Skip to content

Update dependency org.springframework.boot:spring-boot-starter-parent to v4 - #30

Open
renovate[bot] wants to merge 1 commit into
masterfrom
renovate/major-spring-boot
Open

Update dependency org.springframework.boot:spring-boot-starter-parent to v4#30
renovate[bot] wants to merge 1 commit into
masterfrom
renovate/major-spring-boot

Conversation

@renovate

@renovate renovate Bot commented Nov 24, 2022

Copy link
Copy Markdown
Contributor

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Change Age Confidence
org.springframework.boot:spring-boot-starter-parent (source) 2.7.184.1.0 age confidence

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

spring-projects/spring-boot (org.springframework.boot:spring-boot-starter-parent)

v4.1.0

Compare Source

Full release notes for Spring Boot 4.1 are available on the wiki.

⭐ New Features

  • Add public constructor to InvalidConfigurationPropertyValueException that accepts a cause #​50211
  • Reduce memory consumption when repeatedly calling WritableJson.toByteArray #​49428

🐞 Bug Fixes

  • MailSender auto-configuration does not enable hostname verification #​50747
  • Artemis auto-configuration uses a predictable default location for the embedded broker's data #​50745
  • Embedded LDAP SSL should not be enabled when its bundle is empty #​50700
  • InetAddressFilter.externalAddresses does not exclude special purpose addresses from RFC 6890 #​50668
  • NullPointerException in reactor-netty SniProvider and unmapped SSL bundle with RSocket #​50645
  • SSL should not be enabled when a SSL bundle is overridden to an empty string #​50635
  • Test auto-configuration no longer integrates Spring Security with HtmlUnitDriver #​50633
  • Configuration property metadata includes incorrect class references #​50632
  • Docker Compose support does not restore thread interrupt flag when catching InterruptedException #​50618
  • RabbitProperties enables SSL even when spring.rabbitmq.ssl.bundle is overridden to an empty string #​50612
  • NullPointerException in reactor-netty SniProvider when SSL bundle uses client-auth or server truststore without server-name-bundles #​50610
  • SpringJtaPlatform should have been deprecated since 4.1.0-M3 #​50592
  • Layer written outside the output location of '//' exception is thrown when using extract layers in root directory #​50510
  • ConfigurationPropertiesReportEndpoint exposes AOP proxy internals #​50417
  • Created StackTracePrinter instances have no access to the Environment #​50414
  • MappingsEndpoint reports the context's own ID as parentId when a parent exists #​50412
  • Buildpack module does not validate long-to-int casts #​50410
  • Gradle gRPC support fails if protobuf-java dependency is used instead of protobuf-java-util #​50405
  • GraphQL WebSocket support does not configure allowed origins #​50394
  • Spring Boot Loader Does Not Support RSA and EC Signed Jars #​50298
  • Meter registries are not removed from the global registry when the context is closed #​50287
  • DataSourceBuilder cannot derive a DataSource from a lazy connection proxy #​50271
  • Nullable annotations from AbstractErrorController.getErrorAttributes are not aligned with implementation #​50266
  • Bean definitions can be added with an initializer before setAllowBeanDefinitionOverriding is called #​50264
  • EndpointRequest links matcher unnecessarily matches HTTP methods other than GET #​50261
  • Actuator's '/cloudfoundryapplication' endpoint does not work if restrictive CORS configuration is provided using a bean named corsConfigurationSource #​50258
  • ThreadPoolTaskScheduleBuilder unnecessarily loses precision when configuring await termination time #​50234
  • NimbusJwtDecoder silently accepts unknown values for spring.security.oauth2.resourceserver.jwt.jws-algorithms #​50228
  • Missing dependency management for spring-boot-web-server-test #​50224
  • Spring Batch support for MongoDB modules are not included in dependency management #​50223
  • Apply HTML escaping to timestamp attribute in Whitelabel error page #​50216
  • GrpcServerHealthScheduler is not started in servlet environments #​50209
  • Setting server.servlet.session.cookie.partitioned=true has no effect when using Tomcat #​50204

📔 Documentation

  • Fix reference to Gradle documentation for module replacement #​50647
  • Document SSL reloading with Let's Encrypt #​50630
  • Remove the use of Optional from Data Neo4j repository examples #​50622
  • Fix typos in documentation #​50620
  • Clarify dependency requirement for Bean Validation support #​50614
  • Document Java 25 requirement for AOT cache #​50485
  • Add links for Java CAS Client Spring Boot Starter #​50285
  • Document known testcontainers lifecycle issues #​50220
  • Document adding multiple connectors for Jetty #​50218
  • Polish InvalidConfigurationPropertyValueException constructor javadoc #​50214
  • Fix typo in Spring Security OAuth2 client registration documentation #​50199

🔨 Dependency Upgrades

❤️ Contributors

Thank you to all the contributors who worked on this release:

@​Abdlatif-nabgha, @​DragonFSKY, @​Kapil-chn7, @​Kimgyuilli, @​SJvaca30, @​SebTardif, @​ares333, @​codingkiddo, @​dlwldnjs1009, @​eddumelendez, @​henriquejsza, @​igormukhin, @​johnnypwong, @​kwondh5217, @​leestana01, @​mheath, @​mmoayyed, @​msridhar, @​ngocnhan-tran1996, @​nosan, @​quaff, @​scordio, @​vinhhieu21, @​vpavic, @​won-seoop, and @​zxuhan

v4.0.7

Compare Source

🐞 Bug Fixes

  • MailSender auto-configuration does not enable hostname verification #​50746
  • Artemis auto-configuration uses a predictable default location for the embedded broker's data #​50744
  • NullPointerException in reactor-netty SniProvider and unmapped SSL bundle with RSocket #​50640
  • SSL should not be enabled when a SSL bundle is overridden to an empty string #​50634
  • Docker Compose support does not restore thread interrupt flag when catching InterruptedException #​50617
  • RabbitProperties enables SSL even when spring.rabbitmq.ssl.bundle is overridden to an empty string #​50611
  • NullPointerException in reactor-netty SniProvider when SSL bundle uses client-auth or server truststore without server-name-bundles #​50609
  • Test auto-configuration no longer integrates Spring Security with HtmlUnitDriver #​50602
  • Layer written outside the output location of '//' exception is thrown when using extract layers in root directory #​50509
  • ConfigurationPropertiesReportEndpoint exposes AOP proxy internals #​50416
  • Created StackTracePrinter instances have no access to the Environment #​50413
  • MappingsEndpoint reports the context's own ID as parentId when a parent exists #​50411
  • Buildpack module does not validate long-to-int casts #​50409
  • GraphQL WebSocket support does not configure allowed origins #​50393
  • Configuration property metadata includes incorrect class references #​50375
  • Spring Boot Loader Does Not Support RSA and EC Signed Jars #​50297
  • Meter registries are not removed from the global registry when the context is closed #​50286
  • Nullable annotations from AbstractErrorController.getErrorAttributes are not aligned with implementation #​50265
  • EndpointRequest links matcher unnecessarily matches HTTP methods other than GET #​50260
  • Actuator's '/cloudfoundryapplication' endpoint does not work if restrictive CORS configuration is provided using a bean named corsConfigurationSource #​50257
  • ThreadPoolTaskScheduleBuilder unnecessarily loses precision when configuring await termination time #​50233
  • NimbusJwtDecoder silently accepts unknown values for spring.security.oauth2.resourceserver.jwt.jws-algorithms #​50227
  • Apply HTML escaping to timestamp attribute in Whitelabel error page #​50215
  • Setting server.servlet.session.cookie.partitioned=true has no effect when using Tomcat #​50201

📔 Documentation

  • Fix reference to Gradle documentation for module replacement #​50646
  • Document SSL reloading with Let's Encrypt #​50629
  • Remove the use of Optional from Data Neo4j repository examples #​50621
  • Fix typos in documentation #​50619
  • Clarify dependency requirement for Bean Validation support #​50613
  • Document Java 25 requirement for AOT cache #​50484
  • Add links for Java CAS Client Spring Boot Starter #​50281
  • Document known testcontainers lifecycle issues #​50219
  • Document adding multiple connectors for Jetty #​50217
  • Polish InvalidConfigurationPropertyValueException constructor javadoc #​50213
  • Fix typo in Spring Security OAuth2 client registration documentation #​50198

