Skip to content

Bump the java group across 1 directory with 25 updates - #17

Merged
alegauss merged 1 commit into
2026.3from
dependabot/maven/2026.3/java-f757578a79
Aug 5, 2026
Merged

Bump the java group across 1 directory with 25 updates#17
alegauss merged 1 commit into
2026.3from
dependabot/maven/2026.3/java-f757578a79

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 3, 2026

Copy link
Copy Markdown
Contributor

Bumps the java group with 25 updates in the / directory:

Package From To
org.mongodb:bson 5.9.0 5.9.1
org.mongodb:bson-record-codec 5.9.0 5.9.1
org.mongodb:mongodb-driver-core 5.9.0 5.9.1
org.mongodb:mongodb-driver-sync 5.9.0 5.9.1
org.xerial:sqlite-jdbc 3.53.2.0 3.53.2.1
org.jsoup:jsoup 1.22.2 1.23.1
commons-validator:commons-validator 1.10.1 1.11.0
com.itextpdf:itext-core 9.7.0 9.7.1
org.apache.tika:tika-core 3.3.1 3.3.2
org.apache.tika:tika-parsers 3.3.1 3.3.2
org.apache.tika:tika-parser-pdf-module 3.3.1 3.3.2
org.apache.tika:tika-parser-text-module 3.3.1 3.3.2
org.apache.tika:tika-parser-ocr-module 3.3.1 3.3.2
org.apache.tika:tika-parser-microsoft-module 3.3.1 3.3.2
co.elastic.clients:elasticsearch-java 9.4.3 9.4.4
org.elasticsearch.client:elasticsearch-rest-client 9.4.3 9.4.4
org.eclipse.jgit:org.eclipse.jgit 7.7.0.202606012155-r 7.7.1.202607240634-r
org.eclipse.jgit:org.eclipse.jgit.http.server 7.7.0.202606012155-r 7.7.1.202607240634-r
org.apache.maven.plugins:maven-jar-plugin 3.5.0 3.5.1
com.github.eirslett:frontend-maven-plugin 2.0.1 2.0.2
com.openai:openai-java-client-okhttp 4.43.0 4.45.0
com.anthropic:anthropic-java-client-okhttp 2.49.0 2.52.0
software.amazon.awssdk:bedrockagentruntime 2.48.4 2.50.0
org.apache.groovy:groovy 5.0.7 5.0.8
org.apache.groovy:groovy-json 5.0.7 5.0.8

Updates org.mongodb:bson from 5.9.0 to 5.9.1

Release notes

Sourced from org.mongodb:bson's releases.

Java Driver 5.9.1 (July 23, 2026)

What's Changed

Verifying artifact signatures

Please refer to https://www.mongodb.com/docs/drivers/java/sync/current/security/validate-signatures/ for the full procedure.

To download and import the public key for verifying signatures, execute

gpg --keyserver hkps://keyserver.ubuntu.com --recv-keys 1a75005e142192223d6a7c3b76e0008d166740a8

Full Changelog: mongodb/mongo-java-driver@r5.9.0...r5.9.1

Commits

Updates org.mongodb:bson-record-codec from 5.9.0 to 5.9.1

Release notes

Sourced from org.mongodb:bson-record-codec's releases.

Java Driver 5.9.1 (July 23, 2026)

What's Changed

Verifying artifact signatures

Please refer to https://www.mongodb.com/docs/drivers/java/sync/current/security/validate-signatures/ for the full procedure.

To download and import the public key for verifying signatures, execute

gpg --keyserver hkps://keyserver.ubuntu.com --recv-keys 1a75005e142192223d6a7c3b76e0008d166740a8

Full Changelog: mongodb/mongo-java-driver@r5.9.0...r5.9.1

Commits

Updates org.mongodb:mongodb-driver-core from 5.9.0 to 5.9.1

Release notes

Sourced from org.mongodb:mongodb-driver-core's releases.

Java Driver 5.9.1 (July 23, 2026)

What's Changed

Verifying artifact signatures

Please refer to https://www.mongodb.com/docs/drivers/java/sync/current/security/validate-signatures/ for the full procedure.

To download and import the public key for verifying signatures, execute

gpg --keyserver hkps://keyserver.ubuntu.com --recv-keys 1a75005e142192223d6a7c3b76e0008d166740a8

Full Changelog: mongodb/mongo-java-driver@r5.9.0...r5.9.1

Commits

Updates org.mongodb:mongodb-driver-sync from 5.9.0 to 5.9.1

Release notes

Sourced from org.mongodb:mongodb-driver-sync's releases.

Java Driver 5.9.1 (July 23, 2026)

What's Changed

Verifying artifact signatures

Please refer to https://www.mongodb.com/docs/drivers/java/sync/current/security/validate-signatures/ for the full procedure.

To download and import the public key for verifying signatures, execute

gpg --keyserver hkps://keyserver.ubuntu.com --recv-keys 1a75005e142192223d6a7c3b76e0008d166740a8

Full Changelog: mongodb/mongo-java-driver@r5.9.0...r5.9.1

Commits

Updates org.mongodb:bson-record-codec from 5.9.0 to 5.9.1

Release notes

Sourced from org.mongodb:bson-record-codec's releases.

Java Driver 5.9.1 (July 23, 2026)

What's Changed

Verifying artifact signatures

Please refer to https://www.mongodb.com/docs/drivers/java/sync/current/security/validate-signatures/ for the full procedure.

To download and import the public key for verifying signatures, execute

gpg --keyserver hkps://keyserver.ubuntu.com --recv-keys 1a75005e142192223d6a7c3b76e0008d166740a8

Full Changelog: mongodb/mongo-java-driver@r5.9.0...r5.9.1

Commits

Updates org.mongodb:mongodb-driver-core from 5.9.0 to 5.9.1

Release notes

Sourced from org.mongodb:mongodb-driver-core's releases.

Java Driver 5.9.1 (July 23, 2026)

What's Changed

Verifying artifact signatures

Please refer to https://www.mongodb.com/docs/drivers/java/sync/current/security/validate-signatures/ for the full procedure.

To download and import the public key for verifying signatures, execute

gpg --keyserver hkps://keyserver.ubuntu.com --recv-keys 1a75005e142192223d6a7c3b76e0008d166740a8

Full Changelog: mongodb/mongo-java-driver@r5.9.0...r5.9.1

Commits

Updates org.mongodb:mongodb-driver-sync from 5.9.0 to 5.9.1

Release notes

Sourced from org.mongodb:mongodb-driver-sync's releases.

Java Driver 5.9.1 (July 23, 2026)

What's Changed

Verifying artifact signatures

Please refer to https://www.mongodb.com/docs/drivers/java/sync/current/security/validate-signatures/ for the full procedure.

To download and import the public key for verifying signatures, execute

gpg --keyserver hkps://keyserver.ubuntu.com --recv-keys 1a75005e142192223d6a7c3b76e0008d166740a8

Full Changelog: mongodb/mongo-java-driver@r5.9.0...r5.9.1

Commits

Updates org.xerial:sqlite-jdbc from 3.53.2.0 to 3.53.2.1

Release notes

Sourced from org.xerial:sqlite-jdbc's releases.

Release 3.53.2.1

Changelog

🐛 Fixes

jdbc

  • map DATETIME column type to Types.TIMESTAMP (19ac6bb), closes #1436
  • throw SQLException from createConnection on invalid URL (fe636b7)
  • escape resolved table name in getExportedKeys query (b8eca2a)
  • escape catalog and schema in foreign key metadata queries (ff4b847)
  • escape table type values in getTables metadata query (33eaa19)
  • escape table name in getColumns metadata query (a5149f8)

pool

  • reset connection before notifying listeners on close (57f6cfa), closes #821

unscoped

  • fallback to isAlpineLinux when map_files contains no musl entries (7537528), closes #1382

🔄️ Changes

🛠 Build

deps

  • bump org.graalvm.buildtools:native-maven-plugin (75f593a)
  • bump org.graalvm.sdk:nativeimage from 25.0.3 to 25.1.3 (ac69b1e)
  • bump org.graalvm.buildtools:native-maven-plugin (37988f4)
  • bump org.graalvm.buildtools:native-maven-plugin (aae577a)
  • bump actions/checkout from 6 to 7 (9761dfd)
  • bump org.graalvm.buildtools:native-maven-plugin (e21a3b4)

deps-dev

  • bump org.apache.maven.plugins:maven-help-plugin (dcf3ea2)
  • bump org.jreleaser:jreleaser-maven-plugin (02e2e53)
  • bump org.sonatype.central:central-publishing-maven-plugin (72b9a31)

unscoped

  • add missing configuration for msvc (25b5de5)
  • central publishing wait only until validated (7018821)
  • switch to a maintained fork of setup-msvc-dev (3ca5e70)
  • fix older graalvm on windows (bb1382c)

Contributors

We'd like to thank the following people for their contributions: Gauthier, Gauthier Roebroeck, Javid Khan, Kamil Krzywanski, Kilo Code Bot, dxbjavid

Commits
  • 94c0ea1 chore(release): 3.53.2.1 [skip ci]
  • eec4fc5 style: spotless apply
  • 25b5de5 ci: add missing configuration for msvc
  • 7018821 build: central publishing wait only until validated
  • 7537528 fix: fallback to isAlpineLinux when map_files contains no musl entries
  • 3ca5e70 ci: switch to a maintained fork of setup-msvc-dev
  • 75f593a build(deps): bump org.graalvm.buildtools:native-maven-plugin
  • 57f6cfa fix(pool): reset connection before notifying listeners on close
  • 19ac6bb fix(jdbc): map DATETIME column type to Types.TIMESTAMP
  • fe636b7 fix(jdbc): throw SQLException from createConnection on invalid URL
  • Additional commits viewable in compare view

Updates org.jsoup:jsoup from 1.22.2 to 1.23.1

Release notes

Sourced from org.jsoup:jsoup's releases.

jsoup 1.23.1

jsoup Java HTML Parser release 1.23.1

jsoup 1.23.1 is out now, with a faster and more memory-efficient HTML parser, improved alignment with the HTML standard across noscript, CDATA, SVG, and MathML parsing, and safer, specification-correct HTTP redirects. The release also adds a fast immutable Element#classList(), direct outer-HTML output to an Appendable, and fixes across RCDATA parsing, XML conversion, tag-name handling, and Cleaner link detection.

Performance optimization was a major focus for this release. In our OpenJDK 21 benchmarks, ordinary string parsing is now 18% faster on average, parsing from an InputStream is 11% faster, and parsing with source position tracking is 70% faster while allocating 64% fewer bytes per document.

Source-tracked DOMs retain 58-65% less memory on representative medium-to-large documents, and the improvements hold under concurrent parsing without introducing new contention. Exact gains will naturally vary with document shape, JVM, and hardware.

This release also fixes a security issue in the Cleaner that could expose markup when malformed HTML is cleaned with a custom Safelist permitting certain raw-text elements. The built-in Safelists are unaffected.

jsoup is a Java library for working with real-world HTML and XML. It provides a very convenient API for extracting and manipulating data, using the best of HTML5 DOM methods and CSS selectors.

Download jsoup now.

Improvements

  • Reduced retained memory when parsing with source position tracking enabled (Parser#setTrackPosition(true)). Source ranges are now stored in compact parser-owned span records instead of node and attribute user data, and Position objects are created lazily when source ranges are read. This cuts tracked DOM retained size by about 50-60% on representative benchmark documents, while keeping Node#sourceRange(), Element#endSourceRange(), and Attribute#sourceRange() behavior intact. #2498
  • Added Element#classList(), an immutable snapshot of an element's class names in attribute order. Use hasClass() when you just need to test for one class, classList() when you want to read or iterate classes without needing a mutable result, and classNames() when you want the existing mutable, deduplicated set that can be written back with classNames(Set). The class APIs now share an HTML-whitespace scanner, which also makes classNames() faster and lighter on allocation, especially when walking many elements without class names. #2500
  • Aligned HTML parser scope classification with the current HTML spec for select, foreignObject, and template. #2501
  • Simplified the HTML tree builder's scope, implied-end-tag, and special-element checks by caching parser-only options on Tag. That improves HTML parser throughput by about 10% on small inputs and up to about 30% on larger inputs in the benchmark fixtures. #2502
  • Improved HTML parser throughput stability by making hot tokeniser scan paths compile more predictably. #2507
  • <noscript> fallback markup is now parsed into an inspectable DOM subtree in both the document head and body. The fallback acts as a contained parsing island, so malformed markup cannot disrupt the surrounding document structure, while normal HTML tokenization still applies within it. This also improves round-trip serialization. #2537
  • Improved redirect credential handling as a defense-in-depth measure: explicit authorization headers and request cookies are no longer forwarded across origins, reducing exposure through open redirects and aligning with HTTP guidance. Cookies managed by a CookieStore continue to follow their configured scope. #2540
  • Elements can now append their outer HTML, including their own tags, directly to an Appendable with Node#outerHtml(Appendable), without first creating a String. This complements Element#html(Appendable), which appends inner HTML only. #2532
  • Aligned CDATA tokenization with the HTML spec: CDATA syntax in HTML content is parsed as a bogus comment, while it remains supported in SVG, MathML, and XML. Also improved namespace-aware fragment parsing so SVG and MathML contexts, HTML integration points, and context-sensitive tokenizer states are handled correctly. #2542
  • When using the optional re2j regular expression engine, stack overflows caused by complex selector patterns are now normalized to a ValidationException with a Pattern complexity error message. #2548

Bug Fixes

  • Fixed HTML parsing of mixed-case RCDATA end tags after tag-shaped text. For example, <title><p>Foo</TiTLE> and <textarea><img src=x></TeXtArEa> now keep the tag-shaped content as text instead of promoting it to markup. #2503
  • Fixed W3CDom XML conversion so plain XML elements don't serialize with the reserved XML namespace as the default namespace. Explicit XML namespaces and xml:* attributes are still preserved. #2504
  • Preserve control characters in parsed tag names #2538
  • Updated HTTP redirects to follow the specification: 307 and 308 preserve the request method and content, 301 and 302 only change POST to GET, and Location is followed only for 301, 302, 303, 307, and 308 responses. Streamed request bodies are not buffered; if an automatic redirect requires replaying one, execution fails, so the caller can resend with a fresh stream. #2540
  • Corrected the Cleaner's same-site link detection to compare hostnames rather than URL prefixes when applying rel=nofollow. #2543

Build Changes

  • Cleaned up the Maven build for the multi-release JAR so Java 8 and Java 11+ sources compile as separate source sets. This avoids spurious Java 8 compiler warnings from newer-language overlay sources, keeps long-running parser checks behind an explicit profile, and preserves the same published artifacts and runtime behavior.
  • Improved parallelism and tuned timing in our integration tests, so that a full mvn clean verify drops from ~ 1m18s to ~ 21 seconds.

My sincere thanks to everyone who contributed to this release! If you have any suggestions for the next release, I would love to hear them; please get in touch via jsoup discussions, or with me directly.

You can also follow me (@jhy@tilde.zone) on Mastodon / Fediverse to receive occasional notes about jsoup releases.

Changelog

Sourced from org.jsoup:jsoup's changelog.

1.23.1 (2026-Jul-30)

Improvements

  • Reduced retained memory when parsing with source position tracking enabled (Parser#setTrackPosition(true)). Source ranges are now stored in compact parser-owned span records instead of node and attribute user data, and Position objects are created lazily when source ranges are read. This cuts tracked DOM retained size by about 50-60% on representative benchmark documents, while keeping Node#sourceRange(), Element#endSourceRange(), and Attribute#sourceRange() behavior intact. #2498
  • Added Element#classList(), an immutable snapshot of an element's class names in attribute order. Use hasClass() when you just need to test for one class, classList() when you want to read or iterate classes without needing a mutable result, and classNames() when you want the existing mutable, deduplicated set that can be written back with classNames(Set). The class APIs now share an HTML-whitespace scanner, which also makes classNames() faster and lighter on allocation, especially when walking many elements without class names. #2500
  • Aligned HTML parser scope classification with the current HTML spec for select, foreignObject, and template. #2501
  • Simplified the HTML tree builder's scope, implied-end-tag, and special-element checks by caching parser-only options on Tag. That improves HTML parser throughput by about 10% on small inputs and up to about 30% on larger inputs in the benchmark fixtures. #2502
  • Improved HTML parser throughput stability by making hot tokeniser scan paths compile more predictably. #2507
  • <noscript> fallback markup is now parsed into an inspectable DOM subtree in both the document head and body. The fallback acts as a contained parsing island, so malformed markup cannot disrupt the surrounding document structure, while normal HTML tokenization still applies within it. This also improves round-trip serialization. #2537
  • Improved redirect credential handling as a defense-in-depth measure: explicit authorization headers and request cookies are no longer forwarded across origins, reducing exposure through open redirects and aligning with HTTP guidance. Cookies managed by a CookieStore continue to follow their configured scope. #2540
  • Elements can now append their outer HTML, including their own tags, directly to an Appendable with Node#outerHtml(Appendable), without first creating a String. This complements Element#html(Appendable), which appends inner HTML only. #2532
  • Aligned CDATA tokenization with the HTML spec: CDATA syntax in HTML content is parsed as a bogus comment, while it remains supported in SVG, MathML, and XML. Also improved namespace-aware fragment parsing so SVG and MathML contexts, HTML integration points, and context-sensitive tokenizer states are handled correctly. #2542
  • When using the optional re2j regular expression engine, stack overflows caused by complex selector patterns are now normalized to a ValidationException with a Pattern complexity error message. #2548

Bug Fixes

  • Fixed HTML parsing of mixed-case RCDATA end tags after tag-shaped text. For example, <title><p>Foo</TiTLE> and <textarea><img src=x></TeXtArEa> now keep the tag-shaped content as text instead of promoting it to markup. #2503
  • Fixed W3CDom XML conversion so plain XML elements don't serialize with the reserved XML namespace as the default namespace. Explicit XML namespaces and xml:* attributes are still preserved. #2504
  • Preserve control characters in parsed tag names #2538
  • Updated HTTP redirects to follow the specification: 307 and 308 preserve the request method and content, 301 and 302 only change POST to GET, and Location is followed only for 301, 302, 303, 307, and 308 responses. Streamed request bodies are not buffered; if an automatic redirect requires replaying one, execution fails, so the caller can resend with a fresh stream. #2540
  • Corrected the Cleaner's same-site link detection to compare hostnames rather than URL prefixes when applying rel=nofollow. #2543

Build Changes

  • Cleaned up the Maven build for the multi-release JAR so Java 8 and Java 11+ sources compile as separate source sets. This avoids spurious Java 8 compiler warnings from newer-language overlay sources, keeps long-running parser checks behind an explicit profile, and preserves the same published artifacts and runtime behavior.
  • Improved parallelism and tuned timing in our integration tests, so that a full mvn clean verify drops from ~ 1m18s to ~ 21 seconds.
Commits
  • bb077a8 [maven-release-plugin] prepare release jsoup-1.23.1
  • cdb5579 Harden the test some
  • b86b282 Normalize re2j complexity exceptions
  • 0fcc369 Bump github/codeql-action from 4.37.0 to 4.37.1
  • aea4a1b Bump actions/setup-java from 5.5.0 to 5.6.0
  • ec9c879 Bump actions/checkout from 7.0.0 to 7.0.1
  • 1fb2c97 Fix KeyVal.inputStream validation
  • 3475afc Handle non-string internal attribute values; test for internal attribute data
  • be8c375 Parse CDATA according to the context namespace
  • 8996fce Add appendable outer HTML output
  • Additional commits viewable in compare view

Updates commons-validator:commons-validator from 1.10.1 to 1.11.0

Changelog

Sourced from commons-validator:commons-validator's changelog.

Apache Commons Validator 1.11.0 RELEASE NOTES

The Apache Commons Validator team is pleased to announce the release of Apache Commons Validator 1.11.0.

Apache Commons Validator provides the building blocks for both client-side and server-side data validation. It may be used standalone or with a framework like Struts.

This is a feature and maintenance release. Java 8 or later is required.

For complete information on Apache Commons Validator, including instructions on how to submit bug reports, patches, or suggestions for improvement, see the Apache Commons Validator website:

https://commons.apache.org/proper/commons-validator/

Download page: https://commons.apache.org/proper/commons-validator/download_validator.cgi

Changes in this version

New features

  •             Add and use CheckDigitException.CheckDigitException(String, Object...) ([#389](https://github.com/apache/commons-validator/issues/389)). Thanks to Gary Gregory.
    
  •             Add and use ValidatorException.ValidatorException(Throwable). Call sites that previously called new ValidatorException(Throwable#getMessage()) now preserve that exception ([#390](https://github.com/apache/commons-validator/issues/390)). Thanks to Gary Gregory.
    
  •             Add and use ValidatorException.ValidatorException(String, Object...) ([#391](https://github.com/apache/commons-validator/issues/391)). Thanks to Gary Gregory.
    
  •             Add and use ValidatorException(String, Throwable) ([#392](https://github.com/apache/commons-validator/issues/392)). Thanks to Gary Gregory.
    

Fixed Bugs

  •             Fix Apache RAT plugin console warnings. Thanks to Gary Gregory.
    
  •             Fixes to non-final static fields.
    
  • VALIDATOR-503: DomainValidator Revocation for .dunlop: https://www.iana.org/reports/tld-transfer/20251021-dunlop. Thanks to Gary Gregory.
  • VALIDATOR-504: DomainValidator ICAAN .kerrylogistics Registry Agreement - Terminated: https://www.icann.org/en/registry-agreements/terminated/kerrylogistics. Thanks to Gary Gregory.
  • VALIDATOR-505: DomainValidator ICAAN .lancaster Registry Agreement - Terminated: https://www.icann.org/en/registry-agreements/terminated/lancaster. Thanks to Gary Gregory.
  • VALIDATOR-506: DomainValidator ICAAN Revocation for .lipsy: https://www.iana.org/reports/tld-transfer/20250227-lipsy. Thanks to Gary Gregory.
  • VALIDATOR-507: DomainValidator ICAAN Revocation for .pramerica" https://www.iana.org/reports/tld-transfer/20250516-pramerica. Thanks to Gary Gregory.
  • VALIDATOR-508: DomainValidator ICAAN Revocation for .redstone: https://www.iana.org/reports/tld-transfer/20250826-redstone. Thanks to Gary Gregory.
  • VALIDATOR-508: Reject signed hex group in InetAddressValidator.isValidInet6Address(String) #379. Thanks to Sahana Surendra Bogar, Gary Gregory.
  •             CheckDigit implementations check for input in the alphanumeric range ([#385](https://github.com/apache/commons-validator/issues/385)). Thanks to Gary Gregory, sahvx655-wq.
    
  •             Removing a country code from an IBANValidator now removes associated "other" codes ([#386](https://github.com/apache/commons-validator/issues/386)). Thanks to Gary Gregory, sahvx655-wq.
    
  •             DoubleValidator and FloatValidator now treat special symbols consistently ([#388](https://github.com/apache/commons-validator/issues/388)). Thanks to Gary Gregory, sahvx655-wq.
    
  •             Fix long range check in GenericTypeValidator.formatLong ([#387](https://github.com/apache/commons-validator/issues/387)). Thanks to Gary Gregory, sahvx655-wq.
    
  •             Fix BigIntegerValidator minValue(), maxValue(), and processParsedValue() for out of Long range values ([#397](https://github.com/apache/commons-validator/issues/397)). Thanks to Gary Gregory, sahvx655-wq.
    
  •             Add missing tests for ValidatorUtils.replace and ValidatorUtils.copyMap ([#396](https://github.com/apache/commons-validator/issues/396)). Thanks to Mauricio Bento, Gary Gregory.
    
  •             Fix RegexValidator.validate() returning null for a valid match ([#395](https://github.com/apache/commons-validator/issues/395)). Thanks to sahvx655-wq, Gary Gregory.
    
  •             Compare CAS and EC check digit against validated code, not raw input ([#398](https://github.com/apache/commons-validator/issues/398)). Thanks to sahvx655-wq, Gary Gregory.
    
  •             Prevent URL path traversal bypass via percent encoding in UrlValidator ([#383](https://github.com/apache/commons-validator/issues/383)). Thanks to sahvx655-wq.
    

