Skip to content

Commit 0edeb9e

Browse files
Specifying version of httpclient to address high security vulnerability identified by SNYK
1 parent 4326815 commit 0edeb9e

File tree

1 file changed

+6
-1
lines changed

1 file changed

+6
-1
lines changed

refactor-first-maven-plugin/pom.xml

Lines changed: 6 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -28,7 +28,12 @@
2828
<version>3.2.2</version>
2929
</dependency>
3030

31-
31+
<!-- Needed since Doxia 1.9.2 uses an insecure version -->
32+
<dependency>
33+
<groupId>org.apache.httpcomponents</groupId>
34+
<artifactId>httpclient</artifactId>
35+
<version>4.5.13</version>
36+
</dependency>
3237

3338
<!-- Doxia -->
3439
<!-- Needed since maven-reporting-impl brings in Strust 1.3.8 jars that have CVSS > 8 -->

0 commit comments

Comments
 (0)