[ 
https://issues.apache.org/jira/browse/GEODE-8496?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17268185#comment-17268185
 ] 

ASF subversion and git services commented on GEODE-8496:
--------------------------------------------------------

Commit 77ef0b71d8b98cdac5b6de35a68c20ccba22126e in geode's branch 
refs/heads/develop from Owen Nichols
[ https://gitbox.apache.org/repos/asf?p=geode.git;h=77ef0b7 ]

GEODE-8496: bump dependencies again (#5919)

* Bump spring from 5.3.1/5.3.2 to 5.3.3
* Bump spring-boot-starter from 2.4.1 to 2.4.2
* Bump mockito-core from 3.7.0 to 3.7.7
* Bump lettuce-core from 6.0.1.RELEASE to 6.0.2.RELEASE
* Bump netty-all from 4.1.56.Final to 4.1.58.Final
* Bump micrometer-core from 1.6.2 to 1.6.3
* Bump mysql-connector-java from 8.0.22 to 8.0.23
* Bump dependency-management from 1.0.10.RELEASE to 1.0.11.RELEASE
* Bump sonarqube from 3.0 to 3.1
* Bump buildSrc's commons-lang3 from 3.3.2 to 3.11
* Bump maven-artifact from 3.3.3 to 3.6.3
* Bump docker-java from 3.0.14 to 3.2.7
* update image (cached dependencies) on changes to dependencies

> bump dependencies for 1.14
> --------------------------
>
>                 Key: GEODE-8496
>                 URL: https://issues.apache.org/jira/browse/GEODE-8496
>             Project: Geode
>          Issue Type: Improvement
>          Components: build
>            Reporter: Owen Nichols
>            Priority: Major
>              Labels: pull-request-available
>             Fix For: 1.14.0
>
>
> now is a good time in the lull between 1.13 and 1.14 to roll 3rd party 
> libraries to latest versions wherever possible.  Doing this proactively helps 
> us stay ahead of CVEs and keep up with bugfixes.



--
This message was sent by Atlassian Jira
(v8.3.4#803005)

Reply via email to