From 72d7da389f9fca1e4a5a3d81f8941100f491c99c Mon Sep 17 00:00:00 2001 From: Gabriel Zurita Date: Wed, 20 Nov 2024 17:46:48 -0700 Subject: [PATCH] Fix Snyc vulnerability Upgrade tomcat-embed-core to 10.1.31 to fix critical vulnerability (SNYK-JAVA-ORGAPACHETOMCATEMBED-8383920): https://cwe.mitre.org/data/definitions/248.html --- .../src/main/groovy/shared.java.vro-dep-constraints.gradle | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/gradle-plugins/src/main/groovy/shared.java.vro-dep-constraints.gradle b/gradle-plugins/src/main/groovy/shared.java.vro-dep-constraints.gradle index c447bf7fb..2c3f16f23 100644 --- a/gradle-plugins/src/main/groovy/shared.java.vro-dep-constraints.gradle +++ b/gradle-plugins/src/main/groovy/shared.java.vro-dep-constraints.gradle @@ -61,7 +61,7 @@ dependencies { implementation 'org.apache.commons:commons-compress:1.24.0' // for tomcat - implementation 'org.apache.tomcat.embed:tomcat-embed-core:10.1.25' + implementation 'org.apache.tomcat.embed:tomcat-embed-core:10.1.31' implementation 'org.springframework.amqp:spring-amqp:3.0.10' implementation 'org.springframework.security:spring-security-config:6.1.5'