Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
15 changes: 13 additions & 2 deletions Directory.Packages.props
Original file line number Diff line number Diff line change
@@ -1,8 +1,19 @@
<Project>
<PropertyGroup>
<ManagePackageVersionsCentrally>true</ManagePackageVersionsCentrally>
<!-- Let a central PackageVersion override a transitive dependency's resolved
version without a direct PackageReference (see AngleSharp pin below). -->
<CentralPackageTransitivePinningEnabled>true</CentralPackageTransitivePinningEnabled>
</PropertyGroup>

<ItemGroup Label="Transitive security pins">
<!-- bUnit -> AngleSharp.Diffing pulls AngleSharp 1.4.0, which has a moderate
mXSS advisory (GHSA-pgww-w46g-26qg / CVE-2026-54570). Pin to the patched
1.5.x line to clear the CI vulnerability gate. Remove once bUnit ships a
transitive chain that resolves to >= 1.5.0 on its own (tracked in #97). -->
<PackageVersion Include="AngleSharp" Version="1.5.2" />
</ItemGroup>

<ItemGroup Label="Aspire">
<PackageVersion Include="Aspire.Hosting.Docker" Version="13.4.6" />
<PackageVersion Include="Aspire.Hosting.PostgreSQL" Version="13.4.6" />
Expand All @@ -11,7 +22,7 @@

<ItemGroup Label="Marten">
<PackageVersion Include="Marten" Version="9.14.1" />
<PackageVersion Include="Marten.AspNetCore" Version="9.0.2" />
<PackageVersion Include="Marten.AspNetCore" Version="9.14.1" />
</ItemGroup>

<ItemGroup Label="Wolverine">
Expand Down Expand Up @@ -48,7 +59,7 @@

<ItemGroup Label="Messaging">
<PackageVersion Include="MailKit" Version="4.17.0" />
<PackageVersion Include="Quartz.Extensions.Hosting" Version="3.18.1" />
<PackageVersion Include="Quartz.Extensions.Hosting" Version="3.18.2" />
</ItemGroup>

<ItemGroup Label="Testing">
Expand Down
4 changes: 2 additions & 2 deletions src/AndreGoepel.AppFoundation.Hosting/packages.lock.json
Original file line number Diff line number Diff line change
Expand Up @@ -604,7 +604,7 @@
},
"Marten.AspNetCore": {
"type": "CentralTransitive",
"requested": "[9.0.2, )",
"requested": "[9.14.1, )",
"resolved": "9.14.1",
"contentHash": "smf1RZMDMlTrl+WYkKHbrZbXI9WJPMPa0ZsFkJ5owmzrOn3kueD4h7cnwZlvCWbaDoybo8XKoZs92yuQ+5OEbg==",
"dependencies": {
Expand Down Expand Up @@ -677,7 +677,7 @@
},
"Quartz.Extensions.Hosting": {
"type": "CentralTransitive",
"requested": "[3.18.1, )",
"requested": "[3.18.2, )",
"resolved": "3.18.2",
"contentHash": "6uSMAm4FArjtVoxBjlkA+gHL1Eln2ngIOnRTrVrYxtSlM5PpLQd2aV+fc/OOwfwt+AyDm69HOAybEFqVvyyG2A==",
"dependencies": {
Expand Down
4 changes: 2 additions & 2 deletions src/AndreGoepel.AppFoundation/packages.lock.json
Original file line number Diff line number Diff line change
Expand Up @@ -287,7 +287,7 @@
},
"Marten.AspNetCore": {
"type": "CentralTransitive",
"requested": "[9.0.2, )",
"requested": "[9.14.1, )",
"resolved": "9.14.1",
"contentHash": "smf1RZMDMlTrl+WYkKHbrZbXI9WJPMPa0ZsFkJ5owmzrOn3kueD4h7cnwZlvCWbaDoybo8XKoZs92yuQ+5OEbg==",
"dependencies": {
Expand All @@ -296,7 +296,7 @@
},
"Quartz.Extensions.Hosting": {
"type": "CentralTransitive",
"requested": "[3.18.1, )",
"requested": "[3.18.2, )",
"resolved": "3.18.2",
"contentHash": "6uSMAm4FArjtVoxBjlkA+gHL1Eln2ngIOnRTrVrYxtSlM5PpLQd2aV+fc/OOwfwt+AyDm69HOAybEFqVvyyG2A==",
"dependencies": {
Expand Down
15 changes: 8 additions & 7 deletions tests/AndreGoepel.AppFoundation.Tests/packages.lock.json
Original file line number Diff line number Diff line change
Expand Up @@ -83,11 +83,6 @@
"resolved": "1.3.1",
"contentHash": "aHaTONAIw9m1aaDaq+maJD93A4fni+XbrucJ2YoZwou//sZL6Zo0xSpsuKr8tztpKd7xrRWfYPu/azfEylXwrA=="
},
"AngleSharp": {
"type": "Transitive",
"resolved": "1.4.0",
"contentHash": "6ph8mpaQx0KL0COYRt0kI8MB9gSp1PtKijKMhJU//+aVFgKAJLKDesG/+26JSaVCOrHNgPf12wpfoyRcMYOeXg=="
},
"AngleSharp.Css": {
"type": "Transitive",
"resolved": "1.0.0-beta.157",
Expand Down Expand Up @@ -791,6 +786,12 @@
"Radzen.Blazor": "11.1.3"
}
},
"AngleSharp": {
"type": "CentralTransitive",
"requested": "[1.5.2, )",
"resolved": "1.5.2",
"contentHash": "LVZ7rrr6GHbhERhTgVDarVygl1e6KwE96pronA90LBOMacDhxR4lB+xYLjn/vlnUu+xbOB2RM9fuCPEx5bdyWA=="
},
"MailKit": {
"type": "CentralTransitive",
"requested": "[4.17.0, )",
Expand All @@ -815,7 +816,7 @@
},
"Marten.AspNetCore": {
"type": "CentralTransitive",
"requested": "[9.0.2, )",
"requested": "[9.14.1, )",
"resolved": "9.14.1",
"contentHash": "smf1RZMDMlTrl+WYkKHbrZbXI9WJPMPa0ZsFkJ5owmzrOn3kueD4h7cnwZlvCWbaDoybo8XKoZs92yuQ+5OEbg==",
"dependencies": {
Expand Down Expand Up @@ -894,7 +895,7 @@
},
"Quartz.Extensions.Hosting": {
"type": "CentralTransitive",
"requested": "[3.18.1, )",
"requested": "[3.18.2, )",
"resolved": "3.18.2",
"contentHash": "6uSMAm4FArjtVoxBjlkA+gHL1Eln2ngIOnRTrVrYxtSlM5PpLQd2aV+fc/OOwfwt+AyDm69HOAybEFqVvyyG2A==",
"dependencies": {
Expand Down
Loading