Skip to content

Bump com.uber.nullaway:nullaway from 0.14.1 to 0.14.2 - #69

Open
dependabot[bot] wants to merge 1 commit into
developfrom
dependabot/maven/com.uber.nullaway-nullaway-0.14.2
Open

dependabot[bot] wants to merge 1 commit into
developfrom
dependabot/maven/com.uber.nullaway-nullaway-0.14.2

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 28, 2026

Copy link
Copy Markdown
Contributor

Bumps com.uber.nullaway:nullaway from 0.14.1 to 0.14.2.

Release notes

Sourced from com.uber.nullaway:nullaway's releases.

NullAway 0.14.2

This release adds JSpecifyUnrecognizedAnnotationLocation, an opt-in check that reports nullness annotations in locations JSpecify does not recognize. See further documentation on the wiki: https://github.com/uber/NullAway/wiki/JSpecify-Support#jspecifyunrecognizedannotationlocation-checker

Not packaged in the release, but we have also added a script to remove unnecessary NullAway suppressions to the repo: https://github.com/uber/NullAway/tree/master/scripts/nullaway-suppression-remover We expect this to be a useful script to run after NullAway updates, to check if NullAway improvements make some suppressions unnecessary.

Also of note, NullAway now more precisely detects whether the JDK used for the build properly supports reading type use annotations from bytecode, particularly important for JSpecify mode. This may lead NullAway to crash on certain build configurations that were unsupported before but we were not detecting precisely.

Beyond the above, this release includes further fixes for JSpecify mode and JSpecifyExperimental, especially for wildcard bounds and multi-dimensional arrays, along with other bug fixes.

Finally, we have re-enabled pushing snapshot builds to the Sonatype snapshots repository, which should ease testing NullAway versions between releases.

  • Small optimization for stream handlers (#1774)
  • Check wildcard generics handling flag for enhanced for loops (#1786)
  • Cover anonymous class type arguments and modeled call-site returns by @​vlsi (#1777)
  • Write the full encoded byte array when serializing TSV/XML rows #1788 by @​AzazelSensei (#1798)
  • Fix @​RequiresNonNull override error message to list the extra fields added by the child method by @​Beluomini (#1751)
  • Model Stream.takeWhile (+ reactive equivalents) like .filter by @​jeffrey-easyesi (#1809)
  • Add JSpecifyUnrecognizedAnnotationLocation, an opt-in check that reports nullness annotations in locations JSpecify does not recognize by @​vlsi (#1787)
  • Detect support for the addTypeAnnotationsToSymbol flag on JDK 17 / 21 (#1794)
  • Fix RequireExplicitNullMarking diagnostics repeating the check name, so a report no longer begins with [RequireExplicitNullMarking] [RequireExplicitNullMarking] by @​vlsi (#1815)
  • Less conservative handling of raw array types (#1807)
  • Fix crasher example from Caffeine (#1820)
  • Add a script to remove unnecessary NullAway suppressions (#1803)
  • Use LinkedHashMap / LinkedHashSet for determinism (#1796)
  • Prevent classloader closure from interrupting stubx reads (#1830)
  • Preserve non-null type variables through wildcard capture (#1837)
  • Treat Maven plugin parameters as externally initialized by @​ZedingZhang (#1848)
  • Do not treat type variables from the caller as inference variables (#1824)
  • Prevent recursion on self-referential wildcard bounds during inference by @​adityaanikam (#1843)
  • Avoid stale wildcard bounds after javac supertype inspection (#1849)
  • Preserve contextual bounds for recursive wildcard captures (#1853)
  • Restore effective wildcard upper bounds for invocation types (#1855)
  • Preserve wildcard component types for array element assignments (#1857)
  • Lazily allocate maps to detect wildcard cycles (#1888)
  • Preserve all dimensions of multi-dimensional array creation expressions in JSpecify mode by @​dbwiddis (#1711)
  • Fix false positives for Spring SpEL expressions using null in comparisons by @​Beluomini (#1750)
  • Apply covariant array subtyping at every dimension by @​dbwiddis (#1889)
  • Maintenance
    • Remove outdated Spark test (#1772)

... (truncated)

Changelog

Sourced from com.uber.nullaway:nullaway's changelog.

Version 0.14.2

This release adds JSpecifyUnrecognizedAnnotationLocation, an opt-in check that reports nullness annotations in locations JSpecify does not recognize. See further documentation on the wiki: https://github.com/uber/NullAway/wiki/JSpecify-Support#jspecifyunrecognizedannotationlocation-checker

Not packaged in the release, but we have also added a script to remove unnecessary NullAway suppressions to the repo: https://github.com/uber/NullAway/tree/master/scripts/nullaway-suppression-remover We expect this to be a useful script to run after NullAway updates, to check if NullAway improvements make some suppressions unnecessary.

Also of note, NullAway now more precisely detects whether the JDK used for the build properly supports reading type use annotations from bytecode, particularly important for JSpecify mode. This may lead NullAway to crash on certain build configurations that were unsupported before but we were not detecting precisely.

Beyond the above, this release includes further fixes for JSpecify mode and JSpecifyExperimental, especially for wildcard bounds and multi-dimensional arrays, along with other bug fixes.

Finally, we have re-enabled pushing snapshot builds to the Sonatype snapshots repository, which should ease testing NullAway versions between releases.

  • Small optimization for stream handlers (#1774)
  • Check wildcard generics handling flag for enhanced for loops (#1786)
  • Cover anonymous class type arguments and modeled call-site returns by @​vlsi (#1777)
  • Write the full encoded byte array when serializing TSV/XML rows #1788 by @​AzazelSensei (#1798)
  • Fix @​RequiresNonNull override error message to list the extra fields added by the child method by @​Beluomini (#1751)
  • Model Stream.takeWhile (+ reactive equivalents) like .filter by @​jeffrey-easyesi (#1809)
  • Add JSpecifyUnrecognizedAnnotationLocation, an opt-in check that reports nullness annotations in locations JSpecify does not recognize by @​vlsi (#1787)
  • Detect support for the addTypeAnnotationsToSymbol flag on JDK 17 / 21 (#1794)
  • Fix RequireExplicitNullMarking diagnostics repeating the check name, so a report no longer begins with [RequireExplicitNullMarking] [RequireExplicitNullMarking] by @​vlsi (#1815)
  • Less conservative handling of raw array types (#1807)
  • Fix crasher example from Caffeine (#1820)
  • Add a script to remove unnecessary NullAway suppressions (#1803)
  • Use LinkedHashMap / LinkedHashSet for determinism (#1796)
  • Prevent classloader closure from interrupting stubx reads (#1830)
  • Preserve non-null type variables through wildcard capture (#1837)
  • Treat Maven plugin parameters as externally initialized by @​ZedingZhang (#1848)
  • Do not treat type variables from the caller as inference variables (#1824)
  • Prevent recursion on self-referential wildcard bounds during inference by @​adityaanikam (#1843)
  • Avoid stale wildcard bounds after javac supertype inspection (#1849)
  • Preserve contextual bounds for recursive wildcard captures (#1853)
  • Restore effective wildcard upper bounds for invocation types (#1855)
  • Preserve wildcard component types for array element assignments (#1857)
  • Lazily allocate maps to detect wildcard cycles (#1888)
  • Preserve all dimensions of multi-dimensional array creation expressions in JSpecify mode by @​dbwiddis (#1711)
  • Fix false positives for Spring SpEL expressions using null in comparisons by @​Beluomini (#1750)
  • Apply covariant array subtyping at every dimension by @​dbwiddis (#1889)

... (truncated)

Commits
  • fa89a56 (Fixed) Prepare for release 0.14.2
  • 2e0d12a fix release yaml
  • f472b6b Reset snapshot version
  • 738e5ff Prepare next development version.
  • 4765e0e Prepare for release 0.14.2.
  • 52fd671 Add workflow for cutting releases (#1892)
  • 5354f39 Add missing dependencies for publishShadowPublicationToMavenCentralRepository...
  • cec5171 Publish snapshots to Maven Central (#1890)
  • 079a1ff Apply covariant array subtyping at every dimension (#1889)
  • f1ab72a Fix false positive in SpringHandler for SpEL expressions using null in compar...
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [com.uber.nullaway:nullaway](https://github.com/uber/NullAway) from 0.14.1 to 0.14.2.
- [Release notes](https://github.com/uber/NullAway/releases)
- [Changelog](https://github.com/uber/NullAway/blob/master/CHANGELOG.md)
- [Commits](uber/NullAway@v0.14.1...v0.14.2)

---
updated-dependencies:
- dependency-name: com.uber.nullaway:nullaway
  dependency-version: 0.14.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels Sep 28, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants