nebula-plugins / gradle-ospackage-plugin

Gradle plugin for constructing linux packages, specifically RPM and DEBs.
Apache License 2.0
367 stars 123 forks source link

Upgrade jdeb to 1.10 due to transitive vulnerabilities #418

Open gregallen opened 1 year ago

gregallen commented 1 year ago

There are a number of vulnerabilities flagged for 1.8

d630 commented 1 year ago

But also for achieving reproducible builds: https://github.com/tcurdt/jdeb/pull/363, https://github.com/tcurdt/jdeb/commit/563212124561357e4bbd3a33b70624b6b41f8718