From f678258736b059895c3d8d5fbd3585a3ecd2c6eb Mon Sep 17 00:00:00 2001 From: Deepika Karanji Date: Tue, 11 Oct 2022 12:03:37 +0530 Subject: [PATCH] [Updated]Vulnerability fix based on SNYK report with Code Drop (#62) * high severities fixed Signed-off-by: Deepika Karanji - d0k03k3 * all fixed Signed-off-by: Deepika Karanji - d0k03k3 * Added comments Signed-off-by: Deepika Karanji - d0k03k3 * update to stable version Signed-off-by: Deepika Karanji - d0k03k3 * exclusions Signed-off-by: Deepika Karanji - d0k03k3 Signed-off-by: Deepika Karanji - d0k03k3 Co-authored-by: Deepika Karanji - d0k03k3 --- pom.xml | 41 +++++++++++++++++++++++++++++++++++++---- 1 file changed, 37 insertions(+), 4 deletions(-) diff --git a/pom.xml b/pom.xml index 5b8b32f1..d5797825 100644 --- a/pom.xml +++ b/pom.xml @@ -6,7 +6,7 @@ org.springframework.boot spring-boot-starter-parent - 2.7.1 + 2.7.4 hlf.java.client @@ -19,11 +19,11 @@ 11 0.8.8 - 3.19.2 + 3.19.6 2021.0.3 - @@ -36,11 +36,22 @@ - org.springframework.boot spring-boot-starter + + + + org.yaml + snakeyaml + + + + + org.yaml + snakeyaml + 1.32 org.springframework.boot @@ -49,6 +60,28 @@ org.springframework.boot spring-boot-starter-web + + + + com.fasterxml.jackson.core + jackson-databind + + + + org.apache.tomcat.embed + tomcat-embed-core + + + + + com.fasterxml.jackson.core + jackson-databind + 2.13.4 + + + org.apache.tomcat.embed + tomcat-embed-core + 9.0.62 org.springframework.boot