Skip to content

Bump the dotnet-dependencies group with 9 updates#102

Closed
dependabot[bot] wants to merge 1 commit into
nextfrom
dependabot/nuget/demos/datalayer/shared/dotnet-dependencies-e84ae5e6df
Closed

Bump the dotnet-dependencies group with 9 updates#102
dependabot[bot] wants to merge 1 commit into
nextfrom
dependabot/nuget/demos/datalayer/shared/dotnet-dependencies-e84ae5e6df

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 6, 2026

Copy link
Copy Markdown
Contributor

Updated CloudNative.CloudEvents from 2.8.0 to 2.9.0.

Release notes

Sourced from CloudNative.CloudEvents's releases.

2.9.0

Changes since 2.8.0:

  • Add explicit .NET 10 target to all packages
  • Remove .NET Standard 2.1 target from all packages
  • Release CloudNative.CloudEvents.Kafka as 3.9.0, bumping the major
    version to reflect adopting a new major Confluence.Kafka version.
  • Changed CloudEvents.Amqp dependency from AMQPNetLite and
    AMQPNetLite.Serialization to just AMQPNetLite.Core
  • Performance improvements in both JSON packages
  • Dependency updates:
    • AMQPNetLite.Core: Effectively 2.4.11 => 2.5.3
    • Apache.Avro: 1.11.3 => 1.12.1
    • Confluent.Kafka: 1.93 => 2.14.2
    • Google.Protobuf: 3.27.3 => 3.35.1
    • MQTTnet: 4.3.6.1152 => 4.3.7.1207
    • Newtonsoft.Json: 13.0.3 => 13.0.4
  • Dependencies only for .NET Standard 2.0:
    • Microsoft.AspNetCore.Http: 2.1.34 => 2.3.11
    • System.Memory: 4.5.5 => 4.6.3
    • System.Text.Encodings.Web: 8.0.0 => 10.0.9
    • System.Text.Json: 8.0.4 => 10.0.9

Note on the removal of .NET Standard 2.1: we don't expect this to break users,
although it may mean additional dependencies due to falling back to .NET Standard 2.0.
Please file an issue if this causes problems for you, and we'll consider reinstating
the target.

Commits viewable in compare view.

Updated CloudNative.CloudEvents.AspNetCore from 2.8.0 to 2.9.0.

Release notes

Sourced from CloudNative.CloudEvents.AspNetCore's releases.

2.9.0

Changes since 2.8.0:

  • Add explicit .NET 10 target to all packages
  • Remove .NET Standard 2.1 target from all packages
  • Release CloudNative.CloudEvents.Kafka as 3.9.0, bumping the major
    version to reflect adopting a new major Confluence.Kafka version.
  • Changed CloudEvents.Amqp dependency from AMQPNetLite and
    AMQPNetLite.Serialization to just AMQPNetLite.Core
  • Performance improvements in both JSON packages
  • Dependency updates:
    • AMQPNetLite.Core: Effectively 2.4.11 => 2.5.3
    • Apache.Avro: 1.11.3 => 1.12.1
    • Confluent.Kafka: 1.93 => 2.14.2
    • Google.Protobuf: 3.27.3 => 3.35.1
    • MQTTnet: 4.3.6.1152 => 4.3.7.1207
    • Newtonsoft.Json: 13.0.3 => 13.0.4
  • Dependencies only for .NET Standard 2.0:
    • Microsoft.AspNetCore.Http: 2.1.34 => 2.3.11
    • System.Memory: 4.5.5 => 4.6.3
    • System.Text.Encodings.Web: 8.0.0 => 10.0.9
    • System.Text.Json: 8.0.4 => 10.0.9

Note on the removal of .NET Standard 2.1: we don't expect this to break users,
although it may mean additional dependencies due to falling back to .NET Standard 2.0.
Please file an issue if this causes problems for you, and we'll consider reinstating
the target.

Commits viewable in compare view.

Updated CloudNative.CloudEvents.SystemTextJson from 2.8.0 to 2.9.0.

Release notes

Sourced from CloudNative.CloudEvents.SystemTextJson's releases.

2.9.0

Changes since 2.8.0:

  • Add explicit .NET 10 target to all packages
  • Remove .NET Standard 2.1 target from all packages
  • Release CloudNative.CloudEvents.Kafka as 3.9.0, bumping the major
    version to reflect adopting a new major Confluence.Kafka version.
  • Changed CloudEvents.Amqp dependency from AMQPNetLite and
    AMQPNetLite.Serialization to just AMQPNetLite.Core
  • Performance improvements in both JSON packages
  • Dependency updates:
    • AMQPNetLite.Core: Effectively 2.4.11 => 2.5.3
    • Apache.Avro: 1.11.3 => 1.12.1
    • Confluent.Kafka: 1.93 => 2.14.2
    • Google.Protobuf: 3.27.3 => 3.35.1
    • MQTTnet: 4.3.6.1152 => 4.3.7.1207
    • Newtonsoft.Json: 13.0.3 => 13.0.4
  • Dependencies only for .NET Standard 2.0:
    • Microsoft.AspNetCore.Http: 2.1.34 => 2.3.11
    • System.Memory: 4.5.5 => 4.6.3
    • System.Text.Encodings.Web: 8.0.0 => 10.0.9
    • System.Text.Json: 8.0.4 => 10.0.9

Note on the removal of .NET Standard 2.1: we don't expect this to break users,
although it may mean additional dependencies due to falling back to .NET Standard 2.0.
Please file an issue if this causes problems for you, and we'll consider reinstating
the target.

Commits viewable in compare view.

Updated Microsoft.Agents.AI from 1.12.0 to 1.13.0.

Release notes

Sourced from Microsoft.Agents.AI's releases.

1.13.0

What's Changed

New Contributors

Full Changelog: microsoft/agent-framework@dotnet-1.12.0...dotnet-1.13.0

Commits viewable in compare view.

Updated Microsoft.Agents.AI.OpenAI from 1.12.0 to 1.13.0.

Release notes

Sourced from Microsoft.Agents.AI.OpenAI's releases.

1.13.0

What's Changed

New Contributors

Full Changelog: microsoft/agent-framework@dotnet-1.12.0...dotnet-1.13.0

Commits viewable in compare view.

Updated Microsoft.Agents.AI.Workflows from 1.12.0 to 1.13.0.

Release notes

Sourced from Microsoft.Agents.AI.Workflows's releases.

1.13.0

What's Changed

New Contributors

Full Changelog: microsoft/agent-framework@dotnet-1.12.0...dotnet-1.13.0

Commits viewable in compare view.

Updated Spectre.Console from 0.57.1 to 0.57.2.

Release notes

Sourced from Spectre.Console's releases.

0.57.2

What's Change

Full Changelog: spectreconsole/spectre.console@0.57.1...0.57.2

Commits viewable in compare view.

Updated Testcontainers from 4.12.0 to 4.13.0.

Release notes

Sourced from Testcontainers's releases.

4.13.0

What's Changed

Thank you to everyone who contributed and shared their feedback 🤜🤛.

The NuGet packages for this release have been attested for supply chain security using actions/attest. This confirms the integrity and provenance of the artifacts and helps ensure they can be trusted: #​33686956.

🚀 Features

  • feat: Add Aspire dashboard module (#​1194) @​NikiforovAll
  • feat: Add image name substitution hook (#​1710) @​HofmeisterAn
  • feat(CosmosDb): Add get method AccountEndpoint (#​1707) @​srollinet
  • feat: Improve image build failure messages (#​1700) @​HofmeisterAn

🐛 Bug Fixes

  • fix: Restore tar archive write performance regressed by padding trim (#​1719) @​HofmeisterAn
  • chore: Bump Docker.DotNet from 4.3.2 to 4.3.3 (#​1714) @​HofmeisterAn
  • chore(AspireDashboard): Cover connection string provider (#​1713) @​HofmeisterAn

📖 Documentation

  • docs: Add missing TC languages and reorder docs navigation (#​1711) @​mdelapenya
  • docs: Add note about unsupported BuildKit Dockerfile features (#​1696) @​HofmeisterAn
  • docs: Explain immutable builder behavior (#​1693) @​HofmeisterAn

🧹 Housekeeping

  • chore: Enable Dependabot cooldown (#​1716) @​HofmeisterAn
  • chore: Add nuget.config (#​1715) @​Rob-Hague
  • chore(AspireDashboard): Cover connection string provider (#​1713) @​HofmeisterAn
  • chore: Bump Docker.DotNet from 4.2.0 to 4.3.2 (#​1712) @​HofmeisterAn
  • chore: Bump sshd-docker image from 1.3.0 to 1.4.0 (#​1709) @​HofmeisterAn
  • chore: Rename runtime label and add buildkit and stale labels (#​1703) @​HofmeisterAn
  • fix: Guard expensive argument evaluation when logging (#​1702) @​HofmeisterAn
  • chore: Defer container ID truncation in logging (#​1701) @​HofmeisterAn
  • chore: Migrate to LoggerMessageAttribute (#​1697) @​HofmeisterAn

📦 Dependency Updates

  • chore(deps): Bump the actions group with 2 updates (#​1721) @dependabot[bot]
  • chore(deps): Bump the actions group with 7 updates (#​1717) @dependabot[bot]
  • chore: Bump Docker.DotNet from 4.3.2 to 4.3.3 (#​1714) @​HofmeisterAn
  • chore: Bump Docker.DotNet from 4.2.0 to 4.3.2 (#​1712) @​HofmeisterAn
  • chore(deps): Bump the actions group with 4 updates (#​1698) @dependabot[bot]

Commits viewable in compare view.

Updated Testcontainers.MongoDb from 4.12.0 to 4.13.0.

Release notes

Sourced from Testcontainers.MongoDb's releases.

4.13.0

What's Changed

Thank you to everyone who contributed and shared their feedback 🤜🤛.

The NuGet packages for this release have been attested for supply chain security using actions/attest. This confirms the integrity and provenance of the artifacts and helps ensure they can be trusted: #​33686956.

🚀 Features

  • feat: Add Aspire dashboard module (#​1194) @​NikiforovAll
  • feat: Add image name substitution hook (#​1710) @​HofmeisterAn
  • feat(CosmosDb): Add get method AccountEndpoint (#​1707) @​srollinet
  • feat: Improve image build failure messages (#​1700) @​HofmeisterAn

🐛 Bug Fixes

  • fix: Restore tar archive write performance regressed by padding trim (#​1719) @​HofmeisterAn
  • chore: Bump Docker.DotNet from 4.3.2 to 4.3.3 (#​1714) @​HofmeisterAn
  • chore(AspireDashboard): Cover connection string provider (#​1713) @​HofmeisterAn

📖 Documentation

  • docs: Add missing TC languages and reorder docs navigation (#​1711) @​mdelapenya
  • docs: Add note about unsupported BuildKit Dockerfile features (#​1696) @​HofmeisterAn
  • docs: Explain immutable builder behavior (#​1693) @​HofmeisterAn

🧹 Housekeeping

  • chore: Enable Dependabot cooldown (#​1716) @​HofmeisterAn
  • chore: Add nuget.config (#​1715) @​Rob-Hague
  • chore(AspireDashboard): Cover connection string provider (#​1713) @​HofmeisterAn
  • chore: Bump Docker.DotNet from 4.2.0 to 4.3.2 (#​1712) @​HofmeisterAn
  • chore: Bump sshd-docker image from 1.3.0 to 1.4.0 (#​1709) @​HofmeisterAn
  • chore: Rename runtime label and add buildkit and stale labels (#​1703) @​HofmeisterAn
  • fix: Guard expensive argument evaluation when logging (#​1702) @​HofmeisterAn
  • chore: Defer container ID truncation in logging (#​1701) @​HofmeisterAn
  • chore: Migrate to LoggerMessageAttribute (#​1697) @​HofmeisterAn

📦 Dependency Updates

  • chore(deps): Bump the actions group with 2 updates (#​1721) @dependabot[bot]
  • chore(deps): Bump the actions group with 7 updates (#​1717) @dependabot[bot]
  • chore: Bump Docker.DotNet from 4.3.2 to 4.3.3 (#​1714) @​HofmeisterAn
  • chore: Bump Docker.DotNet from 4.2.0 to 4.3.2 (#​1712) @​HofmeisterAn
  • chore(deps): Bump the actions group with 4 updates (#​1698) @dependabot[bot]

Commits viewable in compare view.

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps CloudNative.CloudEvents from 2.8.0 to 2.9.0
Bumps CloudNative.CloudEvents.AspNetCore from 2.8.0 to 2.9.0
Bumps CloudNative.CloudEvents.SystemTextJson from 2.8.0 to 2.9.0
Bumps Microsoft.Agents.AI from 1.12.0 to 1.13.0
Bumps Microsoft.Agents.AI.OpenAI from 1.12.0 to 1.13.0
Bumps Microsoft.Agents.AI.Workflows from 1.12.0 to 1.13.0
Bumps Spectre.Console from 0.57.1 to 0.57.2
Bumps Testcontainers from 4.12.0 to 4.13.0
Bumps Testcontainers.MongoDb from 4.12.0 to 4.13.0

---
updated-dependencies:
- dependency-name: CloudNative.CloudEvents
  dependency-version: 2.9.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: CloudNative.CloudEvents.AspNetCore
  dependency-version: 2.9.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: CloudNative.CloudEvents.SystemTextJson
  dependency-version: 2.9.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Agents.AI
  dependency-version: 1.13.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Agents.AI.OpenAI
  dependency-version: 1.13.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: Microsoft.Agents.AI.Workflows
  dependency-version: 1.13.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: Spectre.Console
  dependency-version: 0.57.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: dotnet-dependencies
- dependency-name: Testcontainers
  dependency-version: 4.13.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
- dependency-name: Testcontainers.MongoDb
  dependency-version: 4.13.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: dotnet-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added .NET Pull requests that update .NET code dependencies Pull requests that update a dependency file labels Jul 6, 2026
@dependabot
dependabot Bot requested a review from danlorb as a code owner July 6, 2026 06:19
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file .NET Pull requests that update .NET code labels Jul 6, 2026
@snyk-io

snyk-io Bot commented Jul 6, 2026

Copy link
Copy Markdown

Snyk checks have passed. No issues have been found so far.

Status Scan Engine Critical High Medium Low Total (0)
Open Source Security 0 0 0 0 0 issues

💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse.

@github-actions

github-actions Bot commented Jul 6, 2026

Copy link
Copy Markdown

Test Results

0 tests   0 ✅  0s ⏱️
0 suites  0 💤
0 files    0 ❌

Results for commit e0871a0.

@sonarqubecloud

sonarqubecloud Bot commented Jul 6, 2026

Copy link
Copy Markdown

@dependabot @github

dependabot Bot commented on behalf of github Jul 13, 2026

Copy link
Copy Markdown
Contributor Author

Superseded by #104.

@dependabot dependabot Bot closed this Jul 13, 2026
@dependabot
dependabot Bot deleted the dependabot/nuget/demos/datalayer/shared/dotnet-dependencies-e84ae5e6df branch July 13, 2026 06:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file .NET Pull requests that update .NET code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants