Skip to content

Conversation

anthonydahanne
Copy link
Contributor

2.3.232 has CVEs, see: https://central.sonatype.com/artifact/com.h2database/h2/versions

Dependency Upgrades

Please do not open a pull request for a straightforward dependency upgrade (one that
only updates the version property). We have a semi-automated process for such upgrades
that we prefer to use. However, if the upgrade is more involved (such as requiring
changes for removed or deprecated API) your pull request is most welcome.

oops! I just read that, oh well, my PR is ready, I leave it open in case your automation takes time!

@spring-projects-issues spring-projects-issues added the status: waiting-for-triage An issue we've not yet triaged label Sep 24, 2025
@anthonydahanne
Copy link
Contributor Author

oh noes! I got the version wrong! It's a minor update!
2.3.232 -> 2.4.240

ouch, not sure you'll want it in 3.5 ?

@philwebb
Copy link
Member

Thanks @anthonydahanne, but it's going to easier for us to let the automated process pick up the upgrade.

@philwebb philwebb closed this Sep 24, 2025
@philwebb philwebb added status: declined A suggestion or change that we don't feel we should currently apply and removed status: waiting-for-triage An issue we've not yet triaged labels Sep 24, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

status: declined A suggestion or change that we don't feel we should currently apply

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants