pravega / schema-registry

Pravega Schema Registry repository
Apache License 2.0
15 stars 23 forks source link

Issue 212: Change dependencies with vulnerability #211

Closed shshashwat closed 3 years ago

shshashwat commented 3 years ago

Signed-off-by: Shashwat Sharma shashwat_sharma@dell.com

Change log description
Change various dependencies which were identified as potential vulnerable across the project

Purpose of the change
Fixes #212

What the code does
Change few of the existing library dependencies to a higher version com.fasterxml.jackson.core_jackson-databind - 2.9.8 -> 2.9.11 org.yaml_snakeyaml - 1.23 -> 1.26 org.apache.commons_commons-compress - 1.18 -> 1.19

How to verify it
All tests and build should go successful, the changed lib versions shouldn't be caught in further scans