🔨 Dependency Upgrades

❤️ Contributors

Thank you to all the contributors who worked on this release:

@​Abdlatif-nabgha, @​DragonFSKY, @​Kapil-chn7, @​Kimgyuilli, @​SJvaca30, @​SebTardif, @​ares333, @​codingkiddo, @​dlwldnjs1009, @​henriquejsza, @​igormukhin, @​johnnypwong, @​kwondh5217, @​leestana01, @​mheath, @​mmoayyed, @​msridhar, @​ngocnhan-tran1996, @​nosan, @​quaff, @​scordio, @​vinhhieu21, @​won-seoop, and @​zxuhan

v4.0.6

Compare Source

🐞 Bug Fixes

  • Default security is misconfigured when spring-boot-actuator-autoconfigure is present and spring-boot-health is not #​50188
  • Elasticsearch Rest5Client auto-configuration misconfigures underlying HTTP client #​50187
  • ApplicationPidFileWriter does not handle symlinks correctly #​50185
  • RandomValuePropertySource is not suitable for secrets #​50183
  • Cassandra auto-configuration misconfigures CqlSessionBuilder #​50180
  • ApplicationTemp does not handle symlinks correctly #​50178
  • Remote DevTools performs comparison incorrectly #​50176
  • spring.rabbitmq.ssl.verify-hostname is applied inconsistently #​50174
  • Whole number values are ignored when configuring min and max expected values and SLO boundaries for a distribution summary meter #​50077
  • Classic starters are missing several modules #​50071
  • Module spring-boot-resttestclient is missing from spring-boot-starter-test-classic #​50069
  • Annotations like @Ssl don't work on @Bean methods when using @ServiceConnection #​50064
  • EnversRevisionRepositoriesRegistrar should reuse @EnableEnversRepositories rather than configuring the JPA counterpart #​50039
  • WebFlux Cloud Foundry links endpoint includes query string from received request in resolved links #​50017
  • Imports on a containing test class are ignored when a nested class has imports #​50012
  • With spring.jackson.use-jackson2-defaults set to true, FAIL_ON_UNKNOWN_PROPERTIES is enabled #​49951
  • 500 response from env endpoint when supplied pattern is invalid #​49946
  • Reactive MongoDB starter has a transitive dependency on the synchronous MongoDB driver #​49945
  • HTTP method is lost when configuring excludes in EndpointRequest #​49943
  • Honor HttpMethod for reactive additional endpoint paths #​49880
  • Docker Compose support doesn't work with apache/artemis image #​49869
  • Docker Compose support doesn't work with apache/activemq image #​49866
  • Spring Security's PathPatternRequestMatcher.Builder is not auto-configured when using WebMvcTest and spring-boot-security-test #​49854
  • API versioning path strategy should be applied path last as it is not meant to yield #​49800

📔 Documentation

  • Update docs to encourage Java fundamentals for beginners that prefer to learn that way #​50146
  • HTTP Service Interface Clients still document that API versioning can be configured via properties #​50126
  • Link to the observability section of the Lettuce documentation is broken #​50097
  • Javadoc for StaticResourceLocation.FAVICON doesn't describe icons location #​50085
  • MySamlRelyingPartyConfiguration is missing a Kotlin sample #​50024
  • Incorrect default value for management.httpexchanges.recording.include in configuration metadata #​50019
  • Link to the Kubernetes documentation when discussing startup probes #​50015
  • Typo in JdbcSessionAutoConfiguration Javadoc #​49873
  • Clarify that configuration property default values are not available through the Environment #​49851
  • Document the need for Liquibase and Flyway starters #​49839
  • Kafka documentation refers to deprecated JSON serializer and deserializer classes #​49826

🔨 Dependency Upgrades

❤️ Contributors

Thank you to all the contributors who worked on this release:

