Skip to content

Commit 2fb26c5

Browse files
committed
[Io7UetI2] Update org.apache.poi to 5.3.0 to mitigate CVE-2024-25710 and CVE-2024-26308
1 parent 3f983de commit 2fb26c5

File tree

4 files changed

+11
-11
lines changed

4 files changed

+11
-11
lines changed

docs/asciidoc/modules/ROOT/partials/xls-dependencies.adoc

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -7,12 +7,12 @@ Once that file is downloaded, it should be placed in the `plugins` directory and
77
Alternatively, you can download these jars from Maven Repository (putting them into `plugins` directory as well):
88

99
.For XLS files:
10-
* https://repo1.maven.org/maven2/org/apache/poi/poi/5.1.0/poi-5.1.0.jar[poi-5.1.0.jar^]
10+
* https://repo1.maven.org/maven2/org/apache/poi/poi/5.3.0/poi-5.3.0.jar[poi-5.3.0.jar^]
1111
1212
.Additional for XLSX files:
1313
* https://repo1.maven.org/maven2/org/apache/commons/commons-collections4/4.4/commons-collections4-4.4.jar[commons-collections4-4.4.jar^]
14-
* https://repo1.maven.org/maven2/org/apache/poi/poi-ooxml/5.1.0/poi-ooxml-5.1.0.jar[poi-ooxml-5.1.0.jar^]
15-
* https://repo1.maven.org/maven2/org/apache/poi/poi-ooxml-lite/5.1.0/poi-ooxml-lite-5.1.0.jar[poi-ooxml-lite-5.1.0.jar^]
14+
* https://repo1.maven.org/maven2/org/apache/poi/poi-ooxml/5.3.0/poi-ooxml-5.3.0.jar[poi-ooxml-5.3.0.jar^]
15+
* https://repo1.maven.org/maven2/org/apache/poi/poi-ooxml-lite/5.3.0/poi-ooxml-lite-5.3.0.jar[poi-ooxml-lite-5.3.0.jar^]
1616
* https://repo1.maven.org/maven2/org/apache/xmlbeans/xmlbeans/5.0.2/xmlbeans-5.0.2.jar[xmlbeans-5.0.2.jar^]
1717
* https://repo1.maven.org/maven2/com/github/virtuald/curvesapi/1.06/curvesapi-1.06.jar[curvesapi-1.06.jar^]
1818

extra-dependencies/xls/build.gradle

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -20,9 +20,9 @@ jar {
2020
}
2121

2222
dependencies {
23-
implementation group: 'org.apache.poi', name: 'poi', version: '5.1.0'
24-
implementation group: 'org.apache.poi', name: 'poi-ooxml-lite', version: '5.1.0'
25-
implementation group: 'org.apache.poi', name: 'poi-ooxml', version: '5.1.0' , {
23+
implementation group: 'org.apache.poi', name: 'poi', version: '5.3.0'
24+
implementation group: 'org.apache.poi', name: 'poi-ooxml-lite', version: '5.3.0'
25+
implementation group: 'org.apache.poi', name: 'poi-ooxml', version: '5.3.0' , {
2626
exclude group: 'org.apache.commons', module: 'commons-compress'
2727
}
2828
implementation group: 'org.apache.xmlbeans', name: 'xmlbeans', version: '5.0.2'

full/build.gradle

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -64,10 +64,10 @@ dependencies {
6464
// compileOnly "org.antlr:antlr4-runtime:4.7.2"
6565
// testCompile "org.antlr:antlr4-runtime:4.7.2"
6666

67-
compileOnly "org.apache.poi:poi:5.1.0"
68-
testImplementation "org.apache.poi:poi:5.1.0"
69-
compileOnly "org.apache.poi:poi-ooxml:5.1.0"
70-
testImplementation "org.apache.poi:poi-ooxml:5.1.0"
67+
compileOnly "org.apache.poi:poi:5.3.0"
68+
testImplementation "org.apache.poi:poi:5.3.0"
69+
compileOnly "org.apache.poi:poi-ooxml:5.3.0"
70+
testImplementation "org.apache.poi:poi-ooxml:5.3.0"
7171

7272
implementation 'org.jsoup:jsoup:1.15.3'
7373

full/src/main/java/apoc/export/xls/ExportXlsHandler.java

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -64,7 +64,7 @@
6464
public class ExportXlsHandler {
6565
public static final String XLS_MISSING_DEPS_ERROR =
6666
"Cannot find the needed jar into the plugins folder in order to use . \n"
67-
+ "Please see the documentation: https://neo4j.com/labs/apoc/5/overview/apoc.export/apoc.export.xls.all/#_install_dependencies";
67+
+ "Please see the documentation: https://neo4j.com/labs/apoc/4.4/overview/apoc.export/apoc.export.xls.all/#_install_dependencies";
6868

6969
public static Stream<ProgressInfo> getProgressInfoStream(
7070
String fileName,

0 commit comments

Comments
 (0)