aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorguochuyicmri <guochuyi@chinamobile.com>2019-05-16 19:44:28 +0800
committerguochuyicmri <guochuyi@chinamobile.com>2019-05-16 19:44:33 +0800
commitebdcdab7b4e84068814c01241d4bb847fca66b5a (patch)
tree00c9ff059fe55ea941ed70aa3e31f575bdec425a
parentd1f6623a5b690355dcc9d25494ce002e01d4b5ec (diff)
Fix usecase-ui security risks
Change-Id: Iba150e755d60c181caa20b8b1ef721a19ca97631 Issue-ID: USECASEUI-258 Signed-off-by: guochuyicmri <guochuyi@chinamobile.com>
-rw-r--r--pom.xml15
-rw-r--r--server/pom.xml12
2 files changed, 6 insertions, 21 deletions
diff --git a/pom.xml b/pom.xml
index 39d5a5b7..3921d55a 100644
--- a/pom.xml
+++ b/pom.xml
@@ -41,21 +41,6 @@
<siteNexusPath>content/sites/site/${project.groupId}/${project.artifactId}/${project.version}/</siteNexusPath>
</properties>
- <distributionManagement>
- <repository>
- <id>onap-releases</id>
- <url>${nexusproxy}/${releaseNexusPath}</url>
- </repository>
- <snapshotRepository>
- <id>onap-snapshots</id>
- <url>${nexusproxy}/${snapshotNexusPath}</url>
- </snapshotRepository>
- <site>
- <id>onap-site</id>
- <url>dav:${nexusproxy}${siteNexusPath}</url>
- </site>
- </distributionManagement>
-
<!-- Specify the repositories here to avoid coordination of ~/.m2/settings.xml
files among developers. Use values (not properties) so oparent can be resolved. -->
<repositories>
diff --git a/server/pom.xml b/server/pom.xml
index 1e062d07..e597dbf1 100644
--- a/server/pom.xml
+++ b/server/pom.xml
@@ -95,6 +95,7 @@
<dependency>
<groupId>org.springframework.data</groupId>
<artifactId>spring-data-rest-hal-browser</artifactId>
+ <version>2.6.21.RELEASE</version>
</dependency>
<dependency>
<groupId>org.springframework.boot</groupId>
@@ -158,6 +159,11 @@
<!-- security vulnerabilities -->
<dependency>
+ <groupId>org.apache.tomcat.embed</groupId>
+ <artifactId>tomcat-embed-websocket</artifactId>
+ <version>8.5.32</version>
+ </dependency>
+ <dependency>
<groupId>ch.qos.logback</groupId>
<artifactId>logback-classic</artifactId>
<version>1.2.3</version>
@@ -286,12 +292,6 @@
</dependency>
<dependency>
- <groupId>com.google.guava</groupId>
- <artifactId>guava</artifactId>
- <version>23.0</version>
- </dependency>
-
- <dependency>
<groupId>org.onap.msb.java-sdk</groupId>
<artifactId>msb-java-sdk</artifactId>
<version>1.0.0</version>