From 584dfd7712be7c238ef86c8ea4d009a61b33c75c Mon Sep 17 00:00:00 2001 From: vasraz Date: Thu, 3 Mar 2022 11:38:39 +0000 Subject: Update vulnerable dependencies Change-Id: Id1098d2e0aceb3fb507e32994925d36f23ad8517 Signed-off-by: Vasyl Razinkov Issue-ID: SDC-3895 --- catalog-be/pom.xml | 12 ++++++++---- catalog-be/src/main/docker/backend/Dockerfile | 2 +- 2 files changed, 9 insertions(+), 5 deletions(-) (limited to 'catalog-be') diff --git a/catalog-be/pom.xml b/catalog-be/pom.xml index 8bf5515d87..8cddf173d6 100644 --- a/catalog-be/pom.xml +++ b/catalog-be/pom.xml @@ -603,14 +603,14 @@ esapi ${org.owasp.esapi.version} - - xerces - xercesImpl - log4j log4j + + commons-io + commons-io + commons-fileupload commons-fileupload @@ -627,6 +627,10 @@ xml-apis xml-apis + + xerces + xercesImpl + diff --git a/catalog-be/src/main/docker/backend/Dockerfile b/catalog-be/src/main/docker/backend/Dockerfile index 5e49f57202..902695519b 100644 --- a/catalog-be/src/main/docker/backend/Dockerfile +++ b/catalog-be/src/main/docker/backend/Dockerfile @@ -26,7 +26,7 @@ RUN mkdir $JETTY_FOLDER && chown onap:onap $JETTY_FOLDER USER onap #Download jetty -RUN wget https://repo1.maven.org/maven2/org/eclipse/jetty/jetty-distribution/${jetty.version}/jetty-distribution-${jetty.version}.tar.gz -O $JETTY_FOLDER/jetty.tar.gz && \ +RUN wget https://repo1.maven.org/maven2/org/eclipse/jetty/jetty-distribution/${jetty-distribution.version}/jetty-distribution-${jetty-distribution.version}.tar.gz -O $JETTY_FOLDER/jetty.tar.gz && \ tar xvz -C $JETTY_FOLDER -f $JETTY_FOLDER/jetty.tar.gz --strip 1 && \ rm -rf $JETTY_FOLDER/jetty.tar.gz -- cgit 1.2.3-korg