Skip to content

Commit 1bbe8e4

Browse files
author
bridgeit-devops-bot
committed
Fix 7 vulnerable dependencies identified by Prisma Cloud
1 parent 75554fa commit 1bbe8e4

File tree

4 files changed

+7
-7
lines changed

4 files changed

+7
-7
lines changed

packages/pom.xml

+1-1
Original file line numberDiff line numberDiff line change
@@ -28,7 +28,7 @@
2828
<dependency>
2929
<groupId>org.apache.commons</groupId>
3030
<artifactId>commons-compress</artifactId>
31-
<version>1.15</version>
31+
<version>1.21</version>
3232
</dependency>
3333
<dependency>
3434
<groupId>junit</groupId>

packages/requirements.txt

+1-1
Original file line numberDiff line numberDiff line change
@@ -1,2 +1,2 @@
1-
django==1.2
1+
django == 3.2.4
22

packages/sub/.hidden/requirements.txt

+1-1
Original file line numberDiff line numberDiff line change
@@ -1,2 +1,2 @@
1-
django==1.2
1+
django == 3.2.4
22

packages/sub/pom.xml

+4-4
Original file line numberDiff line numberDiff line change
@@ -23,14 +23,14 @@
2323
<maven.compiler.source>1.7</maven.compiler.source>
2424
<maven.compiler.target>1.7</maven.compiler.target>
2525
<cloud.function.context.version>3.1.0</cloud.function.context.version>
26-
<log4j.version>2.14.0</log4j.version>
26+
<log4j.version>2.17.1</log4j.version>
2727
</properties>
2828

2929
<dependencies>
3030
<dependency>
3131
<groupId>com.fasterxml.jackson.core</groupId>
3232
<artifactId>jackson-databind</artifactId>
33-
<version>2.12.4</version>
33+
<version>2.16.0</version>
3434
</dependency>
3535
<dependency>
3636
<groupId>org.apache.logging.log4j</groupId>
@@ -40,12 +40,12 @@
4040
<dependency>
4141
<groupId>org.apache.commons</groupId>
4242
<artifactId>commons-compress</artifactId>
43-
<version>1.20</version>
43+
<version>1.21</version>
4444
</dependency>
4545
<dependency>
4646
<groupId>org.springframework</groupId>
4747
<artifactId>spring-core</artifactId>
48-
<version>5.3.0</version>
48+
<version>6.0.8</version>
4949
</dependency>
5050
</dependencies>
5151

0 commit comments

Comments
 (0)