Skip to content

Upgrade pug4j from 2.0.6 to 2.3.1#2805

Merged
tsegismont merged 1 commit intovert-x3:masterfrom
julianladisch:pug4j-2.3.1
Oct 2, 2025
Merged

Upgrade pug4j from 2.0.6 to 2.3.1#2805
tsegismont merged 1 commit intovert-x3:masterfrom
julianladisch:pug4j-2.3.1

Conversation

@julianladisch
Copy link
Copy Markdown
Contributor

Obsoletes #2697

See https://github.com/neuland/pug4j/releases

The pug4j upgrade indirectly upgrades graalvm from 21.3.0 to 21.3.12 fixing multiple vulnerabilities:
https://security.snyk.io/package/maven/org.graalvm.sdk%3Agraal-sdk

Motivation:

Bump pug4j version to bump outdates and vulnerable graalvm version.

Conformance:

Obsoletes #2697

See https://github.com/neuland/pug4j/releases

The pug4j upgrade indirectly upgrades graalvm from 21.3.0 to 21.3.12
fixing multiple vulnerabilities:
https://security.snyk.io/package/maven/org.graalvm.sdk%3Agraal-sdk
@tsegismont tsegismont added this to the 5.1.0 milestone Oct 2, 2025
Copy link
Copy Markdown
Member

@tsegismont tsegismont left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM, thank you @julianladisch !

@tsegismont tsegismont merged commit 0c4199b into vert-x3:master Oct 2, 2025
7 checks passed
@julianladisch julianladisch deleted the pug4j-2.3.1 branch October 15, 2025 20:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Development

Successfully merging this pull request may close these issues.

2 participants