Skip to content

Fix Security Violation#966

Open
agrasth wants to merge 1 commit intomasterfrom
violationFix
Open

Fix Security Violation#966
agrasth wants to merge 1 commit intomasterfrom
violationFix

Conversation

@agrasth
Copy link
Copy Markdown

@agrasth agrasth commented Mar 13, 2026


Title: Fix security audit violations - upgrade build-info, bouncy castle, commons-*

Description:
Upgrade vulnerable direct dependencies to resolve jf audit security violations.

  • build-info-extractor: 2.41.21 → 2.43.6
  • bouncy castle: 1.77 → 1.78
  • commons-compress: added override at 1.26.0
  • commons-io: added override at 2.18.0
  • commons-lang3: added override at 3.18.0

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants