Skip to content

Conversation

@yeikel
Copy link
Collaborator

@yeikel yeikel commented Mar 21, 2025

https://spring.io/blog/2025/03/20/spring-boot-3-4-4-available-now

It should fix CVE-2025-22228

What changes did you make? (Give an overview)

Is there anything you'd like reviewers to focus on?

How Has This Been Tested? (put an "x" (case-sensitive!) next to an item)

  • Covered by existing automation

Checklist (put an "x" (case-sensitive!) next to all the items, otherwise the build will fail)

  • Any dependent changes have been merged

A picture of a cute animal (not mandatory but encouraged)

@yeikel yeikel requested a review from a team as a code owner March 21, 2025 20:03
@kapybro kapybro bot added status/triage Issues pending maintainers triage status/triage/manual Manual triage in progress status/triage/completed Automatic triage completed and removed status/triage Issues pending maintainers triage labels Mar 21, 2025
@yeikel yeikel changed the title build(deps): bump Spring boot to 3.4.4 build(deps): bump Spring Boot to 3.4.4 Mar 21, 2025
@yeikel
Copy link
Collaborator Author

yeikel commented Mar 21, 2025

@Haarolean Can you please review this?

Ideally it should have been a dependabot PR, but it will take a while given our configuration

@Haarolean Haarolean added scope/backend Related to backend changes type/dependencies A pull request/issue dedicated to updating the dependency(-ies) and removed status/triage/manual Manual triage in progress labels Mar 21, 2025
@Haarolean Haarolean added this to the 1.3 milestone Mar 21, 2025
@Haarolean Haarolean enabled auto-merge (squash) March 21, 2025 20:18
@Haarolean Haarolean changed the title build(deps): bump Spring Boot to 3.4.4 BE: Chore: Bump Spring Boot to 3.4.4 Mar 21, 2025
@yeikel
Copy link
Collaborator Author

yeikel commented Mar 21, 2025

@Haarolean Are these failures related to this change or expected flaky tests? Who else needs to review this?

@Haarolean Haarolean moved this to Todo in Release 1.3 Mar 22, 2025
@Haarolean Haarolean moved this from Todo to In Development in Release 1.3 Mar 22, 2025
@Haarolean Haarolean merged commit 1fd80bb into kafbat:main Mar 22, 2025
46 of 51 checks passed
@github-project-automation github-project-automation bot moved this from In Development to Done in Release 1.3 Mar 22, 2025
@yeikel yeikel deleted the patch-2 branch March 22, 2025 17:02
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

scope/backend Related to backend changes status/triage/completed Automatic triage completed type/dependencies A pull request/issue dedicated to updating the dependency(-ies)

Projects

No open projects
Status: Done

Development

Successfully merging this pull request may close these issues.

2 participants