Skip to content

Build(deps): bump io.grpc:grpc-bom from 1.81.0 to 1.83.0 in the grpc group across 1 directory - #25

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/maven/grpc-45dd5e5776
Open

Build(deps): bump io.grpc:grpc-bom from 1.81.0 to 1.83.0 in the grpc group across 1 directory#25
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/maven/grpc-45dd5e5776

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 15, 2026

Copy link
Copy Markdown
Contributor

Bumps the grpc group with 1 update in the / directory: io.grpc:grpc-bom.

Updates io.grpc:grpc-bom from 1.81.0 to 1.83.0

Release notes

Sourced from io.grpc:grpc-bom's releases.

v1.83.0

gRPC Java 1.83.0 Release Notes

API Changes

  • api: Turn on RFC 3986 parsing by default and update javadoc. (4456721328)
  • api: Add Grpc.newChannelBuilder accepting NameResolverRegistry (#11901) (2b86f8f42f). This allows users to explicitly provide a NameResolverRegistry during channel creation rather than relying on the global registry, offering better isolation and control over name resolution per-channel.

Behavior Changes

  • okhttp: enable TLS 1.3 for servers on Android (3018ce341c). v1.82.0 enabled TLS 1.3 for clients; this does the same for servers
  • xds: enable orca to lrs propagation by default (#12836) (1e85674a40) Enables xDS configuration to control which fields get propagated from ORCA backend metric reports to LRS load reports as per gRFC A85
  • xds: Use leaf cluster name for backend service label in metrics, instead of aggregate cluster name (#12882) (c8079eed98). This only has an effect when using aggregate clusters
  • xds: Hold parsed service config in CdsUpdate (3db3235ebd). Previously, modifications to LoadBalancerRegistry could cause failures in the LB tree
  • xds: Revert "xds: reuse connections to the control plane across channels" added in 1.81.0 (d49c0b15d8). If using xds heavily with many targets, then MAX_CONCURRENT_STREAMS to the control plane could be exceeded. This then prevents loading resources for new targets, which causes those channels to hang on name resolution. RPCs would see the nondescript "DEADLINE_EXCEEDED: Deadline Context was exceeded after Xs" or "DEADLINE_EXCEEDED: Deadline CallOptions was exceeded after Xs"

Improvements

  • api: Move attributes to the end of ResolvedAddresses.toString(), for better legibility (103bd4b852)
  • core: normalize service config number values (#12826) (663c505dbd) This updates default service config validation to accept numeric values represented as Number, not only Double. Common JSON parsers may deserialize integer-looking JSON values such as maxAttempts: 4 and backoffMultiplier: 2 as Integer, which previously caused defaultServiceConfig() to fail with IllegalArgumentException. The values are normalized to Double when copied into the validated service config, preserving the existing internal representation expected by the service config parsing code.
  • core: DEADLINE_EXCEEDED before initial name resolution completes will now mention “name_resolver” in the error description (56d2b25eb5). Previously there was not a hint as to what gRPC was delayed on when the deadline was exceeded.
  • netty: Reduce TcpMetrics log from INFO to FINE (4ec83df1eb). This removes unnecessary log noise
  • core: Enable child channel plugins (#12578) (89aef90d52). This introduces the ChildChannelConfigurer API to allow intercepting and customizing the configuration (such as injecting interceptors or modifying credentials) of child channels created dynamically by load balancers.

Dependencies

  • Upgrade to Netty 4.2.15 (66c6ab1da6). If you need Netty 4.1 support, please file an issue
  • Upgrade codegen plugin to C++ Protobuf 35.1 (#12876) (c886f0a06b)
  • Upgrade various dependencies (064272c61d):
    • gson to 2.14.0
    • guava to 33.6.0
    • cel-java to 0.13.0
    • protobuf-java to 3.25.9
    • error-prone-annotations to 2.50.0
    • opentelemetry to 1.63.0

Documentation

  • Document how to build with Bazel and introduce bazel support for building android and binder (#12811) (f94574eff7)

Thanks to

tian__mi__mi@
codingkiddo@
Zhengcy05@

v1.82.2

  • Revert "xds: reuse connections to the control plane across channels" added in 1.81.0 (#12886). If using xds heavily with many targets, then MAX_CONCURRENT_STREAMS to the control plane could be exceeded. This then prevents loading resources for new targets, which causes those channels to hang on name resolution. RPCs would see the nondescript "DEADLINE_EXCEEDED: Deadline Context was exceeded after Xs" or "DEADLINE_EXCEEDED: Deadline CallOptions was exceeded after Xs"

v1.82.1

... (truncated)

Commits
  • 8ab6e0a Bump version to 1.83.0
  • 33ad6a4 Update README etc to reference 1.83.0
  • 17d5bd6 Revert "enable child channel plugins (#12578)" (v1.83.x backport) (#12913)
  • 89aef90 enable child channel plugins (#12578)
  • fd971d1 fix: configure Undertow test entity size (#12892)
  • c8079ee xds: Move backend service label plumbing to CDS (#12882)
  • 53ebe2d xds: Fix half-close race condition in ext-proc client interceptor (#12888)
  • 0cf5239 xds: Implementation of Unified Matcher (#12640)
  • 036c7f0 xds: Refactor to allow common code usage between the ext_proc client and serv...
  • d49c0b1 Revert "xds: reuse GrpcXdsTransport and underlying gRPC channel to the same x...
  • Additional commits viewable in compare view

@dependabot @github

dependabot Bot commented on behalf of github Jun 15, 2026

Copy link
Copy Markdown
Contributor Author

Labels

The following labels could not be found: dependencies. Please create it before Dependabot can add it to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@dependabot
dependabot Bot requested a review from JoeCqupt as a code owner June 15, 2026 06:29
@dependabot dependabot Bot changed the title Build(deps): bump io.grpc:grpc-bom from 1.81.0 to 1.82.0 in the grpc group Build(deps): bump io.grpc:grpc-bom from 1.81.0 to 1.82.0 in the grpc group across 1 directory Jun 22, 2026
@dependabot
dependabot Bot force-pushed the dependabot/maven/grpc-45dd5e5776 branch from b0b96fe to 7a7d6f4 Compare June 22, 2026 06:20
@dependabot dependabot Bot changed the title Build(deps): bump io.grpc:grpc-bom from 1.81.0 to 1.82.0 in the grpc group across 1 directory Build(deps): bump io.grpc:grpc-bom from 1.81.0 to 1.82.1 in the grpc group across 1 directory Jun 29, 2026
@dependabot
dependabot Bot force-pushed the dependabot/maven/grpc-45dd5e5776 branch from 7a7d6f4 to 8f303e2 Compare June 29, 2026 06:22
@dependabot
dependabot Bot force-pushed the dependabot/maven/grpc-45dd5e5776 branch from 8f303e2 to 61bf22c Compare July 6, 2026 06:23
@dependabot dependabot Bot changed the title Build(deps): bump io.grpc:grpc-bom from 1.81.0 to 1.82.1 in the grpc group across 1 directory Build(deps): bump io.grpc:grpc-bom from 1.81.0 to 1.82.2 in the grpc group across 1 directory Jul 13, 2026
@dependabot
dependabot Bot force-pushed the dependabot/maven/grpc-45dd5e5776 branch 2 times, most recently from 1bc090d to 1c3b076 Compare July 20, 2026 06:24
Bumps the grpc group with 1 update in the / directory: [io.grpc:grpc-bom](https://github.com/grpc/grpc-java).


Updates `io.grpc:grpc-bom` from 1.81.0 to 1.83.0
- [Release notes](https://github.com/grpc/grpc-java/releases)
- [Commits](grpc/grpc-java@v1.81.0...v1.83.0)

---
updated-dependencies:
- dependency-name: io.grpc:grpc-bom
  dependency-version: 1.82.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: grpc
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot changed the title Build(deps): bump io.grpc:grpc-bom from 1.81.0 to 1.82.2 in the grpc group across 1 directory Build(deps): bump io.grpc:grpc-bom from 1.81.0 to 1.83.0 in the grpc group across 1 directory Jul 27, 2026
@dependabot
dependabot Bot force-pushed the dependabot/maven/grpc-45dd5e5776 branch from 1c3b076 to 27a9b18 Compare July 27, 2026 06:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants