From 690ec5d2f93d401b4ce752922eb7557c585ff4a2 Mon Sep 17 00:00:00 2001 From: David Byron <82477955+dbyron-sf@users.noreply.github.com> Date: Mon, 26 Feb 2024 20:47:41 -0800 Subject: [PATCH] chore(dependencies): use version 33.0.0 of com.google.guava:guava (#1160) to resolve CVE-2020-8908 and CVE-2023-2976 and to stay up to date. Co-authored-by: mergify[bot] <37929162+mergify[bot]@users.noreply.github.com> --- spinnaker-dependencies/spinnaker-dependencies.gradle | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/spinnaker-dependencies/spinnaker-dependencies.gradle b/spinnaker-dependencies/spinnaker-dependencies.gradle index 2fb171f78..1a663c588 100644 --- a/spinnaker-dependencies/spinnaker-dependencies.gradle +++ b/spinnaker-dependencies/spinnaker-dependencies.gradle @@ -82,7 +82,7 @@ dependencies { api("com.google.apis:google-api-services-storage:v1-rev141-1.25.0") api("com.google.cloud:google-cloud-secretmanager:2.3.10") api("com.google.code.findbugs:jsr305:3.0.2") - api("com.google.guava:guava:30.0-jre") + api("com.google.guava:guava:33.0.0-jre") api("com.hubspot.jinjava:jinjava:2.7.1") api("com.jakewharton.retrofit:retrofit1-okhttp3-client:1.1.0") api("com.jcraft:jsch:${versions.jsch}")