Upgrade blueprint-proto to 1.4.0. 54/131454/1
authorjhh <jorge.hernandez-herrero@att.com>
Wed, 12 Oct 2022 20:32:30 +0000 (15:32 -0500)
committerjhh <jorge.hernandez-herrero@att.com>
Wed, 12 Oct 2022 20:32:30 +0000 (15:32 -0500)
This is to cover the security vulnerability reported for
com.google.protobuf : protobuf-java : 3.19.4

See drools-applications dependency that transitively picks it up:

        <dependency>
            <groupId>org.onap.ccsdk.cds.blueprintsprocessor.modules</groupId>
            <artifactId>blueprint-proto</artifactId>
        </dependency>

Issue-ID: POLICY-4393
Signed-off-by: jhh <jorge.hernandez-herrero@att.com>
Change-Id: I17f609f937cb555e1a72ab8ba1008e667f55870f

integration/pom.xml

index 7a07ba9..af480cc 100644 (file)
@@ -45,7 +45,7 @@
         <version.drools>7.73.0.Final</version.drools>
         <version.jersey>2.33</version.jersey>
         <version.jackson>2.14.0-rc1</version.jackson>
-        <version.ccsdk>1.1.5</version.ccsdk>
+        <version.ccsdk>1.4.0</version.ccsdk>
         <version.swagger>1.6.6</version.swagger>
         <version.javax.bind>2.3.1</version.javax.bind>
         <version.javax.json>1.1.4</version.javax.json>