Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Conversation

@Coduz
Copy link
Contributor

@Coduz Coduz commented Oct 18, 2022

This PR upgrades the version of Apache Shiro dependencies from 1.8.0 to 1.10.0 solving following CVEs

Related Issue
None

Description of the solution adopted
Upgraded version

Screenshots
None

Any side note on the changes made
No other dependencies outside of the Apache Shiro's ones has been updated

@Coduz Coduz added the Dependencies PR that updates dependencies. Be on the edge! label Oct 18, 2022
@Coduz Coduz requested a review from stefanomorson October 18, 2022 15:16
@Coduz Coduz force-pushed the chng-bumpShiroVersionTo1.10.0 branch from 06a03ce to 9e0a50a Compare October 18, 2022 15:16
@codecov
Copy link

codecov bot commented Oct 18, 2022

Codecov Report

Merging #3626 (ea58abc) into develop (be27308) will decrease coverage by 24.88%.
The diff coverage is n/a.

❗ Current head ea58abc differs from pull request most recent head a7014cd. Consider uploading reports for the commit a7014cd to get more accurate results

Impacted file tree graph

@@              Coverage Diff              @@
##             develop   #3626       +/-   ##
=============================================
- Coverage      34.47%   9.59%   -24.89%     
+ Complexity       147       8      -139     
=============================================
  Files           1668    1668               
  Lines          31987   31987               
  Branches        2634    2634               
=============================================
- Hits           11028    3068     -7960     
- Misses         20071   28632     +8561     
+ Partials         888     287      -601     
Impacted Files Coverage Δ
...g/eclipse/kapua/kura/simulator/app/Descriptor.java 0.00% <0.00%> (-100.00%) ⬇️
...e/kapua/commons/crypto/setting/CryptoSettings.java 0.00% <0.00%> (-100.00%) ⬇️
...lipse/kapua/message/internal/KapuaPayloadImpl.java 0.00% <0.00%> (-100.00%) ⬇️
...pse/kapua/kura/simulator/GatewayConfiguration.java 0.00% <0.00%> (-100.00%) ⬇️
...ipse/kapua/message/internal/KapuaPositionImpl.java 0.00% <0.00%> (-100.00%) ⬇️
...ipse/kapua/message/internal/MessageErrorCodes.java 0.00% <0.00%> (-100.00%) ⬇️
...lipse/kapua/service/job/internal/JobQueryImpl.java 0.00% <0.00%> (-100.00%) ⬇️
...kapua/transport/mqtt/MqttResponseTimeoutTimer.java 0.00% <0.00%> (-100.00%) ⬇️
...apua/transport/mqtt/setting/MqttClientSetting.java 0.00% <0.00%> (-100.00%) ⬇️
...ua/transport/mqtt/MqttClientConnectionOptions.java 0.00% <0.00%> (-100.00%) ⬇️
... and 503 more

@Coduz
Copy link
Contributor Author

Coduz commented Oct 19, 2022

/request-license-review

@github-actions
Copy link

@Coduz Coduz force-pushed the chng-bumpShiroVersionTo1.10.0 branch from 9e0a50a to a7014cd Compare October 19, 2022 15:10
@Coduz Coduz added the CQ approved The PR has passed CQ approvation label Oct 19, 2022
@Coduz Coduz merged commit 0f2c0c9 into eclipse-kapua:develop Oct 20, 2022
@Coduz Coduz deleted the chng-bumpShiroVersionTo1.10.0 branch October 20, 2022 15:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

CQ approved The PR has passed CQ approvation Dependencies PR that updates dependencies. Be on the edge!

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant