Commit graph

6184 commits

Author SHA1 Message Date
dependabot[bot]
36e55a9062
build(deps): bump jakarta.validation:jakarta.validation-api
Bumps [jakarta.validation:jakarta.validation-api](https://github.com/jakartaee/validation) from 3.0.2 to 3.1.1.
- [Release notes](https://github.com/jakartaee/validation/releases)
- [Commits](https://github.com/jakartaee/validation/compare/3.0.2...3.1.1)

---
updated-dependencies:
- dependency-name: jakarta.validation:jakarta.validation-api
  dependency-version: 3.1.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-11-18 08:35:58 +00:00
Niklas
46e99a1550
Add release artifact checksums for v4.13.6
Signed-off-by: Niklas <nscuro@protonmail.com>
2025-11-17 09:53:14 +01:00
Dependency-Track Bot
97b7880aca prepare-iteration: set version to 4.13.7-SNAPSHOT 2025-11-17 08:44:07 +00:00
Dependency-Track Bot
ad29338d27 prepare-release: set version to 4.13.6 2025-11-17 08:43:37 +00:00
Niklas
9893d91239
Merge pull request #5546 from nscuro/changelog-4.13.6 2025-11-17 09:42:13 +01:00
Niklas
ebe2150996
Merge pull request #5547 from nscuro/backport-pr-5542 2025-11-17 09:39:49 +01:00
Niklas
e971950a2b
Merge pull request #5545 from nscuro/backport-pr-5540 2025-11-17 09:31:32 +01:00
nscuro
a81af450a5
Bump Alpine to 3.4.0
Signed-off-by: nscuro <nscuro@protonmail.com>
2025-11-17 09:15:23 +01:00
nscuro
faab946a19
Add changelog for v4.13.6
Signed-off-by: nscuro <nscuro@protonmail.com>
2025-11-17 09:07:09 +01:00
nscuro
a3bd041629
Bump bundled frontend to 4.13.6
Signed-off-by: nscuro <nscuro@protonmail.com>
2025-11-17 09:04:39 +01:00
Niklas
47faa546cc
Merge pull request #5470 from DependencyTrack/dependabot/maven/4.13.x/com.google.cloud.sql-postgres-socket-factory-1.27.0 2025-11-16 18:30:27 +01:00
Niklas
61d6fc9c92
Merge pull request #5538 from nscuro/backport-pr-5455 2025-11-16 17:55:25 +01:00
Damian Sniezek
5a9a001a9c
fix: validate description length for PUT /api/v1/project
Signed-off-by: Damian Sniezek <snieguu@gmail.com>
2025-11-16 17:28:48 +01:00
Niklas
379ec31cb9
Merge pull request #5536 from nscuro/backport-pr-5425 2025-11-14 13:31:13 +01:00
Viktor Petersson
bd4a89f3eb
Sort list. Add sbomify.
Signed-off-by: Viktor Petersson <self@vpetersson.com>
2025-11-14 13:27:33 +01:00
Niklas
658f2eb142
Merge pull request #5527 from DependencyTrack/dependabot/docker/src/main/docker/4.13.x/eclipse-temurin-2843f15 2025-11-14 12:49:00 +01:00
dependabot[bot]
fd3d413dbb
build(deps): bump eclipse-temurin in /src/main/docker
Bumps eclipse-temurin from `8c18c36` to `2843f15`.

---
updated-dependencies:
- dependency-name: eclipse-temurin
  dependency-version: 21.0.9_10-jre-jammy
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-11-14 11:01:33 +00:00
Niklas
f5b783baaa
Merge pull request #5533 from nscuro/backport-alpine-image 2025-11-14 12:00:33 +01:00
Niklas
dccb3ad93e
Merge pull request #5531 from nscuro/backport-pr-5444 2025-11-14 12:00:19 +01:00
Niklas
e5360a4048
Merge pull request #5532 from nscuro/backport-pr-5438 2025-11-14 12:00:04 +01:00
nscuro
1d17a67dbd
Add Alpine-based container variants
Backports 6da5a2650d
Backports 695b9fdf38
Partially backports 09c493adf5

Signed-off-by: nscuro <nscuro@protonmail.com>
2025-11-14 11:36:58 +01:00
ElenaStroebele
10fed5fe00
Changed toString() of Project.java; added & corrected test(s).
Signed-off-by: ElenaStroebele <elena.stroebele@rohde-schwarz.com>
2025-11-14 11:18:37 +01:00
Arjav
80716d1662
fix link for Sonatype OSS Index Analyzer (#5444) 2025-11-14 11:12:43 +01:00
Niklas
770d772505
Merge pull request #5528 from DependencyTrack/dependabot/maven/4.13.x/org.cyclonedx-cyclonedx-core-java-11.0.1 2025-11-14 10:45:47 +01:00
Niklas
67e246075e
Merge pull request #5529 from DependencyTrack/dependabot/maven/4.13.x/org.apache.maven.plugins-maven-clean-plugin-3.5.0 2025-11-14 10:45:27 +01:00
dependabot[bot]
bf19fe1355
build(deps): bump org.apache.maven.plugins:maven-clean-plugin
Bumps [org.apache.maven.plugins:maven-clean-plugin](https://github.com/apache/maven-clean-plugin) from 3.4.1 to 3.5.0.
- [Release notes](https://github.com/apache/maven-clean-plugin/releases)
- [Commits](https://github.com/apache/maven-clean-plugin/compare/maven-clean-plugin-3.4.1...maven-clean-plugin-3.5.0)

