Skip to content

Bump the nuget group with 10 updates - #187

Merged
HandyS11 merged 2 commits into
developfrom
dependabot/nuget/nuget-58d6c791ab
Aug 25, 2026
Merged

Bump the nuget group with 10 updates#187
HandyS11 merged 2 commits into
developfrom
dependabot/nuget/nuget-58d6c791ab

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 25, 2026

Copy link
Copy Markdown
Contributor

Updated Microsoft.CodeAnalysis.CSharp from 5.6.0 to 5.9.0.

Release notes

Sourced from Microsoft.CodeAnalysis.CSharp's releases.

No release notes found for this version range.

Commits viewable in compare view.

Updated Microsoft.CodeAnalysis.NetAnalyzers from 10.0.302 to 10.0.400.

Release notes

Sourced from Microsoft.CodeAnalysis.NetAnalyzers's releases.

10.0.400

You can build .NET 10.0 from the repository by cloning the release tag v10.0.400 and following the build instructions in the main README.md.

Alternatively, you can build from the sources attached to this release directly.
More information on this process can be found in the dotnet/dotnet repository.

Attached are PGP signatures for the GitHub generated tarball and zipball. You can find the public key at https://dot.net/release-key-2023

10.0.303

You can build .NET 10.0 from the repository by cloning the release tag v10.0.303 and following the build instructions in the main README.md.

Alternatively, you can build from the sources attached to this release directly.
More information on this process can be found in the dotnet/dotnet repository.

Attached are PGP signatures for the GitHub generated tarball and zipball. You can find the public key at https://dot.net/release-key-2023

Commits viewable in compare view.

Updated Microsoft.EntityFrameworkCore from 10.0.10 to 10.0.11.

Release notes

Sourced from Microsoft.EntityFrameworkCore's releases.

No release notes found for this version range.

Commits viewable in compare view.

Updated Microsoft.Extensions.DependencyInjection from 10.0.10 to 10.0.11.

Release notes

Sourced from Microsoft.Extensions.DependencyInjection's releases.

No release notes found for this version range.

Commits viewable in compare view.

Updated Microsoft.Extensions.Logging.Abstractions from 10.0.10 to 10.0.11.

Release notes

Sourced from Microsoft.Extensions.Logging.Abstractions's releases.

No release notes found for this version range.

Commits viewable in compare view.

Updated Microsoft.NET.Test.Sdk from 18.8.1 to 18.9.0.

Release notes

Sourced from Microsoft.NET.Test.Sdk's releases.

18.9.0

What's Changed

New Contributors

Full Changelog: microsoft/vstest@v18.8.0...v18.9.0

Commits viewable in compare view.

Updated Roslynator.Analyzers from 4.16.0 to 5.0.0.

Release notes

Sourced from Roslynator.Analyzers's releases.

5.0.0

Added

  • Add roslyn5.0 NuGet package flavor (analyzers/dotnet/roslyn5.0/cs) (PR)

Breaking

  • Enable nullable annotations on Roslynator.Common and Roslynator.Workspaces.Common (#​1817)
    • Source-breaking for projects that compile against this surface with nullable reference types enabled.
  • [Testing Framework] Lower Roslyn dependency of testing packages to 3.8.0 so that the Roslyn version is determined by the consumer's own Microsoft.CodeAnalysis.* reference instead of being forced to a fixed version (PR)
    • Roslynator.Testing.Common, Roslynator.Testing.CSharp, Roslynator.Testing.CSharp.Xunit and Roslynator.Testing.CSharp.MSTest now depend on Microsoft.CodeAnalysis.* >= 3.8.0 (previously >= 4.14.0).
    • Roslynator.Testing.Common no longer depends on Roslynator.Core.
    • Action required: a test project that previously relied on the testing framework to pull in Roslyn 4.14.0 should now add its own reference, e.g. <PackageReference Include="Microsoft.CodeAnalysis.CSharp.Workspaces" Version="4.14.0" />. The chosen version raises the maximum C# language version the parser can accept; test sources still parse at CSharpParseOptions.Default unless you set parse options / LanguageVersion (for example LanguageVersion.Latest).
    • Action required: a test project that used Roslynator.Core types via the old transitive dependency must now add an explicit Roslynator.Core package reference.

Changed

  • Bump Roslyn to 5.0.0 (PR)
    • CLI targets Roslyn 5.0.0
    • Solution build and tests use Roslyn 5.0.0 by default (the testing packages floor at 3.8.0; see Breaking)
  • Replace Visual Studio 2022 extension with Roslynator 2026 for Visual Studio 2026 ([18.0,19.0)) (PR)
    • Extension ships refactorings and compiler diagnostic code fixes; analyzers via NuGet
    • Roslynator 2022 remains available as the last 4.x VSIX
  • Visual Studio Code extension ships refactorings and compiler diagnostic code fixes only (PR)
    • Analyzers require Roslynator NuGet packages
    • Requires OmniSharp with Roslyn 5.x (C# extension 1.39.15+; set dotnet.server.useOmnisharp to true)

Removed

  • Remove leftover implementations of obsolete analyzers (XML descriptors remain). Enable the successor rules instead: RCS0014 → RCS0061, RCS0022 → RCS0021, RCS0038 → RCS0015, RCS0043 → RCS0020, RCS0047 → RCS0053, RCS1008/RCS1009/RCS1010/RCS1012/RCS1176/RCS1177 → RCS1264, RCS1035 → RCS1260, RCS1036 → RCS0063, RCS1038/RCS1040/RCS1041/RCS1066/RCS1072/RCS1091/RCS1106 → RCS1259, RCS1063/RCS1064/RCS1065 → RCS1252, RCS1100/RCS1101 → RCS1253, RCS1237 → RCS1254.
  • Remove SyntaxInverter (Roslynator.CSharp.Workspaces). Use SyntaxLogicalInverter.
  • Remove unused obsolete DiagnosticCategories constants and make the type internal.
  • Remove unused ROS0001/ROS0002 diagnostic IDs.
  • Remove obsolete constructors/properties from the testing package (DiagnosticTestData, CompilerDiagnosticFixTestData, RefactoringTestData).
  • Remove legacy config keys roslynator.max_line_length, roslynator.prefix_field_identifier_with_underscore, and roslynator_suppress_unity_script_methods. Use roslynator_max_line_length, roslynator_prefix_field_identifier_with_underscore, and roslynator_unity_code_analysis.enabled.
  • [CLI] Remove obsolete command generate-doc-root. Use generate-doc --root-file-path instead.
  • Remove bundled analyzers from Visual Studio extension (PR)
  • Remove bundled analyzers from Visual Studio Code extension (PR)
    • Use Roslynator NuGet packages for diagnostics
  • Remove AnalyzersOptionsPage from Visual Studio extension (PR)
  • Drop support for Visual Studio 2022 VSIX (PR)
    • Pin last 4.x release (Roslynator 2022) or use NuGet packages on Visual Studio 2022

Fixed

  • Fix analyzers RCS1263 and RCS1139 for C# 14 extension block documentation (PR)

4.16.1

Fixed

  • Fix analyzer RCS1060 to not report a file that contains only multiple partial declarations of the same type (PR)
  • Fix analyzer RCS1231 to not suggest in for ref struct parameters (#​1725) (PR)
  • Fix analyzer RCS1260 false positive for omit_when_single_line on multi-line object/collection initializers (#​1439) (PR)
  • Fix analyzer RCS0036 to report blank lines between single-line declarations in records (PR)
  • Fix analyzer RCS1046 to report async void methods without Async suffix (PR)
  • Fix analyzer RCS1265 to not report catch clauses with a when filter (PR)
  • Fix analyzer RCS0034 for types with a primary constructor and multiple constraint clauses (PR)
  • Fix analyzer RCS1231 to not report CancellationToken in sync methods returning Task (PR)
  • [CLI] Fix GitLab output format to use relative paths, forward slashes, and 1-based line numbers (PR)
  • [CLI] Fix generate-doc to omit internal interfaces from type declarations and the Implements section (PR)

Commits viewable in compare view.

Updated Roslynator.Formatting.Analyzers from 4.16.0 to 5.0.0.

Release notes

Sourced from Roslynator.Formatting.Analyzers's releases.

