Skip to content

Dbacld 213393 CVE 2026 24400 assertj core 3.14.0#1577

Merged
akumar074 merged 2 commits intokiegroup:7.67.x-bluefrom
SoniyaAbraham89:DBACLD-213393-CVE-2026-24400-assertj-core-3.14.0
Mar 30, 2026
Merged

Dbacld 213393 CVE 2026 24400 assertj core 3.14.0#1577
akumar074 merged 2 commits intokiegroup:7.67.x-bluefrom
SoniyaAbraham89:DBACLD-213393-CVE-2026-24400-assertj-core-3.14.0

Conversation

@SoniyaAbraham89
Copy link
Copy Markdown

@SoniyaAbraham89 SoniyaAbraham89 commented Mar 25, 2026

Update assertj-core version to 3.27.7 to fix GHSA-rqfh-9r24-8c9r

Closes https://jsw.ibm.com/browse/DBACLD-213393

referenced Pull Requests: (please edit the URLs of referenced pullrequests if they exist)

How to replicate CI configuration locally?

Build Chain tool does "simple" maven build(s), the builds are just Maven commands, but because the repositories relates and depends on each other and any change in API or class method could affect several of those repositories there is a need to use build-chain tool to handle cross repository builds and be sure that we always use latest version of the code for each repository.

build-chain tool is a build tool which can be used on command line locally or in Github Actions workflow(s), in case you need to change multiple repositories and send multiple dependent pull requests related with a change you can easily reproduce the same build by executing it on Github hosted environment or locally in your development environment. See local execution details to get more information about it.

How to retest this PR or trigger a specific build:
  • a pull request please add comment: Jenkins retest this

  • a full downstream build please add comment: Jenkins run fdb

  • a compile downstream build please add comment: Jenkins run cdb

  • a full production downstream build please add comment: Jenkins execute product fdb

  • an upstream build please add comment: Jenkins run upstream

How to backport a pull request to a different branch?

In order to automatically create a backporting pull request please add one or more labels having the following format backport-<branch-name>, where <branch-name> is the name of the branch where the pull request must be backported to (e.g., backport-7.67.x to backport the original PR to the 7.67.x branch).

NOTE: backporting is an action aiming to move a change (usually a commit) from a branch (usually the main one) to another one, which is generally referring to a still maintained release branch. Keeping it simple: it is about to move a specific change or a set of them from one branch to another.

Once the original pull request is successfully merged, the automated action will create one backporting pull request per each label (with the previous format) that has been added.

If something goes wrong, the author will be notified and at this point a manual backporting is needed.

NOTE: this automated backporting is triggered whenever a pull request on main branch is labeled or closed, but both conditions must be satisfied to get the new PR created.

@SoniyaAbraham89
Copy link
Copy Markdown
Author

This PR is the fix for FDB failure in kiegroup/droolsjbpm-build-bootstrap#2636

@akumar074
Copy link
Copy Markdown
Member

Merging this PR as FDB test failures are unrelated.

@akumar074 akumar074 merged commit a5a7d8d into kiegroup:7.67.x-blue Mar 30, 2026
0 of 5 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants