v75.19.0 - UAA Release v75.19.0
·
2005 commits
to develop
since this release
Features
- Update to UAA v75.19.0
- Upgrade Tomcat to version 9.0.62
- Upgrade Bellsoft JDK to version 11.0.15+10
- Upgrade Newrelic to version 7.6.0
Bug Fixes
- Bump spring-framework-bom from 5.3.18 to 5.3.19 (#1836), CVE-2022-22968
- Bump spring-security-oauth2 from 2.5.1.RELEASE to 2.5.2.RELEASE (#1840), CVE-2022-22969
- XML External Entity (XXE) fixes reported from Sonar, https://owasp.org/www-community/vulnerabilities/XML_External_Entity_(XXE)_Processing
Dependency bumps
- Bump versions.springBootVersion from 2.6.6 to 2.6.7 (cloudfoundry/uaa#1844)
- Bump versions.bouncyCastleVersion from 1.70 to 1.71 (cloudfoundry/uaa#1845)
- Bump k8s.io from 0.22.8 to 0.23.6 in /k8s (cloudfoundry/uaa#1843)
- Bump spring-framework-bom from 5.3.18 to 5.3.19 (cloudfoundry/uaa#1836)
- Bump nokogiri from 1.13.2 to 1.13.4 in /uaa/slate (cloudfoundry/uaa#1835)
- Bump jasmine-core from 4.0.1 to 4.1.0 in /uaa (cloudfoundry/uaa#1833)
- Bump jasmine from 4.0.2 to 4.1.0 in /uaa (cloudfoundry/uaa#1834)
- Bump greenmail from 1.6.7 to 1.6.8 (cloudfoundry/uaa#1830)