Skip to content

Commit ee3e229

Browse files
committed
chore: Upgrade packages to combat CVE in dependencies. Fixes #1593
1 parent c0260b1 commit ee3e229

File tree

2 files changed

+26
-25
lines changed

2 files changed

+26
-25
lines changed

CHANGELOG.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -16,6 +16,7 @@ All notable changes to **bUnit** will be documented in this file. The project ad
1616
### Fixed
1717

1818
- Use latest `System.Text.Json` due to CVE in `8.0.4`.
19+
- Fixed other packages that have a CVE like `Microsoft.Extensions.Caching.Memory`. Reported by [@polajenko](https://github.com/polajenko). Fixed by [@linkdotnet](https://github.com/linkdotnet).
1920

2021
## [1.32.7] - 2024-10-04
2122

Directory.Packages.props

Lines changed: 25 additions & 25 deletions
Original file line numberDiff line numberDiff line change
@@ -15,7 +15,7 @@
1515
<PackageVersion Include="Autofac" Version="8.1.0" />
1616
<PackageVersion Include="Autofac.Extensions.DependencyInjection" Version="10.0.0" />
1717

18-
<PackageVersion Include="Serilog" Version="4.0.2"/>
18+
<PackageVersion Include="Serilog" Version="4.1.0"/>
1919
<PackageVersion Include="Serilog.Expressions" Version="5.0.0"/>
2020
<PackageVersion Include="AngleSharp.Diffing" Version="1.0.0"/>
2121
<PackageVersion Include="AngleSharp" Version="1.1.2"/>
@@ -24,7 +24,7 @@
2424

2525
<ItemGroup Label="Package Versioning">
2626
<PackageVersion Include="Microsoft.SourceLink.GitHub" Version="8.0.0" />
27-
<PackageVersion Include="Nerdbank.GitVersioning" Version="3.6.143" />
27+
<PackageVersion Include="Nerdbank.GitVersioning" Version="3.6.146" />
2828
</ItemGroup>
2929

3030
<ItemGroup Label="System.Text.Json Vulnerability">
@@ -65,7 +65,7 @@
6565

6666
<PackageVersion Include="Microsoft.AspNetCore.Components.Authorization" Version="6.0.33"/>
6767
<PackageVersion Include="Microsoft.Extensions.Localization.Abstractions" Version="6.0.33"/>
68-
<PackageVersion Include="Microsoft.Extensions.Caching.Memory" Version="6.0.1"/>
68+
<PackageVersion Include="Microsoft.Extensions.Caching.Memory" Version="6.0.2"/>
6969
<PackageVersion Include="Microsoft.AspNetCore.Components.Web" Version="6.0.33"/>
7070
<PackageVersion Include="Microsoft.AspNetCore.Components.WebAssembly" Version="6.0.33"/>
7171
<PackageVersion Include="Microsoft.AspNetCore.Components.WebAssembly.Authentication" Version="6.0.33"/>
@@ -85,29 +85,29 @@
8585
</ItemGroup>
8686

8787
<ItemGroup Condition="'$(TargetFramework)' == 'net8.0'">
88-
<PackageVersion Include="Microsoft.Extensions.Logging" Version="8.0.0"/>
89-
<PackageVersion Include="Microsoft.Extensions.Logging.Abstractions" Version="8.0.1"/>
90-
<PackageVersion Include="Microsoft.AspNetCore.Components" Version="8.0.8"/>
91-
92-
<PackageVersion Include="Microsoft.AspNetCore.Components.Authorization" Version="8.0.8"/>
93-
<PackageVersion Include="Microsoft.Extensions.Localization.Abstractions" Version="8.0.8"/>
94-
<PackageVersion Include="Microsoft.Extensions.Caching.Memory" Version="8.0.0"/>
95-
<PackageVersion Include="Microsoft.AspNetCore.Components.Web" Version="8.0.8"/>
96-
<PackageVersion Include="Microsoft.AspNetCore.Components.WebAssembly" Version="8.0.8"/>
97-
<PackageVersion Include="Microsoft.AspNetCore.Components.WebAssembly.Authentication" Version="8.0.8"/>
88+
<PackageVersion Include="Microsoft.Extensions.Logging" Version="8.0.1"/>
89+
<PackageVersion Include="Microsoft.Extensions.Logging.Abstractions" Version="8.0.2"/>
90+
<PackageVersion Include="Microsoft.AspNetCore.Components" Version="8.0.10"/>
91+
92+
<PackageVersion Include="Microsoft.AspNetCore.Components.Authorization" Version="8.0.10"/>
93+
<PackageVersion Include="Microsoft.Extensions.Localization.Abstractions" Version="8.0.10"/>
94+
<PackageVersion Include="Microsoft.Extensions.Caching.Memory" Version="8.0.1"/>
95+
<PackageVersion Include="Microsoft.AspNetCore.Components.Web" Version="8.0.10"/>
96+
<PackageVersion Include="Microsoft.AspNetCore.Components.WebAssembly" Version="8.0.10"/>
97+
<PackageVersion Include="Microsoft.AspNetCore.Components.WebAssembly.Authentication" Version="8.0.10"/>
9898
</ItemGroup>
9999

100100
<ItemGroup Condition="'$(TargetFramework)' == 'net9.0'">
101-
<PackageVersion Include="Microsoft.Extensions.Logging" Version="9.0.0-rc.1.24431.7"/>
102-
<PackageVersion Include="Microsoft.Extensions.Logging.Abstractions" Version="9.0.0-rc.1.24431.7"/>
103-
<PackageVersion Include="Microsoft.AspNetCore.Components" Version="9.0.0-rc.1.24452.1"/>
104-
105-
<PackageVersion Include="Microsoft.AspNetCore.Components.Authorization" Version="9.0.0-rc.1.24452.1"/>
106-
<PackageVersion Include="Microsoft.Extensions.Localization.Abstractions" Version="9.0.0-rc.1.24452.1"/>
107-
<PackageVersion Include="Microsoft.Extensions.Caching.Memory" Version="9.0.0-rc.1.24431.7"/>
108-
<PackageVersion Include="Microsoft.AspNetCore.Components.Web" Version="9.0.0-rc.1.24452.1"/>
109-
<PackageVersion Include="Microsoft.AspNetCore.Components.WebAssembly" Version="9.0.0-rc.1.24452.1"/>
110-
<PackageVersion Include="Microsoft.AspNetCore.Components.WebAssembly.Authentication" Version="9.0.0-rc.1.24452.1"/>
101+
<PackageVersion Include="Microsoft.Extensions.Logging" Version="9.0.0-rc.2.24473.5"/>
102+
<PackageVersion Include="Microsoft.Extensions.Logging.Abstractions" Version="9.0.0-rc.2.24473.5"/>
103+
<PackageVersion Include="Microsoft.AspNetCore.Components" Version="9.0.0-rc.2.24474.3"/>
104+
105+
<PackageVersion Include="Microsoft.AspNetCore.Components.Authorization" Version="9.0.0-rc.2.24474.3"/>
106+
<PackageVersion Include="Microsoft.Extensions.Localization.Abstractions" Version="9.0.0-rc.2.24474.3"/>
107+
<PackageVersion Include="Microsoft.Extensions.Caching.Memory" Version="9.0.0-rc.2.24473.5"/>
108+
<PackageVersion Include="Microsoft.AspNetCore.Components.Web" Version="9.0.0-rc.2.24474.3"/>
109+
<PackageVersion Include="Microsoft.AspNetCore.Components.WebAssembly" Version="9.0.0-rc.2.24474.3"/>
110+
<PackageVersion Include="Microsoft.AspNetCore.Components.WebAssembly.Authentication" Version="9.0.0-rc.2.24474.3"/>
111111
</ItemGroup>
112112

113113
<ItemGroup Label="Test Dependencies">
@@ -117,13 +117,13 @@
117117
<PackageVersion Include="MSTest.TestFramework" Version="3.6.0" />
118118
<PackageVersion Include="Microsoft.NET.Test.Sdk" Version="17.11.1"/>
119119
<PackageVersion Include="Moq" Version="4.20.72" />
120-
<PackageVersion Include="NSubstitute" Version="5.1.0" />
120+
<PackageVersion Include="NSubstitute" Version="5.3.0" />
121121
<PackageVersion Include="NUnit3TestAdapter" Version="4.6.0" />
122122
<PackageVersion Include="RichardSzalay.MockHttp" Version="7.0.0" />
123123
<PackageVersion Include="Serilog.Extensions.Logging" Version="8.0.0" />
124124
<PackageVersion Include="Shouldly" Version="4.2.1"/>
125125
<PackageVersion Include="Verify.SourceGenerators" Version="2.5.0"/>
126-
<PackageVersion Include="Verify.Xunit" Version="26.6.0"/>
126+
<PackageVersion Include="Verify.Xunit" Version="28.1.0"/>
127127
<PackageVersion Include="Xunit.Combinatorial" Version="1.6.24"/>
128128
<PackageVersion Include="coverlet.collector" Version="6.0.2" />
129129
<PackageVersion Include="coverlet.msbuild" Version="6.0.2" />

0 commit comments

Comments
 (0)