Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

upgrade spring-core and spring-boot due to cve #428

Merged
merged 2 commits into from
Feb 7, 2022
Merged

upgrade spring-core and spring-boot due to cve #428

merged 2 commits into from
Feb 7, 2022

Conversation

pjfanning
Copy link
Contributor

#427

What is the purpose of the change

Avoid CVE in spring-core

Brief changelog

pom change

Verifying this change

CI build

Follow this checklist to help us incorporate your contribution quickly and easily. Notice, it would be helpful if you could finish the following 5 checklist(the last one is not necessary)before request the community to review your PR.

  • Make sure there is a Github issue filed for the change (usually before you start working on it). Trivial changes like typos do not require a Github issue. Your pull request should address just this issue, without pulling in other changes - one PR resolves one issue.
  • Format the pull request title like [ISSUE #123] Fix UnknownException when host config not exist. Each commit in the pull request should have a meaningful subject line and body.
  • Write a pull request description that is detailed enough to understand what the pull request does, how, and why.
  • Write necessary unit-test(over 80% coverage) to verify your logic correction, more mock a little better when cross module dependency exist.
  • Run mvn -B clean apache-rat:check findbugs:findbugs checkstyle:checkstyle to make sure basic checks pass. Run mvn clean install -DskipITs to make sure unit-test pass. Run mvn clean test-compile failsafe:integration-test to make sure integration-test pass.
  • [] If this contribution is large, please file an Apache Individual Contributor License Agreement.

@RongtongJin RongtongJin merged commit 91d7287 into apache:master Feb 7, 2022
@pjfanning pjfanning deleted the patch-1 branch February 7, 2022 09:51
@RongtongJin RongtongJin added this to the 2.2.2 milestone Apr 2, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants