Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump spring-framework to 5.3.34 #731

Merged
merged 1 commit into from
Apr 19, 2024
Merged

Conversation

peterhaochen47
Copy link
Member

No description provided.

@cf-gitbot
Copy link

We have created an issue in Pivotal Tracker to manage this. Unfortunately, the Pivotal Tracker project is private so you may be unable to view the contents of the story.

The labels on this github issue will be updated when the story is started.

Copy link
Contributor

@bruce-ricard bruce-ricard left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Why is dependabot not doing this?

@peterhaochen47
Copy link
Member Author

Why is dependabot not doing this?

See:

// Versions we're overriding from the Spring Boot Bom (Dependabot does not issue PRs to bump these versions, so we need to manually bump them)

Not sure, perhaps the bot does not recognize these pinnings (which are really spring config syntax, not gradle syntax). This is a cost of not being on a supported spring boot - that we have to keep overriding it.

@peterhaochen47 peterhaochen47 merged commit caaab74 into main Apr 19, 2024
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants