Skip to content

Bump org.apache.maven.shared:maven-shared-jar from 3.2.0 to 3.2.1 - #668

Merged
slachiewicz merged 1 commit into
masterfrom
dependabot/maven/org.apache.maven.shared-maven-shared-jar-3.2.1
Sep 28, 2026
Merged

slachiewicz merged 1 commit into
masterfrom
dependabot/maven/org.apache.maven.shared-maven-shared-jar-3.2.1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 28, 2026

Copy link
Copy Markdown
Contributor

Bumps org.apache.maven.shared:maven-shared-jar from 3.2.0 to 3.2.1.

Release notes

Sourced from org.apache.maven.shared:maven-shared-jar's releases.

3.2.1

Maven Shared JAR 3.2.1 is a bug-fix release. The baseline is unchanged: Java 8 and Maven 3.6.3.

It fixes the file and bytecode hashes and the import analysis in the JAR analysers, and updates the runtime dependencies:

  • commons-codec 1.17.1 → 1.22.1
  • bcel 6.10.0 → 6.13.0
  • commons-collections4 4.4 → 4.6.0
  • commons-lang3 (runtime scope) 3.17.0 → 3.20.0

Behaviour changes:

  • The bytecode hash now covers every class entry, not only the last one. For any JAR with more than one class, bytecodeHash differs from the value 3.2.0 computed.
  • Imports discovered by ImportVisitor now include inner classes.
  • JarVersionedRuntimes.getJarClasses returns null for a version that is not present, instead of throwing NullPointerException.

🐛 Bug fixes

  • JarBytecodeHashAnalyzer: accumulate the SHA-1 digest across all class entries; the hash covered only the last entry (#133, #147) @​elharo
  • JarFileHashAnalyzer: return the file hash that was just computed; the first call returned null (#165) @​kratos0718
  • ImportVisitor: keep inner-class references ($) from the UTF-8 constant pool (#140, #149) @​elharo
  • JarVersionedRuntimes.getJarClasses: return null for a missing version instead of throwing NullPointerException (#135, #157) @​elharo
  • JarAnalyzer constructor: let the original ZipException propagate instead of re-wrapping it (#144, #148) @​elharo

📝 Documentation

👻 Maintenance

🔧 Build and infrastructure

📦 Dependency updates

Runtime:

... (truncated)

Commits
  • 36bc983 [maven-release-plugin] prepare release maven-shared-jar-3.2.1
  • 535b734 Return the file hash that was just computed instead of null (#165)
  • 22b63b2 Let ZipException bubble up from JarAnalyzer constructor (#148)
  • 83623d5 Fix #136: allow underscores in class names matched by CLASS_FILTER (#155)
  • 2c8592e Fix #134: add regression test for multi-digit version extraction (#156)
  • 2a52cee Fix #135: avoid NPE in JarVersionedRuntimes.getJarClasses for missing version...
  • 295440a Add tag-template to release-drafter.yml
  • e175fb6 Bump org.apache.bcel:bcel from 6.12.0 to 6.13.0
  • 4b4d4cb Migrate the site descriptor to the v2 model
  • 8465d78 Bump org.codehaus.plexus:plexus-testing from 2.1.0 to 2.2.0
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [org.apache.maven.shared:maven-shared-jar](https://github.com/apache/maven-shared-jar) from 3.2.0 to 3.2.1.
- [Release notes](https://github.com/apache/maven-shared-jar/releases)
- [Commits](apache/maven-shared-jar@maven-shared-jar-3.2.0...maven-shared-jar-3.2.1)

---
updated-dependencies:
- dependency-name: org.apache.maven.shared:maven-shared-jar
  dependency-version: 3.2.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels Sep 28, 2026
@slachiewicz
slachiewicz merged commit 1815a80 into master Sep 28, 2026
25 of 40 checks passed
@slachiewicz
slachiewicz deleted the dependabot/maven/org.apache.maven.shared-maven-shared-jar-3.2.1 branch September 28, 2026 19:36
@github-actions github-actions Bot added this to the 3.9.1 milestone Sep 28, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update Java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant