Skip to content

ci(deps): hold Roslyn at EF Core Design's version in Dependabot - #1111

Merged
mforce merged 1 commit into
mainfrom
chore/hold-roslyn-for-ef-design
Oct 6, 2026
Merged

mforce merged 1 commit into
mainfrom
chore/hold-roslyn-for-ef-design

Conversation

@mforce

@mforce mforce commented Oct 6, 2026 •

Copy link
Copy Markdown
Owner

Dependabot PR #1110 raised Microsoft.CodeAnalysis.CSharp and Microsoft.CodeAnalysis.CSharp.Workspaces from 5.0.0 to 5.9.0. Restore then failed on every CI job.

Cause. Microsoft.EntityFrameworkCore.Design 10.0.12 depends on Microsoft.CodeAnalysis.Workspaces.MSBuild 5.0.0, which requires Microsoft.CodeAnalysis.Workspaces.Common at exactly [5.0.0]. The 5.9.0 bump resolves Workspaces.Common 5.9.0, and restore reports NU1608, which this build treats as an error. Regenerating the lock files cannot fix this, because the versions themselves conflict.

Change. This PR adds a Dependabot ignore entry for these two packages only. Other Microsoft.CodeAnalysis.* packages, such as Analyzer.Testing, still get updates.

Follow-up. #1112 tracks removing the hold once an EF Core Design release depends on a newer Roslyn.

After this merges, close #1110. Dependabot will then open a new group PR without the Roslyn bump.

Microsoft.EntityFrameworkCore.Design pins Microsoft.CodeAnalysis.Workspaces.Common
exactly through Workspaces.MSBuild, so raising Microsoft.CodeAnalysis.CSharp and
CSharp.Workspaces ahead of it fails restore with NU1608 (#1110).
@mforce
mforce merged commit 0d956e2 into main Oct 6, 2026
16 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant