riot icon indicating copy to clipboard operation
riot copied to clipboard

Dependency updates to remediate GCP-related security issues

Open corey-cole opened this issue 1 year ago • 2 comments

This PR updates the GCP library to the latest available (5.1.2) and that is recommended for use with Spring Boot 3.2.x. It resolves the guava vulnerability present in 1.2.8 but not the protobuf or oauth dependencies. Will submit a follow-up PR for those shortly.

corey-cole avatar Apr 08 '24 15:04 corey-cole

This PR is a partial fix for issue #145

corey-cole avatar May 21 '24 21:05 corey-cole