Skip to content

chore(deps): bump the plugins group across 1 directory with 3 updates - #2753

Merged
acoburn merged 1 commit into
1.3from
dependabot/maven/1.3/plugins-e404f13d52
Sep 15, 2026
Merged

acoburn merged 1 commit into
1.3from
dependabot/maven/1.3/plugins-e404f13d52

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 15, 2026

Copy link
Copy Markdown
Contributor

Bumps the plugins group with 3 updates in the / directory: org.apache.maven.plugins:maven-deploy-plugin, org.apache.maven.plugins:maven-install-plugin and org.sonarsource.scanner.maven:sonar-maven-plugin.

Updates org.apache.maven.plugins:maven-deploy-plugin from 3.1.4 to 3.2.0

Release notes

Sourced from org.apache.maven.plugins:maven-deploy-plugin's releases.

3.2.0

🚀 New features and improvements

🐛 Bug Fixes

  • Backport security audit fixes to 3.x (f004-f008, f010, f012) (#701) @​gnodet

📝 Documentation updates

👻 Maintenance

🔧 Build

📦 Dependency updates

... (truncated)

Commits
  • 7aab9fb [maven-release-plugin] prepare release maven-deploy-plugin-3.2.0
  • 1f3eef5 Backport security audit fixes to 3.x (f004-f008, f010, f012)
  • 307f328 Simplify remote repository creation
  • 7b1bbc4 Cache projectsWithDeployExecution to fix O(N²) reactor scan
  • a9177c6 Clarify deploy without editing this projects POM
  • 7c40513 Restore the plain form of the ASF licence header
  • 5969234 Update Release Drafter configuration to use custom tag template and remove un...
  • df7b3fa Bump apache/maven-gh-actions-shared/.github/workflows/release-drafter.yml
  • b4e8aed work around Maven 4 CLI lack of interpolation
  • d634bb4 enable build with Maven 4
  • Additional commits viewable in compare view

Updates org.apache.maven.plugins:maven-install-plugin from 3.1.4 to 3.2.0

Release notes

Sourced from org.apache.maven.plugins:maven-install-plugin's releases.

3.2.0

🚀 New features and improvements

🐛 Bug Fixes

  • chore: harden embedded-POM trust boundary in install:install-file (3.x backport) (#447) @​gnodet

📝 Documentation updates

  • Restore the common wording on the download page (#438) @​slachiewicz
  • Add AGENTS.md + SECURITY.md security-model pointer for scanner discoverability (#416) @​potiuk

👻 Maintenance

📦 Dependency updates

Commits
  • bcf484d [maven-release-plugin] prepare release maven-install-plugin-3.2.0
  • 5703691 chore: harden embedded-POM trust boundary in install:install-file (3.x backpo...
  • 9148a8f Cache projectsUsingPlugin to fix O(N²) reactor scan
  • 7465779 Fix workflow_dispatch indentation in release-drafter configuration
  • 7d4334d Use JSR-330 for component injection
  • bbcb1e7 Restore the common wording on the download page
  • 11f7073 Restore the document metadata dropped when the pages were ported
  • 9b34ac2 Port the site documentation from APT to Markdown
  • 510f48f Rename the site documents ahead of converting them
  • 26e0afc Bump apache/maven-gh-actions-shared/.github/workflows/pr-automation.yml
  • Additional commits viewable in compare view

Updates org.sonarsource.scanner.maven:sonar-maven-plugin from 5.7.0.6970 to 5.8.0.7211

Release notes

Sourced from org.sonarsource.scanner.maven:sonar-maven-plugin's releases.

