Skip to content

chore(deps): bump the production-dependencies group across 1 directory with 6 updates - #1325

Merged
anidotnet merged 1 commit into
mainfrom
dependabot/maven/main/production-dependencies-71d54cc6f3
Oct 5, 2026
Merged

anidotnet merged 1 commit into
mainfrom
dependabot/maven/main/production-dependencies-71d54cc6f3

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 5, 2026

Copy link
Copy Markdown
Contributor

Bumps the production-dependencies group with 6 updates in the / directory:

Package From To
com.h2database:h2-mvstore 2.5.250 2.5.252
com.esotericsoftware.kryo:kryo5 5.6.2 5.7.0
org.slf4j:slf4j-api 2.0.19 2.0.20
org.mockito:mockito-core 5.23.0 5.24.0
joda-time:joda-time 2.14.3 2.15.0
com.google.guava:guava 33.7.1-jre 33.7.2-jre

Updates com.h2database:h2-mvstore from 2.5.250 to 2.5.252

Release notes

Sourced from com.h2database:h2-mvstore's releases.

Version 2.5.252

Commits
  • f986838 in preparation for a release
  • 06c34a7 Merge pull request #4418 from andreitokar/issues-4380-4376
  • 1aef3e0 #4376: Reading INFORMATION_SCHEMA.COLUMNS fails with a NPE while any material...
  • 4bb8aee #4380: creating a MATERIALIZED VIEW makes a persistent database permanently u...
  • 95b6af0 Merge pull request #4417 from andreitokar/issue-4395
  • 6ec30b6 #4395 disallow constraints between temporary and permanent tables
  • 0f0f856 Merge pull request #4416 from andreitokar/issue-4405
  • f718b76 #4405 SecureFileStore.readFully() may skip decryption
  • e231ff7 #4405 SecureFileStore.readFully() may skip
  • 4da0d1d Merge pull request #4415 from jjh75607/fix/log-sql-aarch64
  • Additional commits viewable in compare view

Updates com.esotericsoftware.kryo:kryo5 from 5.6.2 to 5.7.0

Updates org.slf4j:slf4j-api from 2.0.19 to 2.0.20

Updates org.mockito:mockito-core from 5.23.0 to 5.24.0

Release notes

Sourced from org.mockito:mockito-core's releases.

v5.24.0

Changelog generated by Shipkit Changelog Gradle Plugin

5.24.0

Commits
  • 5a2f0f8 Fix Mockito docs for -javaagent flag with Gradle (#3866)
  • 9c5f36f Bump graalvm/setup-graalvm from 1.6.3 to 1.6.6 (#3862)
  • e7fd06d Preserve method parameters when clearing inline mocks (#3847)
  • 5a676bc Bump gradle/actions from 6.2.0 to 6.3.0 (#3852)
  • 508f8e7 Bump gradle/actions from 5 to 6.2.0 (#3851)
  • ee8a330 Print object fields via reflection when toString() is not implemented (#3844)
  • 39b1aba Bump graalvm/setup-graalvm from 1.6.0 to 1.6.3 (#3845)
  • d8638e1 Migrate extensions-tests to JUnit Jupiter (#3840)
  • 0aab922 Bump graalvm/setup-graalvm from 1.5.6 to 1.6.0 (#3839)
  • f3cf74c docs(when-verify): fixes to explanations about redundancy (#3838)
  • Additional commits viewable in compare view

Updates joda-time:joda-time from 2.14.3 to 2.15.0

Release notes

Sourced from joda-time:joda-time's releases.

Release v2.15.0

See the change notes for more information.

What's Changed

Full Changelog: JodaOrg/joda-time@v2.14.4...v2.15.0

Release v2.14.4

See the change notes for more information.

What's Changed

Full Changelog: JodaOrg/joda-time@v2.14.3...v2.14.4

Commits

Updates com.google.guava:guava from 33.7.1-jre to 33.7.2-jre

Release notes

Sourced from com.google.guava:guava's releases.

33.7.2

Maven

<dependency>
  <groupId>com.google.guava</groupId>
  <artifactId>guava</artifactId>
  <version>33.7.2-jre</version>
  <!-- or, for Android: -->
  <version>33.7.2-android</version>
</dependency>

Jar files

Guava requires one runtime dependency, which you can download here:

Javadoc

JDiff

Changelog

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

…y with 6 updates

Bumps the production-dependencies group with 6 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [com.h2database:h2-mvstore](https://github.com/h2database/h2database) | `2.5.250` | `2.5.252` |
| com.esotericsoftware.kryo:kryo5 | `5.6.2` | `5.7.0` |
| org.slf4j:slf4j-api | `2.0.19` | `2.0.20` |
| [org.mockito:mockito-core](https://github.com/mockito/mockito) | `5.23.0` | `5.24.0` |
| [joda-time:joda-time](https://github.com/JodaOrg/joda-time) | `2.14.3` | `2.15.0` |
| [com.google.guava:guava](https://github.com/google/guava) | `33.7.1-jre` | `33.7.2-jre` |



Updates `com.h2database:h2-mvstore` from 2.5.250 to 2.5.252
- [Release notes](https://github.com/h2database/h2database/releases)
- [Commits](h2database/h2database@version-2.5.250...version-2.5.252)

Updates `com.esotericsoftware.kryo:kryo5` from 5.6.2 to 5.7.0

Updates `org.slf4j:slf4j-api` from 2.0.19 to 2.0.20

Updates `org.mockito:mockito-core` from 5.23.0 to 5.24.0
- [Release notes](https://github.com/mockito/mockito/releases)
- [Commits](mockito/mockito@v5.23.0...v5.24.0)

Updates `joda-time:joda-time` from 2.14.3 to 2.15.0
- [Release notes](https://github.com/JodaOrg/joda-time/releases)
- [Changelog](https://github.com/JodaOrg/joda-time/blob/main/RELEASE-NOTES.txt)
- [Commits](JodaOrg/joda-time@v2.14.3...v2.15.0)

Updates `com.google.guava:guava` from 33.7.1-jre to 33.7.2-jre
- [Release notes](https://github.com/google/guava/releases)
- [Commits](https://github.com/google/guava/commits)

---
updated-dependencies:
- dependency-name: com.h2database:h2-mvstore
  dependency-version: 2.5.252
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: com.esotericsoftware.kryo:kryo5
  dependency-version: 5.7.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: org.slf4j:slf4j-api
  dependency-version: 2.0.20
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
- dependency-name: org.mockito:mockito-core
  dependency-version: 5.24.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: joda-time:joda-time
  dependency-version: 2.15.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: production-dependencies
- dependency-name: com.google.guava:guava
  dependency-version: 33.7.2-jre
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels Oct 5, 2026
@coderabbitai

coderabbitai Bot commented Oct 5, 2026

Copy link
Copy Markdown
Contributor

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration
  • Configuration used: defaults
  • Review profile: CHILL
  • Plan: Advanced
  • Run ID: 821c5864-51a9-4088-845e-2cbd0d454919

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review
  • Autopilot · Keep fixing CodeRabbit findings and required CI, and resolving merge conflicts

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@anidotnet
anidotnet merged commit faec346 into main Oct 5, 2026
12 checks passed
@dependabot
dependabot Bot deleted the dependabot/maven/main/production-dependencies-71d54cc6f3 branch October 5, 2026 07:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update Java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant