Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump GSON dependency to 2.8.9 #526

Merged
merged 1 commit into from
Nov 4, 2021
Merged

Conversation

evansims
Copy link
Member

@evansims evansims commented Nov 3, 2021

This change bumps the GSON dependency to 2.8.9 to resolve a potential vulnerability in earlier versions of the library reported: https://app.snyk.io/vuln/SNYK-JAVA-COMGOOGLECODEGSON-1730327

This change bumps [the GSON dependency to 2.8.9](https://github.com/google/gson/releases/tag/gson-parent-2.8.9) to resolve a potential vulnerability in earlier versions of the library reported: https://app.snyk.io/vuln/SNYK-JAVA-COMGOOGLECODEGSON-1730327
@sergiught sergiught marked this pull request as ready for review November 4, 2021 10:04
@sergiught sergiught requested a review from a team as a code owner November 4, 2021 10:04
@evansims evansims added CH: Security dependencies One or more dependencies are being bumped review:tiny Tiny review labels Nov 4, 2021
@evansims evansims merged commit 270d4f4 into main Nov 4, 2021
@evansims evansims deleted the chore/dependency/update-gson-2.8.9 branch November 4, 2021 12:29
@evansims evansims added this to the 2.5.1 milestone Nov 4, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
CH: Security dependencies One or more dependencies are being bumped review:tiny Tiny review
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants