Skip to content

Commit cddf72b

Browse files
authored
chrore: Fix dependency security (https://github.com/sinch/sinch-sdk-j… (#335)
* chrore: Fix dependency security (https://github.com/sinch/sinch-sdk-java/security/dependabot/8
1 parent e7981d4 commit cddf72b

3 files changed

Lines changed: 13 additions & 2 deletions

File tree

CHANGELOG.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -21,6 +21,9 @@ All notable changes to the **Sinch Java SDK** are documented in this file.
2121
### Major breaking changes with major release
2222
- see [MIGRATION-GUIDE](MIGRATION-GUIDE.md#200)
2323

24+
### Chore
25+
- **[dependency]** Updated `maven-model` dependency to `3.9.14` or more recent version to fix security vulnerabilities [#8](https://github.com/sinch/sinch-sdk-java/security/dependabot/8)
26+
2427
### Conversation
2528
- **[feature]** Support `Project Settings` API
2629
- **[feature]** Support `Contacts Identity Conflicts` API

examples/snippets/pom.xml

Lines changed: 8 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -108,6 +108,14 @@
108108
<artifactId>slf4j-jdk14</artifactId>
109109
<version>2.0.9</version>
110110
</dependency>
111+
112+
<dependency>
113+
<!-- transient dependency overwrite: https://github.com/sinch/sinch-sdk-java/security/dependabot/8 -->
114+
<groupId>org.apache.maven</groupId>
115+
<artifactId>maven-model</artifactId>
116+
<version>[3.9.14,)</version>
117+
</dependency>
118+
111119
</dependencies>
112120

113121
</project>

pom.xml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -196,7 +196,6 @@
196196
</pluginManagement>
197197

198198
<plugins>
199-
200199
<plugin>
201200
<groupId>org.codehaus.mojo</groupId>
202201
<artifactId>build-helper-maven-plugin</artifactId>
@@ -491,9 +490,10 @@
491490
</dependency>
492491

493492
<dependency>
493+
<!-- transient dependency overwrite: https://github.com/sinch/sinch-sdk-java/security/dependabot/8 -->
494494
<groupId>org.apache.maven</groupId>
495495
<artifactId>maven-model</artifactId>
496-
<version>3.9.5</version>
496+
<version>[3.9.14,)</version>
497497
</dependency>
498498

499499
</dependencies>

0 commit comments

Comments
 (0)