Skip to content

Commit c8aa1a7

Browse files
authored
Merge pull request #39 from spt-development/feature/spring-boot-3.4.1-upgrade
Updated dependencies to align with Spring Boot 3.4.1
2 parents 02fdbcb + 57d90af commit c8aa1a7

File tree

3 files changed

+16
-14
lines changed

3 files changed

+16
-14
lines changed
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
## Dependencies
2+
3+
* Aligned dependencies with [Spring Boot 3.1.0](https://github.com/spring-projects/spring-boot/releases/tag/v3.4.1)

pom.xml

Lines changed: 8 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -40,38 +40,38 @@
4040
<maven.min.version>3.9.4</maven.min.version>
4141

4242
<!-- Dependency versions -->
43-
<spring-boot.version>3.4.0</spring-boot.version>
43+
<spring-boot.version>3.4.1</spring-boot.version>
4444
<spt-cid.version>2.0.15</spt-cid.version>
45-
<spt-logging-spring.version>3.2.5</spt-logging-spring.version>
45+
<spt-logging-spring.version>3.2.6</spt-logging-spring.version>
4646

4747
<!-- Plugin versions -->
4848
<build-helper-maven-plugin.version>3.6.0</build-helper-maven-plugin.version>
4949
<checkstyle-maven-plugin.version>3.6.0</checkstyle-maven-plugin.version>
50-
<dependency-check-maven.version>11.1.0</dependency-check-maven.version>
50+
<dependency-check-maven.version>11.1.1</dependency-check-maven.version>
5151
<jacoco-maven-plugin.version>0.8.12</jacoco-maven-plugin.version>
52-
<license-maven-plugin.version>2.4.0</license-maven-plugin.version>
52+
<license-maven-plugin.version>2.5.0</license-maven-plugin.version>
5353
<maven-compiler-plugin.version>3.13.0</maven-compiler-plugin.version>
5454
<maven-dependency-plugin.version>3.8.1</maven-dependency-plugin.version>
5555
<maven-enforcer-plugin.version>3.5.0</maven-enforcer-plugin.version>
5656
<maven-gpg-plugin.version>3.2.7</maven-gpg-plugin.version>
57-
<maven-javadoc-plugin.version>3.11.1</maven-javadoc-plugin.version>
57+
<maven-javadoc-plugin.version>3.11.2</maven-javadoc-plugin.version>
5858
<maven-jxr-plugin.version>3.6.0</maven-jxr-plugin.version>
5959
<maven-pmd-plugin.version>3.26.0</maven-pmd-plugin.version>
6060
<maven-release-plugin.version>3.1.1</maven-release-plugin.version>
6161
<maven-scm-plugin.version>2.1.0</maven-scm-plugin.version>
6262
<maven-source-plugin.version>3.3.1</maven-source-plugin.version>
6363
<maven-surefire-plugin.version>3.5.2</maven-surefire-plugin.version>
6464
<nexus-staging-plugin.version>1.7.0</nexus-staging-plugin.version>
65-
<pitest-maven.version>1.17.1</pitest-maven.version>
65+
<pitest-maven.version>1.17.3</pitest-maven.version>
6666
<spotbugs.version>4.8.6.6</spotbugs.version>
6767
<versions-maven-plugin.version>2.18.0</versions-maven-plugin.version>
6868

6969
<!-- Plugin dependencies -->
70-
<checkstyle.version>10.20.1</checkstyle.version>
70+
<checkstyle.version>10.21.0</checkstyle.version>
7171
<findbugs-slf4j-bug-pattern.version>1.5.0</findbugs-slf4j-bug-pattern.version>
7272
<findbugs-sec-bug-pattern.version>1.13.0</findbugs-sec-bug-pattern.version>
7373
<pitest-junit5-plugin.version>1.2.1</pitest-junit5-plugin.version>
74-
<pmd.version>7.7.0</pmd.version>
74+
<pmd.version>7.8.0</pmd.version>
7575
<slf4j.version>2.0.16</slf4j.version>
7676
</properties>
7777

spt-development-logging-spring-boot-starter/config/owasp/suppress.xml

Lines changed: 5 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -3,17 +3,16 @@
33
<!-- Not wanting to deviate from a Spring Boot dependency -->
44
<suppress>
55
<notes><![CDATA[
6-
file name: logback-classic-1.4.11.jar
6+
file name: logback-core-1.5.12.jar
77
]]></notes>
8-
<packageUrl regex="true">^pkg:maven/ch\.qos\.logback/logback\-classic@.*$</packageUrl>
9-
<vulnerabilityName>CVE-2023-6378</vulnerabilityName>
8+
<packageUrl regex="true">^pkg:maven/ch\.qos\.logback/logback\-core@.*$</packageUrl>
9+
<vulnerabilityName>CVE-2024-12798</vulnerabilityName>
1010
</suppress>
11-
<!-- Not wanting to deviate from a Spring Boot dependency -->
1211
<suppress>
1312
<notes><![CDATA[
14-
file name: logback-core-1.4.11.jar
13+
file name: logback-core-1.5.12.jar
1514
]]></notes>
1615
<packageUrl regex="true">^pkg:maven/ch\.qos\.logback/logback\-core@.*$</packageUrl>
17-
<vulnerabilityName>CVE-2023-6378</vulnerabilityName>
16+
<vulnerabilityName>CVE-2024-12801</vulnerabilityName>
1817
</suppress>
1918
</suppressions>

0 commit comments

Comments
 (0)