Skip to content

Bump org.springframework.security:spring-security-bom from 6.5.10 to 6.5.11#1540

Merged
github-actions[bot] merged 1 commit into
4.0.xfrom
dependabot/gradle/4.0.x/org.springframework.security-spring-security-bom-6.5.11
Jun 10, 2026
Merged

Bump org.springframework.security:spring-security-bom from 6.5.10 to 6.5.11#1540
github-actions[bot] merged 1 commit into
4.0.xfrom
dependabot/gradle/4.0.x/org.springframework.security-spring-security-bom-6.5.11

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 10, 2026

Copy link
Copy Markdown
Contributor

Bumps org.springframework.security:spring-security-bom from 6.5.10 to 6.5.11.

Release notes

Sourced from org.springframework.security:spring-security-bom's releases.

6.5.11

🪲 Bug Fixes

  • FormPostRedirectStrategy should not emit percent-encoded values into hidden form inputs #19136

🔨 Dependency Upgrades

  • Bump antora from 3.2.0-alpha.11 to 3.2.0-alpha.12 in /docs #19185
  • Bump ch.qos.logback:logback-classic from 1.5.32 to 1.5.34 #19299
  • Bump com.fasterxml.jackson:jackson-bom from 2.18.6 to 2.18.7 #19129
  • Bump com.fasterxml.jackson:jackson-bom from 2.18.7 to 2.18.8 #19297
  • Bump gradle-wrapper from 8.14.4 to 8.14.5 #19159
  • Bump org-bouncycastle from 1.80 to 1.80.2 #19204
  • Bump org.apache.maven:maven-resolver-provider from 3.9.15 to 3.9.16 #19205
  • Bump org.hibernate.orm:hibernate-core from 6.6.49.Final to 6.6.50.Final #19150
  • Bump org.hibernate.orm:hibernate-core from 6.6.50.Final to 6.6.51.Final #19213
  • Bump org.hibernate.orm:hibernate-core from 6.6.51.Final to 6.6.53.Final #19300
  • Bump org.slf4j:slf4j-api from 2.0.17 to 2.0.18 #19173
  • Bump org.springframework:spring-framework-bom from 6.2.18 to 6.2.19 #19293
  • Bump spring-io/spring-gradle-build-action from 2.0.5 to 2.0.6 #19124
  • Bump spring-io/spring-release-actions from 0.0.4 to 0.0.5 #19183
  • Update micrometer-bom to 1.15.12 #19302
  • Update to Micrometer 1.15.11 #19224
  • Update to reactor-bom 2024.0.18 #19301

🔩 Build Updates

Commits
  • 73b0777 Release 6.5.11
  • fd5dae5 Sync branch '6.5.x'
  • 700a453 Bump ch.qos.logback:logback-classic from 1.5.32 to 1.5.34
  • 3a394c6 Update micrometer-bom to 1.15.12
  • 79f9bec Update to reactor-bom 2024.0.18
  • 5b01936 Bump org.hibernate.orm:hibernate-core from 6.6.51.Final to 6.6.53.Final
  • f9b4afd Bump com.fasterxml.jackson:jackson-bom from 2.18.7 to 2.18.8
  • f325ddb Bump org.springframework:spring-framework-bom from 6.2.18 to 6.2.19
  • 4adfdf6 Bump org.apache.maven:maven-resolver-provider from 3.9.15 to 3.9.16
  • e91b81a Bump org-bouncycastle from 1.80 to 1.80.2
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [org.springframework.security:spring-security-bom](https://github.com/spring-projects/spring-security) from 6.5.10 to 6.5.11.
- [Release notes](https://github.com/spring-projects/spring-security/releases)
- [Changelog](https://github.com/spring-projects/spring-security/blob/main/RELEASE.adoc)
- [Commits](spring-projects/spring-security@6.5.10...6.5.11)

---
updated-dependencies:
- dependency-name: org.springframework.security:spring-security-bom
  dependency-version: 6.5.11
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added this to the 4.0.x milestone Jun 10, 2026
@github-actions github-actions Bot modified the milestones: 4.0.x, 4.0.5 Jun 10, 2026
@github-actions github-actions Bot enabled auto-merge (rebase) June 10, 2026 03:45
@github-actions github-actions Bot merged commit 4ec84de into 4.0.x Jun 10, 2026
4 checks passed
@dependabot dependabot Bot deleted the dependabot/gradle/4.0.x/org.springframework.security-spring-security-bom-6.5.11 branch June 10, 2026 03:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants