Skip to content

Commit 48bd9f7

Browse files
authored
Bump jackson-databind to version 2.12.7.1 (#2963)
Refs CVE-2022-42004 Refs #2962
1 parent 44d7b8f commit 48bd9f7

File tree

2 files changed

+6
-16
lines changed

2 files changed

+6
-16
lines changed

metrics-json/pom.xml

+4-8
Original file line numberDiff line numberDiff line change
@@ -17,7 +17,8 @@
1717

1818
<properties>
1919
<javaModuleName>com.codahale.metrics.json</javaModuleName>
20-
<jackson.version>2.12.7.20221012</jackson.version>
20+
<jackson.version>2.12.7</jackson.version>
21+
<jackson-databind.version>2.12.7.1</jackson-databind.version>
2122
</properties>
2223

2324
<dependencyManagement>
@@ -29,13 +30,6 @@
2930
<type>pom</type>
3031
<scope>import</scope>
3132
</dependency>
32-
<dependency>
33-
<groupId>com.fasterxml.jackson</groupId>
34-
<artifactId>jackson-bom</artifactId>
35-
<version>${jackson.version}</version>
36-
<type>pom</type>
37-
<scope>import</scope>
38-
</dependency>
3933
</dependencies>
4034
</dependencyManagement>
4135

@@ -52,10 +46,12 @@
5246
<dependency>
5347
<groupId>com.fasterxml.jackson.core</groupId>
5448
<artifactId>jackson-core</artifactId>
49+
<version>${jackson.version}</version>
5550
</dependency>
5651
<dependency>
5752
<groupId>com.fasterxml.jackson.core</groupId>
5853
<artifactId>jackson-databind</artifactId>
54+
<version>${jackson-databind.version}</version>
5955
</dependency>
6056
<dependency>
6157
<groupId>junit</groupId>

metrics-servlets/pom.xml

+2-8
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,7 @@
2020
<javaModuleName>com.codahale.metrics.servlets</javaModuleName>
2121
<papertrail.profiler.version>1.1.1</papertrail.profiler.version>
2222
<servlet.version>3.1.0</servlet.version>
23-
<jackson.version>2.12.7.20221012</jackson.version>
23+
<jackson.version>2.12.7.1</jackson.version>
2424
</properties>
2525

2626
<dependencyManagement>
@@ -32,13 +32,6 @@
3232
<type>pom</type>
3333
<scope>import</scope>
3434
</dependency>
35-
<dependency>
36-
<groupId>com.fasterxml.jackson</groupId>
37-
<artifactId>jackson-bom</artifactId>
38-
<version>${jackson.version}</version>
39-
<type>pom</type>
40-
<scope>import</scope>
41-
</dependency>
4235
<dependency>
4336
<groupId>org.eclipse.jetty</groupId>
4437
<artifactId>jetty-bom</artifactId>
@@ -80,6 +73,7 @@
8073
<dependency>
8174
<groupId>com.fasterxml.jackson.core</groupId>
8275
<artifactId>jackson-databind</artifactId>
76+
<version>${jackson.version}</version>
8377
</dependency>
8478
<dependency>
8579
<groupId>junit</groupId>

0 commit comments

Comments
 (0)