Skip to content

Commit 1e025e6

Browse files
ShahimSharafudeenimjalpreet
authored andcommitted
Upgrade reactor-netty-http to 1.2.8 to address CVE-2025-22227
Upgrade netty version to 4.1.122.Final to resolve upper bound dependencies error
1 parent 05a28ce commit 1e025e6

File tree

2 files changed

+14
-3
lines changed

2 files changed

+14
-3
lines changed

pom.xml

Lines changed: 14 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -83,7 +83,8 @@
8383
<dep.commons.compress.version>1.26.2</dep.commons.compress.version>
8484
<dep.protobuf-java.version>4.29.0</dep.protobuf-java.version>
8585
<dep.jetty.version>12.0.18</dep.jetty.version>
86-
<dep.netty.version>4.1.119.Final</dep.netty.version>
86+
<dep.netty.version>4.1.122.Final</dep.netty.version>
87+
<dep.reactor-netty.version>1.2.8</dep.reactor-netty.version>
8788
<dep.snakeyaml.version>2.0</dep.snakeyaml.version>
8889
<dep.gson.version>2.12.1</dep.gson.version>
8990
<dep.commons.lang3.version>3.18.0</dep.commons.lang3.version>
@@ -1555,6 +1556,18 @@
15551556
<version>0.11.5</version>
15561557
</dependency>
15571558

1559+
<dependency>
1560+
<groupId>io.projectreactor.netty</groupId>
1561+
<artifactId>reactor-netty-core</artifactId>
1562+
<version>${dep.reactor-netty.version}</version>
1563+
</dependency>
1564+
1565+
<dependency>
1566+
<groupId>io.projectreactor.netty</groupId>
1567+
<artifactId>reactor-netty-http</artifactId>
1568+
<version>${dep.reactor-netty.version}</version>
1569+
</dependency>
1570+
15581571
<dependency>
15591572
<groupId>org.apache.thrift</groupId>
15601573
<artifactId>libthrift</artifactId>

presto-main/pom.xml

Lines changed: 0 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -267,13 +267,11 @@
267267
<dependency>
268268
<groupId>io.projectreactor.netty</groupId>
269269
<artifactId>reactor-netty-core</artifactId>
270-
<version>1.1.29</version>
271270
</dependency>
272271

273272
<dependency>
274273
<groupId>io.projectreactor.netty</groupId>
275274
<artifactId>reactor-netty-http</artifactId>
276-
<version>1.1.29</version>
277275
</dependency>
278276

279277
<dependency>

0 commit comments

Comments
 (0)