Skip to content

Commit c8f99cf

Browse files
Copilottrask
andcommitted
Fix CVE-2025-53864 and CVE-2025-22227 by updating vulnerable dependencies
Co-authored-by: trask <[email protected]>
1 parent 38b62ae commit c8f99cf

File tree

2 files changed

+177
-86
lines changed

2 files changed

+177
-86
lines changed
Lines changed: 173 additions & 85 deletions
Original file line numberDiff line numberDiff line change
@@ -1,89 +1,177 @@
11
# This is a Gradle generated file for dependency locking.
22
# Manual edits can break the build and are not advised.
33
# This file is expected to be part of source control.
4-
ch.qos.logback.contrib:logback-json-classic:0.1.5=runtimeClasspath
5-
ch.qos.logback.contrib:logback-json-core:0.1.5=runtimeClasspath
6-
ch.qos.logback:logback-classic:1.3.15=runtimeClasspath
7-
ch.qos.logback:logback-core:1.3.15=runtimeClasspath
8-
com.azure:azure-core-http-netty:1.15.12=runtimeClasspath
9-
com.azure:azure-core:1.55.4=runtimeClasspath
10-
com.azure:azure-identity:1.16.2=runtimeClasspath
11-
com.azure:azure-json:1.5.0=runtimeClasspath
12-
com.azure:azure-monitor-opentelemetry-autoconfigure:1.2.0=runtimeClasspath
13-
com.azure:azure-sdk-bom:1.2.36=runtimeClasspath
14-
com.azure:azure-storage-blob:12.30.1=runtimeClasspath
15-
com.azure:azure-storage-common:12.29.1=runtimeClasspath
16-
com.azure:azure-storage-internal-avro:12.15.1=runtimeClasspath
17-
com.azure:azure-xml:1.2.0=runtimeClasspath
18-
com.fasterxml.jackson.core:jackson-annotations:2.19.2=runtimeClasspath
19-
com.fasterxml.jackson.core:jackson-core:2.19.2=runtimeClasspath
20-
com.fasterxml.jackson.core:jackson-databind:2.19.2=runtimeClasspath
21-
com.fasterxml.jackson.datatype:jackson-datatype-jsr310:2.19.2=runtimeClasspath
22-
com.fasterxml.jackson:jackson-bom:2.19.2=runtimeClasspath
23-
com.github.oshi:oshi-core:6.8.2=runtimeClasspath
24-
com.github.stephenc.jcip:jcip-annotations:1.0-1=runtimeClasspath
25-
com.google.errorprone:error_prone_annotations:2.40.0=runtimeClasspath
26-
com.microsoft.azure:msal4j-persistence-extension:1.3.0=runtimeClasspath
27-
com.microsoft.azure:msal4j:1.21.0=runtimeClasspath
28-
com.nimbusds:content-type:2.3=runtimeClasspath
29-
com.nimbusds:lang-tag:1.7=runtimeClasspath
30-
com.nimbusds:nimbus-jose-jwt:10.0.1=runtimeClasspath
31-
com.nimbusds:oauth2-oidc-sdk:11.23=runtimeClasspath
32-
commons-codec:commons-codec:1.18.0=runtimeClasspath
33-
io.netty:netty-bom:4.2.3.Final=runtimeClasspath
34-
io.netty:netty-buffer:4.2.3.Final=runtimeClasspath
35-
io.netty:netty-codec-base:4.2.3.Final=runtimeClasspath
36-
io.netty:netty-codec-compression:4.2.3.Final=runtimeClasspath
37-
io.netty:netty-codec-dns:4.2.3.Final=runtimeClasspath
38-
io.netty:netty-codec-http2:4.2.3.Final=runtimeClasspath
39-
io.netty:netty-codec-http:4.2.3.Final=runtimeClasspath
40-
io.netty:netty-codec-marshalling:4.2.3.Final=runtimeClasspath
41-
io.netty:netty-codec-protobuf:4.2.3.Final=runtimeClasspath
42-
io.netty:netty-codec-socks:4.2.3.Final=runtimeClasspath
43-
io.netty:netty-codec:4.2.3.Final=runtimeClasspath
44-
io.netty:netty-common:4.2.3.Final=runtimeClasspath
45-
io.netty:netty-handler-proxy:4.2.3.Final=runtimeClasspath
46-
io.netty:netty-handler:4.2.3.Final=runtimeClasspath
47-
io.netty:netty-resolver-dns-classes-macos:4.2.3.Final=runtimeClasspath
48-
io.netty:netty-resolver-dns-native-macos:4.2.3.Final=runtimeClasspath
49-
io.netty:netty-resolver-dns:4.2.3.Final=runtimeClasspath
50-
io.netty:netty-resolver:4.2.3.Final=runtimeClasspath
51-
io.netty:netty-tcnative-boringssl-static:2.0.72.Final=runtimeClasspath
52-
io.netty:netty-tcnative-classes:2.0.72.Final=runtimeClasspath
53-
io.netty:netty-transport-classes-epoll:4.2.3.Final=runtimeClasspath
54-
io.netty:netty-transport-classes-kqueue:4.2.3.Final=runtimeClasspath
55-
io.netty:netty-transport-native-epoll:4.2.3.Final=runtimeClasspath
56-
io.netty:netty-transport-native-kqueue:4.2.3.Final=runtimeClasspath
57-
io.netty:netty-transport-native-unix-common:4.2.3.Final=runtimeClasspath
58-
io.netty:netty-transport:4.2.3.Final=runtimeClasspath
59-
io.opentelemetry.contrib:opentelemetry-jfr-connection:1.47.0-alpha=runtimeClasspath
60-
io.opentelemetry.instrumentation:opentelemetry-instrumentation-bom-alpha:2.18.1-alpha=runtimeClasspath
61-
io.opentelemetry.instrumentation:opentelemetry-instrumentation-bom:2.18.1=runtimeClasspath
62-
io.opentelemetry:opentelemetry-api:1.52.0=runtimeClasspath
63-
io.opentelemetry:opentelemetry-bom-alpha:1.52.0-alpha=runtimeClasspath
64-
io.opentelemetry:opentelemetry-bom:1.52.0=runtimeClasspath
65-
io.opentelemetry:opentelemetry-common:1.52.0=runtimeClasspath
66-
io.opentelemetry:opentelemetry-context:1.52.0=runtimeClasspath
67-
io.opentelemetry:opentelemetry-sdk-common:1.52.0=runtimeClasspath
68-
io.opentelemetry:opentelemetry-sdk-extension-autoconfigure-spi:1.52.0=runtimeClasspath
69-
io.opentelemetry:opentelemetry-sdk-extension-autoconfigure:1.52.0=runtimeClasspath
70-
io.opentelemetry:opentelemetry-sdk-logs:1.52.0=runtimeClasspath
71-
io.opentelemetry:opentelemetry-sdk-metrics:1.52.0=runtimeClasspath
72-
io.opentelemetry:opentelemetry-sdk-trace:1.52.0=runtimeClasspath
73-
io.opentelemetry:opentelemetry-sdk:1.52.0=runtimeClasspath
74-
io.opentelemetry:opentelemetry-semconv:1.30.1-alpha=runtimeClasspath
75-
io.projectreactor.netty:reactor-netty-core:1.0.48=runtimeClasspath
76-
io.projectreactor.netty:reactor-netty-http:1.0.48=runtimeClasspath
77-
io.projectreactor:reactor-core:3.4.41=runtimeClasspath
78-
net.java.dev.jna:jna-platform:5.17.0=runtimeClasspath
79-
net.java.dev.jna:jna:5.17.0=runtimeClasspath
80-
net.minidev:accessors-smart:2.5.2=runtimeClasspath
81-
net.minidev:json-smart:2.5.2=runtimeClasspath
82-
org.apache.commons:commons-lang3:3.17.0=runtimeClasspath
83-
org.apache.commons:commons-text:1.13.1=runtimeClasspath
84-
org.junit:junit-bom:5.13.3=runtimeClasspath
85-
org.reactivestreams:reactive-streams:1.0.4=runtimeClasspath
86-
org.slf4j:jcl-over-slf4j:2.0.17=runtimeClasspath
87-
org.slf4j:slf4j-api:2.0.17=runtimeClasspath
88-
org.testcontainers:testcontainers-bom:1.21.3=runtimeClasspath
4+
ch.qos.logback.contrib:logback-json-classic:0.1.5=runtimeClasspath,testRuntimeClasspath
5+
ch.qos.logback.contrib:logback-json-core:0.1.5=runtimeClasspath,testRuntimeClasspath
6+
ch.qos.logback:logback-classic:1.3.15=runtimeClasspath,testRuntimeClasspath
7+
ch.qos.logback:logback-core:1.3.15=runtimeClasspath,testRuntimeClasspath
8+
codes.rafael.asmjdkbridge:asm-jdk-bridge:0.0.10=testRuntimeClasspath
9+
com.azure:azure-core-http-netty:1.15.12=runtimeClasspath,testRuntimeClasspath
10+
com.azure:azure-core-test:1.26.2=testRuntimeClasspath
11+
com.azure:azure-core:1.55.4=runtimeClasspath,testRuntimeClasspath
12+
com.azure:azure-identity:1.16.2=runtimeClasspath,testRuntimeClasspath
13+
com.azure:azure-json:1.5.0=runtimeClasspath,testRuntimeClasspath
14+
com.azure:azure-monitor-opentelemetry-autoconfigure:1.2.0=runtimeClasspath,testRuntimeClasspath
15+
com.azure:azure-sdk-bom:1.2.36=runtimeClasspath,testRuntimeClasspath
16+
com.azure:azure-storage-blob:12.30.1=runtimeClasspath,testRuntimeClasspath
17+
com.azure:azure-storage-common:12.29.1=runtimeClasspath,testRuntimeClasspath
18+
com.azure:azure-storage-internal-avro:12.15.1=runtimeClasspath,testRuntimeClasspath
19+
com.azure:azure-xml:1.2.0=runtimeClasspath,testRuntimeClasspath
20+
com.fasterxml.jackson.core:jackson-annotations:2.19.2=runtimeClasspath,testRuntimeClasspath
21+
com.fasterxml.jackson.core:jackson-core:2.19.2=runtimeClasspath,testRuntimeClasspath
22+
com.fasterxml.jackson.core:jackson-databind:2.19.2=runtimeClasspath,testRuntimeClasspath
23+
com.fasterxml.jackson.dataformat:jackson-dataformat-xml:2.19.2=testRuntimeClasspath
24+
com.fasterxml.jackson.dataformat:jackson-dataformat-yaml:2.19.2=testRuntimeClasspath
25+
com.fasterxml.jackson.datatype:jackson-datatype-jsr310:2.19.2=runtimeClasspath,testRuntimeClasspath
26+
com.fasterxml.jackson:jackson-bom:2.19.2=runtimeClasspath,testRuntimeClasspath
27+
com.fasterxml.woodstox:woodstox-core:7.1.1=testRuntimeClasspath
28+
com.github.oshi:oshi-core:6.8.2=runtimeClasspath,testRuntimeClasspath
29+
com.github.stephenc.jcip:jcip-annotations:1.0-1=runtimeClasspath,testRuntimeClasspath
30+
com.google.cloud.opentelemetry:detector-resources-support:0.36.0=testRuntimeClasspath
31+
com.google.errorprone:error_prone_annotations:2.40.0=runtimeClasspath,testRuntimeClasspath
32+
com.microsoft.azure:msal4j-persistence-extension:1.3.0=runtimeClasspath,testRuntimeClasspath
33+
com.microsoft.azure:msal4j:1.21.0=runtimeClasspath,testRuntimeClasspath
34+
com.nimbusds:content-type:2.3=runtimeClasspath,testRuntimeClasspath
35+
com.nimbusds:lang-tag:1.7=runtimeClasspath,testRuntimeClasspath
36+
com.nimbusds:nimbus-jose-jwt:10.3=runtimeClasspath,testRuntimeClasspath
37+
com.nimbusds:oauth2-oidc-sdk:11.23=runtimeClasspath,testRuntimeClasspath
38+
com.squareup.okhttp3:okhttp-jvm:5.1.0=testRuntimeClasspath
39+
com.squareup.okhttp3:okhttp:5.1.0=testRuntimeClasspath
40+
com.squareup.okio:okio-jvm:3.15.0=testRuntimeClasspath
41+
com.squareup.okio:okio:3.15.0=testRuntimeClasspath
42+
commons-codec:commons-codec:1.18.0=runtimeClasspath,testRuntimeClasspath
43+
commons-io:commons-io:2.15.1=testRuntimeClasspath
44+
io.netty:netty-bom:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
45+
io.netty:netty-buffer:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
46+
io.netty:netty-codec-base:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
47+
io.netty:netty-codec-compression:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
48+
io.netty:netty-codec-dns:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
49+
io.netty:netty-codec-http2:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
50+
io.netty:netty-codec-http:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
51+
io.netty:netty-codec-marshalling:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
52+
io.netty:netty-codec-protobuf:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
53+
io.netty:netty-codec-socks:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
54+
io.netty:netty-codec:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
55+
io.netty:netty-common:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
56+
io.netty:netty-handler-proxy:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
57+
io.netty:netty-handler:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
58+
io.netty:netty-resolver-dns-classes-macos:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
59+
io.netty:netty-resolver-dns-native-macos:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
60+
io.netty:netty-resolver-dns:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
61+
io.netty:netty-resolver:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
62+
io.netty:netty-tcnative-boringssl-static:2.0.72.Final=runtimeClasspath,testRuntimeClasspath
63+
io.netty:netty-tcnative-classes:2.0.72.Final=runtimeClasspath,testRuntimeClasspath
64+
io.netty:netty-transport-classes-epoll:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
65+
io.netty:netty-transport-classes-kqueue:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
66+
io.netty:netty-transport-native-epoll:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
67+
io.netty:netty-transport-native-kqueue:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
68+
io.netty:netty-transport-native-unix-common:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
69+
io.netty:netty-transport:4.2.3.Final=runtimeClasspath,testRuntimeClasspath
70+
io.opentelemetry.contrib:opentelemetry-aws-resources:1.47.0-alpha=testRuntimeClasspath
71+
io.opentelemetry.contrib:opentelemetry-aws-xray-propagator:1.47.0-alpha=testRuntimeClasspath
72+
io.opentelemetry.contrib:opentelemetry-azure-resources:1.47.0-alpha=testRuntimeClasspath
73+
io.opentelemetry.contrib:opentelemetry-baggage-processor:1.47.0-alpha=testRuntimeClasspath
74+
io.opentelemetry.contrib:opentelemetry-cloudfoundry-resources:1.47.0-alpha=testRuntimeClasspath
75+
io.opentelemetry.contrib:opentelemetry-gcp-resources:1.47.0-alpha=testRuntimeClasspath
76+
io.opentelemetry.contrib:opentelemetry-jfr-connection:1.47.0-alpha=runtimeClasspath,testRuntimeClasspath
77+
io.opentelemetry.instrumentation:opentelemetry-instrumentation-annotations-support:2.18.1-alpha=testRuntimeClasspath
78+
io.opentelemetry.instrumentation:opentelemetry-instrumentation-api-incubator:2.18.1-alpha=testRuntimeClasspath
79+
io.opentelemetry.instrumentation:opentelemetry-instrumentation-api:2.18.1=testRuntimeClasspath
80+
io.opentelemetry.instrumentation:opentelemetry-instrumentation-bom-alpha:2.18.1-alpha=runtimeClasspath,testRuntimeClasspath
81+
io.opentelemetry.instrumentation:opentelemetry-instrumentation-bom:2.18.1=runtimeClasspath,testRuntimeClasspath
82+
io.opentelemetry.instrumentation:opentelemetry-sdk-autoconfigure-support:2.18.1-alpha=testRuntimeClasspath
83+
io.opentelemetry.javaagent:opentelemetry-javaagent-bootstrap:2.18.1-alpha=testRuntimeClasspath
84+
io.opentelemetry.javaagent:opentelemetry-javaagent-extension-api:2.18.1-alpha=testRuntimeClasspath
85+
io.opentelemetry.javaagent:opentelemetry-javaagent-tooling-java9:2.18.1-alpha=testRuntimeClasspath
86+
io.opentelemetry.javaagent:opentelemetry-javaagent-tooling:2.18.1-alpha=testRuntimeClasspath
87+
io.opentelemetry.javaagent:opentelemetry-muzzle:2.18.1-alpha=testRuntimeClasspath
88+
io.opentelemetry.semconv:opentelemetry-semconv-incubating:1.34.0-alpha=testRuntimeClasspath
89+
io.opentelemetry.semconv:opentelemetry-semconv:1.34.0=testRuntimeClasspath
90+
io.opentelemetry:opentelemetry-api-incubator:1.52.0-alpha=testRuntimeClasspath
91+
io.opentelemetry:opentelemetry-api:1.52.0=runtimeClasspath,testRuntimeClasspath
92+
io.opentelemetry:opentelemetry-bom-alpha:1.52.0-alpha=runtimeClasspath,testRuntimeClasspath
93+
io.opentelemetry:opentelemetry-bom:1.52.0=runtimeClasspath,testRuntimeClasspath
94+
io.opentelemetry:opentelemetry-common:1.52.0=runtimeClasspath,testRuntimeClasspath
95+
io.opentelemetry:opentelemetry-context:1.52.0=runtimeClasspath,testRuntimeClasspath
96+
io.opentelemetry:opentelemetry-exporter-common:1.52.0=testRuntimeClasspath
97+
io.opentelemetry:opentelemetry-exporter-logging-otlp:1.52.0=testRuntimeClasspath
98+
io.opentelemetry:opentelemetry-exporter-logging:1.52.0=testRuntimeClasspath
99+
io.opentelemetry:opentelemetry-exporter-otlp-common:1.52.0=testRuntimeClasspath
100+
io.opentelemetry:opentelemetry-exporter-otlp:1.52.0=testRuntimeClasspath
101+
io.opentelemetry:opentelemetry-exporter-prometheus:1.52.0-alpha=testRuntimeClasspath
102+
io.opentelemetry:opentelemetry-exporter-sender-okhttp:1.52.0=testRuntimeClasspath
103+
io.opentelemetry:opentelemetry-exporter-zipkin:1.52.0=testRuntimeClasspath
104+
io.opentelemetry:opentelemetry-extension-kotlin:1.52.0=testRuntimeClasspath
105+
io.opentelemetry:opentelemetry-extension-trace-propagators:1.52.0=testRuntimeClasspath
106+
io.opentelemetry:opentelemetry-sdk-common:1.52.0=runtimeClasspath,testRuntimeClasspath
107+
io.opentelemetry:opentelemetry-sdk-extension-autoconfigure-spi:1.52.0=runtimeClasspath,testRuntimeClasspath
108+
io.opentelemetry:opentelemetry-sdk-extension-autoconfigure:1.52.0=runtimeClasspath,testRuntimeClasspath
109+
io.opentelemetry:opentelemetry-sdk-extension-incubator:1.52.0-alpha=testRuntimeClasspath
110+
io.opentelemetry:opentelemetry-sdk-extension-jaeger-remote-sampler:1.52.0=testRuntimeClasspath
111+
io.opentelemetry:opentelemetry-sdk-logs:1.52.0=runtimeClasspath,testRuntimeClasspath
112+
io.opentelemetry:opentelemetry-sdk-metrics:1.52.0=runtimeClasspath,testRuntimeClasspath
113+
io.opentelemetry:opentelemetry-sdk-testing:1.52.0=testRuntimeClasspath
114+
io.opentelemetry:opentelemetry-sdk-trace:1.52.0=runtimeClasspath,testRuntimeClasspath
115+
io.opentelemetry:opentelemetry-sdk:1.52.0=runtimeClasspath,testRuntimeClasspath
116+
io.opentelemetry:opentelemetry-semconv:1.30.1-alpha=runtimeClasspath,testRuntimeClasspath
117+
io.projectreactor.netty:reactor-netty-core:1.2.8=runtimeClasspath,testRuntimeClasspath
118+
io.projectreactor.netty:reactor-netty-http:1.2.8=runtimeClasspath,testRuntimeClasspath
119+
io.projectreactor:reactor-core:3.7.8=runtimeClasspath,testRuntimeClasspath
120+
io.projectreactor:reactor-test:3.4.38=testRuntimeClasspath
121+
io.prometheus:prometheus-metrics-config:1.3.8=testRuntimeClasspath
122+
io.prometheus:prometheus-metrics-exporter-common:1.3.8=testRuntimeClasspath
123+
io.prometheus:prometheus-metrics-exporter-httpserver:1.3.8=testRuntimeClasspath
124+
io.prometheus:prometheus-metrics-exposition-textformats:1.3.8=testRuntimeClasspath
125+
io.prometheus:prometheus-metrics-model:1.3.8=testRuntimeClasspath
126+
io.zipkin.reporter2:zipkin-reporter:3.5.1=testRuntimeClasspath
127+
io.zipkin.reporter2:zipkin-sender-okhttp3:3.5.1=testRuntimeClasspath
128+
io.zipkin.zipkin2:zipkin:2.27.1=testRuntimeClasspath
129+
javax.servlet:javax.servlet-api:3.1.0=testRuntimeClasspath
130+
net.bytebuddy:byte-buddy-agent:1.12.19=testRuntimeClasspath
131+
net.bytebuddy:byte-buddy-dep:1.17.6=testRuntimeClasspath
132+
net.java.dev.jna:jna-platform:5.17.0=runtimeClasspath,testRuntimeClasspath
133+
net.java.dev.jna:jna:5.17.0=runtimeClasspath,testRuntimeClasspath
134+
net.minidev:accessors-smart:2.5.2=runtimeClasspath,testRuntimeClasspath
135+
net.minidev:json-smart:2.5.2=runtimeClasspath,testRuntimeClasspath
136+
org.apache.commons:commons-compress:1.26.0=testRuntimeClasspath
137+
org.apache.commons:commons-lang3:3.17.0=runtimeClasspath,testRuntimeClasspath
138+
org.apache.commons:commons-text:1.13.1=runtimeClasspath,testRuntimeClasspath
139+
org.assertj:assertj-core:3.27.3=testRuntimeClasspath
140+
org.awaitility:awaitility:4.3.0=testRuntimeClasspath
141+
org.codehaus.woodstox:stax2-api:4.2.2=testRuntimeClasspath
142+
org.eclipse.jetty:jetty-http:9.4.54.v20240208=testRuntimeClasspath
143+
org.eclipse.jetty:jetty-io:9.4.54.v20240208=testRuntimeClasspath
144+
org.eclipse.jetty:jetty-security:9.4.54.v20240208=testRuntimeClasspath
145+
org.eclipse.jetty:jetty-server:9.4.54.v20240208=testRuntimeClasspath
146+
org.eclipse.jetty:jetty-servlet:9.4.54.v20240208=testRuntimeClasspath
147+
org.eclipse.jetty:jetty-util-ajax:9.4.54.v20240208=testRuntimeClasspath
148+
org.eclipse.jetty:jetty-util:9.4.54.v20240208=testRuntimeClasspath
149+
org.hamcrest:hamcrest:2.1=testRuntimeClasspath
150+
org.jetbrains.kotlin:kotlin-bom:2.1.21=testRuntimeClasspath
151+
org.jetbrains.kotlin:kotlin-stdlib:2.2.0=testRuntimeClasspath
152+
org.jetbrains:annotations:13.0=testRuntimeClasspath
153+
org.junit.jupiter:junit-jupiter-api:5.13.3=testRuntimeClasspath
154+
org.junit.jupiter:junit-jupiter-engine:5.13.3=testRuntimeClasspath
155+
org.junit.jupiter:junit-jupiter-params:5.13.3=testRuntimeClasspath
156+
org.junit.jupiter:junit-jupiter:5.13.3=testRuntimeClasspath
157+
org.junit.platform:junit-platform-commons:1.13.3=testRuntimeClasspath
158+
org.junit.platform:junit-platform-engine:1.13.3=testRuntimeClasspath
159+
org.junit.platform:junit-platform-launcher:1.13.3=testRuntimeClasspath
160+
org.junit:junit-bom:5.13.3=runtimeClasspath,testRuntimeClasspath
161+
org.mockito:mockito-core:4.11.0=testRuntimeClasspath
162+
org.objenesis:objenesis:3.3=testRuntimeClasspath
163+
org.opentest4j:opentest4j:1.3.0=testRuntimeClasspath
164+
org.ow2.asm:asm-analysis:9.8=testRuntimeClasspath
165+
org.ow2.asm:asm-commons:9.8=testRuntimeClasspath
166+
org.ow2.asm:asm-tree:9.8=testRuntimeClasspath
167+
org.ow2.asm:asm-util:9.8=testRuntimeClasspath
168+
org.ow2.asm:asm:9.8=testRuntimeClasspath
169+
org.reactivestreams:reactive-streams:1.0.4=runtimeClasspath,testRuntimeClasspath
170+
org.slf4j:jcl-over-slf4j:2.0.17=runtimeClasspath,testRuntimeClasspath
171+
org.slf4j:jul-to-slf4j:2.0.17=testRuntimeClasspath
172+
org.slf4j:log4j-over-slf4j:2.0.17=testRuntimeClasspath
173+
org.slf4j:slf4j-api:2.0.17=runtimeClasspath,testRuntimeClasspath
174+
org.snakeyaml:snakeyaml-engine:2.9=testRuntimeClasspath
175+
org.testcontainers:testcontainers-bom:1.21.3=runtimeClasspath,testRuntimeClasspath
176+
org.yaml:snakeyaml:2.4=testRuntimeClasspath
89177
empty=

dependencyManagement/build.gradle.kts

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -69,7 +69,10 @@ val DEPENDENCIES = listOf(
6969
"io.opentelemetry.contrib:opentelemetry-jfr-connection:${otelContribVersion}-alpha",
7070
"io.opentelemetry.contrib:opentelemetry-runtime-attach-core:${otelContribVersion}-alpha",
7171
"com.google.code.findbugs:jsr305:3.0.2",
72-
"com.github.spotbugs:spotbugs-annotations:4.9.3"
72+
"com.github.spotbugs:spotbugs-annotations:4.9.3",
73+
// Security updates for CVEs
74+
"com.nimbusds:nimbus-jose-jwt:10.3", // CVE-2025-53864 fix
75+
"io.projectreactor.netty:reactor-netty-http:1.2.8" // CVE-2025-22227 fix
7376
)
7477

7578
javaPlatform {

0 commit comments

Comments
 (0)