Skip to content

chore(deps): Bump io.netty:netty-bom from 4.2.12.Final to 4.2.13.Final in /pbj-core/hiero-dependency-versions#812

Merged
anthony-swirldslabs merged 1 commit intomainfrom
dependabot/gradle/pbj-core/hiero-dependency-versions/io.netty-netty-bom-4.2.13.Final
May 5, 2026
Merged

chore(deps): Bump io.netty:netty-bom from 4.2.12.Final to 4.2.13.Final in /pbj-core/hiero-dependency-versions#812
anthony-swirldslabs merged 1 commit intomainfrom
dependabot/gradle/pbj-core/hiero-dependency-versions/io.netty-netty-bom-4.2.13.Final

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github May 5, 2026

Bumps io.netty:netty-bom from 4.2.12.Final to 4.2.13.Final.

Release notes

Sourced from io.netty:netty-bom's releases.

netty-4.2.13.Final

CVEs Fixed

  • CVE-2026-42586 (netty-codec-redis)
  • CVE-2026-42578 (netty-handler-proxy)
  • CVE-2026-42577 (netty-transport-native-epoll)
  • CVE-2026-42587 (netty-codec-http, netty-codec-http2)
  • CVE-2026-41417 (netty-codec-http)
  • CVE-2026-42581 (netty-codec-http)
  • CVE-2026-42580 (netty-codec-http)
  • CVE-2026-42585 (netty-codec-http)
  • CVE-2026-42579 (netty-codec-dns)
  • CVE-2026-42582 (netty-codec-http3)
  • CVE-2026-42583 (netty-codec, netty-codec-compression)
  • CVE-2026-42584 (netty-codec-http)
  • CVE-2026-XXXXX (netty-codec-mqtt)

What's Changed

... (truncated)

Commits
  • b3844c8 [maven-release-plugin] prepare release netty-4.2.13.Final
  • 82f47fa Merge commit from fork
  • ada0999 Merge commit from fork
  • b4051e2 Fix BrotliDecoder not forwarding all decompressed chunks
  • 67207c1 Merge commit from fork
  • 541ca7c Merge commit from fork
  • 943edb3 Fix codec-dns tests
  • 6459a28 Merge commit from fork
  • b4ba61b Fix checkstyle in HttpObjectDecoder
  • 977661f Merge commit from fork
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [io.netty:netty-bom](https://github.com/netty/netty) from 4.2.12.Final to 4.2.13.Final.
- [Release notes](https://github.com/netty/netty/releases)
- [Commits](netty/netty@netty-4.2.12.Final...netty-4.2.13.Final)

---
updated-dependencies:
- dependency-name: io.netty:netty-bom
  dependency-version: 4.2.13.Final
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels May 5, 2026
@dependabot dependabot Bot requested review from a team as code owners May 5, 2026 11:54
@dependabot dependabot Bot requested a review from rbarker-dev May 5, 2026 11:54
@github-actions
Copy link
Copy Markdown

github-actions Bot commented May 5, 2026

JUnit Test Report

    81 files  ±0      81 suites  ±0   3m 15s ⏱️ -1s
 1 519 tests ±0   1 515 ✅ ±0   4 💤 ±0  0 ❌ ±0 
10 407 runs  ±0  10 379 ✅ ±0  28 💤 ±0  0 ❌ ±0 

Results for commit 1db15a1. ± Comparison against base commit b629795.

@github-actions
Copy link
Copy Markdown

github-actions Bot commented May 5, 2026

Integration Test Report

    419 files  ±0      419 suites  ±0   14m 16s ⏱️ - 13m 38s
114 982 tests ±0  114 982 ✅ ±0  0 💤 ±0  0 ❌ ±0 
115 224 runs  ±0  115 224 ✅ ±0  0 💤 ±0  0 ❌ ±0 

Results for commit 1db15a1. ± Comparison against base commit b629795.

This pull request removes 3 and adds 3 tests. Note that renamed tests count towards both.
com.hedera.pbj.integration.test.ParserNeverWrapsTest ‑ [1] com.hedera.pbj.integration.test.ParserNeverWrapsTest$$Lambda/0x0000000009b935f0@2a8f10c8
com.hedera.pbj.integration.test.ParserNeverWrapsTest ‑ [2] com.hedera.pbj.integration.test.ParserNeverWrapsTest$$Lambda/0x0000000009b93838@61a537ae
com.hedera.pbj.integration.test.ParserNeverWrapsTest ‑ [3] com.hedera.pbj.integration.test.ParserNeverWrapsTest$$Lambda/0x0000000009b93a80@376e7549
com.hedera.pbj.integration.test.ParserNeverWrapsTest ‑ [1] com.hedera.pbj.integration.test.ParserNeverWrapsTest$$Lambda/0x0000000035c79400@30b0b409
com.hedera.pbj.integration.test.ParserNeverWrapsTest ‑ [2] com.hedera.pbj.integration.test.ParserNeverWrapsTest$$Lambda/0x0000000035c79648@183404bd
com.hedera.pbj.integration.test.ParserNeverWrapsTest ‑ [3] com.hedera.pbj.integration.test.ParserNeverWrapsTest$$Lambda/0x0000000035c79890@2955bb62

@anthony-swirldslabs anthony-swirldslabs merged commit 5b55d5d into main May 5, 2026
30 checks passed
@anthony-swirldslabs anthony-swirldslabs deleted the dependabot/gradle/pbj-core/hiero-dependency-versions/io.netty-netty-bom-4.2.13.Final branch May 5, 2026 17:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update Java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants