From e9dd953b4fd098fe325f9be010203b7665e85951 Mon Sep 17 00:00:00 2001 From: SchulzeStTSI <67590336+SchulzeStTSI@users.noreply.github.com> Date: Thu, 16 Dec 2021 13:31:45 +0100 Subject: [PATCH] Update pom.xml (#68) * Update pom.xml * Update pom.xml * Update pom.xml * Update pom.xml * Update pom.xml * Update pom.xml Co-authored-by: Simon Laurenz --- owasp/suppressions.xml | 4 +++ pom.xml | 59 +++++++++++++++++++++++++----------------- 2 files changed, 39 insertions(+), 24 deletions(-) diff --git a/owasp/suppressions.xml b/owasp/suppressions.xml index a900841..9dd8c28 100644 --- a/owasp/suppressions.xml +++ b/owasp/suppressions.xml @@ -28,4 +28,8 @@ CVE-2021-22118 + + H2 is only used for Unit Testing. Version 2.x includes major breaking changes. + CVE-2021-23463 + diff --git a/pom.xml b/pom.xml index 8936aef..05e669c 100644 --- a/pom.xml +++ b/pom.xml @@ -24,25 +24,26 @@ UTF-8 UTF-8 - 6.1.1 - 2.5.6 - 2020.0.4 - 3.0.5 - 5.3.5 - 5.5.1 - 1.18.20 - 4.3.3 - 1.5.12 + 6.5.0 + 2.6.1 + 2021.0.0 + 3.1.0 + 5.3.12 + 5.6.0 + 1.18.22 + 4.6.2 + 1.6.0 5.8.1 - 5.8.1 2.3.0 1.4.2.Final - 4.0.0 - 1.68 + 4.1.0 + 1.70 4.9.2 - 4.29.0 - 1.1.3 + 4.30.0 + 1.1.7 3.57.0 + 1.7.32 + 2.16.0 3.1.2 3.6.1.1688 @@ -97,6 +98,21 @@ + + org.apache.logging.log4j + log4j-to-slf4j + ${log4j2.version} + + + org.apache.logging.log4j + log4j-api + ${log4j2.version} + + + org.apache.logging.log4j + log4j-core + ${log4j2.version} + org.springframework.boot spring-boot-dependencies @@ -105,11 +121,11 @@ import - org.springframework.cloud - spring-cloud-openfeign-dependencies - ${spring.cloud.openfeign.version} - pom - import + org.springframework.cloud + spring-cloud-openfeign-dependencies + ${spring.cloud.openfeign.version} + pom + import org.springframework.cloud @@ -184,11 +200,6 @@ ${junit.version} test - - org.junit.vintage - junit-vintage-engine - ${junit.vintage.version} - org.springframework.boot spring-boot-starter-test