Skip to content

Upgrade dependencies to fix vulnerabilities and migrate from springfox to openapi

Brindaban Das requested to merge IBM-vulnerability-fix into master

Upgraded dependencies to fix vulnerability and migrating from springfox to open-api. Moving springfox to open-api version because springfox-3.0.0 version is not compatible with latest spring boot version. For reference Please see issue: indexer-service#74 (closed)

Since spring-fox does not get updates anymore and is not compatible with new versions of spring-boot, it will block us in further dependency upgrades: https://github.com/springfox/springfox/issues/3462

Vulnerability issues fixes in this MR as below: https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/22126 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/22127 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/20045 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/20047 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/20046 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/21477 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/21468 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/21474 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/16587 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/16590 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/10418 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/13429 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/13430 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/16589 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/21322 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/21323 https://community.opengroup.org/osdu/platform/system/dataset/-/security/vulnerabilities/21324

Edited by Brindaban Das

Merge request reports