---
updated-dependencies:
- dependency-name: org.apache.maven.plugins:maven-clean-plugin
  dependency-version: 3.5.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-11-14 08:33:56 +00:00
dependabot[bot]
8c55bbf967
build(deps): bump org.cyclonedx:cyclonedx-core-java
Bumps [org.cyclonedx:cyclonedx-core-java](https://github.com/CycloneDX/cyclonedx-core-java) from 11.0.0 to 11.0.1.
- [Release notes](https://github.com/CycloneDX/cyclonedx-core-java/releases)
- [Changelog](https://github.com/CycloneDX/cyclonedx-core-java/blob/master/CHANGELOG.md)
- [Commits](https://github.com/CycloneDX/cyclonedx-core-java/compare/cyclonedx-core-java-11.0.0...cyclonedx-core-java-11.0.1)

---
updated-dependencies:
- dependency-name: org.cyclonedx:cyclonedx-core-java
  dependency-version: 11.0.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-11-14 08:33:51 +00:00
Niklas
60838ff0c4
Merge pull request #5494 from DependencyTrack/dependabot/maven/4.13.x/org.apache.maven.plugins-maven-antrun-plugin-3.2.0 2025-11-13 12:15:51 +01:00
Niklas
99c25f0a2c
Merge pull request #5493 from DependencyTrack/dependabot/maven/4.13.x/com.icegreen-greenmail-junit4-2.1.7 2025-11-13 12:15:32 +01:00
Niklas
cc53a0b8ed
Merge pull request #5519 from stohrendorf/issue-5509-backport 2025-11-13 12:14:49 +01:00
Steffen Ohrendorf
151fb521be
avoid NPEs in ComposerMetaAnalyzer
Signed-off-by: Steffen Ohrendorf <steffen.ohrendorf@gmx.de>
2025-11-12 17:53:28 +01:00
Niklas
afa503543e
Merge pull request #5492 from DependencyTrack/dependabot/docker/src/main/docker/4.13.x/debian-e024987 2025-11-10 13:17:45 +01:00
Niklas
4a0d23ed66
Merge pull request #5508 from DependencyTrack/dependabot/docker/src/main/docker/4.13.x/eclipse-temurin-21.0.9_10-jre-jammy 2025-11-10 13:16:40 +01:00
dependabot[bot]
279040ecaf
build(deps): bump eclipse-temurin in /src/main/docker
Bumps eclipse-temurin from 21.0.8_9-jre-jammy to 21.0.9_10-jre-jammy.

---
updated-dependencies:
- dependency-name: eclipse-temurin
  dependency-version: 21.0.9_10-jre-jammy
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-11-10 09:00:12 +00:00
dependabot[bot]
ead657624e
build(deps): bump org.apache.maven.plugins:maven-antrun-plugin
Bumps [org.apache.maven.plugins:maven-antrun-plugin](https://github.com/apache/maven-antrun-plugin) from 3.1.0 to 3.2.0.
- [Release notes](https://github.com/apache/maven-antrun-plugin/releases)
- [Commits](https://github.com/apache/maven-antrun-plugin/compare/maven-antrun-plugin-3.1.0...maven-antrun-plugin-3.2.0)

---
updated-dependencies:
- dependency-name: org.apache.maven.plugins:maven-antrun-plugin
  dependency-version: 3.2.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-11-05 08:36:32 +00:00
dependabot[bot]
0186089169
build(deps-dev): bump com.icegreen:greenmail-junit4 from 2.1.3 to 2.1.7
Bumps [com.icegreen:greenmail-junit4](https://github.com/greenmail-mail-test/greenmail) from 2.1.3 to 2.1.7.
- [Release notes](https://github.com/greenmail-mail-test/greenmail/releases)
- [Commits](https://github.com/greenmail-mail-test/greenmail/compare/release-2.1.3...release-2.1.7)

---
updated-dependencies:
- dependency-name: com.icegreen:greenmail-junit4
  dependency-version: 2.1.7
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-11-05 08:36:25 +00:00
dependabot[bot]
f32c4a470e
build(deps): bump debian from 17a6a8a to e024987 in /src/main/docker
Bumps debian from `17a6a8a` to `e024987`.

---
updated-dependencies:
- dependency-name: debian
  dependency-version: stable-slim
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-11-05 08:36:02 +00:00
Niklas
7953a117f1
Merge pull request #5484 from DependencyTrack/dependabot/docker/src/main/docker/4.13.x/debian-17a6a8a 2025-11-04 11:07:24 +01:00
Niklas
cef78403a2
Merge pull request #5487 from DependencyTrack/dependabot/maven/4.13.x/org.codehaus.mojo-exec-maven-plugin-3.6.2 2025-11-04 11:07:04 +01:00
Niklas
959f6aed39
Merge pull request #5485 from DependencyTrack/dependabot/maven/4.13.x/net.javacrumbs.json-unit-json-unit-assertj-4.1.1 2025-11-04 11:06:44 +01:00
dependabot[bot]
f6863075f9
build(deps): bump org.codehaus.mojo:exec-maven-plugin
Bumps [org.codehaus.mojo:exec-maven-plugin](https://github.com/mojohaus/exec-maven-plugin) from 3.5.0 to 3.6.2.
- [Release notes](https://github.com/mojohaus/exec-maven-plugin/releases)
- [Commits](https://github.com/mojohaus/exec-maven-plugin/compare/3.5.0...3.6.2)

---
updated-dependencies:
- dependency-name: org.codehaus.mojo:exec-maven-plugin
  dependency-version: 3.6.2
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-11-04 09:01:32 +00:00
dependabot[bot]
e3b115dfd8
build(deps-dev): bump net.javacrumbs.json-unit:json-unit-assertj
Bumps [net.javacrumbs.json-unit:json-unit-assertj](https://github.com/lukas-krecan/JsonUnit) from 4.1.0 to 4.1.1.
- [Changelog](https://github.com/lukas-krecan/JsonUnit/blob/master/RELEASES.md)
- [Commits](https://github.com/lukas-krecan/JsonUnit/compare/json-unit-parent-4.1.0...json-unit-parent-4.1.1)

---
updated-dependencies:
- dependency-name: net.javacrumbs.json-unit:json-unit-assertj
  dependency-version: 4.1.1
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-11-04 09:01:15 +00:00
dependabot[bot]
7be38fe64d
build(deps): bump debian from a771c85 to 17a6a8a in /src/main/docker
Bumps debian from `a771c85` to `17a6a8a`.

---
updated-dependencies:
- dependency-name: debian
  dependency-version: stable-slim
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-11-04 09:00:39 +00:00
Niklas
899921bf28
Merge pull request #5478 from DependencyTrack/dependabot/maven/4.13.x/com.microsoft.sqlserver-mssql-jdbc-12.10.2.jre11 2025-11-03 10:30:23 +01:00
Niklas
314dc6d17b
Merge pull request #5480 from DependencyTrack/dependabot/maven/4.13.x/org.apache.maven-maven-artifact-3.9.11 2025-11-03 10:30:02 +01:00
Niklas
36c911f576
Merge pull request #5479 from DependencyTrack/dependabot/maven/4.13.x/org.apache.commons-commons-text-1.14.0 2025-11-03 10:29:43 +01:00
dependabot[bot]
7059955ebd
build(deps): bump org.apache.maven:maven-artifact from 3.9.9 to 3.9.11
Bumps org.apache.maven:maven-artifact from 3.9.9 to 3.9.11.

---
updated-dependencies:
- dependency-name: org.apache.maven:maven-artifact
  dependency-version: 3.9.11
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-11-03 08:55:32 +00:00
dependabot[bot]
92c1566633
build(deps): bump org.apache.commons:commons-text from 1.13.0 to 1.14.0
Bumps [org.apache.commons:commons-text](https://github.com/apache/commons-text) from 1.13.0 to 1.14.0.
- [Changelog](https://github.com/apache/commons-text/blob/master/RELEASE-NOTES.txt)
- [Commits](https://github.com/apache/commons-text/compare/rel/commons-text-1.13.0...rel/commons-text-1.14.0)

---
updated-dependencies:
- dependency-name: org.apache.commons:commons-text
  dependency-version: 1.14.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-11-03 08:55:28 +00:00
dependabot[bot]
e1d048a2ef
build(deps): bump com.microsoft.sqlserver:mssql-jdbc
Bumps [com.microsoft.sqlserver:mssql-jdbc](https://github.com/Microsoft/mssql-jdbc) from 12.10.0.jre11 to 12.10.2.jre11.
- [Release notes](https://github.com/Microsoft/mssql-jdbc/releases)
- [Changelog](https://github.com/microsoft/mssql-jdbc/blob/main/CHANGELOG.md)
- [Commits](https://github.com/Microsoft/mssql-jdbc/commits)

---
updated-dependencies:
- dependency-name: com.microsoft.sqlserver:mssql-jdbc
  dependency-version: 12.10.2.jre11
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2025-11-03 08:55:24 +00:00
Niklas
8d1ec23bbc
Merge pull request #5467 from DependencyTrack/dependabot/docker/src/main/docker/4.13.x/debian-a771c85 2025-10-31 12:08:38 +01:00