@​GollapudiSrikanth, @​MohammedGhallab, @​bachhs, @​dlwldnjs1009, @​edwardsre, @​kodama-kcc, @​kwondh5217, @​ppapaj, @​quaff, @​refeccd, @​scordio, and @​xxxxxxjun

v4.0.5

Compare Source

🐞 Bug Fixes

  • Test starter for Spring Integration does not include Spring Integration test module #​49784
  • Some sliced tests that import TransactionAutoConfiguration do not import TransactionManagerCustomizationAutoConfiguration #​49782
  • WebSocket messaging's task executors are only auto-configured and stompWebSocketHandlerMapping is only forced to be eager when using Jackson #​49753
  • WebSocket app fails to start when Jackson is on the classpath but there's no JsonMapper bean #​49749
  • Metadata annotation processor ignores method-level @NestedConfigurationProperty when using constructor binding #​49738
  • Override of property in external 'application.properties' or 'application.yaml' is ignored #​49731
  • NativeImageResourceProvider does not find Flyway migration scripts in subdirectories #​49706
  • Add @ConditionalOnWebApplication to NettyReactiveWebServerAutoConfiguration #​49695
  • @GraphQlTest does not include @ControllerAdvice #​49672

📔 Documentation

  • Fix incorrect indefinite articles in Javadoc #​49727
  • Add some more Kotlin examples and trivial style fixes #​49714
  • Overhaul Spring Session documentation following modularization #​49704

🔨 Dependency Upgrades

❤️ Contributors

Thank you to all the contributors who worked on this release:

@​Joowon-Seo, @​deejay1, @​dlwldnjs1009, @​kwondh5217, @​ljrmorgan, and @​quaff

v4.0.4

Compare Source

⚠️ Attention Required

  • OpenTelemetry's ZipkinSpanExporter has been deprecated and its support will be removed in Spring Boot 4.2. #​49453
  • Jackson 2 has been upgraded to 2.21.1 in response to the Jackson team ending support for Jackson 2.20.x. #​49389
  • Jackson has been upgraded to 3.1.0 in response to the Jackson team ending support for Jackson 3.0.x. #​49383
  • The default value for server.tomcat.max-part-count has been increased from 10 to 50. This aligns it with Tomcat's own default and the default in Spring Boot 3.x. #​49311

🐞 Bug Fixes

  • EndpointRequest request matcher for health groups is too complex #​49649
  • "/cloudfoundryapplication" web path is not limited to Actuator #​49646
  • Fix EndpointRequest.toLinks() when base-path is '/' #​49617
  • Docker fails when a 'tcp://' address ends with a slash (for example 'tcp://docker:2375/') #​49596
  • RSocket exposes duplicate endpoint for websocket setups #​49593
  • Failure analysis for a missing mail sender is misleading #​49582
  • SpringBootContextLoader mentions class that no longer exists in message for classes or locations assertion #​49535
  • Ordering of 'spring.config.import' is inconsistent when defined in environment or system properties #​49482
  • "spring.main.cloud-platform=none" does not disable cloud features #​49479
  • SSL support with Docker Compose does not work as documented #​49385
  • Auto-configuration overrides authorization server configuration applied by Customizer beans #​49367
  • Using @AutoConfigureWebTestClient prevents separate configuration of spring.test.webtestclient.timeout from taking effect #​49344
  • NoSuchMethodException when forcing the use of Log4J2LoggingSystem using org.springframework.boot.logging.LoggingSystem system property #​49343
  • RouterFunctions descriptions in Actuator do not support nesting #​49302
  • Maven plugin does not set '-parameters' option when processing AOT code #​49295
  • HTTP Service Interface Client doesn't work in a native image due to missing property binding #​49274
  • ErrorPageRegistrarBeanPostProcessor is not auto-configured in war deployments and the ErrorPageCustomizer is not applied #​49176
  • Missing starter for spring-boot-restdocs #​48289

📔 Documentation

  • Document support for Java 26 #​49604
  • List all supported colors when describing color-coded log output #​49562
  • Improve EndpointRequest matcher documentation #​49520
  • Clarify that running is the only supported input state when triggering a Quartz job through the Actuator endpoint #​49514
  • Document security considerations for forwarded headers in cloud deployments #​49507
  • Tutorial in the reference guide has outdated instructions #​49429
  • Document additional repositories required for shibboleth.net #​49392
  • Javadoc of JettyHttpClientBuilder refers to the wrong type #​49387
  • Example spring-devtools.properties file is shown in the wrong format #​49362
  • Clarify inferred relationships between OAuth 2 registrations and providers #​49327
  • Mention using org.springframework.boot.aot Gradle plugin directly for AOT processing with the JVM [#​49321](https://redirect.github.com

Note

PR body was truncated to here.


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch 2 times, most recently from 36b2b69 to 3e06621 Compare December 23, 2022 00:36
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch 2 times, most recently from a41190f to f52de0f Compare January 20, 2023 04:57
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from f52de0f to 0e1ff12 Compare February 23, 2023 16:24
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 0e1ff12 to e1f85ea Compare March 4, 2023 03:35
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from e1f85ea to 4d74df1 Compare March 23, 2023 16:41
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch 2 times, most recently from f4be753 to a50c029 Compare April 20, 2023 19:13
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch 2 times, most recently from 70fb25d to 70004bd Compare May 19, 2023 02:53
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch 2 times, most recently from 0ccfa66 to d936da5 Compare June 22, 2023 16:18
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from d936da5 to e680d8f Compare July 20, 2023 12:09
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from e680d8f to 4ce571f Compare August 24, 2023 15:35
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 4ce571f to ff403c4 Compare September 21, 2023 14:38
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch 2 times, most recently from f6462c2 to 66c0dce Compare October 19, 2023 21:05
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch 2 times, most recently from 94d66c9 to d2b557a Compare November 23, 2023 16:45
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from d2b557a to 8945644 Compare December 21, 2023 15:19
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 8945644 to 4109f33 Compare January 19, 2024 20:24
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 4109f33 to 189910a Compare February 22, 2024 23:25
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 189910a to 4efb82a Compare March 21, 2024 13:40
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 4efb82a to 9305137 Compare April 18, 2024 20:11
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch 2 times, most recently from c4b8f8f to 535e36a Compare May 23, 2024 15:41
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 535e36a to ee84450 Compare June 20, 2024 13:44
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from ee84450 to d45290d Compare July 18, 2024 19:46
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from d45290d to e2ead0b Compare August 22, 2024 20:04
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 0bdadfe to eba46c6 Compare October 24, 2024 16:56
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from eba46c6 to 29ba1a5 Compare November 21, 2024 21:52
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 29ba1a5 to db42d96 Compare December 19, 2024 15:11
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from db42d96 to bdf240b Compare January 23, 2025 18:12
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from bdf240b to c7b340d Compare February 20, 2025 19:31
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from c7b340d to abae249 Compare March 21, 2025 06:18
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from abae249 to 5dfa253 Compare April 24, 2025 15:33
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch 2 times, most recently from 97be91d to 40398cb Compare May 22, 2025 22:58
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch 2 times, most recently from b33c4b8 to 136ff4a Compare June 20, 2025 10:36
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 136ff4a to 2c9b31a Compare July 24, 2025 13:00
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 2c9b31a to ad8fbd9 Compare August 21, 2025 15:39
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from ad8fbd9 to b2ea91a Compare September 18, 2025 13:38
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from b2ea91a to 4aa20cc Compare October 23, 2025 17:24
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 4aa20cc to 665176b Compare November 11, 2025 00:53
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch 2 times, most recently from ba52c18 to 8144ec4 Compare November 20, 2025 20:56
@renovate renovate Bot changed the title Update dependency org.springframework.boot:spring-boot-starter-parent to v3 Update dependency org.springframework.boot:spring-boot-starter-parent to v4 Nov 20, 2025
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 8144ec4 to 2a4b442 Compare December 18, 2025 22:05
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 2a4b442 to d9bc774 Compare January 22, 2026 17:53
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from d9bc774 to dae0325 Compare February 19, 2026 17:40
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch 2 times, most recently from acbb650 to d37bf97 Compare March 26, 2026 12:46
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from d37bf97 to 9408924 Compare April 23, 2026 20:45
@renovate renovate Bot changed the title Update dependency org.springframework.boot:spring-boot-starter-parent to v4 Update spring boot to v4 Jun 2, 2026
@renovate
renovate Bot force-pushed the renovate/major-spring-boot branch from 9408924 to a40fe02 Compare June 10, 2026 22:54
@renovate renovate Bot changed the title Update spring boot to v4 Update spring boot (major) Jun 22, 2026
@renovate renovate Bot changed the title Update spring boot (major) Update dependency org.springframework.boot:spring-boot-starter-parent to v4 Jun 25, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants