SoftwareAG / cumulocity-clients-java

This repository contains Cumulocity client libraries for Java. This is a read-only mirror
8 stars 6 forks source link

MTM-56458 Update Spring security config due to vulnerabilities #385

Closed tsvet closed 11 months ago

tsvet commented 11 months ago

This PR is in the context of https://cumulocity.atlassian.net/browse/MTM-56458 to address CVE-2023-34034

The spring-boot-dependencies are set to version 2.7.17 and with that the vulnerable component spring-security-config is upgraded to the non-vulnerable version 5.7.11.