aboutsummaryrefslogtreecommitdiffstats
path: root/vid-app-common/pom.xml
diff options
context:
space:
mode:
authorAmichai Hemli <amichai.hemli@intl.att.com>2019-09-16 10:53:47 +0300
committerAmichai Hemli <amichai.hemli@intl.att.com>2019-09-16 12:49:06 +0300
commit98794615f346c753a94fa5f63f7cbc67792af4c1 (patch)
treed33cdb96d417d984988fe000dad22cf3b7eff6fd /vid-app-common/pom.xml
parent69ea8f5b4c5165b12de7261bfb19625c6dc3d5be (diff)
Upgrade FasterXML/Jackson to version 2.9.9.3
FasterXML jackson-databind versions 2.x through 2.9.9.1 are vulnerable. we will use 2.9.9.3 for jackson-databind only Issue-ID: VID-640 Signed-off-by: Amichai Hemli <amichai.hemli@intl.att.com> Change-Id: I537cb83ad787522b75fdee59ffabb51def747096
Diffstat (limited to 'vid-app-common/pom.xml')
-rwxr-xr-xvid-app-common/pom.xml3
1 files changed, 2 insertions, 1 deletions
diff --git a/vid-app-common/pom.xml b/vid-app-common/pom.xml
index d78bb2e33..6dbaa98b4 100755
--- a/vid-app-common/pom.xml
+++ b/vid-app-common/pom.xml
@@ -33,6 +33,7 @@
so following orm.version lets epsdk-core find it -->
<hibernate.version>4.3.11.Final</hibernate.version>
<jackson.version>2.9.9</jackson.version>
+ <jackson.databind.version>2.9.9.3</jackson.databind.version>
<jersey.version>2.29</jersey.version>
<surefire.version>2.22.1</surefire.version>
<selenium.version>3.141.59</selenium.version>
@@ -617,7 +618,7 @@
<dependency>
<groupId>com.fasterxml.jackson.core</groupId>
<artifactId>jackson-databind</artifactId>
- <version>${jackson.version}</version>
+ <version>${jackson.databind.version}</version>
</dependency>
<dependency>
<groupId>com.fasterxml.jackson.module</groupId>