... (truncated)

Commits
  • eaee281 Prepare for the release candidate 1.11.0 RC1
  • 1a0292a Prepare for the next release candidate
  • 519c3ba Precompile Pattern in ISSNValidator.convertToEAN13(String, String).
  • e07dfa6 Bump actions/checkout from 7.0.0 to 7.0.1
  • 5a28bc4 Reject nameprep-stripped code points in unicodeToASCII (#429).
  • b41a464 Merge pull request #429 from sahvx655-wq/domain-reject-nameprep-stripped
  • b608cb5 cover zero-width non-joiner in testIDNFormatCodePoints
  • 21722b1 reject nameprep-stripped code points in unicodeToASCII
  • 8cd7a4f Require the IPv6: tag for bracketed IPv6 email literals (#428).
  • aeacecf Merge pull request #428 from sahvx655-wq/email-ipv6-literal-tag
  • Additional commits viewable in compare view

Updates com.itextpdf:itext-core from 9.7.0 to 9.7.1

Release notes

Sourced from com.itextpdf:itext-core's releases.

iText Core/Community 9.7.1

This is a patch release for iText Core that addresses a security vulnerability in the Jackson JSON dependency. All users on 9.7.0 are encouraged to upgrade.

Improvements

  • DEVSIX-10085 - Bump Jackson dependency to 2.22.1 to fix CVE-2026-54515
Commits

Updates org.apache.tika:tika-core from 3.3.1 to 3.3.2

Changelog

Sourced from org.apache.tika:tika-core's changelog.

Release 3.3.2 - 7/16/2026

  • Dependency upgrades (TIKA-4738).

  • tika-server now requires enableUnsecureFeatures=true when the /pipes, /async, or /status endpoints are selected; the server refuses to start otherwise (TIKA-4760).

  • Port the 4.x SAX-based OOXML parsers to 3.x and make SAX default. The docx/pptx/xlsx/vsdx SAX parsers gain field-code hyperlink extraction, inlined footnotes/endnotes/comments, balanced-XHTML recovery on error, and XMLBeans-free xlsx/xlsb reading. The DOM docx/pptx parsers can still be configured via useSAXDocxExtractor/useSAXPptxExtractor (TIKA-4692, TIKA-4708, TIKA-4790).

Release 3.3.1 - 5/20/2026

  • Dependency upgrades (TIKA-4695).

  • Use the IANA-registered text/markdown as the primary media type, with text/x-web-markdown and text/x-markdown kept as aliases (TIKA-4724).

  • Fix several potential resource/file-handle leaks across the OOXML and ODF parsers, the HTTP fetcher, the gRPC server, and ForkClient (TIKA-4704).

  • The resourceName of a nested tarball no longer includes the parent directories of its parent gzip file, and fix a typo in the .gz extension (TIKA-4705).

Release 3.3.0 - 3/18/2026

  • Switch to poi-ooxml-full (TIKA-4563).

  • Users need to add "allowAbsolutePaths=true" for the FileSystemFetcher to fetch an absolute path (TIKA-4649).

  • Add a markdown option for content handlers (TIKA-4563).

  • Improve zip parsing (TIKA-4650).

  • Add detection of compressed bmp (TIKA-4511).

  • Allow per file timeouts in tika-pipes (TIKA-4497).

  • Add matroska detector (TIKA-1180).

  • Allow multiple values for many Dublin Core keys (TIKA-4466).

  • Extract macros by default in tika-app's commandline and gui (TIKA-4472).

  • Improve extraction of Javascript from PDFs (TIKA-4465).

... (truncated)

Commits
  • b8a6916 [maven-release-plugin] prepare release 3.3.2-rc1
  • bf67012 Prep for 3.3.2 rc1, another day...
  • a2d8362 Prep for 3.3.2 rc1, bump maven version
  • df5130f Prep for 3.3.2 rc1, roll back release version
  • d6cc513 Prep for 3.3.2 rc1, javadocs
  • 73865f9 [maven-release-plugin] prepare for next development iteration
  • c8a2d64 [maven-release-plugin] prepare release 3.3.2-rc1
  • 63f4a95 Prep for 3.3.2 rc1
  • 3cecc5b TIKA-4790 -- make sax parsing default in 3.x (#2957)
  • 883805d backport javadocs aggregate fix from main (#2958)
  • Additional commits viewable in compare view

Updates org.apache.tika:tika-parsers from 3.3.1 to 3.3.2

Changelog

Sourced from org.apache.tika:tika-parsers's changelog.

Release 3.3.2 - 7/16/2026

  • Dependency upgrades (TIKA-4738).

  • tika-server now requires enableUnsecureFeatures=true when the /pipes, /async, or /status endpoints are selected; the server refuses to start otherwise (TIKA-4760).

  • Port the 4.x SAX-based OOXML parsers to 3.x and make SAX default. The docx/pptx/xlsx/vsdx SAX parsers gain field-code hyperlink extraction, inlined footnotes/endnotes/comments, balanced-XHTML recovery on error, and XMLBeans-free xlsx/xlsb reading. The DOM docx/pptx parsers can still be configured via useSAXDocxExtractor/useSAXPptxExtractor (TIKA-4692, TIKA-4708, TIKA-4790).

Release 3.3.1 - 5/20/2026

  • Dependency upgrades (TIKA-4695).

  • Use the IANA-registered text/markdown as the primary media type, with text/x-web-markdown and text/x-markdown kept as aliases (TIKA-4724).

  • Fix several potential resource/file-handle leaks across the OOXML and ODF parsers, the HTTP fetcher, the gRPC server, and ForkClient (TIKA-4704).

  • The resourceName of a nested tarball no longer includes the parent directories of its parent gzip file, and fix a typo in the .gz extension (TIKA-4705).

Release 3.3.0 - 3/18/2026

  • Switch to poi-ooxml-full (TIKA-4563).

  • Users need to add "allowAbsolutePaths=true" for the FileSystemFetcher to fetch an absolute path (TIKA-4649).

  • Add a markdown option for content handlers (TIKA-4563).

  • Improve zip parsing (TIKA-4650).

  • Add detection of compressed bmp (TIKA-4511).

  • Allow per file timeouts in tika-pipes (TIKA-4497).

  • Add matroska detector (TIKA-1180).

  • Allow multiple values for many Dublin Core keys (TIKA-4466).

  • Extract macros by default in tika-app's commandline and gui (TIKA-4472).

  • Improve extraction of Javascript from PDFs (TIKA-4465).

... (truncated)

Commits
  • b8a6916 [maven-release-plugin] prepare release 3.3.2-rc1
  • bf67012 Prep for 3.3.2 rc1, another day...
  • a2d8362 Prep for 3.3.2 rc1, bump maven version
  • df5130f Prep for 3.3.2 rc1, roll back release version
  • d6cc513 Prep for 3.3.2 rc1, javadocs
  • 73865f9 [maven-release-plugin] prepare for next development iteration
  • c8a2d64 [maven-release-plugin] prepare release 3.3.2-rc1
  • 63f4a95 Prep for 3.3.2 rc1
  • 3cecc5b TIKA-4790 -- make sax parsing default in 3.x (#2957)
  • 883805d backport javadocs aggregate fix from main (#2958)
  • Additional commits viewable in compare view

Updates org.apache.tika:tika-parser-pdf-module from 3.3.1 to 3.3.2

Updates org.apache.tika:tika-parser-text-module from 3.3.1 to 3.3.2

Updates org.apache.tika:tika-parser-ocr-module from 3.3.1 to 3.3.2

Updates org.apache.tika:tika-parser-microsoft-module from 3.3.1 to 3.3.2

Updates org.apache.tika:tika-parsers from 3.3.1 to 3.3.2

Changelog

Sourced from org.apache.tika:tika-parsers's changelog.

Release 3.3.2 - 7/16/2026

  • Dependency upgrades (TIKA-4738).

  • tika-server now requires enableUnsecureFeatures=true when the /pipes, /async, or /status endpoints are selected; the server refuses to start otherwise (TIKA-4760).

  • Port the 4.x SAX-based OOXML parsers to 3.x and make SAX default. The docx/pptx/xlsx/vsdx SAX parsers gain field-code hyperlink extraction, inlined footnotes/endnotes/comments, balanced-XHTML recovery on error, and XMLBeans-free xlsx/xlsb reading. The DOM docx/pptx parsers can still be configured via useSAXDocxExtractor/useSAXPptxExtractor (TIKA-4692, TIKA-4708, TIKA-4790).

Release 3.3.1 - 5/20/2026

  • Dependency upgrades (TIKA-4695).

  • Use the IANA-registered text/markdown as the primary media type, with text/x-web-markdown and text/x-markdown kept as aliases (TIKA-4724).

  • Fix several potential resource/file-handle leaks across the OOXML and ODF parsers, the HTTP fetcher, the gRPC server, and ForkClient (TIKA-4704).

  • The resourceName of a nested tarball no longer includes the parent directories of its parent gzip file, and fix a typo in the .gz extension (TIKA-4705).

Release 3.3.0 - 3/18/2026

  • Switch to poi-ooxml-full (TIKA-4563).

  • Users need to add "allowAbsolutePaths=true" for the FileSystemFetcher to fetch an absolute path (TIKA-4649).

  • Add a markdown option for content handlers (TIKA-4563).

  • Improve zip parsing (TIKA-4650).

  • Add detection of compressed bmp (TIKA-4511).

  • Allow per file timeouts in tika-pipes (TIKA-4497).

  • Add matroska detector (TIKA-1180).

  • Allow multiple values for many Dublin Core keys (TIKA-4466).

  • Extract macros by default in tika-app's commandline and gui (TIKA-4472).

  • Improve extraction of Javascript from PDFs (TIKA-4465).

... (truncated)

Commits
  • b8a6916 [maven-release-plugin] prepare release 3.3.2-rc1
  • bf67012 Prep for 3.3.2 rc1, another day...
  • a2d8362 Prep for 3.3.2 rc1, bump maven version
  • df5130f Prep for 3.3.2 rc1, roll back release version
  • d6cc513 Prep for 3.3.2 rc1, javadocs
  • 73865f9 [maven-release-plugin] prepare for next development iteration
  • c8a2d64 [maven-release-plugin] prepare release 3.3.2-rc1
  • 63f4a95 Prep for 3.3.2 rc1
  • 3cecc5b TIKA-4790 -- make sax parsing default in 3.x (#2957)
  • 883805d backport javadocs aggregate fix from main (#2958)
  • Additional commits viewable in compare view

Updates org.apache.tika:tika-parser-pdf-module from 3.3.1 to 3.3.2

Updates org.apache.tika:tika-parser-text-module from 3.3.1 to 3.3.2

Updates org.apache.tika:tika-parser-ocr-module from 3.3.1 to 3.3.2

Updates org.apache.tika:tika-parser-microsoft-module from 3.3.1 to 3.3.2

Updates co.elastic.clients:elasticsearch-java from 9.4.3 to 9.4.4

Release notes

Sourced from co.elastic.clients:elasticsearch-java's releases.

v9.4.4

What's Changed

Full Changelog: elastic/elasticsearch-java@v9.4.3...v9.4.4

Commits

Bumps the java group with 25 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [org.mongodb:bson](https://github.com/mongodb/mongo-java-driver) | `5.9.0` | `5.9.1` |
| [org.mongodb:bson-record-codec](https://github.com/mongodb/mongo-java-driver) | `5.9.0` | `5.9.1` |
| [org.mongodb:mongodb-driver-core](https://github.com/mongodb/mongo-java-driver) | `5.9.0` | `5.9.1` |
| [org.mongodb:mongodb-driver-sync](https://github.com/mongodb/mongo-java-driver) | `5.9.0` | `5.9.1` |
| [org.xerial:sqlite-jdbc](https://github.com/xerial/sqlite-jdbc) | `3.53.2.0` | `3.53.2.1` |
| [org.jsoup:jsoup](https://github.com/jhy/jsoup) | `1.22.2` | `1.23.1` |
| [commons-validator:commons-validator](https://github.com/apache/commons-validator) | `1.10.1` | `1.11.0` |
| [com.itextpdf:itext-core](https://github.com/itext/itext7) | `9.7.0` | `9.7.1` |
| [org.apache.tika:tika-core](https://github.com/apache/tika) | `3.3.1` | `3.3.2` |
| [org.apache.tika:tika-parsers](https://github.com/apache/tika) | `3.3.1` | `3.3.2` |
| org.apache.tika:tika-parser-pdf-module | `3.3.1` | `3.3.2` |
| org.apache.tika:tika-parser-text-module | `3.3.1` | `3.3.2` |
| org.apache.tika:tika-parser-ocr-module | `3.3.1` | `3.3.2` |
| org.apache.tika:tika-parser-microsoft-module | `3.3.1` | `3.3.2` |
| [co.elastic.clients:elasticsearch-java](https://github.com/elastic/elasticsearch-java) | `9.4.3` | `9.4.4` |
| [org.elasticsearch.client:elasticsearch-rest-client](https://github.com/elastic/elasticsearch) | `9.4.3` | `9.4.4` |
| [org.eclipse.jgit:org.eclipse.jgit](https://github.com/eclipse-jgit/jgit) | `7.7.0.202606012155-r` | `7.7.1.202607240634-r` |
| [org.eclipse.jgit:org.eclipse.jgit.http.server](https://github.com/eclipse-jgit/jgit) | `7.7.0.202606012155-r` | `7.7.1.202607240634-r` |
| [org.apache.maven.plugins:maven-jar-plugin](https://github.com/apache/maven-jar-plugin) | `3.5.0` | `3.5.1` |
| [com.github.eirslett:frontend-maven-plugin](https://github.com/eirslett/frontend-maven-plugin) | `2.0.1` | `2.0.2` |
| [com.openai:openai-java-client-okhttp](https://github.com/openai/openai-java) | `4.43.0` | `4.45.0` |
| [com.anthropic:anthropic-java-client-okhttp](https://github.com/anthropics/anthropic-sdk-java) | `2.49.0` | `2.52.0` |
| software.amazon.awssdk:bedrockagentruntime | `2.48.4` | `2.50.0` |
| [org.apache.groovy:groovy](https://github.com/apache/groovy) | `5.0.7` | `5.0.8` |
| [org.apache.groovy:groovy-json](https://github.com/apache/groovy) | `5.0.7` | `5.0.8` |



