Bump the dotnet-dependencies group with 11 updates - #234
Merged
Conversation
Bumps Meziantou.Analyzer from 3.0.142 to 3.0.164 Bumps Microsoft.EntityFrameworkCore.SqlServer from 9.0.18 to 9.0.19 Bumps Microsoft.Extensions.DependencyInjection.Abstractions from 10.0.10 to 10.0.11 Bumps Microsoft.Extensions.Hosting from 10.0.10 to 10.0.11 Bumps Microsoft.Extensions.Logging.Abstractions from 10.0.10 to 10.0.11 Bumps Microsoft.SourceLink.GitHub from 10.0.301 to 10.0.400 Bumps Roslynator.Analyzers from 4.16.0 to 4.16.1 Bumps System.Configuration.ConfigurationManager from 10.0.10 to 10.0.11 Bumps Testcontainers.MsSql from 4.13.0 to 4.14.0 Bumps Testcontainers.MySql from 4.13.0 to 4.14.0 Bumps Testcontainers.PostgreSql from 4.13.0 to 4.14.0 --- updated-dependencies: - dependency-name: Meziantou.Analyzer dependency-version: 3.0.164 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dotnet-dependencies - dependency-name: Microsoft.EntityFrameworkCore.SqlServer dependency-version: 9.0.19 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dotnet-dependencies - dependency-name: Microsoft.Extensions.DependencyInjection.Abstractions dependency-version: 10.0.11 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dotnet-dependencies - dependency-name: Microsoft.Extensions.Hosting dependency-version: 10.0.11 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dotnet-dependencies - dependency-name: Microsoft.Extensions.Logging.Abstractions dependency-version: 10.0.11 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dotnet-dependencies - dependency-name: Microsoft.SourceLink.GitHub dependency-version: 10.0.400 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dotnet-dependencies - dependency-name: Roslynator.Analyzers dependency-version: 4.16.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dotnet-dependencies - dependency-name: System.Configuration.ConfigurationManager dependency-version: 10.0.11 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dotnet-dependencies - dependency-name: Testcontainers.MsSql dependency-version: 4.14.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dotnet-dependencies - dependency-name: Testcontainers.MsSql dependency-version: 4.14.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dotnet-dependencies - dependency-name: Testcontainers.MsSql dependency-version: 4.14.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dotnet-dependencies - dependency-name: Testcontainers.MySql dependency-version: 4.14.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dotnet-dependencies - dependency-name: Testcontainers.PostgreSql dependency-version: 4.14.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dotnet-dependencies - dependency-name: Testcontainers.PostgreSql dependency-version: 4.14.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dotnet-dependencies - dependency-name: Testcontainers.PostgreSql dependency-version: 4.14.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dotnet-dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
2 of 3 tasks
Chris-Wolfgang
deleted the
dependabot/nuget/benchmarks/Wolfgang.AuditTrail.EntityFrameworkCore.Benchmarks/dotnet-dependencies-7232e83b89
branch
August 20, 2026 23:32
Chris-Wolfgang
added a commit
that referenced
this pull request
Aug 22, 2026
…Contain (MA0002) Stage 2 on #235 caught seven new MA0002 errors after #234 bumped Meziantou.Analyzer 3.0.142 → 3.0.164. The newer analyzer flags xunit Assert.Contains / DoesNotContain over IEnumerable<string> and Assert.NotEqual over two strings as needing an explicit IEqualityComparer<string>, per the rule's `use-comparer-that-controls-equality` guidance. Pass StringComparer.Ordinal to each flagged call — matches how xunit already resolves the parameterless overload for strings (ordinal via generic Equals), so no behavior change: - AuditCaptureBranchTests.cs:93,94 - AuditingDbContextSaveChangesTests.cs:32 - PipeDelimitedEntityKeySerializerTests.cs:34,64,82,83 All 22 affected tests still pass on net10.0 locally. Co-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Updated Meziantou.Analyzer from 3.0.142 to 3.0.164.
Release notes
Sourced from Meziantou.Analyzer's releases.
3.0.164
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.164
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.163...3.0.164
3.0.163
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.163
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.162...3.0.163
3.0.162
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.162
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.161...3.0.162
3.0.161
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.161
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.159...3.0.161
3.0.159
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.159
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.158...3.0.159
3.0.158
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.158
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.157...3.0.158
3.0.157
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.157
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.156...3.0.157
3.0.156
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.156
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.155...3.0.156
3.0.155
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.155
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.154...3.0.155
3.0.154
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.154
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.153...3.0.154
3.0.153
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.153
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.152...3.0.153
3.0.152
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.152
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.151...3.0.152
3.0.151
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.151
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.150...3.0.151
3.0.150
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.150
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.149...3.0.150
3.0.149
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.149
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.148...3.0.149
3.0.148
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.148
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.147...3.0.148
3.0.147
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.147
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.146...3.0.147
3.0.146
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.146
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.145...3.0.146
3.0.145
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.145
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.144...3.0.145
3.0.144
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.144
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.143...3.0.144
3.0.143
NuGet package: https://www.nuget.org/packages/Meziantou.Analyzer/3.0.143
What's Changed
Full Changelog: meziantou/Meziantou.Analyzer@3.0.142...3.0.143
Commits viewable in compare view.
Updated Microsoft.EntityFrameworkCore.SqlServer from 9.0.18 to 9.0.19.
Release notes
Sourced from Microsoft.EntityFrameworkCore.SqlServer's releases.
9.0.19
Release
What's Changed
Full Changelog: dotnet/efcore@v9.0.18...v9.0.19
Commits viewable in compare view.
Updated Microsoft.Extensions.DependencyInjection.Abstractions from 10.0.10 to 10.0.11.
Release notes
Sourced from Microsoft.Extensions.DependencyInjection.Abstractions's releases.
No release notes found for this version range.
Commits viewable in compare view.
Updated Microsoft.Extensions.Hosting from 10.0.10 to 10.0.11.
Release notes
Sourced from Microsoft.Extensions.Hosting's releases.
No release notes found for this version range.
Commits viewable in compare view.
Updated Microsoft.Extensions.Logging.Abstractions from 10.0.10 to 10.0.11.
Release notes
Sourced from Microsoft.Extensions.Logging.Abstractions's releases.
No release notes found for this version range.
Commits viewable in compare view.
Updated Microsoft.SourceLink.GitHub from 10.0.301 to 10.0.400.
Release notes
Sourced from Microsoft.SourceLink.GitHub's releases.
10.0.400
You can build .NET 10.0 from the repository by cloning the release tag
v10.0.400and following the build instructions in the main README.md.Alternatively, you can build from the sources attached to this release directly.
More information on this process can be found in the dotnet/dotnet repository.
Attached are PGP signatures for the GitHub generated tarball and zipball. You can find the public key at https://dot.net/release-key-2023
10.0.303
You can build .NET 10.0 from the repository by cloning the release tag
v10.0.303and following the build instructions in the main README.md.Alternatively, you can build from the sources attached to this release directly.
More information on this process can be found in the dotnet/dotnet repository.
Attached are PGP signatures for the GitHub generated tarball and zipball. You can find the public key at https://dot.net/release-key-2023
10.0.302
You can build .NET 10.0 from the repository by cloning the release tag
v10.0.302and following the build instructions in the main README.md.Alternatively, you can build from the sources attached to this release directly.
More information on this process can be found in the dotnet/dotnet repository.
Attached are PGP signatures for the GitHub generated tarball and zipball. You can find the public key at https://dot.net/release-key-2023
Commits viewable in compare view.
Updated Roslynator.Analyzers from 4.16.0 to 4.16.1.
Release notes
Sourced from Roslynator.Analyzers's releases.
4.16.1
Fixed
inforref structparameters (#1725) (PR)omit_when_single_lineon multi-line object/collection initializers (#1439) (PR)async voidmethods withoutAsyncsuffix (PR)whenfilter (PR)CancellationTokenin sync methods returningTask(PR)generate-docto omit internal interfaces from type declarations and the Implements section (PR)Commits viewable in compare view.
Updated System.Configuration.ConfigurationManager from 10.0.10 to 10.0.11.
Release notes
Sourced from System.Configuration.ConfigurationManager's releases.
No release notes found for this version range.
Commits viewable in compare view.
Updated Testcontainers.MsSql from 4.13.0 to 4.14.0.
Release notes
Sourced from Testcontainers.MsSql's releases.
4.14.0
What's Changed
I published this version because several developers asked for a release addressing the SSH.NET vulnerability. As an interim fix, you can also bump the transitive dependency, which should work fine.
Unfortunately, I had to run the release CI pipeline twice (1, 2). The change #1725 introduced a regression that caused the pipeline to attempt to publish the Cake build project, which correctly failed (partially published).
The NuGet packages for this release have been attested for supply chain security using
actions/attest. This confirms the integrity and provenance of the artifacts and helps ensure they can be trusted: #40693051.🚀 Features
🐛 Bug Fixes
🧹 Housekeeping
📦 Dependency Updates
Commits viewable in compare view.
Updated Testcontainers.MySql from 4.13.0 to 4.14.0.
Release notes
Sourced from Testcontainers.MySql's releases.
4.14.0
What's Changed
I published this version because several developers asked for a release addressing the SSH.NET vulnerability. As an interim fix, you can also bump the transitive dependency, which should work fine.
Unfortunately, I had to run the release CI pipeline twice (1, 2). The change #1725 introduced a regression that caused the pipeline to attempt to publish the Cake build project, which correctly failed (partially published).
The NuGet packages for this release have been attested for supply chain security using
actions/attest. This confirms the integrity and provenance of the artifacts and helps ensure they can be trusted: #40693051.🚀 Features
🐛 Bug Fixes
🧹 Housekeeping
📦 Dependency Updates
Commits viewable in compare view.
Updated Testcontainers.PostgreSql from 4.13.0 to 4.14.0.
Release notes
Sourced from Testcontainers.PostgreSql's releases.
4.14.0
What's Changed
I published this version because several developers asked for a release addressing the SSH.NET vulnerability. As an interim fix, you can also bump the transitive dependency, which should work fine.
Unfortunately, I had to run the release CI pipeline twice (1, 2). The change #1725 introduced a regression that caused the pipeline to attempt to publish the Cake build project, which correctly failed (partially published).
The NuGet packages for this release have been attested for supply chain security using
actions/attest. This confirms the integrity and provenance of the artifacts and helps ensure they can be trusted: #40693051.🚀 Features
🐛 Bug Fixes
🧹 Housekeeping
📦 Dependency Updates
Commits viewable in compare view.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions