From b0ef04537df52322f1d51148ef612c19d7b23696 Mon Sep 17 00:00:00 2001 From: wasala Date: Mon, 16 Apr 2018 09:52:34 +0200 Subject: Security issues fix *Already upgraded versions of dependencies according to information from jira issue description. Change-Id: Ic2b59e5b6c1bf7420b21463f271471f7be6cc34a Issue-ID: DCAEGEN2-426 Signed-off-by: wasala --- pom.xml | 60 ++++++++++++++++++++++++++++++++++++++++++------ prh-aai-client/pom.xml | 3 --- prh-app-server/pom.xml | 37 +++++++++++++++++++++++++++-- prh-dmaap-client/pom.xml | 1 - 4 files changed, 88 insertions(+), 13 deletions(-) diff --git a/pom.xml b/pom.xml index d22256f6..ccaa9888 100644 --- a/pom.xml +++ b/pom.xml @@ -51,8 +51,8 @@ 8 3.7.0 - - + 8.5.28 + 0.4.11 2.5.6 @@ -311,7 +311,7 @@ com.spotify docker-maven-plugin - 0.4.11 + ${docker.maven.version} true @@ -407,7 +407,27 @@ com.spotify docker-maven-plugin - 1.0.0 + ${docker.maven.version} + + + org.bouncycastle + bcprov-jdk15on + 1.59 + + + org.bouncycastle + bcpkix-jdk15on + 1.59 + + + org.codehaus.plexus + plexus-utils + 3.1.0 + + + com.github.jnr + jnr-posix + 3.0.44 org.apache.httpcomponents @@ -427,12 +447,32 @@ org.springframework spring-beans - 5.0.4.RELEASE + 5.0.5.RELEASE + + + org.springframework + spring-context + 5.0.5.RELEASE com.fasterxml.jackson.datatype jackson-datatype-jdk8 - 2.6.3 + 2.9.5 + + + org.apache.tomcat.embed + tomcat-embed-core + ${tomcat.version} + + + org.apache.tomcat.embed + tomcat-embed-el + ${tomcat.version} + + + org.apache.tomcat.embed + tomcat-embed-websocket + ${tomcat.version} @@ -496,10 +536,16 @@ 6.14.2 test + + org.glassfish.jersey.connectors + jersey-apache-connector + 2.25.1 + test + org.springframework.boot spring-boot-starter-test - 2.0.0.RELEASE + 2.0.1.RELEASE test diff --git a/prh-aai-client/pom.xml b/prh-aai-client/pom.xml index 95d758e8..390e053e 100644 --- a/prh-aai-client/pom.xml +++ b/prh-aai-client/pom.xml @@ -54,12 +54,9 @@ org.springframework spring-beans - - org.springframework spring-context - 3.0.2.RELEASE com.google.guava diff --git a/prh-app-server/pom.xml b/prh-app-server/pom.xml index e21b8fae..1b5ed131 100644 --- a/prh-app-server/pom.xml +++ b/prh-app-server/pom.xml @@ -116,10 +116,38 @@ com.spotify docker-maven-plugin + + org.bouncycastle + bcprov-jdk15on + + + org.bouncycastle + bcpkix-jdk15on + + + org.codehaus.plexus + plexus-utils + + + com.github.jnr + jnr-posix + com.fasterxml.jackson.datatype jackson-datatype-jdk8 + + org.apache.tomcat.embed + tomcat-embed-core + + + org.apache.tomcat.embed + tomcat-embed-el + + + org.apache.tomcat.embed + tomcat-embed-websocket + @@ -165,6 +193,11 @@ mockito-core test + + org.glassfish.jersey.connectors + jersey-apache-connector + test + org.testng testng @@ -172,12 +205,12 @@ org.onap.dcaegen2.services.prh prh-aai-client - ${parent.version} + ${project.parent.version} org.onap.dcaegen2.services.prh prh-dmaap-client - ${parent.version} + ${project.parent.version} diff --git a/prh-dmaap-client/pom.xml b/prh-dmaap-client/pom.xml index 94808cf8..4d93831b 100644 --- a/prh-dmaap-client/pom.xml +++ b/prh-dmaap-client/pom.xml @@ -88,7 +88,6 @@ org.springframework spring-context - 4.3.3.RELEASE \ No newline at end of file -- cgit 1.2.3-korg