Skip to content

[#516] Pin protobuf-java codegen to 4.35.1 to retain compatibility with the spring-boot ecosystem - #517

Merged
hatzlj merged 2 commits into
mainfrom
enhancement/516/pin-protobuf-version
Sep 24, 2026
Merged

hatzlj merged 2 commits into
mainfrom
enhancement/516/pin-protobuf-version

Conversation

@hatzlj

@hatzlj hatzlj commented Sep 21, 2026 •

Copy link
Copy Markdown
Contributor

Starting with 4.1.x Spring Boot explicitly manages the protobuf-java version in support of Spring gRPC, pinning it to 4.35.1 in the latest 4.1.x patch.

This led to ProtobufRuntimeVersionExceptions when using axonserver-connector-java 2026.1.0 in combination with the spring-boot-dependencies:4.1.1 BOM (or the starter), because the connector pinned code generation to 4.36.1 but when declared via the BOM the 4.35.1 version declared by spring boot for the runtime precedes.

This PR pins it back to 4.35.1 to retain compatibility with the spring ecosystem and adds a comment on the dependency to keep that in mind.
It also declares an explicit dependabot rule to ignore protobuf and exclude from future automated dependabot updates.

resolves #516
relates to https://github.com/AxonIQ/axoniq-framework/issues/524

…th the spring-boot ecosystem

Starting with 4.1.x Spring Boot explicitly manages the protobuf-java version in support of Spring gRPC, pinning it to 4.35.1 in the latest 4.1.x patch.

This led to ProtobufRuntimeVersionExceptions when using axonserver-connector-java 2026.1.0 in combination with the `spring-boot-dependencies:4.1.1` BOM (or the starter), because the connector pinned code generation to 4.36.1 but when declared via the BOM the 4.35.1 version declared by spring boot for the runtime precedes.

This commit pins it back to 4.35.1 to retain compatibility with the spring ecosystem and adds a comment on the dependency to keep that in mind.
…o 4.35.1 to retain compatibility with the spring-boot ecosystem

Explicitly ignore dependabot upgrades to avoid unintentional incompatibility.
@hatzlj hatzlj self-assigned this Sep 21, 2026
@CLAassistant

Copy link
Copy Markdown

CLA assistant check
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution.
You have signed the CLA already but the status is still pending? Let us recheck it.

@hatzlj hatzlj changed the title [ [#516] Pin protobuf-java codegen to 4.35.1 to retain compatibility with the spring-boot ecosystem Sep 21, 2026
@sonarqubecloud

Copy link
Copy Markdown

@hatzlj
hatzlj merged commit 9fbea56 into main Sep 24, 2026
6 of 8 checks passed
@hatzlj
hatzlj deleted the enhancement/516/pin-protobuf-version branch September 24, 2026 11:21
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Pin protobuf-java codegen to 4.35.1 to retain compatibility with the spring-boot ecosystem

3 participants