Skip to content
This repository was archived by the owner on Feb 27, 2025. It is now read-only.

Commit 44dea02

Browse files
Merge pull request #125 from vmware/rpraveen-vmware-dependencyFix
Resolving vulnerablities by upgrading versions and excluding dependen…
2 parents da3362a + 0b7ec9b commit 44dea02

File tree

4 files changed

+35
-30
lines changed

4 files changed

+35
-30
lines changed

mangle-byteman-root/pom.xml

Lines changed: 5 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -50,6 +50,7 @@
5050
<pushChanges>false</pushChanges>
5151
<autoVersionSubmodules>true</autoVersionSubmodules>
5252
<gson.version>2.8.5</gson.version>
53+
<plexus-archiver.version>3.6.0</plexus-archiver.version>
5354
</properties>
5455
<dependencyManagement>
5556
<dependencies>
@@ -111,7 +112,7 @@
111112
<dependency>
112113
<groupId>org.codehaus.plexus</groupId>
113114
<artifactId>plexus-archiver</artifactId>
114-
<version>3.0.3</version>
115+
<version>${plexus-archiver.version}</version>
115116
</dependency>
116117
</dependencies>
117118
</plugin>
@@ -128,7 +129,7 @@
128129
<dependency>
129130
<groupId>org.codehaus.plexus</groupId>
130131
<artifactId>plexus-archiver</artifactId>
131-
<version>3.0.3</version>
132+
<version>${plexus-archiver.version}</version>
132133
</dependency>
133134
</dependencies>
134135
</plugin>
@@ -155,7 +156,7 @@
155156
<dependency>
156157
<groupId>org.codehaus.plexus</groupId>
157158
<artifactId>plexus-archiver</artifactId>
158-
<version>3.0.3</version>
159+
<version>${plexus-archiver.version}</version>
159160
</dependency>
160161
</dependencies>
161162
</plugin>
@@ -256,4 +257,4 @@
256257
</build>
257258
</profile>
258259
</profiles>
259-
</project>
260+
</project>

mangle-models/pom.xml

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -73,6 +73,10 @@
7373
<groupId>org.apache.tomcat.embed</groupId>
7474
<artifactId>tomcat-embed-websocket</artifactId>
7575
</dependency>
76+
<dependency>
77+
<groupId>org.jetbrains.kotlin</groupId>
78+
<artifactId>kotlin-stdlib</artifactId>
79+
</dependency>
7680
<dependency>
7781
<groupId>org.springframework.hateoas</groupId>
7882
<artifactId>spring-hateoas</artifactId>

mangle-utils/pom.xml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -29,7 +29,7 @@
2929
<properties>
3030
<project.build.sourceEncoding>UTF-8</project.build.sourceEncoding>
3131
<project.reporting.outputEncoding>UTF-8</project.reporting.outputEncoding>
32-
<apache-log4j-api.version>2.17.0</apache-log4j-api.version>
32+
<apache-log4j-api.version>2.17.1</apache-log4j-api.version>
3333
</properties>
3434

3535
<dependencies>

pom.xml

Lines changed: 25 additions & 25 deletions
Original file line numberDiff line numberDiff line change
@@ -95,11 +95,11 @@
9595
<hazelcast-kubernetes.version>1.3.1</hazelcast-kubernetes.version>
9696
<org.json.version>20180130</org.json.version>
9797
<net.jpountz.lz4.version>1.3.0</net.jpountz.lz4.version>
98-
<log4j.version>2.17.1</log4j.version>
9998
<avro-version>1.10.2</avro-version>
99+
<log4j.version>2.17.1</log4j.version>
100100
<asynchttpclient.version>2.12.3</asynchttpclient.version>
101-
<netty.version>4.1.86.Final</netty.version>
102101
<tomcat.version>9.0.54</tomcat.version>
102+
<netty.version>4.1.86.Final</netty.version>
103103
<netty-reactive-streams-version>2.0.5</netty-reactive-streams-version>
104104
<aws-sdk.version>1.11.579</aws-sdk.version>
105105
<azure-sdk.version>1.29.0</azure-sdk.version>
@@ -138,10 +138,10 @@
138138
<artifactId>spring-core</artifactId>
139139
<version>${springframework.version}</version>
140140
<exclusions>
141-
<exclusion>
142-
<groupId>org.jetbrains.kotlin</groupId>
143-
<artifactId>kotlin-stdlib</artifactId>
144-
</exclusion>
141+
<exclusion>
142+
<groupId>org.jetbrains.kotlin</groupId>
143+
<artifactId>kotlin-stdlib</artifactId>
144+
</exclusion>
145145
</exclusions>
146146
</dependency>
147147
<dependency>
@@ -155,9 +155,9 @@
155155
<version>${springframework-plugin.version}</version>
156156
</dependency>
157157
<dependency>
158-
<groupId>org.jetbrains.kotlin</groupId>
159-
<artifactId>kotlin-stdlib</artifactId>
160-
<version>${kotlin-stdlib.version}</version>
158+
<groupId>org.jetbrains.kotlin</groupId>
159+
<artifactId>kotlin-stdlib</artifactId>
160+
<version>${kotlin-stdlib.version}</version>
161161
</dependency>
162162
<dependency>
163163
<groupId>org.springframework.plugin</groupId>
@@ -320,23 +320,23 @@
320320
<artifactId>spring-security-core</artifactId>
321321
<version>${spring.security.core.version}</version>
322322
<exclusions>
323-
<exclusion>
324-
<groupId>com.fasterxml.jackson.core</groupId>
325-
<artifactId>jackson-databind</artifactId>
323+
<exclusion>
324+
<groupId>com.fasterxml.jackson.core</groupId>
325+
<artifactId>jackson-databind</artifactId>
326+
</exclusion>
327+
<exclusion>
328+
<groupId>org.springframework</groupId>
329+
<artifactId>spring-beans</artifactId>
330+
</exclusion>
331+
<exclusion>
332+
<groupId>org.springframework</groupId>
333+
<artifactId>spring-core</artifactId>
326334
</exclusion>
327-
<exclusion>
328-
<groupId>org.springframework</groupId>
329-
<artifactId>spring-beans</artifactId>
330-
</exclusion>
331-
<exclusion>
332-
<groupId>org.springframework</groupId>
333-
<artifactId>spring-core</artifactId>
334-
</exclusion>
335-
<exclusion>
336-
<groupId>org.springframework</groupId>
337-
<artifactId>spring-expression</artifactId>
338-
</exclusion>
339-
</exclusions>
335+
<exclusion>
336+
<groupId>org.springframework</groupId>
337+
<artifactId>spring-expression</artifactId>
338+
</exclusion>
339+
</exclusions>
340340
</dependency>
341341
<dependency>
342342
<groupId>org.springframework.security</groupId>

0 commit comments

Comments
 (0)