build(deps): bump subversion from 2.14.3 to 2.15.5
Created by: dependabot[bot]
Bumps subversion from 2.14.3 to 2.15.5.
Release notes
Sourced from subversion's releases.
2.15.5
✍ Other changes
- Inclusive naming in docs and javadoc (#272)
@MarkEWaite
- Add description for plugin manager (#270)
@zbynek
- Update plugin parent POM and plugin BOM (#271)
@basil
2.15.4
⚡ Security fix
- SECURITY-2617 - Stored XSS vulnerability
- SECURITY-2075 - CSRF vulnerability
2.15.3
No changes. Released due to broken
subversion-2.15.2-tests.jar
and missingsubversion-2.15.2-tests.jar
in the previous release.2.15.2
👻 Maintenance
- Drop dependency on Commons Codec (#266)
@basil
- EOL JSR 305 (#269)
@basil
- chore: Prepare for sunset icon removal from core (#268)
@NotMyFault
2.15.1
⚡ Security fix
- SECURITY-2506 - Path traversal vulnerability in Subversion Plugin allows reading arbitrary files
2.15.0
🚀 New features and improvements
- JENKINS-66777 - Add SubversionSCMSource repository browser support (#263)
@didiez
- JENKINS-41850 - Add SubversionSCMSource workspaceUpdater support (#265)
@didiez
📝 Documentation updates
- JENKINS-65132 - Fix example script for notifyCommit in README.md (#253)
@mhuijgen
👻 Maintenance
- Stop using deprecated Util#join (#261)
@basil
- Simplify tests with "config round-trip" pattern (#264)
@didiez
2.14.5
🐛 Bug fixes
- JENKINS-38204 - Fixes repeated same "Tag this build" links added to builds (also JENKINS-35176). (#262)
@didiez
👻 Maintenance
... (truncated)
Commits
-
108e6e2
[maven-release-plugin] prepare release subversion-2.15.5 -
c1023b8
Merge pull request #272 from MarkEWaite/patch-2 -
5ee0140
Merge pull request #270 from zbynek/patch-1 -
6cc65be
Merge branch 'master' into patch-1 -
3cda036
Merge pull request #271 from basil/pom -
3b4ede0
Inclusive naming in a javadoc comment -
b21c65b
Inclusive naming for javadoc -
9e3e7f9
Use inclusive naming in plugin docs -
79b5d36
Remove usage of deprecated Guava class -
2a4203d
SpotBugs - Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase
.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebase
will rebase this PR -
@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it -
@dependabot merge
will merge this PR after your CI passes on it -
@dependabot squash and merge
will squash and merge this PR after your CI passes on it -
@dependabot cancel merge
will cancel a previously requested merge and block automerging -
@dependabot reopen
will reopen this PR if it is closed -
@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)