aurora
aurora copied to clipboard
Upgrading dependencies to mitigate vulnerabilities
Description:
A bot recently reported a large number of vulnerabilities that we inherited from our dependencies.
Creating a draft PR while I verify that these dependency upgrades do not have a negative impact.
Components upgraded:
- Curator
- Zookeeper
- Shiro
- Netty
- Asynchttpclient
- Quartz
- Gradle
- Gradle plugins
- Jackson
- Guice
- Guava
- Multiple react components.
Testing Done:
TODO
We should run a few end to end test runs to confirm everything is good.
After we merge this PR we need to create a PR for packaging which upgrades the gradle version there.