Sourced from actions/dependency-review-action's releases.
v4.7.0
- Handle complex license expressions (e.g.
MIT AND GPL-2.0
) in allow lists (fixes #809 and probably others)- Replace
OTHER
in package licenses withLicenseRef-clearlydefined-OTHER
so that parsing passes
38ecb5b
Merge pull request #929
from actions/dangoor/4.7-release0e9e935
Version 4.7.0 release69d2faa
Merge pull request #926
from dangoor/dangoor/replace-other7e14978
Merge branch 'actions:main' into dangoor/replace-other8477905
Merge pull request #927
from dangoor/dangoor/multilicensef3ff356
Update distc7565d4
Fix tests and respond to review feedback82299c3
Replace OTHER with a LicenseRef2013ccc
Update type definition for spdx-satisfies3a2b687
Handle complex licenses (e.g. X AND Y)Sourced from io.micrometer:micrometer-core's releases.
1.14.7
:star: New Features
- Replace Meter.Id.getTags() with cheaper alternatives #6147
:lady_beetle: Bug Fixes
- MultiGauge doesn't work with MeterFilter.map() #6146
- Record cache.size in CaffeineCacheMetrics without enabling recordStats() #6128
- TimedHandler shutdown hanging indefinitely #6194
- Use snapshot consistently in AppOpticsMeterRegistry.writeSummary() #6181
:heart: Contributors
Thank you to all the contributors who worked on this release:
@AlexElin
,@RafeArnold
, and@izeye
b6e5031
Bump com.tngtech.archunit:archunit-junit5 from 1.3.1 to 1.3.2 (#6226)6567cdc
Merge branch '1.13.x' into 1.14.x80d4c9d
Call Shutdown#check after finishing timing (#6194)7f82709
Bump maven-resolver from 1.9.22 to 1.9.23 (#6219)a1a4f3d
Bump maven-resolver from 1.9.22 to 1.9.23 (#6218)a6adb3a
Merge branch '1.13.x' into 1.14.xfb2d4da
Get Google Cloud project ID from env var for integration tests4f0cf53
Bump com.fasterxml.jackson.core:jackson-databind from 2.18.3 to 2.18.4
(#6214)33d1f7e
Merge branch '1.13.x' into 1.14.x79939c3
Fix JavaDurationGetSecondsToToSeconds warnings for tests (#6207)