to Reactor 2024.0.17 and Micrometer 1.15.11
  • b338fdd Add doOnDiscard in MultipartHttpMessageReader
  • 4e3f264 Add missing tests for WebRequestDataBinder
  • 9e0b83e Polish WebRequestDataBinderTests
  • af4b122 Extract ServletRequestParameterPropertyValuesTests
  • 623ccd1 Revise "Skip binding entirely when field is not allowed"
  • 69068ba Further clarify semantics of HttpMethod.valueOf()
  • f182f9a Clarify semantics of HttpMethod.valueOf()
  • 9d14448 Improve SpEL tests for Elvis and Ternary operators
  • Additional commits viewable in compare view

Updates io.undertow:undertow-core from 2.3.21.Final to 2.4.0.Final

Release notes

Sourced from io.undertow:undertow-core's releases.

v.2.4.0.Beta1

Release 2.4.0.Beta1 Fixes CVE-2024-3884CVE-2024-4027CVE-2025-12543 Full list of Jiras: view in Jira

 Release Notes - Undertow - Version 2.4.0.Beta1

... (truncated)

Commits
  • e2ae24e Prepare 2.4.0.Final
  • 3ece0bf Merge pull request #1947 from fl4via/UNDERTOW-2594_2.4.x
  • 4d35436 Merge pull request #3 from ropalka/UNDERTOW-1875_2.4.x
  • 0431672 [UNDERTOW-1875] Fix matrix parameters processing with comma
  • 335d198 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] At RequestParser, make sure the...
  • 14072a2 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] CVE-2026-28368CVE-2026-28369 C...
  • 2e643b8 Next is 2.4.0.RC5
  • 15fc158 Prepare 2.4.0.RC4
  • 569361c Merge pull request #1942 from fl4via/UNDERTOW-2743
  • 6166aa9 [UNDERTOW-2743] At Cookies.parseCookie, remove the quotes from the cookie val...
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps the gradle group with 2 updates in the / directory: [org.springframework:spring-webmvc](https://github.com/spring-projects/spring-framework) and [io.undertow:undertow-core](https://github.com/undertow-io/undertow).
Updates `org.springframework:spring-webmvc` from 6.2.17 to 6.2.18
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v6.2.17...v6.2.18)
Updates `io.undertow:undertow-core` from 2.3.21.Final to 2.4.0.Final
- [Release notes](https://github.com/undertow-io/undertow/releases)
- [Commits](undertow-io/undertow@2.3.21.Final...2.4.0.Final)
---
updated-dependencies:
- dependency-name: org.springframework:spring-webmvc
dependency-version: 6.2.18
dependency-type: direct:production
dependency-group: gradle
- dependency-name: io.undertow:undertow-core
dependency-version: 2.4.0.Final
dependency-type: direct:production
dependency-group: gradle
...
Signed-off-by: dependabot[bot] <support@github.com>
@dependabotdependabotBot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels May 14, 2026
@dependabot
dependabotBot requested a review from a team as a code ownerMay 14, 2026 20:05
@countableSet
countableSet merged commit 0174eb4 into masterMay 14, 2026
5 checks passed
@countableSet
countableSet deleted the dependabot/gradle/gradle-f31c6a3a3c branch May 14, 2026 21:35
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependenciesPull requests that update a dependency filejavaPull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant

@countableSet
, 'i'); if (__m === '*' || __re.test(location.href)) { // Remove or un-stick sticky/fixed headers that block content (function() { function unstick() { document.querySelectorAll('header, nav, [role="banner"], .header, .navbar, .sticky, .fixed-top, [style*="position: fixed"], [style*="position:sticky"]').forEach(function(el) { if (el.style.position === 'fixed' || el.style.position === 'sticky' || getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') { el.style.position = 'static'; el.style.top = 'auto'; el.style.zIndex = 'auto'; } }); } unstick(); var observer = new MutationObserver(unstick); observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] }); })(); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' Bump the gradle group across 1 directory with 2 updates by dependabot[bot] · Pull Request #36 · github/flit · GitHub
Skip to content

Bump the gradle group across 1 directory with 2 updates - #36

Merged
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c
May 14, 2026
Merged

Bump the gradle group across 1 directory with 2 updates#36
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c

Conversation

@dependabot

@dependabotdependabotBot commented on behalf of githubMay 14, 2026

Copy link
Copy Markdown

Bumps the gradle group with 2 updates in the / directory: org.springframework:spring-webmvc and io.undertow:undertow-core.

Updates org.springframework:spring-webmvc from 6.2.17 to 6.2.18

Release notes

Sourced from org.springframework:spring-webmvc's releases.

v6.2.18

⭐ New Features

  • Improve SpringValidatorAdapter and MethodValidationAdapter performance #36624
  • Add missing @Deprecated(forRemoval = true) for deleted in 7.0 #36591
  • Deprecate methodIdentification() in CacheAspectSupport for removal #36576
  • Improve error handling in multipart codecs #36564
  • LazyConnectionDataSourceProxy does not work well with Hibernate's multi-tenancy by schema strategy #36529
  • MySQL Error 149 (Galera/WSREP conflict) not translated to ConcurrencyFailureException in Spring JDBC/ORM #36510

🐞 Bug Fixes

  • Handle Kotlin nullable value class param correctly in CoroutineUtils#36643
  • NullPointerException in ServerSentEvent when trying to set id or event properties #36634
  • @Sql fails if DataSource is wrapped in a TransactionAwareDataSourceProxy#36630
  • WebDataBinder unnecessarily instantiates collections when using the "!" and "_" prefixes #36627
  • Cache pollution from high-cardinality FieldError default messages in MessageSourceSupport #36623
  • ContentCachingRequestWrapper does not allow unlimited content caching #36620
  • MergedAnnotation does not use ClassLoader for method or field #36614
  • AnnotationBeanNameGenerator fails when an annotation references a non-existent class #36588
  • FileSystemResource does not strictly follow the Resource#isReadable() contract #36585
  • Query not hidden in DefaultClientResponse checkpoint #36571
  • LazyConnectionDataSourceProxy does not pass on holdability to target Connection #36530
  • DefaultJmsListenerContainer may hang in an endless loop in doShutdown#36511
  • Inconsistent codings resolution in resource resolvers #36508

📔 Documentation

  • Clarify semantics of HttpMethod.valueOf() #36653
  • Document that spring.profiles.active is ignored by @ActiveProfiles#36636
  • Document whitespace semantics in SpEL expressions #36629
  • MergedAnnotation.asAnnotationAttributes() Javadoc incorrectly states that it creates an immutable map #36568
  • Introduce Kotlin examples for Bean Overrides (@MockitoBean, etc.) #36542
  • Fix incorrect cross-reference links in AbstractEnvironment Javadoc #36517

🔨 Dependency Upgrades

  • Upgrade to Micrometer 1.15.11 #36661
  • Upgrade to Reactor 2024.0.17 #36660
Commits
  • 6b11724 Release v6.2.18
  • f6671e7 Upgrade to Reactor 2024.0.17 and Micrometer 1.15.11
  • b338fdd Add doOnDiscard in MultipartHttpMessageReader
  • 4e3f264 Add missing tests for WebRequestDataBinder
  • 9e0b83e Polish WebRequestDataBinderTests
  • af4b122 Extract ServletRequestParameterPropertyValuesTests
  • 623ccd1 Revise "Skip binding entirely when field is not allowed"
  • 69068ba Further clarify semantics of HttpMethod.valueOf()
  • f182f9a Clarify semantics of HttpMethod.valueOf()
  • 9d14448 Improve SpEL tests for Elvis and Ternary operators
  • Additional commits viewable in compare view

Updates io.undertow:undertow-core from 2.3.21.Final to 2.4.0.Final

Release notes

Sourced from io.undertow:undertow-core's releases.

v.2.4.0.Beta1

Release 2.4.0.Beta1 Fixes CVE-2024-3884CVE-2024-4027CVE-2025-12543 Full list of Jiras: view in Jira

 Release Notes - Undertow - Version 2.4.0.Beta1

... (truncated)

Commits
  • e2ae24e Prepare 2.4.0.Final
  • 3ece0bf Merge pull request #1947 from fl4via/UNDERTOW-2594_2.4.x
  • 4d35436 Merge pull request #3 from ropalka/UNDERTOW-1875_2.4.x
  • 0431672 [UNDERTOW-1875] Fix matrix parameters processing with comma
  • 335d198 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] At RequestParser, make sure the...
  • 14072a2 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] CVE-2026-28368CVE-2026-28369 C...
  • 2e643b8 Next is 2.4.0.RC5
  • 15fc158 Prepare 2.4.0.RC4
  • 569361c Merge pull request #1942 from fl4via/UNDERTOW-2743
  • 6166aa9 [UNDERTOW-2743] At Cookies.parseCookie, remove the quotes from the cookie val...
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps the gradle group with 2 updates in the / directory: [org.springframework:spring-webmvc](https://github.com/spring-projects/spring-framework) and [io.undertow:undertow-core](https://github.com/undertow-io/undertow).
Updates `org.springframework:spring-webmvc` from 6.2.17 to 6.2.18
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v6.2.17...v6.2.18)
Updates `io.undertow:undertow-core` from 2.3.21.Final to 2.4.0.Final
- [Release notes](https://github.com/undertow-io/undertow/releases)
- [Commits](undertow-io/undertow@2.3.21.Final...2.4.0.Final)
---
updated-dependencies:
- dependency-name: org.springframework:spring-webmvc
dependency-version: 6.2.18
dependency-type: direct:production
dependency-group: gradle
- dependency-name: io.undertow:undertow-core
dependency-version: 2.4.0.Final
dependency-type: direct:production
dependency-group: gradle
...
Signed-off-by: dependabot[bot] <support@github.com>
@dependabotdependabotBot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels May 14, 2026
@dependabot
dependabotBot requested a review from a team as a code ownerMay 14, 2026 20:05
@countableSet
countableSet merged commit 0174eb4 into masterMay 14, 2026
5 checks passed
@countableSet
countableSet deleted the dependabot/gradle/gradle-f31c6a3a3c branch May 14, 2026 21:35
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependenciesPull requests that update a dependency filejavaPull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant

@countableSet
, 'i'); if (__m === '*' || __re.test(location.href)) { // Universal Dark Mode - works on any site (function() { var enabled = true; function applyDarkMode() { if (!enabled) return; // Create style element if it doesn't exist var style = document.getElementById('universal-dark-mode-style'); if (!style) { style = document.createElement('style'); style.id = 'universal-dark-mode-style'; document.head.appendChild(style); } // Dark mode CSS - inverts colors but preserves images/video style.textContent = ' /* Invert everything except media */ html { filter: invert(1) hue-rotate(180deg) !important; background: #1a1a2e !important; } /* Restore images, videos, iframes, canvas */ img, video, iframe, canvas, svg, picture, [style*="background-image"] { filter: invert(1) hue-rotate(180deg) !important; } /* Preserve specific elements that should not be inverted */ .no-dark-mode, .no-dark-mode *, [data-theme="light"], [data-theme="light"], .ace_editor, .ace_editor *, .CodeMirror, .CodeMirror *, .monaco-editor, .monaco-editor *, .markdown-body pre, .markdown-body pre *, .highlight, .highlight *, pre code, pre code * { filter: none !important; } /* Fix common UI elements */ .modal, .popup, .dropdown-menu, .tooltip, .popover { filter: invert(1) hue-rotate(180deg) !important; background: #2d2d44 !important; border-color: #444 !important; } /* Scrollbars */ ::-webkit-scrollbar { background: #1a1a2e !important; } ::-webkit-scrollbar-thumb { background: #444 !important; } ::-webkit-scrollbar-thumb:hover { background: #555 !important; } /* Selection */ ::selection { background: #4ecdc4 !important; color: #1a1a2e !important; } ::-moz-selection { background: #4ecdc4 !important; color: #1a1a2e !important; } '; } function removeDarkMode() { var style = document.getElementById('universal-dark-mode-style'); if (style) style.remove(); } // Toggle with Alt+Shift+D document.addEventListener('keydown', function(e) { if (e.altKey && e.shiftKey && e.key === 'D') { e.preventDefault(); enabled = !enabled; if (enabled) { applyDarkMode(); console.log('[Universal Dark Mode] Enabled'); } else { removeDarkMode(); console.log('[Universal Dark Mode] Disabled'); } } }); // Apply on load applyDarkMode(); // Re-apply on dynamic content var observer = new MutationObserver(function(mutations) { if (enabled && !document.getElementById('universal-dark-mode-style')) { applyDarkMode(); } }); observer.observe(document.head, { childList: true }); console.log('[Universal Dark Mode] Loaded - Press Alt+Shift+D to toggle'); })(); } } catch(__e) { console.warn('[Userscript:Universal Dark Mode]', __e); } })(); })(); Bump the gradle group across 1 directory with 2 updates by dependabot[bot] · Pull Request #36 · github/flit · GitHub
Skip to content

Bump the gradle group across 1 directory with 2 updates - #36

Merged
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c
May 14, 2026
Merged

Bump the gradle group across 1 directory with 2 updates#36
countableSet merged 1 commit into
masterfrom
dependabot/gradle/gradle-f31c6a3a3c

Conversation

@dependabot

@dependabotdependabotBot commented on behalf of githubMay 14, 2026

Copy link
Copy Markdown

Bumps the gradle group with 2 updates in the / directory: org.springframework:spring-webmvc and io.undertow:undertow-core.

Updates org.springframework:spring-webmvc from 6.2.17 to 6.2.18

Release notes

Sourced from org.springframework:spring-webmvc's releases.

v6.2.18

⭐ New Features

  • Improve SpringValidatorAdapter and MethodValidationAdapter performance #36624
  • Add missing @Deprecated(forRemoval = true) for deleted in 7.0 #36591
  • Deprecate methodIdentification() in CacheAspectSupport for removal #36576
  • Improve error handling in multipart codecs #36564
  • LazyConnectionDataSourceProxy does not work well with Hibernate's multi-tenancy by schema strategy #36529
  • MySQL Error 149 (Galera/WSREP conflict) not translated to ConcurrencyFailureException in Spring JDBC/ORM #36510

🐞 Bug Fixes

  • Handle Kotlin nullable value class param correctly in CoroutineUtils#36643
  • NullPointerException in ServerSentEvent when trying to set id or event properties #36634
  • @Sql fails if DataSource is wrapped in a TransactionAwareDataSourceProxy#36630
  • WebDataBinder unnecessarily instantiates collections when using the "!" and "_" prefixes #36627
  • Cache pollution from high-cardinality FieldError default messages in MessageSourceSupport #36623
  • ContentCachingRequestWrapper does not allow unlimited content caching #36620
  • MergedAnnotation does not use ClassLoader for method or field #36614
  • AnnotationBeanNameGenerator fails when an annotation references a non-existent class #36588
  • FileSystemResource does not strictly follow the Resource#isReadable() contract #36585
  • Query not hidden in DefaultClientResponse checkpoint #36571
  • LazyConnectionDataSourceProxy does not pass on holdability to target Connection #36530
  • DefaultJmsListenerContainer may hang in an endless loop in doShutdown#36511
  • Inconsistent codings resolution in resource resolvers #36508

📔 Documentation

  • Clarify semantics of HttpMethod.valueOf() #36653
  • Document that spring.profiles.active is ignored by @ActiveProfiles#36636
  • Document whitespace semantics in SpEL expressions #36629
  • MergedAnnotation.asAnnotationAttributes() Javadoc incorrectly states that it creates an immutable map #36568
  • Introduce Kotlin examples for Bean Overrides (@MockitoBean, etc.) #36542
  • Fix incorrect cross-reference links in AbstractEnvironment Javadoc #36517

🔨 Dependency Upgrades

  • Upgrade to Micrometer 1.15.11 #36661
  • Upgrade to Reactor 2024.0.17 #36660
Commits
  • 6b11724 Release v6.2.18
  • f6671e7 Upgrade to Reactor 2024.0.17 and Micrometer 1.15.11
  • b338fdd Add doOnDiscard in MultipartHttpMessageReader
  • 4e3f264 Add missing tests for WebRequestDataBinder
  • 9e0b83e Polish WebRequestDataBinderTests
  • af4b122 Extract ServletRequestParameterPropertyValuesTests
  • 623ccd1 Revise "Skip binding entirely when field is not allowed"
  • 69068ba Further clarify semantics of HttpMethod.valueOf()
  • f182f9a Clarify semantics of HttpMethod.valueOf()
  • 9d14448 Improve SpEL tests for Elvis and Ternary operators
  • Additional commits viewable in compare view

Updates io.undertow:undertow-core from 2.3.21.Final to 2.4.0.Final

Release notes

Sourced from io.undertow:undertow-core's releases.

v.2.4.0.Beta1

Release 2.4.0.Beta1 Fixes CVE-2024-3884CVE-2024-4027CVE-2025-12543 Full list of Jiras: view in Jira

 Release Notes - Undertow - Version 2.4.0.Beta1

... (truncated)

Commits
  • e2ae24e Prepare 2.4.0.Final
  • 3ece0bf Merge pull request #1947 from fl4via/UNDERTOW-2594_2.4.x
  • 4d35436 Merge pull request #3 from ropalka/UNDERTOW-1875_2.4.x
  • 0431672 [UNDERTOW-1875] Fix matrix parameters processing with comma
  • 335d198 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] At RequestParser, make sure the...
  • 14072a2 [UNDERTOW-2594][UNDERTOW-2595][UNDERTOW-2596] CVE-2026-28368CVE-2026-28369 C...
  • 2e643b8 Next is 2.4.0.RC5
  • 15fc158 Prepare 2.4.0.RC4
  • 569361c Merge pull request #1942 from fl4via/UNDERTOW-2743
  • 6166aa9 [UNDERTOW-2743] At Cookies.parseCookie, remove the quotes from the cookie val...
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps the gradle group with 2 updates in the / directory: [org.springframework:spring-webmvc](https://github.com/spring-projects/spring-framework) and [io.undertow:undertow-core](https://github.com/undertow-io/undertow).
Updates `org.springframework:spring-webmvc` from 6.2.17 to 6.2.18
- [Release notes](https://github.com/spring-projects/spring-framework/releases)
- [Commits](spring-projects/spring-framework@v6.2.17...v6.2.18)
Updates `io.undertow:undertow-core` from 2.3.21.Final to 2.4.0.Final
- [Release notes](https://github.com/undertow-io/undertow/releases)
- [Commits](undertow-io/undertow@2.3.21.Final...2.4.0.Final)
---
updated-dependencies:
- dependency-name: org.springframework:spring-webmvc
dependency-version: 6.2.18
dependency-type: direct:production
dependency-group: gradle
- dependency-name: io.undertow:undertow-core
dependency-version: 2.4.0.Final
dependency-type: direct:production
dependency-group: gradle
...
Signed-off-by: dependabot[bot] <support@github.com>
@dependabotdependabotBot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels May 14, 2026
@dependabot
dependabotBot requested a review from a team as a code ownerMay 14, 2026 20:05
@countableSet
countableSet merged commit 0174eb4 into masterMay 14, 2026
5 checks passed
@countableSet
countableSet deleted the dependabot/gradle/gradle-f31c6a3a3c branch May 14, 2026 21:35
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependenciesPull requests that update a dependency filejavaPull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant

@countableSet