Skip to content

fix: bump java core dependency to get new gson#131

Merged
padamstx merged 1 commit intomainfrom
bump-core
Nov 5, 2021
Merged

fix: bump java core dependency to get new gson#131
padamstx merged 1 commit intomainfrom
bump-core

Conversation

@padamstx
Copy link
Copy Markdown
Contributor

@padamstx padamstx commented Nov 5, 2021

PR summary

This commit updates the java core dependency to 9.13.4
which in turn will use a new version of gson (2.8.9),
which will address a recent security vulnerability.

PR Checklist

Please make sure that your PR fulfills the following requirements:

  • The commit message follows the Angular Commit Message Guidelines.
  • Tests for the changes have been added (for bug fixes / features)
  • Docs have been added / updated (for bug fixes / features)

Current vs new behavior

Does this PR introduce a breaking change?

  • Yes
  • No

Other information

This commit updates the java core dependency to 9.13.4
which in turn will use a new version of gson (2.8.9),
which will address a recent security vulnerability.
@padamstx padamstx self-assigned this Nov 5, 2021
@padamstx padamstx requested a review from rmkeezer November 5, 2021 15:28
Copy link
Copy Markdown

@rmkeezer rmkeezer left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@padamstx padamstx merged commit 62c0248 into main Nov 5, 2021
@padamstx padamstx deleted the bump-core branch November 5, 2021 15:45
ibm-devx-sdk pushed a commit that referenced this pull request Nov 5, 2021
## [0.22.3](0.22.2...0.22.3) (2021-11-05)

### Bug Fixes

* bump java core dependency to get new gson ([#131](#131)) ([62c0248](62c0248))
@ibm-devx-sdk
Copy link
Copy Markdown
Contributor

🎉 This PR is included in version 0.22.3 🎉

The release is available on GitHub release

Your semantic-release bot 📦🚀

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants