diff --git a/deps.edn b/deps.edn index 545315a..ea03a5e 100644 --- a/deps.edn +++ b/deps.edn @@ -1,10 +1,10 @@ {:paths ["src"] - :deps {org.clojure/clojure {:mvn/version "1.11.1"} - org.clojure/java.classpath {:mvn/version "1.0.0"} + :deps {org.clojure/clojure {:mvn/version "1.11.3"} + org.clojure/java.classpath {:mvn/version "1.1.0"} clansi/clansi {:mvn/version "1.0.0"} org.clojure/data.json {:mvn/version "2.5.0"} - org.slf4j/slf4j-simple {:mvn/version "2.0.10"} - org.owasp/dependency-check-core {:mvn/version "9.0.8"} + org.slf4j/slf4j-simple {:mvn/version "2.0.13"} + org.owasp/dependency-check-core {:mvn/version "9.1.0"} rm-hull/table {:mvn/version "0.7.1"} trptcolin/versioneer {:mvn/version "0.2.0"}} :mvn/repos {"central" {:url "https://repo1.maven.org/maven2/"} diff --git a/project.clj b/project.clj index d520b1f..654520e 100644 --- a/project.clj +++ b/project.clj @@ -6,26 +6,26 @@ :dependencies [[org.clojure/clojure "1.11.1"] [clansi "1.0.0"] [org.clojure/data.json "2.5.0"] - [org.slf4j/slf4j-simple "2.0.10"] - [org.owasp/dependency-check-core "9.0.8"] + [org.slf4j/slf4j-simple "2.0.13"] + [org.owasp/dependency-check-core "9.1.0"] [rm-hull/table "0.7.1"] [trptcolin/versioneer "0.2.0"] ;; Explicitly depend on a certain Jackson, consistently. ;; (See also: https://github.com/jeremylong/DependencyCheck/issues/3441) - [com.fasterxml.jackson.core/jackson-databind "2.16.1"] - [com.fasterxml.jackson.core/jackson-annotations "2.16.1"] - [com.fasterxml.jackson.core/jackson-core "2.16.1"] - [com.fasterxml.jackson.module/jackson-module-afterburner "2.16.1"] - [org.apache.maven.resolver/maven-resolver-transport-http "1.9.18" #_"Fixes a CVE"] + [com.fasterxml.jackson.core/jackson-databind "2.17.0"] + [com.fasterxml.jackson.core/jackson-annotations "2.17.0"] + [com.fasterxml.jackson.core/jackson-core "2.17.0"] + [com.fasterxml.jackson.module/jackson-module-afterburner "2.17.0"] + [org.apache.maven.resolver/maven-resolver-transport-http "1.9.19" #_"Fixes a CVE"] [org.yaml/snakeyaml "2.2" #_"Fixes a CVE"] [org.apache.maven/maven-core "3.9.6" #_"Fixes a CVE"] - [org.eclipse.jetty/jetty-client "12.0.5" #_"Fixes a CVE" :exclusions [org.slf4j/slf4j-api]] - [org.apache.maven.resolver/maven-resolver-spi "1.9.18" #_"Satisfies :pedantic?"] - [org.apache.maven.resolver/maven-resolver-api "1.9.18" #_"Satisfies :pedantic?"] - [org.apache.maven.resolver/maven-resolver-util "1.9.18" #_"Satisfies :pedantic?"] - [org.apache.maven.resolver/maven-resolver-impl "1.9.18" #_"Satisfies :pedantic?"] + [org.eclipse.jetty/jetty-client "12.0.8" #_"Fixes a CVE" :exclusions [org.slf4j/slf4j-api]] + [org.apache.maven.resolver/maven-resolver-spi "1.9.19" #_"Satisfies :pedantic?"] + [org.apache.maven.resolver/maven-resolver-api "1.9.19" #_"Satisfies :pedantic?"] + [org.apache.maven.resolver/maven-resolver-util "1.9.19" #_"Satisfies :pedantic?"] + [org.apache.maven.resolver/maven-resolver-impl "1.9.19" #_"Satisfies :pedantic?"] [org.apache.maven/maven-resolver-provider "3.9.6" #_"Satisfies :pedantic?"] - [org.codehaus.plexus/plexus-utils "4.0.0" #_"Satisfies :pedantic?"]] + [org.codehaus.plexus/plexus-utils "4.0.1" #_"Satisfies :pedantic?"]] :managed-dependencies [[com.google.code.gson/gson "2.10.1"]] :scm {:url "git@github.com:rm-hull/nvd-clojure.git"} :source-paths ["src"] @@ -43,10 +43,10 @@ [jonase/eastwood "1.4.0"]] :eastwood {:add-linters [:boxed-math :performance]} - :dependencies [[clj-kondo "2023.12.15"] + :dependencies [[clj-kondo "2024.03.13"] [commons-collections "20040616"]]} :ci {:pedantic? :abort} - :clj-kondo {:dependencies [[clj-kondo "2023.12.15"]]} + :clj-kondo {:dependencies [[clj-kondo "2024.03.13"]]} :skip-self-check {:jvm-opts ["-Dnvd-clojure.internal.skip-self-check=true"]}} :deploy-repositories [["clojars" {:url "https://clojars.org/repo" :username :env/clojars_username