Skip to content

Commit

Permalink
Update json-path to 2.9.0
Browse files Browse the repository at this point in the history
Had to add entries to dependencyManagement sections because adding the version property wasn't changing all the versions. Presuming that some external dependencies includes 2.7.0 directly and not via a property and is encountered before boot dependencies.

Fixes spring-cloud#5643
  • Loading branch information
corneil committed Jan 22, 2024
1 parent 366a7fe commit 3dfa63b
Show file tree
Hide file tree
Showing 4 changed files with 23 additions and 1 deletion.
7 changes: 6 additions & 1 deletion spring-cloud-dataflow-build/pom.xml
Original file line number Diff line number Diff line change
Expand Up @@ -33,7 +33,7 @@
<revision>${project.version}</revision>
<asciidoctorj.version>2.5.7</asciidoctorj.version>
<jruby-complete.version>9.2.7.0</jruby-complete.version>

<json-path.version>2.9.0</json-path.version> <!-- CVE-2023-51074 -->
<!-- Sonar -->
<sonar.java.coveragePlugin>jacoco</sonar.java.coveragePlugin>
<sonar.dynamicAnalysis>reuseReports</sonar.dynamicAnalysis>
Expand Down Expand Up @@ -100,6 +100,11 @@
<type>pom</type>
<scope>import</scope>
</dependency>
<dependency>
<groupId>com.jayway.jsonpath</groupId>
<artifactId>json-path</artifactId>
<version>${json-path.version}</version>
</dependency>
</dependencies>
</dependencyManagement>
<dependencies>
Expand Down
6 changes: 6 additions & 0 deletions spring-cloud-dataflow-common/pom.xml
Original file line number Diff line number Diff line change
Expand Up @@ -21,6 +21,7 @@
<jayway-awaitility.version>1.7.0</jayway-awaitility.version>
<java-semver.version>0.9.0</java-semver.version>
<joda-time.version>2.10.6</joda-time.version>
<json-path.version>2.9.0</json-path.version>
</properties>

<modules>
Expand Down Expand Up @@ -48,6 +49,11 @@
<artifactId>joda-time</artifactId>
<version>${joda-time.version}</version>
</dependency>
<dependency>
<groupId>com.jayway.jsonpath</groupId>
<artifactId>json-path</artifactId>
<version>${json-path.version}</version>
</dependency>
</dependencies>
</dependencyManagement>
<build>
Expand Down
6 changes: 6 additions & 0 deletions spring-cloud-dataflow-parent/pom.xml
Original file line number Diff line number Diff line change
Expand Up @@ -54,6 +54,7 @@
<jackson-bom.version>2.13.5</jackson-bom.version>
<guava.version>32.1.3-jre</guava.version>
<logback.version>1.2.13</logback.version>
<json-path.version>2.9.0</json-path.version> <!-- CVE-2023-51074 -->
</properties>
<dependencyManagement>
<dependencies>
Expand Down Expand Up @@ -109,6 +110,11 @@
<artifactId>jettison</artifactId>
<version>${jettison.version}</version>
</dependency>
<dependency>
<groupId>com.jayway.jsonpath</groupId>
<artifactId>json-path</artifactId>
<version>${json-path.version}</version>
</dependency>
<dependency>
<groupId>org.springframework.security</groupId>
<artifactId>spring-security-oauth2-client</artifactId>
Expand Down
5 changes: 5 additions & 0 deletions spring-cloud-skipper/pom.xml
Original file line number Diff line number Diff line change
Expand Up @@ -227,6 +227,11 @@
<artifactId>commons-compress</artifactId>
<version>${commons-compress.version}</version>
</dependency>
<dependency>
<groupId>com.jayway.jsonpath</groupId>
<artifactId>json-path</artifactId>
<version>${json-path.version}</version>
</dependency>
</dependencies>
</dependencyManagement>
<build>
Expand Down

0 comments on commit 3dfa63b

Please sign in to comment.