Skip to content

Commit 453e498

Browse files
author
Brendan Doyle
committed
add base dependency version to cve remediations for downstream runtime builds
1 parent 6dd737d commit 453e498

File tree

3 files changed

+4
-4
lines changed

3 files changed

+4
-4
lines changed

core/monitoring/user-events/build.gradle

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -45,7 +45,7 @@ dependencies {
4545

4646
testImplementation "junit:junit:4.11"
4747
testImplementation "org.scalatest:scalatest_${gradle.scala.depVersion}:3.0.8"
48-
testImplementation "io.github.embeddedkafka:embedded-kafka_${gradle.scala.depVersion}"
48+
testImplementation "io.github.embeddedkafka:embedded-kafka_${gradle.scala.depVersion}:2.4.0"
4949
constraints {
5050
testImplementation("io.github.embeddedkafka:embedded-kafka_${gradle.scala.depVersion}:2.4.0")
5151
testImplementation('org.apache.avro:avro:1.11.1') {

core/standalone/build.gradle

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -169,7 +169,7 @@ dependencies {
169169
implementation project(':tools:admin')
170170
implementation "org.rogach:scallop_${gradle.scala.depVersion}:3.3.2"
171171

172-
implementation "io.github.embeddedkafka:embedded-kafka_${gradle.scala.depVersion}"
172+
implementation "io.github.embeddedkafka:embedded-kafka_${gradle.scala.depVersion}:2.4.0"
173173
constraints {
174174
implementation("io.github.embeddedkafka:embedded-kafka_${gradle.scala.depVersion}:2.4.0")
175175
implementation('org.apache.avro:avro:1.11.1') {

tests/build.gradle

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -232,14 +232,14 @@ dependencies {
232232
implementation ("org.apache.curator:curator-test:${gradle.curator.version}") {
233233
exclude group: 'log4j'
234234
}
235-
implementation "com.atlassian.oai:swagger-request-validator-core"
235+
implementation "com.atlassian.oai:swagger-request-validator-core:1.4.5"
236236
constraints {
237237
implementation("com.atlassian.oai:swagger-request-validator-core:1.4.5")
238238
implementation("org.slf4j:slf4j-ext:1.7.36") {
239239
because 'swagger-request-validator-core cannot be upgraded to 2.x where vuln is remediated'
240240
}
241241
}
242-
implementation "io.github.embeddedkafka:embedded-kafka_${gradle.scala.depVersion}"
242+
implementation "io.github.embeddedkafka:embedded-kafka_${gradle.scala.depVersion}:2.4.0"
243243
constraints {
244244
implementation("io.github.embeddedkafka:embedded-kafka_${gradle.scala.depVersion}:2.4.0")
245245
implementation('org.apache.avro:avro:1.11.1') {

0 commit comments

Comments
 (0)