From c192055aaaa8af184716d071356e75d5b68ce9bc Mon Sep 17 00:00:00 2001 From: vv770d Date: Wed, 23 Feb 2022 18:38:50 +0000 Subject: [DCAEMOD/Helm-gen] Vulnerability updates Change-Id: I0b5398ccb0af01bfbaf6c600eef5623810ce95c3 Signed-off-by: vv770d Issue-ID: DCAEGEN2-3052 Signed-off-by: vv770d --- mod2/helm-generator/Changelog.md | 3 + mod2/helm-generator/helmchartgenerator-cli/pom.xml | 24 +- .../helm-generator/helmchartgenerator-core/pom.xml | 21 +- mod2/helm-generator/pom.xml | 280 +++++++++++---------- mod2/helm-generator/version.properties | 2 +- 5 files changed, 186 insertions(+), 144 deletions(-) diff --git a/mod2/helm-generator/Changelog.md b/mod2/helm-generator/Changelog.md index fb4b06f..2dabb70 100644 --- a/mod2/helm-generator/Changelog.md +++ b/mod2/helm-generator/Changelog.md @@ -5,6 +5,9 @@ All notable changes to this project will be documented in this file. The format is based on [Keep a Changelog](http://keepachangelog.com/) and this project adheres to [Semantic Versioning](http://semver.org/). +## [1.0.3]- 2022-02-23 +* [DCAEGEN2-3052] Vulnerability fixes for okhttp & commons-io modules + ## [1.0.2]- 2021-11-05 * [DCAEGEN2-2936] Convert streams_publishes and streams_subscribes json strings under applicationConfig to map * [DCAEGEN2-2948] Spec schema changes: Change Cluster to ClusterIP, make policy-id as required field diff --git a/mod2/helm-generator/helmchartgenerator-cli/pom.xml b/mod2/helm-generator/helmchartgenerator-cli/pom.xml index a9dd0ee..3229e94 100644 --- a/mod2/helm-generator/helmchartgenerator-cli/pom.xml +++ b/mod2/helm-generator/helmchartgenerator-cli/pom.xml @@ -1,14 +1,31 @@ + 4.0.0 org.onap.dcaegen2.platform helmchartgenerator - 1.0.2-SNAPSHOT + 1.0.3-SNAPSHOT helmchartgenerator-cli - 1.0.2-SNAPSHOT + 1.0.3-SNAPSHOT helmchartgenerator-cli UTF-8 @@ -17,7 +34,7 @@ org.onap.dcaegen2.platform helmchartgenerator-core - 1.0.2-SNAPSHOT + 1.0.3-SNAPSHOT @@ -25,6 +42,7 @@ org.springframework.boot spring-boot-maven-plugin + 2.6.2 diff --git a/mod2/helm-generator/helmchartgenerator-core/pom.xml b/mod2/helm-generator/helmchartgenerator-core/pom.xml index 0ced9dd..1b9dc35 100644 --- a/mod2/helm-generator/helmchartgenerator-core/pom.xml +++ b/mod2/helm-generator/helmchartgenerator-core/pom.xml @@ -1,14 +1,31 @@ + 4.0.0 org.onap.dcaegen2.platform helmchartgenerator - 1.0.2-SNAPSHOT + 1.0.3-SNAPSHOT helmchartgenerator-core - 1.0.2-SNAPSHOT + 1.0.3-SNAPSHOT helmchartgenerator-core UTF-8 diff --git a/mod2/helm-generator/pom.xml b/mod2/helm-generator/pom.xml index 8409274..52d1427 100644 --- a/mod2/helm-generator/pom.xml +++ b/mod2/helm-generator/pom.xml @@ -1,7 +1,7 @@ - 4.0.0 - pom - - helmchartgenerator-core - helmchartgenerator-cli - - - org.onap.oparent - oparent - 2.0.0 - + xsi:schemaLocation="http://maven.apache.org/POM/4.0.0 https://maven.apache.org/xsd/maven-4.0.0.xsd"> + 4.0.0 + pom + + helmchartgenerator-core + helmchartgenerator-cli + + + org.onap.oparent + oparent + 2.0.0 + - org.onap.dcaegen2.platform - helmchartgenerator - 1.0.2-SNAPSHOT - helm-chart-generator - Helm chart generator - - 11 - ${java.version} - ${java.version} - 2.4.0 - 3.0.2 - ${project.basedir}/target/surefire-reports - - ${project.basedir}/target/surefire-reports - - ${project.basedir}/target/site/jacoco-ut/jacoco.xml - - - - - org.springframework.boot - spring-boot-starter - - - org.springframework.boot - spring-boot-starter-test - test - - - org.junit.vintage - junit-vintage-engine - - - - - commons-io - commons-io - 2.4 - - - org.projectlombok - lombok - 1.18.20 - - - com.fasterxml.jackson.core - jackson-databind - 2.10.3 - - - com.fasterxml.jackson.dataformat - jackson-dataformat-yaml - 2.9.8 - - - org.everit.json - org.everit.json.schema - 1.3.0 - - - com.vaadin.external.google - android-json - 0.0.20131108.vaadin1 - compile - - - com.squareup.okhttp3 - okhttp - 4.0.1 - - - com.squareup.okhttp3 - mockwebserver - 4.0.1 - test - - - - - - - org.springframework.boot - spring-boot-dependencies - ${spring-boot.version} - pom - import - - - - - - - org.apache.maven.plugins - maven-javadoc-plugin - 2.10.2 - - -Xdoclint:all - -Xlint:all - - + org.onap.dcaegen2.platform + helmchartgenerator + 1.0.3-SNAPSHOT + helm-chart-generator + Helm chart generator + + 11 + ${java.version} + ${java.version} + 2.4.0 + 3.0.2 + ${project.basedir}/target/surefire-reports + + ${project.basedir}/target/surefire-reports + + ${project.basedir}/target/site/jacoco-ut/jacoco.xml + + + + + org.springframework.boot + spring-boot-starter + + + org.springframework.boot + spring-boot-starter-test + test + + + org.junit.vintage + junit-vintage-engine + + + com.fasterxml.jackson.core + jackson-databind + + + + + commons-io + commons-io + 2.11.0 + + + org.projectlombok + lombok + 1.18.20 + + + com.fasterxml.jackson.core + jackson-databind + 2.10.3 + + + com.fasterxml.jackson.dataformat + jackson-dataformat-yaml + 2.9.8 + + + org.everit.json + org.everit.json.schema + 1.3.0 + + + com.vaadin.external.google + android-json + 0.0.20131108.vaadin1 + compile + + + com.squareup.okhttp3 + okhttp + 4.9.3 + + + com.squareup.okhttp3 + mockwebserver + 4.0.1 + test + + + + + + + org.springframework.boot + spring-boot-dependencies + ${spring-boot.version} + pom + import + + + + + + + org.apache.maven.plugins + maven-javadoc-plugin + 2.10.2 + + -Xdoclint:all + -Xlint:all + + - - org.apache.maven.plugins - maven-surefire-report-plugin - 2.6 - - - test - - report - - - - - - org.apache.maven.plugins - maven-surefire-plugin - 2.22.2 - - - org.sonarsource.scanner.maven - sonar-maven-plugin - ${sonar.maven.plugin} - - - + + org.apache.maven.plugins + maven-surefire-report-plugin + 2.6 + + + test + + report + + + + + + org.apache.maven.plugins + maven-surefire-plugin + 2.22.2 + + + org.sonarsource.scanner.maven + sonar-maven-plugin + ${sonar.maven.plugin} + + + diff --git a/mod2/helm-generator/version.properties b/mod2/helm-generator/version.properties index c13587b..ab6cbfe 100644 --- a/mod2/helm-generator/version.properties +++ b/mod2/helm-generator/version.properties @@ -1,6 +1,6 @@ major=1 minor=0 -patch=2 +patch=3 base_version=${major}.${minor}.${patch} release_version=${base_version} snapshot_version=${base_version}-SNAPSHOT -- cgit 1.2.3-korg