From 22bbbbe5874927b9a32257218b1aac9714a02a38 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Marek=20Novotn=C3=BD?= Date: Thu, 12 Sep 2024 09:17:23 +0200 Subject: [PATCH] Backports of CVEs (#2490) * Bumped undertow to (#2469) * Bump org.apache.commons:commons-compress from 1.21 to 1.26.0 Bumps org.apache.commons:commons-compress from 1.21 to 1.26.0. --- updated-dependencies: - dependency-name: org.apache.commons:commons-compress dependency-type: direct:production ... Signed-off-by: dependabot[bot] * upgraded commons-compress requires io at 2.15.1? --------- Signed-off-by: dependabot[bot] Co-authored-by: Yeser Amer Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> --- pom.xml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/pom.xml b/pom.xml index d0630833335..2b1beff3912 100644 --- a/pom.xml +++ b/pom.xml @@ -68,7 +68,7 @@ 1.1.1 3.9.0 1.6 - 2.7 + 2.15.1 1.10.0 1.0.195-RELEASE @@ -105,7 +105,7 @@ 2.1.4 0.106.0 2.9.2 - 2.2.28.Final + 2.2.33.Final 1.1.6 3.1.0 2.9.7 @@ -128,7 +128,7 @@ 1.4.0 0.14.0 2.1.1 - 1.21 + 1.26.0 1.6 1.3 3.11