From 10797481d66a9f91a3ac0297f90a3aa64e31bd12 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Tue, 15 Sep 2026 11:03:17 +0000 Subject: [PATCH 01/10] Bump org.apache.maven.plugins:maven-deploy-plugin from 3.1.4 to 3.2.0 Bumps [org.apache.maven.plugins:maven-deploy-plugin](https://github.com/apache/maven-deploy-plugin) from 3.1.4 to 3.2.0. - [Release notes](https://github.com/apache/maven-deploy-plugin/releases) - [Commits](https://github.com/apache/maven-deploy-plugin/compare/maven-deploy-plugin-3.1.4...maven-deploy-plugin-3.2.0) --- updated-dependencies: - dependency-name: org.apache.maven.plugins:maven-deploy-plugin dependency-version: 3.2.0 dependency-type: direct:development update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] --- pom.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pom.xml b/pom.xml index 66e0578555..d54c4afa29 100644 --- a/pom.xml +++ b/pom.xml @@ -949,7 +949,7 @@ org.apache.maven.plugins maven-deploy-plugin - 3.1.4 + 3.2.0 From 33d6c5dfc610e3e6dabaa59a5bb8ca54849765ac Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Tue, 15 Sep 2026 11:03:25 +0000 Subject: [PATCH 02/10] Bump org.apache.maven.plugins:maven-install-plugin from 3.1.4 to 3.2.0 Bumps [org.apache.maven.plugins:maven-install-plugin](https://github.com/apache/maven-install-plugin) from 3.1.4 to 3.2.0. - [Release notes](https://github.com/apache/maven-install-plugin/releases) - [Commits](https://github.com/apache/maven-install-plugin/compare/maven-install-plugin-3.1.4...maven-install-plugin-3.2.0) --- updated-dependencies: - dependency-name: org.apache.maven.plugins:maven-install-plugin dependency-version: 3.2.0 dependency-type: direct:development update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] --- pom.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pom.xml b/pom.xml index 66e0578555..1dfb8027bb 100644 --- a/pom.xml +++ b/pom.xml @@ -1006,7 +1006,7 @@ org.apache.maven.plugins maven-install-plugin - 3.1.4 + 3.2.0 From f1066750b729dab337f78904497d79845fbc0ead Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Tue, 15 Sep 2026 11:03:40 +0000 Subject: [PATCH 03/10] Bump org.codehaus.mojo:extra-enforcer-rules from 1.12.0 to 1.12.1 Bumps [org.codehaus.mojo:extra-enforcer-rules](https://github.com/mojohaus/extra-enforcer-rules) from 1.12.0 to 1.12.1. - [Release notes](https://github.com/mojohaus/extra-enforcer-rules/releases) - [Commits](https://github.com/mojohaus/extra-enforcer-rules/compare/1.12.0...1.12.1) --- updated-dependencies: - dependency-name: org.codehaus.mojo:extra-enforcer-rules dependency-version: 1.12.1 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] --- pom.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pom.xml b/pom.xml index 66e0578555..6ec86bd6a8 100644 --- a/pom.xml +++ b/pom.xml @@ -960,7 +960,7 @@ org.codehaus.mojo extra-enforcer-rules - 1.12.0 + 1.12.1 From be1d20495da0681ee0f91c54c18f807e962cb316 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Tue, 15 Sep 2026 11:03:47 +0000 Subject: [PATCH 04/10] Bump org.codehaus.mojo:versions-maven-plugin from 2.21.0 to 2.22.0 Bumps [org.codehaus.mojo:versions-maven-plugin](https://github.com/mojohaus/versions) from 2.21.0 to 2.22.0. - [Release notes](https://github.com/mojohaus/versions/releases) - [Changelog](https://github.com/mojohaus/versions/blob/master/ReleaseNotes.md) - [Commits](https://github.com/mojohaus/versions/compare/2.21.0...2.22.0) --- updated-dependencies: - dependency-name: org.codehaus.mojo:versions-maven-plugin dependency-version: 2.22.0 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] --- pom.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pom.xml b/pom.xml index 66e0578555..f3ead7785e 100644 --- a/pom.xml +++ b/pom.xml @@ -1072,7 +1072,7 @@ org.codehaus.mojo versions-maven-plugin - 2.21.0 + 2.22.0 From 46d966c03a6c1a3134829545d268bd762f56a503 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 21 Sep 2026 11:03:35 +0000 Subject: [PATCH 05/10] Bump org.codehaus.cargo:cargo-maven3-plugin from 1.10.28 to 1.10.29 Bumps org.codehaus.cargo:cargo-maven3-plugin from 1.10.28 to 1.10.29. --- updated-dependencies: - dependency-name: org.codehaus.cargo:cargo-maven3-plugin dependency-version: 1.10.29 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] --- pom.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pom.xml b/pom.xml index 66e0578555..1d51a95e71 100644 --- a/pom.xml +++ b/pom.xml @@ -1066,7 +1066,7 @@ org.codehaus.cargo cargo-maven3-plugin - 1.10.28 + 1.10.29 From a38c14196a7d9d4021c246f34c452352db172a80 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Thu, 24 Sep 2026 11:02:50 +0000 Subject: [PATCH 06/10] Bump org.apache.httpcomponents.core5:httpcore5 from 5.4.3 to 5.4.4 Bumps [org.apache.httpcomponents.core5:httpcore5](https://github.com/apache/httpcomponents-core) from 5.4.3 to 5.4.4. - [Changelog](https://github.com/apache/httpcomponents-core/blob/rel/v5.4.4/RELEASE_NOTES.txt) - [Commits](https://github.com/apache/httpcomponents-core/compare/rel/v5.4.3...rel/v5.4.4) --- updated-dependencies: - dependency-name: org.apache.httpcomponents.core5:httpcore5 dependency-version: 5.4.4 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] --- pom.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pom.xml b/pom.xml index 66e0578555..f28550bebb 100644 --- a/pom.xml +++ b/pom.xml @@ -784,7 +784,7 @@ org.apache.httpcomponents.core5 httpcore5 - 5.4.3 + 5.4.4 From e5d17a9a3bfbc154f4bc84eb85a5867b2c50aae6 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Fri, 25 Sep 2026 11:03:13 +0000 Subject: [PATCH 07/10] Bump com.fasterxml.jackson.core:jackson-databind from 2.22.2 to 2.22.3 Bumps [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson-databind) from 2.22.2 to 2.22.3. - [Commits](https://github.com/FasterXML/jackson-databind/compare/jackson-databind-2.22.2...jackson-databind-2.22.3) --- updated-dependencies: - dependency-name: com.fasterxml.jackson.core:jackson-databind dependency-version: 2.22.3 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] --- pom.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pom.xml b/pom.xml index 66e0578555..08b09e2973 100644 --- a/pom.xml +++ b/pom.xml @@ -867,7 +867,7 @@ com.fasterxml.jackson.core jackson-databind - 2.22.2 + 2.22.3 From 9e6da353ddae3b13e2e1d93c7e54d6458f737e9a Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 28 Sep 2026 11:03:38 +0000 Subject: [PATCH 08/10] Bump org.slf4j:slf4j-reload4j from 2.0.19 to 2.0.20 Bumps org.slf4j:slf4j-reload4j from 2.0.19 to 2.0.20. --- updated-dependencies: - dependency-name: org.slf4j:slf4j-reload4j dependency-version: 2.0.20 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] --- pom.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pom.xml b/pom.xml index 66e0578555..5aad1eacd4 100644 --- a/pom.xml +++ b/pom.xml @@ -663,7 +663,7 @@ org.slf4j slf4j-reload4j - 2.0.19 + 2.0.20 From 4740a9ffdf01aae69bfd4891654a1b6b7429336e Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 28 Sep 2026 11:05:50 +0000 Subject: [PATCH 09/10] Bump github/codeql-action from 4.37.9 to 4.38.2 Bumps [github/codeql-action](https://github.com/github/codeql-action) from 4.37.9 to 4.38.2. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](https://github.com/github/codeql-action/compare/v4.37.9...v4.38.2) --- updated-dependencies: - dependency-name: github/codeql-action dependency-version: 4.38.2 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] --- .github/workflows/codeql-analysis.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/codeql-analysis.yml b/.github/workflows/codeql-analysis.yml index 3b3cc60911..9bcb2acfec 100644 --- a/.github/workflows/codeql-analysis.yml +++ b/.github/workflows/codeql-analysis.yml @@ -34,7 +34,7 @@ jobs: # Initializes the CodeQL tools for scanning. - name: Initialize CodeQL - uses: github/codeql-action/init@v4.37.9 + uses: github/codeql-action/init@v4.38.2 with: languages: ${{ matrix.language }} queries: security-extended, security-experimental, security-and-quality @@ -43,7 +43,7 @@ jobs: run: mvn -DskipTests=true install - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@v4.37.9 + uses: github/codeql-action/analyze@v4.38.2 - name: Upload Output uses: actions/upload-artifact@v7 From 1fadd6c7ce0b6da1e6509bfb0abedce922e45221 Mon Sep 17 00:00:00 2001 From: davewichers Date: Wed, 30 Sep 2026 18:54:15 -0400 Subject: [PATCH 10/10] Upgrade ldap library version and tomcat version. --- pom.xml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/pom.xml b/pom.xml index c9f6fc5991..368b5f764b 100644 --- a/pom.xml +++ b/pom.xml @@ -1256,7 +1256,7 @@ ${project.build.directory}/log - 2.1.8 + 2.1.9 2.0.0.AM27 2.1.0 @@ -1267,7 +1267,7 @@ 5.3.39 9 - 9.0.120 + 9.0.122 https://downloads.apache.org/tomcat/tomcat-${tomcat.major.version}/v${version.tomcat}/bin/apache-tomcat-${version.tomcat}.zip