mirror of
https://github.com/honeymoose/OpenSearch.git
synced 2025-02-16 09:54:55 +00:00
[CVE-2020-36518] Update jackson-databind to 2.13.2.2 (#2599)
Signed-off-by: Andriy Redko <andriy.redko@aiven.io>
This commit is contained in:
parent
223efe68e6
commit
d8a1ba6912
@ -116,7 +116,7 @@ dependencies {
|
||||
api 'com.avast.gradle:gradle-docker-compose-plugin:0.14.12'
|
||||
api 'org.apache.maven:maven-model:3.6.2'
|
||||
api 'com.networknt:json-schema-validator:1.0.68'
|
||||
api "com.fasterxml.jackson.core:jackson-databind:${props.getProperty('jackson')}"
|
||||
api "com.fasterxml.jackson.core:jackson-databind:${props.getProperty('jackson_databind')}"
|
||||
|
||||
testFixturesApi "junit:junit:${props.getProperty('junit')}"
|
||||
testFixturesApi "com.carrotsearch.randomizedtesting:randomizedtesting-runner:${props.getProperty('randomizedrunner')}"
|
||||
|
@ -10,6 +10,7 @@ bundled_jdk = 17.0.2+8
|
||||
spatial4j = 0.7
|
||||
jts = 1.15.0
|
||||
jackson = 2.13.2
|
||||
jackson_databind = 2.13.2.2
|
||||
snakeyaml = 1.26
|
||||
icu4j = 70.1
|
||||
supercsv = 2.4.0
|
||||
|
@ -15,7 +15,7 @@ dependencies {
|
||||
compileOnly project(":server")
|
||||
compileOnly project(":libs:opensearch-cli")
|
||||
implementation "com.fasterxml.jackson.core:jackson-core:${versions.jackson}"
|
||||
implementation "com.fasterxml.jackson.core:jackson-databind:${versions.jackson}"
|
||||
implementation "com.fasterxml.jackson.core:jackson-databind:${versions.jackson_databind}"
|
||||
implementation "com.fasterxml.jackson.core:jackson-annotations:${versions.jackson}"
|
||||
testImplementation project(":test:framework")
|
||||
testImplementation 'com.google.jimfs:jimfs:1.2'
|
||||
|
@ -0,0 +1 @@
|
||||
ffeb635597d093509f33e1e94274d14be610f933
|
@ -1 +0,0 @@
|
||||
926e48c451166a291f1ce6c6276d9abbefa7c00f
|
@ -34,7 +34,7 @@ dependencies {
|
||||
}
|
||||
testImplementation "com.fasterxml.jackson.core:jackson-core:${versions.jackson}"
|
||||
testImplementation "com.fasterxml.jackson.core:jackson-annotations:${versions.jackson}"
|
||||
testImplementation "com.fasterxml.jackson.core:jackson-databind:${versions.jackson}"
|
||||
testImplementation "com.fasterxml.jackson.core:jackson-databind:${versions.jackson_databind}"
|
||||
}
|
||||
|
||||
tasks.named('forbiddenApisMain').configure {
|
||||
|
@ -42,7 +42,7 @@ dependencies {
|
||||
api('com.maxmind.geoip2:geoip2:2.16.1')
|
||||
// geoip2 dependencies:
|
||||
api("com.fasterxml.jackson.core:jackson-annotations:${versions.jackson}")
|
||||
api("com.fasterxml.jackson.core:jackson-databind:${versions.jackson}")
|
||||
api("com.fasterxml.jackson.core:jackson-databind:${versions.jackson_databind}")
|
||||
api('com.maxmind.db:maxmind-db:2.0.0')
|
||||
|
||||
testImplementation 'org.elasticsearch:geolite2-databases:20191119'
|
||||
|
@ -0,0 +1 @@
|
||||
ffeb635597d093509f33e1e94274d14be610f933
|
@ -1 +0,0 @@
|
||||
926e48c451166a291f1ce6c6276d9abbefa7c00f
|
@ -50,7 +50,7 @@ dependencies {
|
||||
api "commons-logging:commons-logging:${versions.commonslogging}"
|
||||
api "org.apache.logging.log4j:log4j-1.2-api:${versions.log4j}"
|
||||
api "commons-codec:commons-codec:${versions.commonscodec}"
|
||||
api "com.fasterxml.jackson.core:jackson-databind:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.core:jackson-databind:${versions.jackson_databind}"
|
||||
api "com.fasterxml.jackson.core:jackson-annotations:${versions.jackson}"
|
||||
}
|
||||
|
||||
|
@ -0,0 +1 @@
|
||||
ffeb635597d093509f33e1e94274d14be610f933
|
@ -1 +0,0 @@
|
||||
926e48c451166a291f1ce6c6276d9abbefa7c00f
|
@ -62,7 +62,7 @@ dependencies {
|
||||
api 'io.projectreactor.netty:reactor-netty-http:1.0.16'
|
||||
api "org.slf4j:slf4j-api:${versions.slf4j}"
|
||||
api "com.fasterxml.jackson.core:jackson-annotations:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.core:jackson-databind:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.core:jackson-databind:${versions.jackson_databind}"
|
||||
api "com.fasterxml.jackson.datatype:jackson-datatype-jsr310:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.dataformat:jackson-dataformat-xml:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.module:jackson-module-jaxb-annotations:${versions.jackson}"
|
||||
|
@ -0,0 +1 @@
|
||||
ffeb635597d093509f33e1e94274d14be610f933
|
@ -1 +0,0 @@
|
||||
926e48c451166a291f1ce6c6276d9abbefa7c00f
|
@ -64,7 +64,7 @@ dependencies {
|
||||
api 'org.apache.htrace:htrace-core4:4.2.0-incubating'
|
||||
api "org.apache.logging.log4j:log4j-core:${versions.log4j}"
|
||||
api 'org.apache.avro:avro:1.10.2'
|
||||
api "com.fasterxml.jackson.core:jackson-databind:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.core:jackson-databind:${versions.jackson_databind}"
|
||||
api 'com.google.code.gson:gson:2.9.0'
|
||||
runtimeOnly 'com.google.guava:guava:30.1.1-jre'
|
||||
api 'com.google.protobuf:protobuf-java:3.19.3'
|
||||
|
@ -0,0 +1 @@
|
||||
ffeb635597d093509f33e1e94274d14be610f933
|
@ -1 +0,0 @@
|
||||
926e48c451166a291f1ce6c6276d9abbefa7c00f
|
@ -58,7 +58,7 @@ dependencies {
|
||||
api "org.apache.logging.log4j:log4j-1.2-api:${versions.log4j}"
|
||||
api "commons-codec:commons-codec:${versions.commonscodec}"
|
||||
api "com.fasterxml.jackson.core:jackson-core:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.core:jackson-databind:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.core:jackson-databind:${versions.jackson_databind}"
|
||||
api "com.fasterxml.jackson.core:jackson-annotations:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.dataformat:jackson-dataformat-cbor:${versions.jackson}"
|
||||
api "joda-time:joda-time:${versions.joda}"
|
||||
|
@ -0,0 +1 @@
|
||||
ffeb635597d093509f33e1e94274d14be610f933
|
@ -1 +0,0 @@
|
||||
926e48c451166a291f1ce6c6276d9abbefa7c00f
|
@ -50,7 +50,7 @@ dependencies {
|
||||
|
||||
testImplementation "com.fasterxml.jackson.core:jackson-annotations:${versions.jackson}"
|
||||
testImplementation "com.fasterxml.jackson.core:jackson-core:${versions.jackson}"
|
||||
testImplementation "com.fasterxml.jackson.core:jackson-databind:${versions.jackson}"
|
||||
testImplementation "com.fasterxml.jackson.core:jackson-databind:${versions.jackson_databind}"
|
||||
}
|
||||
|
||||
tasks.named('forbiddenApisTest').configure {
|
||||
|
@ -50,7 +50,7 @@ dependencies {
|
||||
}
|
||||
api "com.fasterxml.jackson.core:jackson-annotations:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.core:jackson-core:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.core:jackson-databind:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.core:jackson-databind:${versions.jackson_databind}"
|
||||
api "com.fasterxml.jackson.jaxrs:jackson-jaxrs-json-provider:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.jaxrs:jackson-jaxrs-base:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.module:jackson-module-jaxb-annotations:${versions.jackson}"
|
||||
|
2
test/fixtures/hdfs-fixture/build.gradle
vendored
2
test/fixtures/hdfs-fixture/build.gradle
vendored
@ -41,6 +41,6 @@ dependencies {
|
||||
api 'com.google.code.gson:gson:2.9.0'
|
||||
api "org.bouncycastle:bcpkix-jdk15on:${versions.bouncycastle}"
|
||||
api "com.fasterxml.jackson.jaxrs:jackson-jaxrs-json-provider:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.core:jackson-databind:${versions.jackson}"
|
||||
api "com.fasterxml.jackson.core:jackson-databind:${versions.jackson_databind}"
|
||||
api 'net.minidev:json-smart:2.4.8'
|
||||
}
|
||||
|
Loading…
x
Reference in New Issue
Block a user