File tree Expand file tree Collapse file tree 5 files changed +17
-5
lines changed Expand file tree Collapse file tree 5 files changed +17
-5
lines changed Original file line number Diff line number Diff line change 3636 </exclusion >
3737 </exclusions >
3838 </dependency >
39+ <!-- overwrite azure-storage jackson-core dependency due to CVEs -->
40+ <dependency >
41+ <groupId >com.fasterxml.jackson.core</groupId >
42+ <artifactId >jackson-core</artifactId >
43+ <version >${jackson.version} </version >
44+ </dependency >
3945 </dependencies >
4046</project >
Original file line number Diff line number Diff line change 3636 <version >${io.opentelemetry.version} </version >
3737 </dependency >
3838 <dependency >
39- <groupId >io.opentelemetry</groupId >
39+ <groupId >io.opentelemetry.semconv </groupId >
4040 <artifactId >opentelemetry-semconv</artifactId >
41- <version >1.30.1-alpha </version >
41+ <version >1.37.0 </version >
4242 </dependency >
4343 <dependency >
4444 <groupId >io.opentelemetry</groupId >
Original file line number Diff line number Diff line change 157157 <dependency >
158158 <groupId >io.opentelemetry.instrumentation</groupId >
159159 <artifactId >opentelemetry-instrumentation-annotations</artifactId >
160- <version >${io.opentelemetry.version} </version >
160+ <version >2.21.0 </version >
161161 </dependency >
162162 <dependency >
163163 <groupId >org.apache.commons</groupId >
Original file line number Diff line number Diff line change 2222 <jersey .jakarta.version>3.0.4</jersey .jakarta.version>
2323 <project .build.sourceEncoding>UTF-8</project .build.sourceEncoding>
2424 <poi .version>5.4.1</poi .version>
25- <jackson .version>2.14.1 </jackson .version>
25+ <jackson .version>2.16.2 </jackson .version>
2626 <junit .version>4.13.2</junit .version>
2727 <software .awssdk.version>2.35.6</software .awssdk.version>
2828 <software .azure.cosmos.version>4.74.0</software .azure.cosmos.version>
2929 <log4j .version>2.21.1</log4j .version>
30- <io .opentelemetry.version>1.28 .0</io .opentelemetry.version>
30+ <io .opentelemetry.version>1.56 .0</io .opentelemetry.version>
3131 <org .bouncycastle.version>1.82</org .bouncycastle.version>
3232 <commons-io .version>2.15.1</commons-io .version>
3333 <commons-codec .version>1.15</commons-codec .version>
Original file line number Diff line number Diff line change 104104 </exclusion >
105105 </exclusions >
106106 </dependency >
107+ <!-- overwrite jaxws-rt woodstox-core dependency due to CVEs -->
108+ <dependency >
109+ <groupId >com.fasterxml.woodstox</groupId >
110+ <artifactId >woodstox-core</artifactId >
111+ <version >6.5.1</version >
112+ </dependency >
107113 </dependencies >
108114
109115 <build >
You can’t perform that action at this time.
0 commit comments