Skip to content

Commit

Permalink
Merge pull request apache#492 from yhcast0/KE-35596
Browse files Browse the repository at this point in the history
KE-35596 Update jackson & tomcat version for vulnerability issue
  • Loading branch information
yhcast0 committed Jul 6, 2022
2 parents 00f228b + 3032bcf commit 0761c8b
Showing 1 changed file with 6 additions and 4 deletions.
10 changes: 6 additions & 4 deletions pom.xml
Expand Up @@ -170,7 +170,8 @@
<!-- for now, not running scalafmt as part of default verify pipeline -->
<scalafmt.skip>true</scalafmt.skip>
<codehaus.jackson.version>1.9.13</codehaus.jackson.version>
<fasterxml.jackson.version>2.13.1</fasterxml.jackson.version>
<fasterxml.jackson.version>2.13.3</fasterxml.jackson.version>
<fasterxml.jackson-databind.version>2.13.2.2</fasterxml.jackson-databind.version>
<snappy.version>1.1.8.4</snappy.version>
<netlib.java.version>1.1.2</netlib.java.version>
<netlib.ludovic.dev.version>2.2.0</netlib.ludovic.dev.version>
Expand Down Expand Up @@ -200,6 +201,7 @@
<commons-cli.version>1.2</commons-cli.version>
<bouncycastle.version>1.60</bouncycastle.version>
<tink.version>1.6.0</tink.version>
<tomcat.version>9.0.63</tomcat.version>
<!--
If you are changing Arrow version specification, please check
./python/pyspark/sql/pandas/utils.py, and ./python/setup.py too.
Expand Down Expand Up @@ -814,7 +816,7 @@
<dependency>
<groupId>com.fasterxml.jackson.core</groupId>
<artifactId>jackson-databind</artifactId>
<version>${fasterxml.jackson.version}</version>
<version>${fasterxml.jackson-databind.version}</version>
</dependency>
<dependency>
<groupId>com.fasterxml.jackson.core</groupId>
Expand Down Expand Up @@ -2429,12 +2431,12 @@
<dependency>
<groupId>org.apache.tomcat.embed</groupId>
<artifactId>tomcat-embed-core</artifactId>
<version>8.5.75</version>
<version>${tomcat.version}</version>
</dependency>
<dependency>
<groupId>org.apache.tomcat</groupId>
<artifactId>tomcat-annotations-api</artifactId>
<version>8.5.75</version>
<version>${tomcat.version}</version>
</dependency>
<dependency>
<groupId>org.apache.thrift</groupId>
Expand Down

0 comments on commit 0761c8b

Please sign in to comment.