Skip to content

chore: Update all non-major dependencies (v3.x.x)#4720

Open
zowe-robot wants to merge 6 commits into
v3.x.xfrom
renovate/v3.x.x-all-minor-patch
Open

chore: Update all non-major dependencies (v3.x.x)#4720
zowe-robot wants to merge 6 commits into
v3.x.xfrom
renovate/v3.x.x-all-minor-patch

Conversation

@zowe-robot

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence
@typescript-eslint/eslint-plugin (source) 8.61.08.61.1 age confidence
@typescript-eslint/parser (source) 8.61.08.61.1 age confidence
body-parser 2.2.22.3.0 age confidence
fast-xml-parser 5.8.05.9.0 age confidence
io.opentelemetry:opentelemetry-exporter-sender-okhttp 1.62.01.63.0 age confidence
io.opentelemetry:opentelemetry-exporter-common 1.62.01.63.0 age confidence
io.opentelemetry:opentelemetry-sdk-extension-autoconfigure-spi 1.62.01.63.0 age confidence
io.opentelemetry:opentelemetry-sdk-testing 1.62.01.63.0 age confidence
org.springframework.cloud:spring-cloud-gateway-server (source) 4.3.44.3.5 age confidence
org.springframework.cloud:spring-cloud-starter-gateway-server-webflux (source) 4.3.44.3.5 age confidence

Release Notes

typescript-eslint/typescript-eslint (@​typescript-eslint/eslint-plugin)

v8.61.1

Compare Source

🩹 Fixes
  • eslint-plugin: [no-unnecessary-template-expression] respect ECMAScript line terminators (#​12388)
  • eslint-plugin: [no-unnecessary-boolean-literal-compare] fix precedence bug in autofix (#​12413)
  • eslint-plugin: [no-unnecessary-type-assertion] wrap object literal in parens when removing TSTypeAssertion in arrow body (#​12394, #​12393)
  • eslint-plugin: [no-unnecessary-type-assertion] avoid false positive for template literal expressions (#​12281)
  • eslint-plugin: [consistent-indexed-object-style] do not remove comments when fixing (#​12396, #​10577)
❤️ Thank You

See GitHub Releases for more information.

You can read about our versioning strategy and releases on our website.

typescript-eslint/typescript-eslint (@​typescript-eslint/parser)

v8.61.1

Compare Source

This was a version bump only for parser to align it with other projects, there were no code changes.

See GitHub Releases for more information.

You can read about our versioning strategy and releases on our website.

expressjs/body-parser (body-parser)

v2.3.0

Compare Source

========================

  • fix: use static exports instead of lazy getters to improve ESM compatibility
  • feat: add subpath exports for individual parsers
  • fix: improve limit option validation (#​698)
    • Invalid limit values (e.g. unparseable strings or NaN) now throw instead of being silently ignored, which previously disabled size limit enforcement
    • null and undefined fall back to the default 100kb limit
  • deps:
    • content-type@^2.0.0
    • http-errors@^2.0.1
    • iconv-lite^0.7.2
    • qs@^6.15.2
    • raw-body@^3.0.2
    • type-is@^2.1.0
NaturalIntelligence/fast-xml-parser (fast-xml-parser)

v5.9.0

Compare Source

open-telemetry/opentelemetry-java (io.opentelemetry:opentelemetry-exporter-sender-okhttp)

v1.63.0

API
  • Add missing setAttribute shortcuts to Span and LogRecordBuilder
    (#​8255)
  • Promote InstrumentationUtil to public class in io.opentelemetry.api.impl package
    (#​8413)
  • Fix index-out-of-bounds in StrictContextStorage
    (#​8294)
Incubating
  • BREAKING Remove deprecated ExtendedAttributes and related code
    (#​8395)
SDK
Metrics
  • Collect async exemplars when exemplar filter is always_on
    (#​8363)
  • Move delta record/collect coordination from instrument to series level
    (#​8313)
Exporters
  • Add noop() factory method to SpanExporter and LogRecordExporter
    (#​8435)
  • BREAKING OTLP: Remove support for deprecated GrpcSenderProvider and HttpSenderProvider SPI
    property names (use io.opentelemetry.sdk.common.export.GrpcSenderProvider /
    io.opentelemetry.sdk.common.export.HttpSenderProvider instead)
    (#​8392)
  • OTLP: Bound OkHttp sender dispatchers and surface rejections
    (#​8422)
  • Prometheus: Limit exemplar label characters to conform to Prometheus limits
    (#​8362)
  • Logging: Fix LoggingSpanExporter.flush() to preserve flush failures
    (#​8361)
  • Zipkin: Make exporter self-contained by removing shared internal code dependencies
    (#​8413)
Extensions
  • BREAKING Autoconfigure: Remove deprecated otel.experimental.config.file property
    (#​8393)
  • BREAKING Incubator: Remove deprecated ViewConfig/ViewConfigCustomizer view file config mechanism
    (#​8394)
  • Declarative config: Fix model package
    (#​8403)
  • Declarative config: Fix Java module name to io.opentelemetry.sdk.autoconfigure.declarativeconfig
    (#​8452)
Shims
  • Deprecate OpenTracing shim public API
    (#​8373)
Project tooling
  • Finish adding OSGi support across all modules
    (#​8401,
    #​8417)
  • Force io.zipkin.zipkin2:zipkin:3.6.1 to avoid problematic gson version
    (#​8430)
spring-cloud/spring-cloud-gateway (org.springframework.cloud:spring-cloud-gateway-server)

v4.3.5: 4.3.5

🔒 CVEs
⭐ New Features
  • MVC ProxyExchange does not provide observability of URI template #​3458
  • Add support for empty path prefixes #​3201
📔 Documentation
  • docs: add ReadBody route predicate factory documentation #​4138
❤️ Contributors

Thank you to all the contributors who worked on this release:

@​dependabot[bot], @​mhalbritter, @​pachat-pacifique, and @​ryanjbaxter


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate.

Signed-off-by: Renovate Bot <renovate@whitesourcesoftware.com>
Signed-off-by: Jakub Balhar <jakub@balhar.net>
@zowe-robot

Copy link
Copy Markdown
Contributor Author

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.

You can manually request rebase by checking the rebase/retry box above.

⚠️ Warning: custom changes will be lost.

…rade to openTelemetry-core is feasible.

Signed-Off-By: Jakub Balhar <jakub.balhar@broadcom.com>
OTel 1.63.0 moved InstrumentationUtil from
io.opentelemetry.api.internal to io.opentelemetry.api.impl.
The openTelemetry-starter 2.28.1 bundles autoconfigure code
built against 1.62.0 which references the old internal package,
causing ClassNotFoundException at runtime.

This broke the gateway for all Zos acceptance tests (login returned 500)
and XForwarded acceptance tests (gateway returned 500).

Reverted openTelemetry-core from 1.63.0 back to 1.62.0 to align
with the starter's expected version.

Also re-applied the springCloudGateway downgrade to 4.3.4
(which was accidentally reverted during the fix).
Signed-off-by: Jakub Balhar <jakub.balhar@broadcom.com>
@sonarqubecloud

Copy link
Copy Markdown

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file size/S

Projects

Status: In Progress

Development

Successfully merging this pull request may close these issues.

4 participants