Skip to content

Commit eb593c3

Browse files
committed
Sonatype reports security issues with a transitive dependency com.google.protobuf:protobuf-java:3.7.0 #10
Remove dependency on org.scala-sbt:compiler-interface that is introducing the dependency
1 parent e7fe7c1 commit eb593c3

File tree

1 file changed

+3
-2
lines changed

1 file changed

+3
-2
lines changed

build.sbt

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -109,11 +109,12 @@ lazy val scala_console = (project in file("scala-console"))
109109
"org.scalafx" %% "scalafx-extras" % "0.7.0",
110110
"org.scalatest" %% "scalatest" % "3.2.15" % "test"
111111
),
112+
// Exclude due to security issue with its dependency "com.google.protobuf":"protobuf-java":"3.7.0"
112113
libraryDependencies ++= (
113114
if(isScala2(scalaVersion.value))
114-
Seq("org.scala-lang" % "scala-compiler" % scalaVersion.value)
115+
Seq("org.scala-lang" % "scala-compiler" % scalaVersion.value exclude("org.scala-sbt", "compiler-interface"))
115116
else
116-
Seq("org.scala-lang" % "scala3-compiler_3" % scalaVersion.value)
117+
Seq("org.scala-lang" % "scala3-compiler_3" % scalaVersion.value exclude("org.scala-sbt", "compiler-interface"))
117118
),
118119
// // @formatter:on
119120
libraryDependencies ++= (

0 commit comments

Comments
 (0)