Skip to content
Snippets Groups Projects

[MS-44047] remediate tomcat vulnerability

Merged VidyaDharani Lokam requested to merge az/vl-fix-tomcat-vul into master
  • update spring-boot version to 3.3.1 to remediate tomcat vulnerability.
  • update core-lib-azure-spring6 to 0.27.0-rc3 .

mvn dependency:tree before changes:

[INFO] |  +- org.springframework.boot:spring-boot-starter-json:jar:3.2.2:compile
[INFO] |  \- org.springframework.boot:spring-boot-starter-tomcat:jar:3.2.2:compile
[INFO] |     +- org.apache.tomcat.embed:tomcat-embed-core:jar:10.1.18:compile
[INFO] |     \- org.apache.tomcat.embed:tomcat-embed-websocket:jar:10.1.18:compile

mvn dependency:tree after changes:

[INFO] |  +- org.springframework.boot:spring-boot-starter-json:jar:3.3.1:compile
[INFO] |  \- org.springframework.boot:spring-boot-starter-tomcat:jar:3.3.1:compile
[INFO] |     +- org.apache.tomcat.embed:tomcat-embed-core:jar:10.1.25:compile
[INFO] |     \- org.apache.tomcat.embed:tomcat-embed-websocket:jar:10.1.25:compile
Edited by VidyaDharani Lokam

Merge request reports

Loading
Loading

Activity

Filter activity
  • Approvals
  • Assignees & reviewers
  • Comments (from bots)
  • Comments (from users)
  • Commits & branches
  • Edits
  • Labels
  • Lock status
  • Mentions
  • Merge request status
  • Tracking
Please register or sign in to reply
Loading