diff --git a/kop-common-dependencies/pom.xml b/kop-common-dependencies/pom.xml index cae9e61a4d23f01e1d1a11117ff58c23b43aba45..371ad0474378c74af91bd70b745de9907a98572e 100644 --- a/kop-common-dependencies/pom.xml +++ b/kop-common-dependencies/pom.xml @@ -46,8 +46,8 @@ <maven.compiler.target>${java.version}</maven.compiler.target> <project.build.sourceEncoding>UTF-8</project.build.sourceEncoding> - <spring-boot.version>2.7.10</spring-boot.version> - <spring.version>5.3.26</spring.version> + <spring-boot.version>2.7.11</spring-boot.version> + <spring.version>5.3.27</spring.version> <grpc.spring-boot-starter.version>2.14.0.RELEASE</grpc.spring-boot-starter.version> <grpc.version>1.51.1</grpc.version> @@ -61,7 +61,7 @@ <commons-lang3.version>3.12.0</commons-lang3.version> <commons-collections.version>4.4</commons-collections.version> - <java-jwt.version>4.2.1</java-jwt.version> + <java-jwt.version>4.4.0</java-jwt.version> <jjwt.version>0.11.5</jjwt.version> <!--TODO update - welche version verwendet ops --> diff --git a/kop-common-parent/pom.xml b/kop-common-parent/pom.xml index 728f3e68d7f10b0b6efec527a48428737fc7e977..3ada2a94ebf5c7ec274c6a0c7901b8a462064f30 100644 --- a/kop-common-parent/pom.xml +++ b/kop-common-parent/pom.xml @@ -31,7 +31,7 @@ <parent> <groupId>org.springframework.boot</groupId> <artifactId>spring-boot-starter-parent</artifactId> - <version>2.7.10</version> + <version>2.7.11</version> <relativePath /> </parent> @@ -52,15 +52,18 @@ <kop.license.version>1.6.0</kop.license.version> <mapstruct.version>1.5.3.Final</mapstruct.version> - <spring-boot.version>2.7.10</spring-boot.version> + <spring-boot.version>2.7.11</spring-boot.version> <!-- plugins --> - <maven-surefire-plugin.version>3.0.0-M9</maven-surefire-plugin.version> - <maven-failsafe-plugin.version>3.0.0-M9</maven-failsafe-plugin.version> - <jacoco.plugin.version>0.8.8</jacoco.plugin.version> + <maven-surefire-plugin.version>3.0.0</maven-surefire-plugin.version> + <maven-failsafe-plugin.version>3.0.0</maven-failsafe-plugin.version> + <jacoco.plugin.version>0.8.10</jacoco.plugin.version> <sonarqube.version>3.9.1.2184</sonarqube.version> <license.plugin.version>4.1</license.plugin.version> + + <!--overriden to fix security issue CVE-2022-1471 --> + <snakeyaml.version>2.0</snakeyaml.version> </properties> <dependencyManagement>