Skip to content

Commit f5c6997

Browse files
张文领zhangwl9
authored andcommitted
Fix high CVEs in dependencies, including Zookeeper, Jackson-Core, and Snappy-Java.
1 parent 99ecf53 commit f5c6997

File tree

1 file changed

+9
-2
lines changed

1 file changed

+9
-2
lines changed

pom.xml

Lines changed: 9 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -149,14 +149,15 @@
149149
<fabric8-kubernetes-client.version.version>6.13.5</fabric8-kubernetes-client.version.version>
150150
<amoro-shade.version>0.7.0-incubating</amoro-shade.version>
151151
<amoro-shade-guava.version>32.1.1-jre</amoro-shade-guava.version>
152-
<amoro-shade-jackson.version>2.14.2</amoro-shade-jackson.version>
153-
<amoro-shade-zookeeper.version>3.9.1</amoro-shade-zookeeper.version>
152+
<amoro-shade-jackson.version>2.15.0</amoro-shade-jackson.version>
153+
<amoro-shade-zookeeper.version>3.9.3</amoro-shade-zookeeper.version>
154154
<amoro-shade-thrift.version>0.20.0</amoro-shade-thrift.version>
155155
<annotation-api.version>1.3.2</annotation-api.version>
156156
<guava.version>32.1.1-jre</guava.version>
157157
<hudi.version>0.14.1</hudi.version>
158158
<pagehelper.version>6.1.0</pagehelper.version>
159159
<jsqlparser.version>4.7</jsqlparser.version>
160+
<snappy-java.version>1.1.10.1</snappy-java.version>
160161

161162
<rocksdb-dependency-scope>compile</rocksdb-dependency-scope>
162163
<lucene-dependency-scope>compile</lucene-dependency-scope>
@@ -434,6 +435,12 @@
434435
<version>${commons-beanutils.version}</version>
435436
</dependency>
436437

438+
<dependency>
439+
<groupId>org.xerial.snappy</groupId>
440+
<artifactId>snappy-java</artifactId>
441+
<version>${snappy-java.version}</version>
442+
</dependency>
443+
437444
<dependency>
438445
<groupId>org.apache.kerby</groupId>
439446
<artifactId>kerb-simplekdc</artifactId>

0 commit comments

Comments
 (0)