Skip to content

Bump the all-dependencies group with 6 updates - #4867

Merged
xiang17 merged 3 commits into
mainfrom
dependabot/gradle/all-dependencies-33520a29ae
Oct 7, 2026
Merged

xiang17 merged 3 commits into
mainfrom
dependabot/gradle/all-dependencies-33520a29ae

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 5, 2026

Copy link
Copy Markdown
Contributor

Bumps the all-dependencies group with 6 updates:

Package From To
com.github.oshi:oshi-core 7.6.1 7.7.0
org.apache.commons:commons-lang3 3.20.0 3.21.0
io.opentelemetry.proto:opentelemetry-proto 1.11.0-alpha 1.11.1-alpha
com.diffplug.spotless:spotless-plugin-gradle 8.10.2 8.10.3
com.github.spotbugs.snom:spotbugs-gradle-plugin 6.5.11 6.5.12
com.diffplug.spotless 8.10.2 8.10.3

Updates com.github.oshi:oshi-core from 7.6.1 to 7.7.0

Release notes

Sourced from com.github.oshi:oshi-core's releases.

Release 7.7.0

New Features
  • #3745: The FFM implementation now reads NetBSD natively, through sysctl, getloadavg, _lwp_self and getrlimit, where it previously ran commands and parsed their output - @​dbwiddis.
  • #3709, #3757: Display.getCurrentMode() returns the mode a display is driven in: its logical and pixel resolution, refresh rate, rotation, and position on the desktop. Display.isBuiltIn() reports whether it is a built-in panel, and Display.isPrimary() whether it is the primary display. All three are available on Windows, macOS, and on Linux and the other UNIX platforms through X11 - @​ayonization, @​dbwiddis.
Bug Fixes and Improvements
  • #3723: Windows Sensors now reads CPU temperature, fan speed and voltage from the ROOT\LibreHardwareMonitor WMI namespace when the LibreHardwareMonitor application is running, in addition to the ROOT\OpenHardwareMonitor namespace it already read. Users running the maintained LibreHardwareMonitor previously got its GPU metrics but no CPU sensor data - @​dbwiddis.
  • #3727: The oshi.os.windows.ohm.disabled and oshi.os.windows.lhm.disabled configuration properties now skip the Open Hardware Monitor and Libre Hardware Monitor WMI namespaces, which OSHI otherwise queries on each sensor read until one returns data. The latter also covers GPU metrics - @​dbwiddis.
  • #3730: Fixed Sensors.getCpuVoltage() on Windows when using the voltage published by Open Hardware Monitor or LibreHardwareMonitor - @​dbwiddis.
  • #3742: NetworkParams.getRoutes() on NetBSD now reads the routing table from the kernel where the JNA native library is available - @​dbwiddis.
  • #3743: Fixed three HWDiskStore faults on NetBSD: read and write byte totals that could decrease between readings, a doubled getTransferTime(), and a 1-byte disk or 512-byte partition size where the size is unknown, which also affected OpenBSD - @​dbwiddis.
  • #3744: Fixed OSProcess naming on NetBSD: getPath() and getName() were truncated to seven characters, and where the kernel withholds a process's arguments, getCommandLine() returned ps's (command) placeholder and getName() kept its parentheses - @​dbwiddis.
  • #3754: OperatingSystem.getProcessId() and getThreadId() return 0 when the ID is unknown on every platform. On NetBSD without JNA, getThreadId() returned a Java thread ID, and on failure some implementations returned -1, which led getCurrentProcess() to return an arbitrary process on the BSDs, Solaris and AIX. getProcess() with a negative PID now returns null on Solaris and AIX - @​dbwiddis.

Full change log

Changelog

Sourced from com.github.oshi:oshi-core's changelog.

7.7.0 (2026-09-29)

New Features
  • #3745: The FFM implementation now reads NetBSD natively, through sysctl, getloadavg, _lwp_self and getrlimit, where it previously ran commands and parsed their output - @​dbwiddis.
  • #3709, #3757: Display.getCurrentMode() returns the mode a display is driven in: its logical and pixel resolution, refresh rate, rotation, and position on the desktop. Display.isBuiltIn() reports whether it is a built-in panel, and Display.isPrimary() whether it is the primary display. All three are available on Windows, macOS, and on Linux and the other UNIX platforms through X11 - @​ayonization, @​dbwiddis.
Bug Fixes and Improvements
  • #3723: Windows Sensors now reads CPU temperature, fan speed and voltage from the ROOT\LibreHardwareMonitor WMI namespace when the LibreHardwareMonitor application is running, in addition to the ROOT\OpenHardwareMonitor namespace it already read. Users running the maintained LibreHardwareMonitor previously got its GPU metrics but no CPU sensor data - @​dbwiddis.
  • #3727: The oshi.os.windows.ohm.disabled and oshi.os.windows.lhm.disabled configuration properties now skip the Open Hardware Monitor and Libre Hardware Monitor WMI namespaces, which OSHI otherwise queries on each sensor read until one returns data. The latter also covers GPU metrics - @​dbwiddis.
  • #3730: Fixed Sensors.getCpuVoltage() on Windows when using the voltage published by Open Hardware Monitor or LibreHardwareMonitor - @​dbwiddis.
  • #3742: NetworkParams.getRoutes() on NetBSD now reads the routing table from the kernel where the JNA native library is available - @​dbwiddis.
  • #3743: Fixed three HWDiskStore faults on NetBSD: read and write byte totals that could decrease between readings, a doubled getTransferTime(), and a 1-byte disk or 512-byte partition size where the size is unknown, which also affected OpenBSD - @​dbwiddis.
  • #3744: Fixed OSProcess naming on NetBSD: getPath() and getName() were truncated to seven characters, and where the kernel withholds a process's arguments, getCommandLine() returned ps's (command) placeholder and getName() kept its parentheses - @​dbwiddis.
  • #3754: OperatingSystem.getProcessId() and getThreadId() return 0 when the ID is unknown on every platform. On NetBSD without JNA, getThreadId() returned a Java thread ID, and on failure some implementations returned -1, which led getCurrentProcess() to return an arbitrary process on the BSDs, Solaris and AIX. getProcess() with a negative PID now returns null on Solaris and AIX - @​dbwiddis.
Commits
  • fa2eb03 [maven-release-plugin] prepare release oshi-parent-7.7.0
  • 4471a73 7.7.0 Release
  • f9b03d0 Update vmactions/openbsd-vm digest to 5f7b2c9 (#3759)
  • 698d32a Update vmactions/openindiana-vm digest to d82e630 (#3760)
  • 5b4722a Update dependency com.puppycrawl.tools:checkstyle to v14.3.0 (#3761)
  • 0a4401b Update vmactions/netbsd-vm digest to c8a0d7d (#3758)
  • 171d674 Add isPrimary to the Display API (#3709)
  • b71fdfa Add Display.getCurrentMode() and isBuiltIn() (#3757)
  • 7ad5445 Update vmactions/freebsd-vm digest to a2f9a41 (#3756)
  • 726d2d0 Update vmactions/dragonflybsd-vm digest to 4ab776f (#3755)
  • Additional commits viewable in compare view

Updates org.apache.commons:commons-lang3 from 3.20.0 to 3.21.0

Updates io.opentelemetry.proto:opentelemetry-proto from 1.11.0-alpha to 1.11.1-alpha

Release notes

Sourced from io.opentelemetry.proto:opentelemetry-proto's releases.

Release v1.11.1-alpha

Java Bindings for OTLP v1.11.1

Commits

Updates com.diffplug.spotless:spotless-plugin-gradle from 8.10.2 to 8.10.3

Release notes

Sourced from com.diffplug.spotless:spotless-plugin-gradle's releases.

Gradle Plugin v8.10.3

Changes

  • Generate formatter defaults from version catalog. (#3045)
  • Bump default gson version 2.13.2 -> 2.14.0. (#3045)
  • Bump default zjsonpatch version 0.4.14 -> 0.4.16. (#3045)
  • Bump default jackson-dataformat-yaml version 2.14.1 -> 2.20.1. (#3045)
  • Bump default ktfmt version 0.63 -> 0.64. (2988)
  • Bump default cleanthat version 2.25 -> 2.26. (#2882)
  • Bump default jackson version 2.20.1 -> 2.22.2. (#2819)
  • Bump default javaparser version 3.27.1 -> 3.28.2. (#3065)
  • Bump default palantir-java-format version 2.80.0 -> 2.98.0. (#3068)
  • Bump default scalafmt version 3.8.1 -> 3.11.5. (#2173)
  • Bump default google-java-format version 1.30.0 -> 1.36.1. (#3075)
  • Bump default gherkin-utils version 10.0.0 -> 12.0.2. (#2979)
  • We no longer publish a plugin marker for the legacy com.diffplug.gradle.spotless id, which has been redirecting to com.diffplug.spotless since 4.0. Builds that still request it now fail with Plugin [id: 'com.diffplug.gradle.spotless'] was not found instead of the migration message. (#3086)

Fixed

  • Fix release signing by using Gradle's required eight-digit signing subkey ID. (#3105)
  • Fix race when creating the npm install cache directory. ((#3096)
  • GrEclipse no longer emits expected OSGi and nested-jar warnings during initialization. (#2445)
  • typescript prettier() no longer emits a warning when its parser is already set to typescript. (#3098)
  • versionCatalog() preserves standalone comments at section boundaries and the end of the file. (#3048)
  • versionCatalog() preserves entries when comments contain unmatched brackets, preserves commas inside quoted strings, and keeps significant line boundaries in multiline entries. (#3042)
  • versionCatalog() now reports unfinished entries as lints at their starting line. These fail formatting by default, so upgrading may expose catalog errors that previously caused silent data loss. (#3042)
  • Stop calling deprecated Configuration.setVisible from Gradle 9.0.0 (#3053)
  • Eclipse JDT formatter step no longer fails with NoClassDefFoundError or NoSuchMethodError when lombok is active as a JVM agent (e.g. -javaagent:lombok.jar in Eclipse/VS Code/Cursor). (#2795)
Commits
  • eae36d8 Published gradle/8.10.3
  • 61e2016 Published maven/3.10.3
  • 49e0b07 Published lib/4.10.3
  • b7a7748 Fix release signing key ID format (#3105)
  • be8005a Document release signing correction (#3105)
  • 073fe61 Use short signing subkey ID for release publishing
  • 8ac44c7 Fix race when creating the npm install cache directory (#3096)
  • 3f2d955 Update dependency org.slf4j:slf4j-api to v2.0.20 (#3100)
  • 0c70ca8 Merge branch 'main' into fix/npm-cache-directory-race
  • bbf44a4 Fix GrEclipse initialization warnings (#3097)
  • Additional commits viewable in compare view

Updates com.github.spotbugs.snom:spotbugs-gradle-plugin from 6.5.11 to 6.5.12

Release notes

Sourced from com.github.spotbugs.snom:spotbugs-gradle-plugin's releases.

6.5.12

6.5.12 (2026-09-26)

Bug Fixes

  • deps: update dependency com.tngtech.archunit:archunit to v1.5.1 (#1826) (bd85b23)
Commits
  • d255fb3 chore(deps): update github/codeql-action action to v4.38.2 (#1822)
  • 211a896 chore(deps): update commitlint monorepo to v21.2.3 (#1821)
  • eac799e chore(deps): update plugin com.gradle.develocity to v4.6.0 (#1823)
  • b4b3b03 chore(deps): update dependency com.diffplug.spotless:spotless-plugin-gradle t...
  • 642c526 chore(deps): update plugin com.diffplug.spotless to v8.10.3 (#1825)
  • bd85b23 fix(deps): update dependency com.tngtech.archunit:archunit to v1.5.1 (#1826)
  • a54d064 chore(deps): update dependency prettier to v3.9.9 (#1820)
  • d630538 chore(deps): update github/codeql-action action to v4.38.1 (#1818)
  • 7c73aa4 chore(deps): update dependency prettier to v3.9.7
  • a209b63 chore(deps): lock file maintenance (#1817)
  • Additional commits viewable in compare view

Updates com.diffplug.spotless from 8.10.2 to 8.10.3

Release notes

Sourced from com.diffplug.spotless's releases.

Gradle Plugin v8.10.3

Changes

  • Generate formatter defaults from version catalog. (#3045)
  • Bump default gson version 2.13.2 -> 2.14.0. (#3045)
  • Bump default zjsonpatch version 0.4.14 -> 0.4.16. (#3045)
  • Bump default jackson-dataformat-yaml version 2.14.1 -> 2.20.1. (#3045)
  • Bump default ktfmt version 0.63 -> 0.64. (2988)
  • Bump default cleanthat version 2.25 -> 2.26. (#2882)
  • Bump default jackson version 2.20.1 -> 2.22.2. (#2819)
  • Bump default javaparser version 3.27.1 -> 3.28.2. (#3065)
  • Bump default palantir-java-format version 2.80.0 -> 2.98.0. (#3068)
  • Bump default scalafmt version 3.8.1 -> 3.11.5. (#2173)
  • Bump default google-java-format version 1.30.0 -> 1.36.1. (#3075)
  • Bump default gherkin-utils version 10.0.0 -> 12.0.2. (#2979)
  • We no longer publish a plugin marker for the legacy com.diffplug.gradle.spotless id, which has been redirecting to com.diffplug.spotless since 4.0. Builds that still request it now fail with Plugin [id: 'com.diffplug.gradle.spotless'] was not found instead of the migration message. (#3086)

Fixed

  • Fix release signing by using Gradle's required eight-digit signing subkey ID. (#3105)
  • Fix race when creating the npm install cache directory. ((#3096)
  • GrEclipse no longer emits expected OSGi and nested-jar warnings during initialization. (#2445)
  • typescript prettier() no longer emits a warning when its parser is already set to typescript. (#3098)
  • versionCatalog() preserves standalone comments at section boundaries and the end of the file. (#3048)
  • versionCatalog() preserves entries when comments contain unmatched brackets, preserves commas inside quoted strings, and keeps significant line boundaries in multiline entries. (#3042)
  • versionCatalog() now reports unfinished entries as lints at their starting line. These fail formatting by default, so upgrading may expose catalog errors that previously caused silent data loss. (#3042)
  • Stop calling deprecated Configuration.setVisible from Gradle 9.0.0 (#3053)
  • Eclipse JDT formatter step no longer fails with NoClassDefFoundError or NoSuchMethodError when lombok is active as a JVM agent (e.g. -javaagent:lombok.jar in Eclipse/VS Code/Cursor). (#2795)
Commits
  • eae36d8 Published gradle/8.10.3
  • 61e2016 Published maven/3.10.3
  • 49e0b07 Published lib/4.10.3
  • b7a7748 Fix release signing key ID format (#3105)
  • be8005a Document release signing correction (#3105)
  • 073fe61 Use short signing subkey ID for release publishing
  • 8ac44c7 Fix race when creating the npm install cache directory (#3096)
  • 3f2d955 Update dependency org.slf4j:slf4j-api to v2.0.20 (#3100)
  • 0c70ca8 Merge branch 'main' into fix/npm-cache-directory-race
  • bbf44a4 Fix GrEclipse initialization warnings (#3097)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the all-dependencies group with 6 updates:

| Package | From | To |
| --- | --- | --- |
| [com.github.oshi:oshi-core](https://github.com/oshi/oshi) | `7.6.1` | `7.7.0` |
| org.apache.commons:commons-lang3 | `3.20.0` | `3.21.0` |
| [io.opentelemetry.proto:opentelemetry-proto](https://github.com/open-telemetry/opentelemetry-proto-java) | `1.11.0-alpha` | `1.11.1-alpha` |
| [com.diffplug.spotless:spotless-plugin-gradle](https://github.com/diffplug/spotless) | `8.10.2` | `8.10.3` |
| [com.github.spotbugs.snom:spotbugs-gradle-plugin](https://github.com/spotbugs/spotbugs-gradle-plugin) | `6.5.11` | `6.5.12` |
| [com.diffplug.spotless](https://github.com/diffplug/spotless) | `8.10.2` | `8.10.3` |


Updates `com.github.oshi:oshi-core` from 7.6.1 to 7.7.0
- [Release notes](https://github.com/oshi/oshi/releases)
- [Changelog](https://github.com/oshi/oshi/blob/master/CHANGELOG.md)
- [Commits](oshi/oshi@oshi-parent-7.6.1...oshi-parent-7.7.0)

Updates `org.apache.commons:commons-lang3` from 3.20.0 to 3.21.0

Updates `io.opentelemetry.proto:opentelemetry-proto` from 1.11.0-alpha to 1.11.1-alpha
- [Release notes](https://github.com/open-telemetry/opentelemetry-proto-java/releases)
- [Commits](https://github.com/open-telemetry/opentelemetry-proto-java/commits)

Updates `com.diffplug.spotless:spotless-plugin-gradle` from 8.10.2 to 8.10.3
- [Release notes](https://github.com/diffplug/spotless/releases)
- [Changelog](https://github.com/diffplug/spotless/blob/main/CHANGES.md)
- [Commits](diffplug/spotless@gradle/8.10.2...gradle/8.10.3)

Updates `com.github.spotbugs.snom:spotbugs-gradle-plugin` from 6.5.11 to 6.5.12
- [Release notes](https://github.com/spotbugs/spotbugs-gradle-plugin/releases)
- [Commits](spotbugs/spotbugs-gradle-plugin@6.5.11...6.5.12)

Updates `com.diffplug.spotless` from 8.10.2 to 8.10.3
- [Release notes](https://github.com/diffplug/spotless/releases)
- [Changelog](https://github.com/diffplug/spotless/blob/main/CHANGES.md)
- [Commits](diffplug/spotless@gradle/8.10.2...gradle/8.10.3)

---
updated-dependencies:
- dependency-name: com.github.oshi:oshi-core
  dependency-version: 7.7.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: org.apache.commons:commons-lang3
  dependency-version: 3.21.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: io.opentelemetry.proto:opentelemetry-proto
  dependency-version: 1.11.1-alpha
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
- dependency-name: com.diffplug.spotless:spotless-plugin-gradle
  dependency-version: 8.10.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
- dependency-name: com.github.spotbugs.snom:spotbugs-gradle-plugin
  dependency-version: 6.5.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
- dependency-name: com.diffplug.spotless
  dependency-version: 8.10.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels Oct 5, 2026
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels Oct 5, 2026
@xiang17
xiang17 merged commit 7cbab20 into main Oct 7, 2026
146 checks passed
@xiang17
xiang17 deleted the dependabot/gradle/all-dependencies-33520a29ae branch October 7, 2026 00:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update Java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants