Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

EDGCOMMON-74: aws-java-sdk-ssm 1.12.645 removing ion-java 1.0.2 #95

Merged
merged 1 commit into from
Jan 30, 2024

Conversation

julianladisch
Copy link
Contributor

https://issues.folio.org/browse/EDGCOMMON-74

Upgrade aws-java-sdk-ssm from 1.12.562 to 1.12.645. This removes the dependency and usage of software.amazon.ion:[email protected] that has an Allocation of Resources Without Limits or Throttling vulnerability:

https://nvd.nist.gov/vuln/detail/CVE-2024-21634
aws/aws-sdk-java#3077 (comment)

https://issues.folio.org/browse/EDGCOMMON-74

Upgrade aws-java-sdk-ssm from 1.12.562 to 1.12.645.
This removes the dependency and usage of software.amazon.ion:[email protected]
that has an Allocation of Resources Without Limits or Throttling vulnerability:

https://nvd.nist.gov/vuln/detail/CVE-2024-21634
aws/aws-sdk-java#3077 (comment)
Copy link

sonarcloud bot commented Jan 27, 2024

Quality Gate Passed Quality Gate passed

Kudos, no new issues were introduced!

0 New issues
0 Security Hotspots
No data about Coverage
0.0% Duplication on New Code

See analysis details on SonarCloud

@julianladisch julianladisch merged commit 21cfce1 into master Jan 30, 2024
4 checks passed
@julianladisch julianladisch deleted the EDGCOMMON-74-aws-java-sdk-ssm-1.12.645 branch January 30, 2024 22:29
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants