Skip to content

Commit 90c5f04

Browse files
update deps for vulnerabitlies
logback: 1.14.4 -> 1.5.24 jackson: 2.14.3 -> 2.15.4 commons-io: 2.11.0 -> 2.14.0 commons-lang3: 3.12.0 -> 3.18.0 log4j-core: 2.17.0" -> 2.25.3
1 parent 53af5bf commit 90c5f04

File tree

2 files changed

+450
-436
lines changed

2 files changed

+450
-436
lines changed

sdk/bazel-java-deps.bzl

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -57,13 +57,13 @@ circe_version = "0.14.2"
5757
def install_java_deps():
5858
maven_install(
5959
artifacts = version_specific.get(scala_major_version, []) + [
60-
"ch.qos.logback:logback-classic:1.4.14",
61-
"ch.qos.logback:logback-core:1.4.14",
60+
"ch.qos.logback:logback-classic:1.5.24",
61+
"ch.qos.logback:logback-core:1.5.24",
6262
"com.auth0:java-jwt:4.2.1",
6363
"com.auth0:jwks-rsa:0.21.2",
6464
"com.chuusai:shapeless_{}:2.3.6".format(scala_major_version),
65-
"com.fasterxml.jackson.core:jackson-core:2.14.3",
66-
"com.fasterxml.jackson.core:jackson-databind:2.14.3",
65+
"com.fasterxml.jackson.core:jackson-core:2.15.4",
66+
"com.fasterxml.jackson.core:jackson-databind:2.15.4",
6767
"com.github.ben-manes.caffeine:caffeine:3.1.2",
6868
"com.github.blemale:scaffeine_{}:5.2.1".format(scala_major_version),
6969
"com.github.pathikrit:better-files_{}:3.9.1".format(scala_major_version),
@@ -120,7 +120,7 @@ def install_java_deps():
120120
"com.typesafe.slick:slick_{}:3.3.3".format(scala_major_version),
121121
"com.zaxxer:HikariCP:3.2.0",
122122
"commons-codec:commons-codec:1.11",
123-
"commons-io:commons-io:2.11.0",
123+
"commons-io:commons-io:2.14.0",
124124
"dev.optics:monocle-core_{}:3.2.0".format(scala_major_version),
125125
"dev.optics:monocle-macro_{}:3.2.0".format(scala_major_version),
126126
"eu.rekawek.toxiproxy:toxiproxy-java:2.1.7",
@@ -193,9 +193,9 @@ def install_java_deps():
193193
"javax.annotation:javax.annotation-api:1.3.2",
194194
"javax.ws.rs:javax.ws.rs-api:2.1",
195195
"net.logstash.logback:logstash-logback-encoder:6.6",
196-
"org.apache.commons:commons-lang3:3.12.0",
196+
"org.apache.commons:commons-lang3:3.18.0",
197197
"org.apache.commons:commons-text:1.10.0",
198-
"org.apache.logging.log4j:log4j-core:2.17.0",
198+
"org.apache.logging.log4j:log4j-core:2.25.3",
199199
"org.awaitility:awaitility:4.2.0",
200200
"org.bouncycastle:bcpkix-jdk15on:1.70",
201201
"org.bouncycastle:bcprov-jdk15on:1.70",

0 commit comments

Comments
 (0)