This is an automated email from the ASF dual-hosted git repository. onichols pushed a commit to branch support/1.14 in repository https://gitbox.apache.org/repos/asf/geode.git
The following commit(s) were added to refs/heads/support/1.14 by this push: new 06cdd26589 GEODE-10355: Bump spring-security from 5.4.8 to 5.6.5 (#7769) 06cdd26589 is described below commit 06cdd2658949213386ab56d2d077b50f0db9d023 Author: Owen Nichols <34043438+onichols-pivo...@users.noreply.github.com> AuthorDate: Mon Jun 13 14:48:26 2022 -0700 GEODE-10355: Bump spring-security from 5.4.8 to 5.6.5 (#7769) Geode endeavors to update to the latest version of 3rd-party dependencies on develop wherever possible. Doing so increases the shelf life of releases and increases security and reliability. Doing so regularly makes the occasional hiccups this can cause easier to pinpoint and address. Dependency bumps in this batch: * Bump spring-security from 5.4.8 to 5.6.5 --- boms/geode-all-bom/src/test/resources/expected-pom.xml | 16 ++++++++-------- .../geode/gradle/plugins/DependencyConstraints.groovy | 2 +- .../src/integrationTest/resources/expected_jars.txt | 1 + 3 files changed, 10 insertions(+), 9 deletions(-) diff --git a/boms/geode-all-bom/src/test/resources/expected-pom.xml b/boms/geode-all-bom/src/test/resources/expected-pom.xml index 706d4a3352..5c24a4daac 100644 --- a/boms/geode-all-bom/src/test/resources/expected-pom.xml +++ b/boms/geode-all-bom/src/test/resources/expected-pom.xml @@ -742,49 +742,49 @@ <dependency> <groupId>org.springframework.security</groupId> <artifactId>spring-security-config</artifactId> - <version>5.4.8</version> + <version>5.6.5</version> <scope>compile</scope> </dependency> <dependency> <groupId>org.springframework.security</groupId> <artifactId>spring-security-core</artifactId> - <version>5.4.8</version> + <version>5.6.5</version> <scope>compile</scope> </dependency> <dependency> <groupId>org.springframework.security</groupId> <artifactId>spring-security-ldap</artifactId> - <version>5.4.8</version> + <version>5.6.5</version> <scope>compile</scope> </dependency> <dependency> <groupId>org.springframework.security</groupId> <artifactId>spring-security-test</artifactId> - <version>5.4.8</version> + <version>5.6.5</version> <scope>compile</scope> </dependency> <dependency> <groupId>org.springframework.security</groupId> <artifactId>spring-security-web</artifactId> - <version>5.4.8</version> + <version>5.6.5</version> <scope>compile</scope> </dependency> <dependency> <groupId>org.springframework.security</groupId> <artifactId>spring-security-oauth2-core</artifactId> - <version>5.4.8</version> + <version>5.6.5</version> <scope>compile</scope> </dependency> <dependency> <groupId>org.springframework.security</groupId> <artifactId>spring-security-oauth2-client</artifactId> - <version>5.4.8</version> + <version>5.6.5</version> <scope>compile</scope> </dependency> <dependency> <groupId>org.springframework.security</groupId> <artifactId>spring-security-oauth2-jose</artifactId> - <version>5.4.8</version> + <version>5.6.5</version> <scope>compile</scope> </dependency> <dependency> diff --git a/buildSrc/src/main/groovy/org/apache/geode/gradle/plugins/DependencyConstraints.groovy b/buildSrc/src/main/groovy/org/apache/geode/gradle/plugins/DependencyConstraints.groovy index af37196159..54d3c3997d 100644 --- a/buildSrc/src/main/groovy/org/apache/geode/gradle/plugins/DependencyConstraints.groovy +++ b/buildSrc/src/main/groovy/org/apache/geode/gradle/plugins/DependencyConstraints.groovy @@ -244,7 +244,7 @@ class DependencyConstraints implements Plugin<Project> { entry('selenium-support') } - dependencySet(group: 'org.springframework.security', version: '5.4.8') { + dependencySet(group: 'org.springframework.security', version: '5.6.5') { entry('spring-security-config') entry('spring-security-core') entry('spring-security-ldap') diff --git a/geode-assembly/src/integrationTest/resources/expected_jars.txt b/geode-assembly/src/integrationTest/resources/expected_jars.txt index 0f17b5329f..14db534777 100644 --- a/geode-assembly/src/integrationTest/resources/expected_jars.txt +++ b/geode-assembly/src/integrationTest/resources/expected_jars.txt @@ -112,6 +112,7 @@ spring-plugin-core spring-plugin-metadata spring-security-config spring-security-core +spring-security-crypto spring-security-ldap spring-security-oauth2-client spring-security-oauth2-core