Remove dependency vulnerability
[sdc.git] / catalog-be / pom.xml
index 53af2c7..bf56d4d 100644 (file)
@@ -16,7 +16,7 @@
     <java-hamcrest.version>2.0.0.0</java-hamcrest.version>
     <swagger.version>${swagger-core-mvn-plugin.version}</swagger.version>
     <swagger-ui.version>3.25.0</swagger-ui.version>
-    <maven-dependency-plugin.version>3.1.1</maven-dependency-plugin.version>
+    <maven-dependency-plugin.version>3.2.0</maven-dependency-plugin.version>
     <replacer.plugin.version>1.5.3</replacer.plugin.version>
   </properties>
 
@@ -90,7 +90,7 @@
     <!-- Swagger Dependencies End -->
 
     <dependency>
-      <groupId>org.hibernate</groupId>
+      <groupId>org.hibernate.validator</groupId>
       <artifactId>hibernate-validator</artifactId>
       <version>${hibernate.validator.version}</version>
     </dependency>
           <groupId>org.springframework</groupId>
           <artifactId>spring-context</artifactId>
         </exclusion>
+        <exclusion>
+          <groupId>org.hibernate</groupId>
+          <artifactId>hibernate-validator</artifactId>
+        </exclusion>
       </exclusions>
 
     </dependency>
     <dependency>
       <groupId>org.glassfish.jersey.ext</groupId>
       <artifactId>jersey-bean-validation</artifactId>
+      <exclusions>
+        <exclusion>
+          <groupId>org.hibernate</groupId>
+          <artifactId>hibernate-validator</artifactId>
+        </exclusion>
+      </exclusions>
     </dependency>
 
     <!-- http client -->
           <groupId>commons-io</groupId>
           <artifactId>commons-io</artifactId>
         </exclusion>
+        <exclusion>
+          <groupId>commons-codec</groupId>
+          <artifactId>commons-codec</artifactId>
+        </exclusion>
       </exclusions>
     </dependency>
 
     <dependency>
       <groupId>org.owasp.esapi</groupId>
       <artifactId>esapi</artifactId>
-      <version>2.2.0.0</version>
+      <version>${org.owasp.esapi.version}</version>
       <exclusions>
         <exclusion>
           <groupId>xerces</groupId>