Merge "Remove CLM issues with commons-collections"
authorJorge Hernandez <jh1730@att.com>
Fri, 2 Mar 2018 14:11:01 +0000 (14:11 +0000)
committerGerrit Code Review <gerrit@onap.org>
Fri, 2 Mar 2018 14:11:01 +0000 (14:11 +0000)
ONAP-PDP/pom.xml
ONAP-XACML/pom.xml

index d302c95..dc3953b 100644 (file)
                        <groupId>com.att.research.xacml</groupId>
                        <artifactId>xacml-pdp</artifactId>
                        <version>1.0.1</version>
+            <exclusions>
+            <!-- The LDAP PIP uses velocity which pulls this insecure jar in. We
+            are not using that PIP and can safely exclude this jar to resolve CLM issue.
+             -->
+              <exclusion>
+                <groupId>commons-collections</groupId>
+                <artifactId>commons-collections</artifactId>
+              </exclusion>
+            </exclusions>
                </dependency>
                <dependency>
                        <groupId>junit</groupId>
index c399e3f..b6f12c0 100644 (file)
                        <groupId>com.att.research.xacml</groupId>
                        <artifactId>xacml</artifactId>
                        <version>1.0.1</version>
+            <exclusions>
+            <!-- The LDAP PIP uses velocity which pulls this insecure jar in. We
+            are not using that PIP and can safely exclude this jar to resolve CLM issue.
+             -->
+              <exclusion>
+                <groupId>commons-collections</groupId>
+                <artifactId>commons-collections</artifactId>
+              </exclusion>
+            </exclusions>
                </dependency>
        </dependencies>
 </project>