Skip to content

fix(deps): update dependency com.graphql-java:graphql-java to v19 #466

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 1 commit into from
Aug 6, 2022

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Aug 5, 2022

Mend Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
com.graphql-java:graphql-java 18.3 -> 19.0 age adoption passing confidence

Release Notes

graphql-java/graphql-java

v19.0

This is release 19.0 of GraphQL Java. It contains one breaking change.

It contains one security related bugfix hardening GraphQL Java more against malicious requests: #​2892

GraphQL Java now shades Antlr runtime to prevent any further dependency conflicts. Antlr is used internally for parsing and validating of GraphQL requests and SDL. #​2854

It includes some performance improvements (#​2786, #​2769, #​2839) and several bugfixes and general improvements.

Breaking change

#​2769 is an improvement to reduce object allocation. It can contain a breaking change if you would implement your own ChainedInstrumentation.

Change in behaviour

#​2878 introduces i18n for validation error messages, and by default will set locale to the JVM default locale

#​2799 changes the behaviour of the AST printer to use the shortest form available for query operation if possible. While semantically this is not a change, it might affect you.

Bugfixes

#​2892 Security bugfix to prevent DOS attacks

#​2818 Fix silent thread leak for chained instrumentation

#​2825 Fixup Introspection input field deprecation filterting

#​2842 fix runtime exception for deep async queries

#​2856 SchemaPrinter description bugfix

Improvements

#​2786 performance improvements for validation

#​2854 Shade Antlr Runtime

#​2896 Update DataLoader to 3.2.0

#​2878 i18n for validation error messages

#​2881 Improve SchemaPrinter

#​2872 Improve AST compact printing

#​2846 Subscription root field valiation

All changes

all PRs: https://github.com/graphql-java/graphql-java/milestone/38?closed=1


Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, click this checkbox.

This PR has been generated by Mend Renovate. View repository job log here.

@renovate renovate bot added the dependencies Pull requests that update a dependency file label Aug 5, 2022
@sonarqubecloud
Copy link

sonarqubecloud bot commented Aug 5, 2022

Kudos, SonarCloud Quality Gate passed!    Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
No Duplication information No Duplication information

@oliemansm oliemansm added this to the 14.0.0 milestone Aug 6, 2022
@oliemansm oliemansm merged commit 3fe62ab into master Aug 6, 2022
@renovate renovate bot deleted the renovate/major-lib_graphql_java_ver branch August 6, 2022 09:36
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant