Skip to content

Commit 12e695e

Browse files
wernerdvshowuon
authored andcommitted
KAFKA-19520 Bump Commons-Lang for CVE-2025-48924 (#20196)
Bump Commons-Lang for CVE-2025-48924. Reviewers: Luke Chen <[email protected]>, Federico Valeri <[email protected]>
1 parent 70c5164 commit 12e695e

File tree

3 files changed

+5
-2
lines changed

3 files changed

+5
-2
lines changed

LICENSE-binary

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -209,7 +209,7 @@ License Version 2.0:
209209
- commons-beanutils-1.11.0
210210
- commons-collections-3.2.2
211211
- commons-digester-2.1
212-
- commons-lang3-3.12.0
212+
- commons-lang3-3.18.0
213213
- commons-logging-1.3.5
214214
- commons-validator-1.9.0
215215
- jackson-annotations-2.16.2

build.gradle

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -199,7 +199,8 @@ allprojects {
199199
libs.scalaReflect,
200200
// Workaround before `commons-validator` has new release. See KAFKA-19359.
201201
libs.commonsBeanutils,
202-
libs.jacksonAnnotations
202+
libs.jacksonAnnotations,
203+
libs.commonsLang
203204
)
204205
}
205206
}

gradle/dependencies.gradle

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -61,6 +61,7 @@ versions += [
6161
bndlib: "7.0.0",
6262
checkstyle: project.hasProperty('checkstyleVersion') ? checkstyleVersion : "10.20.2",
6363
commonsBeanutils: "1.11.0",
64+
commonsLang: "3.18.0",
6465
commonsValidator: "1.9.0",
6566
classgraph: "4.8.173",
6667
gradle: "8.10.2",
@@ -150,6 +151,7 @@ libs += [
150151
caffeine: "com.github.ben-manes.caffeine:caffeine:$versions.caffeine",
151152
classgraph: "io.github.classgraph:classgraph:$versions.classgraph",
152153
commonsBeanutils: "commons-beanutils:commons-beanutils:$versions.commonsBeanutils",
154+
commonsLang: "org.apache.commons:commons-lang3:$versions.commonsLang",
153155
commonsValidator: "commons-validator:commons-validator:$versions.commonsValidator",
154156
jacksonAnnotations: "com.fasterxml.jackson.core:jackson-annotations:$versions.jackson",
155157
jacksonDatabind: "com.fasterxml.jackson.core:jackson-databind:$versions.jackson",

0 commit comments

Comments
 (0)