From 7dd8af055a4c4c5bf455043afd5c742a8d9a97da Mon Sep 17 00:00:00 2001 From: lukasz-wolski <1005015+lukasz-wolski@users.noreply.github.com> Date: Mon, 13 Jan 2025 14:23:43 +0000 Subject: [PATCH] Update to spring-boot 3.3.7 (#1728) * Update to spring-boot 3.3.7 * Removed obsolete resolution strategy --- build.gradle | 10 +--------- 1 file changed, 1 insertion(+), 9 deletions(-) diff --git a/build.gradle b/build.gradle index b5c867096..c7a6fbe4e 100644 --- a/build.gradle +++ b/build.gradle @@ -18,7 +18,7 @@ plugins { id "info.solidsoft.pitest" version '1.15.0' id 'io.spring.dependency-management' version '1.1.7' id 'org.sonarqube' version '5.0.0.4638' - id 'org.springframework.boot' version '3.3.4' + id 'org.springframework.boot' version '3.3.7' id "org.flywaydb.flyway" version '9.22.3' id 'au.com.dius.pact' version '4.1.7'// do not change, otherwise serenity report fails id 'org.owasp.dependencycheck' version '10.0.3' @@ -623,14 +623,6 @@ configurations.all { details.useVersion "32.1.1-jre" } } - - resolutionStrategy.eachDependency { details -> - // Remedy for CVE-2024-22233 - remove once spring-boot transitively uses version >= 6.1.14 - if (details.requested.group == 'org.springframework' - && (details.requested.version == '6.1.12' || details.requested.version == '6.1.13')) { - details.useVersion "6.1.14" - } - } } // this is required to force Java running on the Azure Windows Server OS into using