Updates `org.mongodb:bson` from 5.9.0 to 5.9.1
- [Release notes](https://github.com/mongodb/mongo-java-driver/releases)
- [Commits](mongodb/mongo-java-driver@r5.9.0...r5.9.1)

Updates `org.mongodb:bson-record-codec` from 5.9.0 to 5.9.1
- [Release notes](https://github.com/mongodb/mongo-java-driver/releases)
- [Commits](mongodb/mongo-java-driver@r5.9.0...r5.9.1)

Updates `org.mongodb:mongodb-driver-core` from 5.9.0 to 5.9.1
- [Release notes](https://github.com/mongodb/mongo-java-driver/releases)
- [Commits](mongodb/mongo-java-driver@r5.9.0...r5.9.1)

Updates `org.mongodb:mongodb-driver-sync` from 5.9.0 to 5.9.1
- [Release notes](https://github.com/mongodb/mongo-java-driver/releases)
- [Commits](mongodb/mongo-java-driver@r5.9.0...r5.9.1)

Updates `org.mongodb:bson-record-codec` from 5.9.0 to 5.9.1
- [Release notes](https://github.com/mongodb/mongo-java-driver/releases)
- [Commits](mongodb/mongo-java-driver@r5.9.0...r5.9.1)

Updates `org.mongodb:mongodb-driver-core` from 5.9.0 to 5.9.1
- [Release notes](https://github.com/mongodb/mongo-java-driver/releases)
- [Commits](mongodb/mongo-java-driver@r5.9.0...r5.9.1)

Updates `org.mongodb:mongodb-driver-sync` from 5.9.0 to 5.9.1
- [Release notes](https://github.com/mongodb/mongo-java-driver/releases)
- [Commits](mongodb/mongo-java-driver@r5.9.0...r5.9.1)

Updates `org.xerial:sqlite-jdbc` from 3.53.2.0 to 3.53.2.1
- [Release notes](https://github.com/xerial/sqlite-jdbc/releases)
- [Changelog](https://github.com/xerial/sqlite-jdbc/blob/master/CHANGELOG)
- [Commits](xerial/sqlite-jdbc@3.53.2.0...3.53.2.1)

Updates `org.jsoup:jsoup` from 1.22.2 to 1.23.1
- [Release notes](https://github.com/jhy/jsoup/releases)
- [Changelog](https://github.com/jhy/jsoup/blob/master/CHANGES.md)
- [Commits](jhy/jsoup@jsoup-1.22.2...jsoup-1.23.1)

Updates `commons-validator:commons-validator` from 1.10.1 to 1.11.0
- [Changelog](https://github.com/apache/commons-validator/blob/master/RELEASE-NOTES.txt)
- [Commits](apache/commons-validator@rel/commons-validator-1.10.1...rel/commons-validator-1.11.0)

Updates `com.itextpdf:itext-core` from 9.7.0 to 9.7.1
- [Release notes](https://github.com/itext/itext7/releases)
- [Commits](itext/itext-java@9.7.0...9.7.1)

Updates `org.apache.tika:tika-core` from 3.3.1 to 3.3.2
- [Changelog](https://github.com/apache/tika/blob/3.3.2/CHANGES.txt)
- [Commits](apache/tika@3.3.1...3.3.2)

Updates `org.apache.tika:tika-parsers` from 3.3.1 to 3.3.2
- [Changelog](https://github.com/apache/tika/blob/3.3.2/CHANGES.txt)
- [Commits](apache/tika@3.3.1...3.3.2)

Updates `org.apache.tika:tika-parser-pdf-module` from 3.3.1 to 3.3.2

Updates `org.apache.tika:tika-parser-text-module` from 3.3.1 to 3.3.2

Updates `org.apache.tika:tika-parser-ocr-module` from 3.3.1 to 3.3.2

Updates `org.apache.tika:tika-parser-microsoft-module` from 3.3.1 to 3.3.2

Updates `org.apache.tika:tika-parsers` from 3.3.1 to 3.3.2
- [Changelog](https://github.com/apache/tika/blob/3.3.2/CHANGES.txt)
- [Commits](apache/tika@3.3.1...3.3.2)

Updates `org.apache.tika:tika-parser-pdf-module` from 3.3.1 to 3.3.2

Updates `org.apache.tika:tika-parser-text-module` from 3.3.1 to 3.3.2

Updates `org.apache.tika:tika-parser-ocr-module` from 3.3.1 to 3.3.2

Updates `org.apache.tika:tika-parser-microsoft-module` from 3.3.1 to 3.3.2

Updates `co.elastic.clients:elasticsearch-java` from 9.4.3 to 9.4.4
- [Release notes](https://github.com/elastic/elasticsearch-java/releases)
- [Changelog](https://github.com/elastic/elasticsearch-java/blob/main/CHANGELOG.md)
- [Commits](elastic/elasticsearch-java@v9.4.3...v9.4.4)

Updates `org.elasticsearch.client:elasticsearch-rest-client` from 9.4.3 to 9.4.4
- [Release notes](https://github.com/elastic/elasticsearch/releases)
- [Changelog](https://github.com/elastic/elasticsearch/blob/main/docs/changelog.yml)
- [Commits](elastic/elasticsearch@v9.4.3...v9.4.4)

Updates `org.elasticsearch.client:elasticsearch-rest-client` from 9.4.3 to 9.4.4
- [Release notes](https://github.com/elastic/elasticsearch/releases)
- [Changelog](https://github.com/elastic/elasticsearch/blob/main/docs/changelog.yml)
- [Commits](elastic/elasticsearch@v9.4.3...v9.4.4)

Updates `org.eclipse.jgit:org.eclipse.jgit` from 7.7.0.202606012155-r to 7.7.1.202607240634-r
- [Commits](eclipse-jgit/jgit@v7.7.0.202606012155-r...v7.7.1.202607240634-r)

Updates `org.eclipse.jgit:org.eclipse.jgit.http.server` from 7.7.0.202606012155-r to 7.7.1.202607240634-r
- [Commits](eclipse-jgit/jgit@v7.7.0.202606012155-r...v7.7.1.202607240634-r)

Updates `org.eclipse.jgit:org.eclipse.jgit.http.server` from 7.7.0.202606012155-r to 7.7.1.202607240634-r
- [Commits](eclipse-jgit/jgit@v7.7.0.202606012155-r...v7.7.1.202607240634-r)

Updates `org.apache.maven.plugins:maven-jar-plugin` from 3.5.0 to 3.5.1
- [Release notes](https://github.com/apache/maven-jar-plugin/releases)
- [Commits](apache/maven-jar-plugin@maven-jar-plugin-3.5.0...maven-jar-plugin-3.5.1)

Updates `com.github.eirslett:frontend-maven-plugin` from 2.0.1 to 2.0.2
- [Changelog](https://github.com/eirslett/frontend-maven-plugin/blob/master/CHANGELOG.md)
- [Commits](https://github.com/eirslett/frontend-maven-plugin/commits/frontend-plugins-2.0.2)

Updates `com.openai:openai-java-client-okhttp` from 4.43.0 to 4.45.0
- [Release notes](https://github.com/openai/openai-java/releases)
- [Changelog](https://github.com/openai/openai-java/blob/main/CHANGELOG.md)
- [Commits](openai/openai-java@v4.43.0...v4.45.0)

Updates `com.anthropic:anthropic-java-client-okhttp` from 2.49.0 to 2.52.0
- [Release notes](https://github.com/anthropics/anthropic-sdk-java/releases)
- [Changelog](https://github.com/anthropics/anthropic-sdk-java/blob/main/CHANGELOG.md)
- [Commits](anthropics/anthropic-sdk-java@v2.49.0...v2.52.0)

Updates `software.amazon.awssdk:bedrockagentruntime` from 2.48.4 to 2.50.0

Updates `org.apache.groovy:groovy` from 5.0.7 to 5.0.8
- [Commits](https://github.com/apache/groovy/commits)

Updates `org.apache.groovy:groovy-json` from 5.0.7 to 5.0.8
- [Commits](https://github.com/apache/groovy/commits)

---
updated-dependencies:
- dependency-name: org.mongodb:bson
  dependency-version: 5.9.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.mongodb:bson-record-codec
  dependency-version: 5.9.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.mongodb:mongodb-driver-core
  dependency-version: 5.9.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.mongodb:mongodb-driver-sync
  dependency-version: 5.9.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.mongodb:bson-record-codec
  dependency-version: 5.9.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.mongodb:mongodb-driver-core
  dependency-version: 5.9.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.mongodb:mongodb-driver-sync
  dependency-version: 5.9.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.xerial:sqlite-jdbc
  dependency-version: 3.53.2.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.jsoup:jsoup
  dependency-version: 1.23.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: java
- dependency-name: commons-validator:commons-validator
  dependency-version: 1.11.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: java
- dependency-name: com.itextpdf:itext-core
  dependency-version: 9.7.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.apache.tika:tika-core
  dependency-version: 3.3.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.apache.tika:tika-parsers
  dependency-version: 3.3.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.apache.tika:tika-parser-pdf-module
  dependency-version: 3.3.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.apache.tika:tika-parser-text-module
  dependency-version: 3.3.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.apache.tika:tika-parser-ocr-module
  dependency-version: 3.3.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.apache.tika:tika-parser-microsoft-module
  dependency-version: 3.3.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.apache.tika:tika-parsers
  dependency-version: 3.3.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.apache.tika:tika-parser-pdf-module
  dependency-version: 3.3.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.apache.tika:tika-parser-text-module
  dependency-version: 3.3.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.apache.tika:tika-parser-ocr-module
  dependency-version: 3.3.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.apache.tika:tika-parser-microsoft-module
  dependency-version: 3.3.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: co.elastic.clients:elasticsearch-java
  dependency-version: 9.4.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.elasticsearch.client:elasticsearch-rest-client
  dependency-version: 9.4.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.elasticsearch.client:elasticsearch-rest-client
  dependency-version: 9.4.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.eclipse.jgit:org.eclipse.jgit
  dependency-version: 7.7.1.202607240634-r
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.eclipse.jgit:org.eclipse.jgit.http.server
  dependency-version: 7.7.1.202607240634-r
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.eclipse.jgit:org.eclipse.jgit.http.server
  dependency-version: 7.7.1.202607240634-r
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.apache.maven.plugins:maven-jar-plugin
  dependency-version: 3.5.1
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: com.github.eirslett:frontend-maven-plugin
  dependency-version: 2.0.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: com.openai:openai-java-client-okhttp
  dependency-version: 4.45.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: java
- dependency-name: com.anthropic:anthropic-java-client-okhttp
  dependency-version: 2.52.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: java
- dependency-name: software.amazon.awssdk:bedrockagentruntime
  dependency-version: 2.50.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: java
- dependency-name: org.apache.groovy:groovy
  dependency-version: 5.0.8
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
- dependency-name: org.apache.groovy:groovy-json
  dependency-version: 5.0.8
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: java
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels Aug 3, 2026
@alegauss
alegauss merged commit 09cbe90 into 2026.3 Aug 5, 2026
@dependabot
dependabot Bot deleted the dependabot/maven/2026.3/java-f757578a79 branch August 5, 2026 13:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant