Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
32.1.0
->33.0.0
32.1.0
->33.0.0
32.1.0
->33.0.0
32.1.0
->33.0.0
Release Notes
oss-review-toolkit/ort (org.ossreviewtoolkit:reporter)
v33.0.0
Compare Source
What's Changed
Breaking Changes 🛠
60ef7c9
feat(advisor)!: ReworkVulnerabilityReference
semantics01ca824
refactor(model)!: Generalize the scoring system mapping6015cc9
refactor(yarn2)!: InlineYARN_PATH_PROPERTY_NAME
630a8db
refactor(yarn2)!: Move someval
s andfun
s outside of the companionBug Fixes 🐞
2ac103a
bazel:MODULE.bazel
files from a local registry should be ignoredcb7c914
model: sslmode typo in reference.ymle8e9b83
osv: Improve error handling a bit508dbfc
spdx-utils: Support reading dashed reference category namesNew Features 🎉
24656e2
model: Add underscore variants to CVSS names95cba40
vulnerable-code: Add scoring elements to the data modelBuild 🐘 & CI ⚙️
e833172
gradle: Do not set a globalduplicatesStrategy
anymore9928629
gradle: Replace custom code with thereproducible-builds
pluginc6523c4
github: Do not configure a custom linter version anymore9f7b625
renovate: Disable NuGet package manager updatesChores 🔧
61eb5c1
evaluator: Remove a few named lambda variables to simplify coded29db08
gradle-plugin: Explicitly set aduplicatesStrategy
ce409f9
helper-cli: Consistently make commandsinternal
a577470
helper-cli: Consistently name thehelp
parameter explicitlybb0654c
node: Add a couple of links to upstream documentationc725523
node: Slightly simplify Yarn code to get package detailsf675a32
osv: Improve mapping from OSV to ORT vulnerability references275c2c1
yarn2: Drop an obsolote TODO commentDependency Updates 🚀
a488e05
Update clikt to version 5.0.0 and Mordant to version 3.0.00b24c91
Update dependency-analysis-gradle-plugin to version 2.0.20c10c2f
Update kotlinx-coroutines to version 1.9.0280d8fb
update dependency org.semver4j:semver4j to v5.4.0521bd69
update dependency software.amazon.awssdk:s3 to v2.28.0fd28fcf
update github/codeql-action digest to8214744
21a3289
update gradle/actions digest tod156388
12c8019
update jetbrains/qodana-action action to v2024.1.10c750cfd
update jetbrains/qodana-action action to v2024.1.110c540bd
update jetbrains/qodana-action action to v2024.2.2Documentation 📖
8a1e42a
gradle: Improve the wording of a code comment1b15bfa
yarn2: Fix-up a couple of broken KDoc referencesRefactorings 🚜
5a303ad
helper-cli: Introduce an abstractOrtHelperCommand
based1fa1f2
model: Extract vulnerability rating code to a function8b45010
npm: Use a simpler return type for two functions5bc030e
yarn2: ExtractisCorepackEnabled()
e2bca6b
yarn2: InlineDEFAULT_EXECUTABLE_NAME
da6cc49
yarn2: Move a couple of functions / classes to the file level12c99e1
yarn2: Move some sanity logic intogetYarnExecutable()
5d0f002
yarn2: Reduce the scope of the version variable098ef99
yarn2: SimplifycleanYarn2VersionString()
9db096c
yarn2: Use a shorter name forversionFromLocator
Tests ✅
c17e5c3
bazel: Update expected results52cb0e0
conan: Split out the lockfile case into a dedicated testa9e964e
conan: Update expected results6123c13
node: Consistently place Npm projects in thenpm
directory06fe673
node: Drop theREADME.md
for Npm test assetsc67d544
node: Improve a test case nameb0bd418
node: MergeNpmVersionUrlFunTest
intoNpmFunTest
8cbbb57
node: Move Yarn test projects into a dedicatedyarn
directory254a64a
node: Slightly improve a project name and metadata49b65dd
osv: Update expected results6e181ef
bc819cc
osv: Update expected resultsConfiguration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about these updates again.
This PR was generated by Mend Renovate. View the repository job log.