[AAI] Updates for security vulnerabilities 50/127450/1
authorwr148d <wr148d@att.com>
Wed, 2 Mar 2022 17:16:36 +0000 (12:16 -0500)
committerwr148d <wr148d@att.com>
Wed, 2 Mar 2022 17:16:36 +0000 (12:16 -0500)
Issue-ID: AAI-3414
Signed-off-by: wr148d <wr148d@att.com>
Change-Id: I88fed83ef9c3bb6906d0628f995c622225d353cc

pom.xml

diff --git a/pom.xml b/pom.xml
index 1eb165b..7f93403 100644 (file)
--- a/pom.xml
+++ b/pom.xml
                <aaf.version>2.1.21</aaf.version>
                <common.logging.version>1.2.2</common.logging.version>
 
-               <commons.compress.version>1.19</commons.compress.version>
+               <commons.compress.version>1.21</commons.compress.version>
+               <commons.codec.version>1.15</commons.codec.version>
+
+               <logback.core.version>1.2.7</logback.core.version>
+
+               <groovy.version>2.5.15</groovy.version>
 
                <javax.ws.rs.version>2.1</javax.ws.rs.version>
                <mvn.jaxb2.version>0.13.3</mvn.jaxb2.version>
                <dependency>
                        <groupId>ch.qos.logback</groupId>
                        <artifactId>logback-core</artifactId>
+                       <version>${logback.core.version}</version>
                </dependency>
                <dependency>
                        <groupId>commons-codec</groupId>
                        <artifactId>commons-codec</artifactId>
+                       <version>${commons.codec.version}</version>
                </dependency>
                <dependency>
                        <groupId>org.apache.commons</groupId>
                        <artifactId>commons-compress</artifactId>
+                       <version>${commons.compress.version}</version>
                </dependency>
                <dependency>
                        <groupId>org.apache.commons</groupId>
                <dependency>
                        <groupId>org.codehaus.groovy</groupId>
                        <artifactId>groovy</artifactId>
+                       <version>${groovy.version}</version>
                </dependency>
                <dependency>
                        <groupId>org.onap.sdc.sdc-tosca</groupId>