5.0.0

Added

  • Add roslyn5.0 NuGet package flavor (analyzers/dotnet/roslyn5.0/cs) (PR)

Breaking

  • Enable nullable annotations on Roslynator.Common and Roslynator.Workspaces.Common (#​1817)
    • Source-breaking for projects that compile against this surface with nullable reference types enabled.
  • [Testing Framework] Lower Roslyn dependency of testing packages to 3.8.0 so that the Roslyn version is determined by the consumer's own Microsoft.CodeAnalysis.* reference instead of being forced to a fixed version (PR)
    • Roslynator.Testing.Common, Roslynator.Testing.CSharp, Roslynator.Testing.CSharp.Xunit and Roslynator.Testing.CSharp.MSTest now depend on Microsoft.CodeAnalysis.* >= 3.8.0 (previously >= 4.14.0).
    • Roslynator.Testing.Common no longer depends on Roslynator.Core.
    • Action required: a test project that previously relied on the testing framework to pull in Roslyn 4.14.0 should now add its own reference, e.g. <PackageReference Include="Microsoft.CodeAnalysis.CSharp.Workspaces" Version="4.14.0" />. The chosen version raises the maximum C# language version the parser can accept; test sources still parse at CSharpParseOptions.Default unless you set parse options / LanguageVersion (for example LanguageVersion.Latest).
    • Action required: a test project that used Roslynator.Core types via the old transitive dependency must now add an explicit Roslynator.Core package reference.

Changed

  • Bump Roslyn to 5.0.0 (PR)
    • CLI targets Roslyn 5.0.0
    • Solution build and tests use Roslyn 5.0.0 by default (the testing packages floor at 3.8.0; see Breaking)
  • Replace Visual Studio 2022 extension with Roslynator 2026 for Visual Studio 2026 ([18.0,19.0)) (PR)
    • Extension ships refactorings and compiler diagnostic code fixes; analyzers via NuGet
    • Roslynator 2022 remains available as the last 4.x VSIX
  • Visual Studio Code extension ships refactorings and compiler diagnostic code fixes only (PR)
    • Analyzers require Roslynator NuGet packages
    • Requires OmniSharp with Roslyn 5.x (C# extension 1.39.15+; set dotnet.server.useOmnisharp to true)

Removed

  • Remove leftover implementations of obsolete analyzers (XML descriptors remain). Enable the successor rules instead: RCS0014 → RCS0061, RCS0022 → RCS0021, RCS0038 → RCS0015, RCS0043 → RCS0020, RCS0047 → RCS0053, RCS1008/RCS1009/RCS1010/RCS1012/RCS1176/RCS1177 → RCS1264, RCS1035 → RCS1260, RCS1036 → RCS0063, RCS1038/RCS1040/RCS1041/RCS1066/RCS1072/RCS1091/RCS1106 → RCS1259, RCS1063/RCS1064/RCS1065 → RCS1252, RCS1100/RCS1101 → RCS1253, RCS1237 → RCS1254.
  • Remove SyntaxInverter (Roslynator.CSharp.Workspaces). Use SyntaxLogicalInverter.
  • Remove unused obsolete DiagnosticCategories constants and make the type internal.
  • Remove unused ROS0001/ROS0002 diagnostic IDs.
  • Remove obsolete constructors/properties from the testing package (DiagnosticTestData, CompilerDiagnosticFixTestData, RefactoringTestData).
  • Remove legacy config keys roslynator.max_line_length, roslynator.prefix_field_identifier_with_underscore, and roslynator_suppress_unity_script_methods. Use roslynator_max_line_length, roslynator_prefix_field_identifier_with_underscore, and roslynator_unity_code_analysis.enabled.
  • [CLI] Remove obsolete command generate-doc-root. Use generate-doc --root-file-path instead.
  • Remove bundled analyzers from Visual Studio extension (PR)
  • Remove bundled analyzers from Visual Studio Code extension (PR)
    • Use Roslynator NuGet packages for diagnostics
  • Remove AnalyzersOptionsPage from Visual Studio extension (PR)
  • Drop support for Visual Studio 2022 VSIX (PR)
    • Pin last 4.x release (Roslynator 2022) or use NuGet packages on Visual Studio 2022

Fixed

  • Fix analyzers RCS1263 and RCS1139 for C# 14 extension block documentation (PR)

4.16.1

Fixed

  • Fix analyzer RCS1060 to not report a file that contains only multiple partial declarations of the same type (PR)
  • Fix analyzer RCS1231 to not suggest in for ref struct parameters (#​1725) (PR)
  • Fix analyzer RCS1260 false positive for omit_when_single_line on multi-line object/collection initializers (#​1439) (PR)
  • Fix analyzer RCS0036 to report blank lines between single-line declarations in records (PR)
  • Fix analyzer RCS1046 to report async void methods without Async suffix (PR)
  • Fix analyzer RCS1265 to not report catch clauses with a when filter (PR)
  • Fix analyzer RCS0034 for types with a primary constructor and multiple constraint clauses (PR)
  • Fix analyzer RCS1231 to not report CancellationToken in sync methods returning Task (PR)
  • [CLI] Fix GitLab output format to use relative paths, forward slashes, and 1-based line numbers (PR)
  • [CLI] Fix generate-doc to omit internal interfaces from type declarations and the Implements section (PR)

Commits viewable in compare view.

Updated SonarAnalyzer.CSharp from 10.32.0.713 to 10.33.0.1635.

Release notes

Sourced from SonarAnalyzer.CSharp's releases.

10.33.0.1635

Release notes - .NET Analyzers - 10.33

Feature

NET-4312 Update RSPEC before 10.33 release
NET-4254 Implement rule S9129: "Include" and "ThenInclude" chains of reference navigations should be merged into a single "Include" call

False Positive

NET-1777 Fix S101 FP: Lower case character after number
NET-4245 Fix S107 FP: should not raise for parameters marked with dependency-injection attributes

Maintenance

NET-4184 Duplicate telemetry key exception when multiple projects report the same non-counter telemetry value

Commits viewable in compare view.

Updated xunit.runner.visualstudio from 3.1.5 to 4.0.0.

Release notes

Sourced from xunit.runner.visualstudio's releases.

4.0.0

Release notes: https://xunit.net/releases/visualstudio/4.0.0

4.0.0-pre.5

Release notes: https://xunit.net/releases/visualstudio/4.0.0-pre.5

4.0.0-pre.4

Release notes: https://xunit.net/releases/visualstudio/4.0.0-pre.4

4.0.0-pre.3

Release notes: https://xunit.net/releases/visualstudio/4.0.0-pre.3

Commits viewable in compare view.

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps Microsoft.CodeAnalysis.CSharp from 5.6.0 to 5.9.0
Bumps Microsoft.CodeAnalysis.NetAnalyzers from 10.0.302 to 10.0.400
Bumps Microsoft.EntityFrameworkCore from 10.0.10 to 10.0.11
Bumps Microsoft.Extensions.DependencyInjection from 10.0.10 to 10.0.11
Bumps Microsoft.Extensions.Logging.Abstractions from 10.0.10 to 10.0.11
Bumps Microsoft.NET.Test.Sdk from 18.8.1 to 18.9.0
Bumps Roslynator.Analyzers from 4.16.0 to 5.0.0
Bumps Roslynator.Formatting.Analyzers from 4.16.0 to 5.0.0
Bumps SonarAnalyzer.CSharp from 10.32.0.713 to 10.33.0.1635
Bumps xunit.runner.visualstudio from 3.1.5 to 4.0.0

---
updated-dependencies:
- dependency-name: Microsoft.CodeAnalysis.CSharp
  dependency-version: 5.9.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: nuget
- dependency-name: Microsoft.CodeAnalysis.NetAnalyzers
  dependency-version: 10.0.400
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: nuget
- dependency-name: Microsoft.EntityFrameworkCore
  dependency-version: 10.0.11
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: nuget
- dependency-name: Microsoft.Extensions.DependencyInjection
  dependency-version: 10.0.11
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: nuget
- dependency-name: Microsoft.Extensions.Logging.Abstractions
  dependency-version: 10.0.11
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: nuget
- dependency-name: Microsoft.NET.Test.Sdk
  dependency-version: 18.9.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: nuget
- dependency-name: Roslynator.Analyzers
  dependency-version: 5.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: nuget
- dependency-name: Roslynator.Formatting.Analyzers
  dependency-version: 5.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: nuget
- dependency-name: SonarAnalyzer.CSharp
  dependency-version: 10.33.0.1635
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: nuget
- dependency-name: xunit.runner.visualstudio
  dependency-version: 4.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: nuget
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added .NET Pull requests that update .NET code dependencies Pull requests that update a dependency file labels Aug 25, 2026
…n 5.9.0

The group bump moved Microsoft.CodeAnalysis.CSharp to 5.9.0 but left
Workspaces.MSBuild at 5.6.0, which pins Microsoft.CodeAnalysis.Common
to 5.6.0 and breaks restore with NU1107/NU1608.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
@HandyS11
HandyS11 merged commit d3cb311 into develop Aug 25, 2026
6 checks passed
@HandyS11
HandyS11 deleted the dependabot/nuget/nuget-58d6c791ab branch August 25, 2026 17:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file .NET Pull requests that update .NET code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant