Skip to content

Commit ea259b0

Browse files
authored
Merge pull request #365 from hazendaz/spotbugs
Override a number of libraries to ensure we clear vulnerablities
2 parents a277cb3 + 9e23681 commit ea259b0

File tree

1 file changed

+27
-9
lines changed

1 file changed

+27
-9
lines changed

pom.xml

+27-9
Original file line numberDiff line numberDiff line change
@@ -11,7 +11,7 @@
1111

1212
<groupId>com.github.spotbugs</groupId>
1313
<artifactId>spotbugs-maven-plugin</artifactId>
14-
<version>4.4.3-SNAPSHOT</version>
14+
<version>4.4.2.1-SNAPSHOT</version>
1515
<packaging>maven-plugin</packaging>
1616

1717
<name>SpotBugs Maven Plugin</name>
@@ -87,7 +87,7 @@
8787
</contributors>
8888

8989
<prerequisites>
90-
<maven>3.2.5</maven>
90+
<maven>3.3.9</maven>
9191
</prerequisites>
9292

9393
<scm>
@@ -132,7 +132,9 @@
132132
<doxiaSiteToolsVersion>1.10</doxiaSiteToolsVersion>
133133

134134
<mavenCoreVersion>3.8.3</mavenCoreVersion>
135+
<mavenSharedUtilsVersion>3.3.4</mavenSharedUtilsVersion>
135136
<mavenTransferVersion>0.13.1</mavenTransferVersion>
137+
<mavenCommonArtifactFilters>3.2.0</mavenCommonArtifactFilters>
136138
<mavenReportingApiVersion>3.0</mavenReportingApiVersion>
137139
<mavenReportingVersion>3.0.0</mavenReportingVersion>
138140
<mavenVersion>3.8.3</mavenVersion>
@@ -151,7 +153,7 @@
151153
<pluginPluginVersion>3.6.1</pluginPluginVersion>
152154
<scmPluginVersion>1.12.0</scmPluginVersion>
153155
<sitePluginVersion>3.9.1</sitePluginVersion>
154-
<sitePlugin36Version>3.6</sitePlugin36Version> <!-- For MFINDBUGS-145 (breaks on newer jdks, revisit this on spotbugs 4.3.x and simply drop the old support) -->
156+
<sitePlugin36Version>3.6</sitePlugin36Version> <!-- For MFINDBUGS-145 (breaks on newer jdks, revisit this on spotbugs 4.5.x and simply drop the old support) -->
155157
<versionsPluginVersion>2.8.1</versionsPluginVersion>
156158

157159
<spotbugsTestDebug>false</spotbugsTestDebug>
@@ -185,6 +187,7 @@
185187
<collections.version>3.2.2</collections.version>
186188
<digester.version>2.1</digester.version>
187189
<io.version>2.11.0</io.version>
190+
<lang2.version>2.6</lang2.version>
188191
<lang3.version>3.12.0</lang3.version>
189192
</properties>
190193

@@ -384,18 +387,28 @@
384387
<artifactId>maven-artifact-transfer</artifactId>
385388
<version>${mavenTransferVersion}</version>
386389
<exclusions>
387-
<exclusion>
388-
<groupId>org.sonatype.sisu</groupId>
389-
<artifactId>sisu-guice</artifactId>
390-
</exclusion>
390+
<exclusion>
391+
<groupId>org.sonatype.sisu</groupId>
392+
<artifactId>sisu-guice</artifactId>
393+
</exclusion>
391394
</exclusions>
392395
</dependency>
396+
<dependency>
397+
<groupId>org.apache.maven.shared</groupId>
398+
<artifactId>maven-common-artifact-filters</artifactId>
399+
<version>${mavenCommonArtifactFilters}</version>
400+
</dependency>
393401

394402
<dependency>
395403
<groupId>org.apache.maven</groupId>
396404
<artifactId>maven-core</artifactId>
397405
<version>${mavenCoreVersion}</version>
398406
</dependency>
407+
<dependency>
408+
<groupId>org.apache.maven.shared</groupId>
409+
<artifactId>maven-shared-utils</artifactId>
410+
<version>${mavenSharedUtilsVersion}</version>
411+
</dependency>
399412

400413
<!-- doxia -->
401414
<dependency>
@@ -445,8 +458,8 @@
445458
<artifactId>struts-core</artifactId>
446459
</exclusion>
447460
<exclusion>
448-
<groupId>dom4j</groupId>
449-
<artifactId>dom4j</artifactId>
461+
<groupId>dom4j</groupId>
462+
<artifactId>dom4j</artifactId>
450463
</exclusion>
451464
<exclusion>
452465
<groupId>commons-logging</groupId>
@@ -503,6 +516,11 @@
503516
<artifactId>commons-io</artifactId>
504517
<version>${io.version}</version>
505518
</dependency>
519+
<dependency>
520+
<groupId>commons-lang</groupId>
521+
<artifactId>commons-lang</artifactId>
522+
<version>${lang2.version}</version>
523+
</dependency>
506524
<dependency>
507525
<groupId>org.apache.commons</groupId>
508526
<artifactId>commons-lang3</artifactId>

0 commit comments

Comments
 (0)