Skip to content

Commit a3a8bbd

Browse files
Merge pull request #458 from zowe/unirest-jackson
Resolve security vulnerabilities in Jackson and Central publishing plugin dependencies
2 parents 4ecf4bc + 92cae7e commit a3a8bbd

3 files changed

Lines changed: 23 additions & 14 deletions

File tree

README.md

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -249,27 +249,27 @@ Thin JAR (recommended):
249249
<dependency>
250250
<groupId>org.zowe.client.java.sdk</groupId>
251251
<artifactId>zowe-client-java-sdk</artifactId>
252-
<version>6.1.1</version>
252+
<version>6.1.2</version>
253253
</dependency>
254254

255255
Fat JAR (with dependencies):
256256

257257
<dependency>
258258
<groupId>org.zowe.client.java.sdk</groupId>
259259
<artifactId>zowe-client-java-sdk</artifactId>
260-
<version>6.1.1</version>
260+
<version>6.1.2</version>
261261
<classifier>jar-with-dependencies</classifier>
262262
</dependency>
263263

264264
For a Gradle project add the SDK as a dependency by updating your `build.gradle` as follows:
265265

266266
Thin JAR (recommended):
267267

268-
implementation group: 'org.zowe.client.java.sdk', name: 'zowe-client-java-sdk', version: '6.1.1'
268+
implementation group: 'org.zowe.client.java.sdk', name: 'zowe-client-java-sdk', version: '6.1.2'
269269

270270
Fat JAR (with dependencies):
271271

272-
implementation group: 'org.zowe.client.java.sdk', name: 'zowe-client-java-sdk', version: '6.1.1', classifier: 'jar-with-dependencies'
272+
implementation group: 'org.zowe.client.java.sdk', name: 'zowe-client-java-sdk', version: '6.1.2', classifier: 'jar-with-dependencies'
273273

274274
## Publishing to Maven Central
275275

pom.xml

Lines changed: 19 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@
66

77
<groupId>org.zowe.client.java.sdk</groupId>
88
<artifactId>zowe-client-java-sdk</artifactId>
9-
<version>6.1.1</version>
9+
<version>6.1.2</version>
1010

1111
<packaging>jar</packaging>
1212
<name>${project.groupId}:${project.artifactId}</name>
@@ -90,14 +90,8 @@
9090
</dependency>
9191
<dependency>
9292
<groupId>com.konghq</groupId>
93-
<artifactId>unirest-objectmapper-jackson</artifactId>
94-
<version>4.2.4</version>
95-
</dependency>
96-
<dependency>
97-
<groupId>org.sonatype.central</groupId>
98-
<artifactId>central-publishing-maven-plugin</artifactId>
99-
<version>0.8.0</version>
100-
<scope>provided</scope>
93+
<artifactId>unirest-modules-jackson-legacy</artifactId>
94+
<version>4.8.1</version>
10195
</dependency>
10296

10397
<!-- Test -->
@@ -222,6 +216,22 @@
222216
</execution>
223217
</executions>
224218
</plugin>
219+
<plugin>
220+
<groupId>org.sonatype.central</groupId>
221+
<artifactId>central-publishing-maven-plugin</artifactId>
222+
<version>0.10.0</version>
223+
<extensions>true</extensions>
224+
<configuration>
225+
<publishingServerId>central</publishingServerId>
226+
</configuration>
227+
<dependencies>
228+
<dependency>
229+
<groupId>org.codehaus.plexus</groupId>
230+
<artifactId>plexus-utils</artifactId>
231+
<version>4.0.3</version>
232+
</dependency>
233+
</dependencies>
234+
</plugin>
225235
</plugins>
226236
</build>
227237

src/test/java/zowe/client/sdk/zostso/methods/TsoStartTest.java

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -103,7 +103,6 @@ public void tstTsoStartInvalidJsonThrowsZosmfRequestExceptionWithCorrectMessageF
103103
assertTrue(ex.getMessage().contains("Unrecognized token")
104104
|| ex.getMessage().toLowerCase().contains("json")
105105
);
106-
107106
}
108107
}
109108

0 commit comments

Comments
 (0)