Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

build(deps): overwrite netty-handler version to fix vulnerability #1226

Merged
merged 1 commit into from
Feb 18, 2025

Conversation

nicoprow
Copy link
Contributor

@nicoprow nicoprow commented Feb 18, 2025

Description

This pull request overwrites the netty-handler dependency version referenced by the spring boot framework in order to fix a vulnerability. Since Spring boot has no newer reference available we manually bump the version of this dependency by overwrite in the pom.

#1225

Pre-review checks

Please ensure to do as many of the following checks as possible, before asking for committer review:

@nicoprow nicoprow added the dependencies Pull requests that update a dependency file label Feb 18, 2025
@nicoprow nicoprow added this to the BPDM v6.3.0 / R25.03. milestone Feb 18, 2025
@nicoprow nicoprow added the bug Something isn't working label Feb 18, 2025
@nicoprow nicoprow marked this pull request as ready for review February 18, 2025 06:22
@nicoprow nicoprow merged commit f4330f7 into main Feb 18, 2025
17 checks passed
@nicoprow nicoprow deleted the build/deps/netty-handler-overwrite branch February 18, 2025 07:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant