Closed dependabot[bot] closed 1 month ago
Hi @amitsendinblue @swrnm,
The version of Okio used is too low and has many CVE vulnerabilities. Could you please accept and merge it?
Thanks guys!
Hi @cyrilcolinet, The new version of Brevo Java SDK is released, we have updated the okio version in new version. https://central.sonatype.com/artifact/com.brevo/brevo Thanks
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version
or @dependabot ignore this minor version
.
If you change your mind, just re-open this PR and I'll resolve any conflicts on it.
Bumps com.squareup.okio:okio from 1.14.0 to 1.17.6.
Changelog
Sourced from com.squareup.okio:okio's changelog.
... (truncated)
Commits
7599853
[maven-release-plugin] prepare release okio-parent-1.17.6b4fa875
Fix a bug where xlen larger than 0x7fff was rejected (#1334)e68262c
Add missing@Override
to Watchdog.run() method5e92577
Merge pull request #694 from edenrox/patch-273bfe94
Switch travis to use openjdk82dd7db8
[maven-release-plugin] prepare for next development iteration147e8e3
[maven-release-plugin] prepare release okio-parent-1.17.55c28000
Merge pull request #687 from square/jwilson.1211.empty_tail_segment_1x94dba1e
Remove empty tail segment (1.x branch)a4aa971
[maven-release-plugin] prepare for next development iterationDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show