]> source.dussan.org Git - sonarqube.git/commitdiff
[OWASP] Findings of the night
authorTobias Trabelsi <64127335+tobias-trabelsi-sonarsource@users.noreply.github.com>
Tue, 8 Dec 2020 10:07:09 +0000 (11:07 +0100)
committersonartech <sonartech@sonarsource.com>
Tue, 8 Dec 2020 20:07:03 +0000 (20:07 +0000)
* updated tomcat to version 8.5.60

* supressed CVE-2020-25649

build.gradle

index cc0ed6480834aba03de283ddfd3134dedd487cb0..01e1d9d4bdefe75d917fcd7a0d42d7a43fbf5fc2 100644 (file)
@@ -308,7 +308,7 @@ subprojects {
         entry 'log4j-to-slf4j'
         entry 'log4j-core'
       }
-      dependencySet(group: 'org.apache.tomcat.embed', version: '8.5.58') {
+      dependencySet(group: 'org.apache.tomcat.embed', version: '8.5.60') {
         entry 'tomcat-embed-core'
         entry('tomcat-embed-jasper') {
           exclude 'org.eclipse.jdt.core.compiler:ecj'