Upgraded few jars to fix security issues 76/111876/3
authorjz385p <jegadeesh.babu@att.com>
Mon, 31 Aug 2020 10:25:48 +0000 (15:55 +0530)
committerJegadeesh Babu <jegadeesh.babu@att.com>
Mon, 31 Aug 2020 10:35:52 +0000 (10:35 +0000)
Fixed security vulnerability issues

Issue-ID: PORTAL-945
Change-Id: Ief6986ef12223c74ae5297dbd934853fa2d66382
Signed-off-by: jz385p <jegadeesh.babu@att.com>
ecomp-sdk/epsdk-aaf/pom.xml
ecomp-sdk/epsdk-analytics/pom.xml
ecomp-sdk/epsdk-app-common/pom.xml
ecomp-sdk/epsdk-core/pom.xml
ecomp-sdk/epsdk-domain/pom.xml
ecomp-sdk/epsdk-domain/src/main/java/org/onap/portalsdk/core/domain/Role.java
ecomp-sdk/epsdk-fw/pom.xml
ecomp-sdk/epsdk-music/pom.xml
ecomp-sdk/epsdk-workflow/pom.xml

index 0377c51..4423c33 100644 (file)
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-annotations</artifactId>
-                       <version>2.6.3</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-core</artifactId>
-                       <version>2.6.3</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-databind</artifactId>
-                       <version>2.6.3</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>ch.qos.logback</groupId>
index c9b3a4c..dc73637 100644 (file)
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-annotations</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-core</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-databind</artifactId>
-                       <version>2.8.11.4</version>
+                       <version>2.11.0</version>
                </dependency>
                <!-- Raptor required Libraries -->
                <!-- for static charts -->
index 75c7e29..2d1ef70 100644 (file)
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-annotations</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-core</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-databind</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.mchange</groupId>
        <dependency>
            <groupId>org.apache.logging.log4j</groupId>
            <artifactId>log4j</artifactId>
-           <version>2.11.2</version>
+           <version>2.13.1</version>
            <type>pom</type>
        </dependency>
        
index 1278a11..62fcd7d 100644 (file)
                <dependency>
                        <groupId>org.yaml</groupId>
                        <artifactId>snakeyaml</artifactId>
-                       <version>1.15</version>
+                       <version>1.26</version>
                </dependency>
                <!-- Mapper -->
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-annotations</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-core</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-databind</artifactId>
-                       <version>2.8.11.4</version>
+                       <version>2.11.0</version>
                </dependency>
                <!-- Use Mariadb connector -->
                <dependency>
                <dependency>
                        <groupId>org.apache.wicket</groupId>
                        <artifactId>wicket-core</artifactId>
-                       <version>8.5.0</version>
+                       <version>8.7.0</version>
                </dependency>
                <dependency>
                        <groupId>ch.qos.logback</groupId>
index c55c451..913087b 100644 (file)
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-annotations</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-core</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-databind</artifactId>
-                       <version>2.8.11.4</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>org.mockito</groupId>
index dee82c9..ea74535 100644 (file)
@@ -44,6 +44,7 @@ import java.util.TreeSet;
 import org.onap.portalsdk.core.domain.support.DomainVo;
 
 import com.fasterxml.jackson.annotation.JsonIgnore;
+import com.fasterxml.jackson.annotation.JsonIgnoreProperties;
 
 /**
  * <p>
@@ -55,6 +56,8 @@ import com.fasterxml.jackson.annotation.JsonIgnore;
  *
  * @version 1.0
  */
+
+@JsonIgnoreProperties(ignoreUnknown = true)
 public class Role extends DomainVo {
 
        private static final long serialVersionUID = 1L;
index 5ea16ea..eb3d2c5 100644 (file)
                        <artifactId>commons-logging</artifactId>
                        <version>1.2</version>
                </dependency>
+               <dependency>
+                       <groupId>com.fasterxml.jackson.core</groupId>
+                       <artifactId>jackson-core</artifactId>
+                       <version>2.11.0</version>
+               </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-annotations</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-databind</artifactId>
-                       <version>2.8.11.3</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>org.owasp.esapi</groupId>
       <artifactId>powermock-api-mockito</artifactId>
       <version>${powermock.version}</version>
       <scope>test</scope>
-   </dependency>               
+   </dependency>          
        </dependencies>
 
 </project>
index b952d65..f7de89e 100644 (file)
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-annotations</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-core</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-databind</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>org.springframework.session</groupId>
index 49e3fc5..00b7862 100644 (file)
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-annotations</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-core</artifactId>
-                       <version>2.8.10</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>com.fasterxml.jackson.core</groupId>
                        <artifactId>jackson-databind</artifactId>
-                       <version>2.8.11.4</version>
+                       <version>2.11.0</version>
                </dependency>
                <dependency>
                        <groupId>javax.servlet</groupId>