From 1dfc14e2ae794d7a9c1cd25301a1c1560f89b96f Mon Sep 17 00:00:00 2001 From: Felix Dittrich <31076102+f11h@users.noreply.github.com> Date: Wed, 21 Jun 2023 12:36:29 +0200 Subject: [PATCH] Feat: Dependency Update (#219) * update dependencies * update pom and suppressions * add jackson overide * Set Jackson BOM * Remove Exclusions --------- Co-authored-by: Gordon Grund --- .gitignore | 1 + owasp/suppressions.xml | 4 ++++ pom.xml | 49 ++++++++++++++++++++++++++---------------- 3 files changed, 36 insertions(+), 18 deletions(-) diff --git a/.gitignore b/.gitignore index f5d73387..b9e6e2a0 100644 --- a/.gitignore +++ b/.gitignore @@ -44,3 +44,4 @@ build/ certs/* .DS_Store +pom.xml.versionsBackup diff --git a/owasp/suppressions.xml b/owasp/suppressions.xml index 431c3754..0a2adce2 100644 --- a/owasp/suppressions.xml +++ b/owasp/suppressions.xml @@ -30,4 +30,8 @@ False positive CVE-2018-14335 + + No fix available, still analyzed + CVE-2023-35116 + diff --git a/pom.xml b/pom.xml index a8e82bef..427925c7 100644 --- a/pom.xml +++ b/pom.xml @@ -1,5 +1,6 @@ - 4.0.0 @@ -7,7 +8,7 @@ org.springframework.cloud spring-cloud-starter-parent - 2022.0.2 + 2022.0.3 @@ -43,19 +44,19 @@ UTF-8 UTF-8 - 2.0.0 + 2.0.2 8.0.2 - 1.6.14 - 1.5.3.Final - 1.72 - 4.1.1 - 1.14.1 - 5.1.0 + 2.1.0 + 1.5.5.Final + 1.74 + 4.3.0 + 1.14.2 + 5.4.0 - 3.4.2 - 3.2.1 + 3.6.0 + 3.3.0 3.9.1.2184 - 0.8.8 + 0.8.10 1.7.1 EU Digital Green Certificate Gateway Service / dgc-gateway @@ -127,11 +128,23 @@ + + + + + com.fasterxml.jackson + jackson-bom + 2.15.2 + import + pom + + + eu.europa.ec.dgc dgc-lib - ${dgclib.version} + ${dgc.lib.version} org.semver4j @@ -147,10 +160,6 @@ com.mysql mysql-connector-j - - com.fasterxml.jackson.core - jackson-databind - org.springframework.boot spring-boot-starter-data-jpa @@ -180,6 +189,10 @@ commons-fileupload commons-fileupload + + org.bouncycastle + bcpkix-jdk15on + @@ -213,7 +226,7 @@ org.springdoc - springdoc-openapi-ui + springdoc-openapi-starter-webmvc-ui ${springdoc.version}