Skip to content

Commit e0991f9

Browse files
authored
kafka upgrade (#48)
1 parent b823806 commit e0991f9

File tree

3 files changed

+13
-36
lines changed

3 files changed

+13
-36
lines changed

build.gradle.kts

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -2,10 +2,10 @@ import org.hypertrace.gradle.publishing.HypertracePublishExtension
22
import org.hypertrace.gradle.publishing.License
33

44
plugins {
5-
id("org.hypertrace.repository-plugin") version "0.4.0"
5+
id("org.hypertrace.repository-plugin") version "0.4.1"
66
id("org.hypertrace.ci-utils-plugin") version "0.3.0"
7-
id("org.hypertrace.avro-plugin") version "0.3.1" apply false
8-
id("org.hypertrace.publish-plugin") version "1.0.2" apply false
7+
id("org.hypertrace.avro-plugin") version "0.4.0" apply false
8+
id("org.hypertrace.publish-plugin") version "1.0.4" apply false
99
id("org.hypertrace.jacoco-report-plugin") version "0.2.0" apply false
1010
}
1111

kafka-streams-framework/build.gradle.kts

Lines changed: 7 additions & 21 deletions
Original file line numberDiff line numberDiff line change
@@ -15,33 +15,19 @@ dependencies {
1515
compileOnly("org.projectlombok:lombok:1.18.24")
1616

1717
api(project(":kafka-streams-serdes"))
18-
api("com.typesafe:config:1.4.2")
19-
api("org.apache.kafka:kafka-streams:6.0.1-ccs")
20-
api("io.confluent:kafka-streams-avro-serde:6.0.1")
18+
api("org.apache.kafka:kafka-streams:7.2.1-ccs")
19+
api("io.confluent:kafka-streams-avro-serde:7.2.1")
2120

2221
implementation("com.google.guava:guava:31.1-jre")
23-
implementation("org.apache.avro:avro:1.10.2")
24-
implementation("org.apache.kafka:kafka-clients:6.0.1-ccs")
22+
implementation("org.apache.avro:avro:1.11.1")
23+
implementation("org.apache.kafka:kafka-clients:7.2.1-ccs")
2524
implementation("org.hypertrace.core.serviceframework:platform-metrics:0.1.39")
2625
implementation("org.hypertrace.core.serviceframework:platform-service-framework:0.1.39")
2726
implementation("org.apache.commons:commons-lang3:3.12.0")
2827

29-
30-
constraints {
31-
api("org.glassfish.jersey.core:jersey-common:2.34") {
32-
because("https://snyk.io/vuln/SNYK-JAVA-ORGGLASSFISHJERSEYCORE-1255637")
33-
}
34-
35-
implementation("com.fasterxml.jackson.core:jackson-databind:2.13.2.1") {
36-
because("Denial of Service (DoS) [High Severity]" +
37-
"[https://snyk.io/vuln/SNYK-JAVA-COMFASTERXMLJACKSONCORE-2421244] " +
38-
"in com.fasterxml.jackson.core:jackson-databind@2.13.1")
39-
}
40-
}
41-
42-
testImplementation("org.apache.kafka:kafka-streams-test-utils:6.0.1-ccs")
43-
testImplementation("org.junit.jupiter:junit-jupiter:5.8.2")
44-
testImplementation("org.junit-pioneer:junit-pioneer:1.7.0")
28+
testImplementation("org.apache.kafka:kafka-streams-test-utils:7.2.1-ccs")
29+
testImplementation("org.junit.jupiter:junit-jupiter:5.9.0")
30+
testImplementation("org.junit-pioneer:junit-pioneer:1.7.1")
4531
testImplementation("org.mockito:mockito-core:4.5.1")
4632
testImplementation("org.hamcrest:hamcrest-core:2.2")
4733
testRuntimeOnly("org.apache.logging.log4j:log4j-slf4j-impl:2.17.2")

kafka-streams-serdes/build.gradle.kts

Lines changed: 3 additions & 12 deletions
Original file line numberDiff line numberDiff line change
@@ -11,19 +11,10 @@ tasks.test {
1111
}
1212

1313
dependencies {
14-
api("org.apache.kafka:kafka-streams:6.0.1-ccs")
15-
api("org.apache.avro:avro:1.10.2")
16-
implementation("org.apache.kafka:kafka-clients:6.0.1-ccs")
14+
api("org.apache.kafka:kafka-clients:7.2.1-ccs")
15+
api("org.apache.avro:avro:1.11.1")
16+
1717
testImplementation("org.junit.jupiter:junit-jupiter:5.8.2")
18-
constraints {
19-
api("com.fasterxml.jackson.core:jackson-databind:2.13.2.1") {
20-
because("Denial of Service (DoS) [Medium Severity][https://snyk.io/vuln/SNYK-JAVA-COMFASTERXMLJACKSONCORE-2326698] in com.fasterxml.jackson.core:jackson-databind@2.12.2\n" +
21-
" introduced by org.apache.avro:avro@1.10.2 > com.fasterxml.jackson.core:jackson-databind@2.12.2 and 2 other path(s)")
22-
}
23-
api("org.apache.commons:commons-compress:1.21") {
24-
because("Multiple Vulnerabilities [https://nvd.nist.gov/vuln/detail/CVE-2021-35515] [https://nvd.nist.gov/vuln/detail/CVE-2021-35516] [https://nvd.nist.gov/vuln/detail/CVE-2021-35517] [https://nvd.nist.gov/vuln/detail/CVE-2021-36090] in org.apache.commons:commons-compress@1.20")
25-
}
26-
}
2718
}
2819

2920
// Disabling compatibility check for the test avro definitions.

0 commit comments

Comments
 (0)