Skip to content

chore(deps-dev): bump org.sonarsource.scanner.maven:sonar-maven-plugin from 5.7.0.6970 to 5.8.0.7211 (#25668) (CP: 25.3) - #25711

Merged
vaadin-bot merged 1 commit into
25.3from
cherry-pick-25668-to-25.3-1789454681040
Sep 15, 2026
Merged

vaadin-bot merged 1 commit into
25.3from
cherry-pick-25668-to-25.3-1789454681040

Conversation

@vaadin-bot

Copy link
Copy Markdown
Collaborator

This PR cherry-picks changes from the original PR #25668 to branch 25.3.

Original PR description

Bumps org.sonarsource.scanner.maven:sonar-maven-plugin from 5.7.0.6970 to 5.8.0.7211.

Release notes

Sourced from org.sonarsource.scanner.maven:sonar-maven-plugin's releases.

5.8.0.7211

Release notes - Sonar Scanner for Maven - 5.8

Maintenance

SCANMAVEN-382 Prepare next development iteration 5.8.0

SCANMAVEN-384 Fix QG broken by the new testing rules

SCANMAVEN-385 Code Quality reorganization from jvm to CI Experience Squad

SCANMAVEN-386 ToggleLockBranch: Add additional-message

SCANMAVEN-387 Code Quality Slack channel reorganization

SCANMAVEN-390 Upgrade orchestrator to version 6.3.0

SCANMAVEN-392 Upgrade jetty test dependencies to version 9.4.58.v20250814

SCANMAVEN-395 Remove scheduled invocation of sonar:sonar shorthand test

SCANMAVEN-397 Replace Maven 4.0.0-rc-5 in ITs with Maven 4.0.0-rc-6

SCANMAVEN-398 Upgrade orchestrator to version 6.4.0

SCANMAVEN-399 Update sonar-scanner-java-library to 4.1.2.1663

SCANMAVEN-401 Upgrade Jetty used by e2e tests

SCANMAVEN-402 Upgrade orchestrator to version 6.4.3.4676

Feature

SCANMAVEN-403 Releasability status fails on property-dump-plugin version

Commits
  • 7347a92 SCANMAVEN-403 Releasability status fails on property-dump-plugin version (#426)
  • 002f55c SCANMAVEN-402 Upgrade orchestrator to version 6.4.3.4676 (#425)
  • fc7515f SCANMAVEN-401 Upgrade Jetty used by e2e tests (#424)
  • 16dedb3 SCANMAVEN-399 Update sonar-scanner-java-library to 4.1.2.1663 (#421)
  • ad81956 SCANMAVEN-397 Upgrade Maven 4 to 4.0.0-rc-6 in tests (#420)
  • 86e9516 SCANMAVEN-398 Upgrade orchestrator to version 6.4.0 (#419)
  • c26335c SCANMAVEN-395 Remove scheduled invocation of sonar:sonar shorthand test (#417)
  • 6a79ca6 SCANMAVEN-392 Upgrade jetty test dependencies to version 9.4.58.v20250814 (#416)
  • 57bb131 SCANMAVEN-390 Upgrade orchestrator to version 6.3.0 (#414)
  • 9d50b6d GHA-355 Add statuses: write permission for release-lock feature (#412)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

…n from 5.7.0.6970 to 5.8.0.7211 (#25668)

Bumps
[org.sonarsource.scanner.maven:sonar-maven-plugin](https://github.com/SonarSource/sonar-scanner-maven)
from 5.7.0.6970 to 5.8.0.7211.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/SonarSource/sonar-scanner-maven/releases">org.sonarsource.scanner.maven:sonar-maven-plugin's
releases</a>.</em></p>
<blockquote>
<h2>5.8.0.7211</h2>
<h1>Release notes - Sonar Scanner for Maven - 5.8</h1>
<h3>Maintenance</h3>
<p><a
href="https://sonarsource.atlassian.net/browse/SCANMAVEN-382">SCANMAVEN-382</a>
Prepare next development iteration 5.8.0</p>
<p><a
href="https://sonarsource.atlassian.net/browse/SCANMAVEN-384">SCANMAVEN-384</a>
Fix QG broken by the new testing rules</p>
<p><a
href="https://sonarsource.atlassian.net/browse/SCANMAVEN-385">SCANMAVEN-385</a>
Code Quality reorganization from jvm to CI Experience Squad</p>
<p><a
href="https://sonarsource.atlassian.net/browse/SCANMAVEN-386">SCANMAVEN-386</a>
ToggleLockBranch: Add additional-message</p>
<p><a
href="https://sonarsource.atlassian.net/browse/SCANMAVEN-387">SCANMAVEN-387</a>
Code Quality Slack channel reorganization</p>
<p><a
href="https://sonarsource.atlassian.net/browse/SCANMAVEN-390">SCANMAVEN-390</a>
Upgrade orchestrator to version 6.3.0</p>
<p><a
href="https://sonarsource.atlassian.net/browse/SCANMAVEN-392">SCANMAVEN-392</a>
Upgrade jetty test dependencies to version 9.4.58.v20250814</p>
<p><a
href="https://sonarsource.atlassian.net/browse/SCANMAVEN-395">SCANMAVEN-395</a>
Remove scheduled invocation of sonar:sonar shorthand test</p>
<p><a
href="https://sonarsource.atlassian.net/browse/SCANMAVEN-397">SCANMAVEN-397</a>
Replace Maven 4.0.0-rc-5 in ITs with Maven 4.0.0-rc-6</p>
<p><a
href="https://sonarsource.atlassian.net/browse/SCANMAVEN-398">SCANMAVEN-398</a>
Upgrade orchestrator to version 6.4.0</p>
<p><a
href="https://sonarsource.atlassian.net/browse/SCANMAVEN-399">SCANMAVEN-399</a>
Update sonar-scanner-java-library to 4.1.2.1663</p>
<p><a
href="https://sonarsource.atlassian.net/browse/SCANMAVEN-401">SCANMAVEN-401</a>
Upgrade Jetty used by e2e tests</p>
<p><a
href="https://sonarsource.atlassian.net/browse/SCANMAVEN-402">SCANMAVEN-402</a>
Upgrade orchestrator to version 6.4.3.4676</p>
<h3>Feature</h3>
<p><a
href="https://sonarsource.atlassian.net/browse/SCANMAVEN-403">SCANMAVEN-403</a>
Releasability status fails on property-dump-plugin version</p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/SonarSource/sonar-scanner-maven/commit/7347a92a0457228ca0f32d1bc3b1abf0cf82ae60"><code>7347a92</code></a>
SCANMAVEN-403 Releasability status fails on property-dump-plugin version
(<a
href="https://redirect.github.com/SonarSource/sonar-scanner-maven/issues/426">#426</a>)</li>
<li><a
href="https://github.com/SonarSource/sonar-scanner-maven/commit/002f55cea19a0c47e6de54ffc0c67326ffdb9770"><code>002f55c</code></a>
SCANMAVEN-402 Upgrade orchestrator to version 6.4.3.4676 (<a
href="https://redirect.github.com/SonarSource/sonar-scanner-maven/issues/425">#425</a>)</li>
<li><a
href="https://github.com/SonarSource/sonar-scanner-maven/commit/fc7515fd1923bcaafa192b64ae9173de88c60bbd"><code>fc7515f</code></a>
SCANMAVEN-401 Upgrade Jetty used by e2e tests (<a
href="https://redirect.github.com/SonarSource/sonar-scanner-maven/issues/424">#424</a>)</li>
<li><a
href="https://github.com/SonarSource/sonar-scanner-maven/commit/16dedb37e205ee15042fd003b55e21f31a6f669a"><code>16dedb3</code></a>
SCANMAVEN-399 Update sonar-scanner-java-library to 4.1.2.1663 (<a
href="https://redirect.github.com/SonarSource/sonar-scanner-maven/issues/421">#421</a>)</li>
<li><a
href="https://github.com/SonarSource/sonar-scanner-maven/commit/ad81956334900ae81ee1b810bab5ad1c9c8b9d30"><code>ad81956</code></a>
SCANMAVEN-397 Upgrade Maven 4 to 4.0.0-rc-6 in tests (<a
href="https://redirect.github.com/SonarSource/sonar-scanner-maven/issues/420">#420</a>)</li>
<li><a
href="https://github.com/SonarSource/sonar-scanner-maven/commit/86e95160cb9bbc8290ac4bf22ec715456d9ccd59"><code>86e9516</code></a>
SCANMAVEN-398 Upgrade orchestrator to version 6.4.0 (<a
href="https://redirect.github.com/SonarSource/sonar-scanner-maven/issues/419">#419</a>)</li>
<li><a
href="https://github.com/SonarSource/sonar-scanner-maven/commit/c26335cad9730829866671900eb40d3452c5b3a6"><code>c26335c</code></a>
SCANMAVEN-395 Remove scheduled invocation of sonar:sonar shorthand test
(<a
href="https://redirect.github.com/SonarSource/sonar-scanner-maven/issues/417">#417</a>)</li>
<li><a
href="https://github.com/SonarSource/sonar-scanner-maven/commit/6a79ca6681019758898751c1024016ba85d229fb"><code>6a79ca6</code></a>
SCANMAVEN-392 Upgrade jetty test dependencies to version
9.4.58.v20250814 (<a
href="https://redirect.github.com/SonarSource/sonar-scanner-maven/issues/416">#416</a>)</li>
<li><a
href="https://github.com/SonarSource/sonar-scanner-maven/commit/57bb131f5a594495e46d617142aa18c094bd7db8"><code>57bb131</code></a>
SCANMAVEN-390 Upgrade orchestrator to version 6.3.0 (<a
href="https://redirect.github.com/SonarSource/sonar-scanner-maven/issues/414">#414</a>)</li>
<li><a
href="https://github.com/SonarSource/sonar-scanner-maven/commit/9d50b6debd5aaea10041be1ad348a437d1d61a4b"><code>9d50b6d</code></a>
GHA-355 Add statuses: write permission for release-lock feature (<a
href="https://redirect.github.com/SonarSource/sonar-scanner-maven/issues/412">#412</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/SonarSource/sonar-scanner-maven/compare/5.7.0.6970...5.8.0.7211">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.sonarsource.scanner.maven:sonar-maven-plugin&package-manager=maven&previous-version=5.7.0.6970&new-version=5.8.0.7211)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
@vaadin-bot

Copy link
Copy Markdown
Collaborator Author

This PR is eligible for auto-merging policy, so it has been approved automatically. If there are pending conditions, auto merge (with 'squash' method) has been enabled for this PR [Message is sent from bot]

@vaadin-bot
vaadin-bot enabled auto-merge (squash) September 15, 2026 07:03
@sonarqubecloud

Copy link
Copy Markdown

@github-actions

github-actions Bot commented Sep 15, 2026 •

Copy link
Copy Markdown
Contributor

Test Results

 1 443 files  ±0   1 527 suites  ±0   1h 33m 40s ⏱️ - 3m 47s
12 078 tests ±0  12 010 ✅ ±0  68 💤 ±0  0 ❌ ±0 
12 396 runs  ±0  12 328 ✅ ±0  68 💤 ±0  0 ❌ ±0 

Results for commit ac6e360. ± Comparison against base commit 8314f78.

♻️ This comment has been updated with latest results.

@vaadin-bot
vaadin-bot merged commit 5810500 into 25.3 Sep 15, 2026
66 of 68 checks passed
@vaadin-bot
vaadin-bot deleted the cherry-pick-25668-to-25.3-1789454681040 branch September 15, 2026 07:36
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants