Skip to content

Commit 95c21e1

Browse files
committed
Address vulnerabilities as indicated by NVD.
1 parent 236d384 commit 95c21e1

File tree

2 files changed

+11
-4
lines changed

2 files changed

+11
-4
lines changed

exist-core/pom.xml

Lines changed: 10 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -145,7 +145,7 @@
145145
<dependency>
146146
<groupId>org.bouncycastle</groupId>
147147
<artifactId>bcprov-jdk18on</artifactId>
148-
<version>1.77</version>
148+
<version>1.78.1</version>
149149
</dependency>
150150

151151
<dependency>
@@ -338,7 +338,13 @@
338338
<dependency>
339339
<groupId>xalan</groupId>
340340
<artifactId>xalan</artifactId>
341-
<version>2.7.2</version> <!-- needed an compile time for various dependencies -->
341+
<version>2.7.3</version> <!-- needed an compile time for various dependencies -->
342+
</dependency>
343+
344+
<dependency>
345+
<groupId>xalan</groupId>
346+
<artifactId>serializer</artifactId>
347+
<version>2.7.3</version>
342348
</dependency>
343349

344350
<dependency>
@@ -565,7 +571,7 @@
565571
<dependency>
566572
<groupId>commons-fileupload</groupId>
567573
<artifactId>commons-fileupload</artifactId>
568-
<version>1.4</version>
574+
<version>1.5</version>
569575
</dependency>
570576
<dependency>
571577
<!--
@@ -955,6 +961,7 @@ The BaseX Team. The original license statement is also included below.]]></pream
955961
<ignoredUnusedDeclaredDependency>org.fusesource.jansi:jansi:jar:${jansi.version}</ignoredUnusedDeclaredDependency>
956962
<ignoredUnusedDeclaredDependency>net.sourceforge.nekohtml:nekohtml:jar:1.9.22</ignoredUnusedDeclaredDependency>
957963
<ignoredUnusedDeclaredDependency>xml-resolver:xml-resolver:jar:1.2</ignoredUnusedDeclaredDependency>
964+
<ignoredUnusedDeclaredDependency>xalan:serializer:jar:2.7.3</ignoredUnusedDeclaredDependency>
958965
<ignoredUnusedDeclaredDependency>org.xmlresolver:xmlresolver:jar:${xmlresolver.version}</ignoredUnusedDeclaredDependency>
959966
<ignoredUnusedDeclaredDependency>org.exist-db.thirdparty.org.eclipse.wst.xml:xpath2:jar:1.2.0</ignoredUnusedDeclaredDependency>
960967
<ignoredUnusedDeclaredDependency>edu.princeton.cup:java-cup:jar:10k</ignoredUnusedDeclaredDependency>

exist-parent/pom.xml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -118,7 +118,7 @@
118118
<milton.version>1.8.1.3</milton.version>
119119
<saxon.version>9.9.1-8</saxon.version>
120120
<xmlresolver.version>4.6.4</xmlresolver.version>
121-
<xmlunit.version>2.9.1</xmlunit.version>
121+
<xmlunit.version>2.10.0</xmlunit.version>
122122
<junit.version>4.13.2</junit.version>
123123
<junit.platform.version>1.10.2</junit.platform.version>
124124
<junit.jupiter.version>5.10.2</junit.jupiter.version>

0 commit comments

Comments
 (0)