5.8.0.7211

Release notes - Sonar Scanner for Maven - 5.8

Maintenance

SCANMAVEN-382 Prepare next development iteration 5.8.0

SCANMAVEN-384 Fix QG broken by the new testing rules

SCANMAVEN-385 Code Quality reorganization from jvm to CI Experience Squad

SCANMAVEN-386 ToggleLockBranch: Add additional-message

SCANMAVEN-387 Code Quality Slack channel reorganization

SCANMAVEN-390 Upgrade orchestrator to version 6.3.0

SCANMAVEN-392 Upgrade jetty test dependencies to version 9.4.58.v20250814

SCANMAVEN-395 Remove scheduled invocation of sonar:sonar shorthand test

SCANMAVEN-397 Replace Maven 4.0.0-rc-5 in ITs with Maven 4.0.0-rc-6

SCANMAVEN-398 Upgrade orchestrator to version 6.4.0

SCANMAVEN-399 Update sonar-scanner-java-library to 4.1.2.1663

SCANMAVEN-401 Upgrade Jetty used by e2e tests

SCANMAVEN-402 Upgrade orchestrator to version 6.4.3.4676

Feature

SCANMAVEN-403 Releasability status fails on property-dump-plugin version

Commits
  • 7347a92 SCANMAVEN-403 Releasability status fails on property-dump-plugin version (#426)
  • 002f55c SCANMAVEN-402 Upgrade orchestrator to version 6.4.3.4676 (#425)
  • fc7515f SCANMAVEN-401 Upgrade Jetty used by e2e tests (#424)
  • 16dedb3 SCANMAVEN-399 Update sonar-scanner-java-library to 4.1.2.1663 (#421)
  • ad81956 SCANMAVEN-397 Upgrade Maven 4 to 4.0.0-rc-6 in tests (#420)
  • 86e9516 SCANMAVEN-398 Upgrade orchestrator to version 6.4.0 (#419)
  • c26335c SCANMAVEN-395 Remove scheduled invocation of sonar:sonar shorthand test (#417)
  • 6a79ca6 SCANMAVEN-392 Upgrade jetty test dependencies to version 9.4.58.v20250814 (#416)
  • 57bb131 SCANMAVEN-390 Upgrade orchestrator to version 6.3.0 (#414)
  • 9d50b6d GHA-355 Add statuses: write permission for release-lock feature (#412)
  • Additional commits viewable in compare view

@dependabot
dependabot Bot force-pushed the dependabot/maven/1.3/plugins-e404f13d52 branch from 7c89281 to 1211414 Compare September 15, 2026 11:39
Bumps the plugins group with 3 updates in the / directory: [org.apache.maven.plugins:maven-deploy-plugin](https://github.com/apache/maven-deploy-plugin), [org.apache.maven.plugins:maven-install-plugin](https://github.com/apache/maven-install-plugin) and [org.sonarsource.scanner.maven:sonar-maven-plugin](https://github.com/SonarSource/sonar-scanner-maven).


Updates `org.apache.maven.plugins:maven-deploy-plugin` from 3.1.4 to 3.2.0
- [Release notes](https://github.com/apache/maven-deploy-plugin/releases)
- [Commits](apache/maven-deploy-plugin@maven-deploy-plugin-3.1.4...maven-deploy-plugin-3.2.0)

Updates `org.apache.maven.plugins:maven-install-plugin` from 3.1.4 to 3.2.0
- [Release notes](https://github.com/apache/maven-install-plugin/releases)
- [Commits](apache/maven-install-plugin@maven-install-plugin-3.1.4...maven-install-plugin-3.2.0)

Updates `org.sonarsource.scanner.maven:sonar-maven-plugin` from 5.7.0.6970 to 5.8.0.7211
- [Release notes](https://github.com/SonarSource/sonar-scanner-maven/releases)
- [Commits](SonarSource/sonar-scanner-maven@5.7.0.6970...5.8.0.7211)

---
updated-dependencies:
- dependency-name: org.apache.maven.plugins:maven-deploy-plugin
  dependency-version: 3.2.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: plugins
- dependency-name: org.apache.maven.plugins:maven-install-plugin
  dependency-version: 3.2.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: plugins
- dependency-name: org.sonarsource.scanner.maven:sonar-maven-plugin
  dependency-version: 5.8.0.7211
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: plugins
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/maven/1.3/plugins-e404f13d52 branch from 1211414 to 3df9af7 Compare September 15, 2026 11:47
@acoburn
acoburn enabled auto-merge (squash) September 15, 2026 11:50
@acoburn
acoburn merged commit 71fd7dc into 1.3 Sep 15, 2026
7 checks passed
@acoburn
acoburn deleted the dependabot/maven/1.3/plugins-e404f13d52 branch September 15, 2026 11:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant