Skip to content

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Oct 16, 2025

Bumps org.sonarsource.scanner.gradle:sonarqube-gradle-plugin from 6.3.1.5724 to 7.0.0.6105.

Release notes

Sourced from org.sonarsource.scanner.gradle:sonarqube-gradle-plugin's releases.

7.0.0.6105

Release notes - Sonar Scanner for Gradle - 7.0

Announcement at community.sonarsource.com

Bug

SCANGRADLE-246 "sonar.java.test.libraries" classpath has a random order

SCANGRADLE-247 Classpath libraries should not be resolved across projects at configuration time

Task

SCANGRADLE-242 Update README.md with copy from Product Marketing

SCANGRADLE-243 Add Gradle 9.0.0 to ITs

SCANGRADLE-251 Create GitHub workflow to bump development iteration

SCANGRADLE-253 Update verification metadata with scanner 6.3.1

SCANGRADLE-254 Update the wrapper to Gradle 8.14.3

SCANGRADLE-255 Skip metadata verification when downloading sources and javadoc artifacts in the IDE

SCANGRADLE-258 Remove .gitattributes that introduce more problems than solution

SCANGRADLE-259 Exclude tests and integration tests projects from SCA analysis

SCANGRADLE-262 Fix FunctionalTests with Windows paths

SCANGRADLE-264 Add Gradle sources to verification metadata

SCANGRADLE-266 Serialize project name as part of project solution

SCANGRADLE-267 Update releasability status to v3

SCANGRADLE-269 Fix quality flaws in PrepareNextIteration GHA

SCANGRADLE-270 Prepare next development iteration 7.0-SNASPSHOT

SCANGRADLE-271 Compute correct property key for libraries properties

SCANGRADLE-276 Upgrade commons io to version 2.20.0

SCANGRADLE-277 Recover classpaths through source sets

SCANGRADLE-278 Delete mend_scan_task

SCANGRADLE-279 Resolve classpath at execution time

... (truncated)

Commits
  • f911681 SCANGRADLE-289 Upgrade artifactory plugin to version 5.2.5 (#375)
  • b6f988e SCANGRADLE-288 Explicitly make artifactory task depend on signing task (#374)
  • 1e345b8 SCANGRADLE-287 Add Gradle 9.1 to the ITs (#373)
  • f769e93 SCANGRADLE-284 Move resolver task implementations to base package (#371)
  • 04eff2f SCANGRADLE-283 Add protection to avoid accessing getProject when config cache...
  • 8476e26 SCANGRADLE-276 Upgrade commons io to version 2.20.0 (#361)
  • 246d40c SCANGRADLE-281 Add task description and group to SonarResolverTask (#366)
  • e2ec26e SCANGRADLE-278 Delete mend_scan_task (#363)
  • de1fe38 SCANGRADLE-240 Wait for the sonarcloud compute engine to finish (#360)
  • 7122877 SCANGRADLE-279 Revert directly using getExtensions() from SonarResolverTask (...
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot added this to the 4.0.x milestone Oct 16, 2025
@jzheaux jzheaux modified the milestones: 4.0.x, 4.0.0-RC1 Oct 16, 2025
@jzheaux jzheaux self-assigned this Oct 16, 2025
@dependabot dependabot bot force-pushed the dependabot/gradle/main/org.sonarsource.scanner.gradle-sonarqube-gradle-plugin-7.0.0.6105 branch from 51150be to 63991ad Compare October 16, 2025 15:15
Bumps [org.sonarsource.scanner.gradle:sonarqube-gradle-plugin](https://github.com/SonarSource/sonar-scanner-gradle) from 6.3.1.5724 to 7.0.0.6105.
- [Release notes](https://github.com/SonarSource/sonar-scanner-gradle/releases)
- [Commits](SonarSource/sonar-scanner-gradle@6.3.1.5724...7.0.0.6105)

---
updated-dependencies:
- dependency-name: org.sonarsource.scanner.gradle:sonarqube-gradle-plugin
  dependency-version: 7.0.0.6105
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/gradle/main/org.sonarsource.scanner.gradle-sonarqube-gradle-plugin-7.0.0.6105 branch from 63991ad to 6e53d7a Compare October 16, 2025 15:16
@jzheaux jzheaux merged commit 14ce63b into main Oct 16, 2025
3 checks passed
@dependabot dependabot bot deleted the dependabot/gradle/main/org.sonarsource.scanner.gradle-sonarqube-gradle-plugin-7.0.0.6105 branch October 16, 2025 15:21
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant