Skip to content

Bump io.helidon:helidon-bom from 4.5.1 to 4.5.2 - #17

Merged
mehmandarov merged 1 commit into
mainfrom
dependabot/maven/io.helidon-helidon-bom-4.5.2
Aug 10, 2026
Merged

Bump io.helidon:helidon-bom from 4.5.1 to 4.5.2#17
mehmandarov merged 1 commit into
mainfrom
dependabot/maven/io.helidon-helidon-bom-4.5.2

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 10, 2026

Copy link
Copy Markdown
Contributor

Bumps io.helidon:helidon-bom from 4.5.1 to 4.5.2.

Release notes

Sourced from io.helidon:helidon-bom's releases.

4.5.2

This release of Helidon contains important bugfixes and is recommended for all users of Helidon 4. This release is API compatible with Helidon 4.4.

A minimum of Java 21 is required to use Helidon 4. Java 25 is recommended.

CHANGES

For a list of changes please see the Helidon 4.5.2 CHANGELOG.

Changelog

Sourced from io.helidon:helidon-bom's changelog.

4.5.2

This patch release of Helidon contains important bug fixes and is strongly recommended for all users of Helidon 4.

A minimum of Java 21 is required to use Helidon 4. Java 25 is recommended.

NOTABLE CHANGES

The OIDC security provider has been updated to support compression of token cookies. This is enabled by default for server-type=idcs and disabled by default for other server types. For more information see PR 12218.

CHANGES

  • Metrics: Support OpenTelemetry HTTP server metrics semantic conventions from MP 12070
  • Security: OIDC cookie compression 12218
  • Security: Preserve OIDC authorization and logout endpoint query parameters 12207
  • Security: Use request scheme for WebClient security transport 12203
  • Tests: Use stable Eclipse URLs for Jakarta EE TCK downloads 12191
Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [io.helidon:helidon-bom](https://github.com/oracle/helidon) from 4.5.1 to 4.5.2.
- [Release notes](https://github.com/oracle/helidon/releases)
- [Changelog](https://github.com/helidon-io/helidon/blob/4.5.2/CHANGELOG.md)
- [Commits](helidon-io/helidon@4.5.1...4.5.2)

---
updated-dependencies:
- dependency-name: io.helidon:helidon-bom
  dependency-version: 4.5.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels Aug 10, 2026
@mehmandarov
mehmandarov merged commit 537b699 into main Aug 10, 2026
1 check passed
@dependabot
dependabot Bot deleted the dependabot/maven/io.helidon-helidon-bom-4.5.2 branch August 10, 2026 21:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant