diff options
author | Martin Stockhammer <martin_s@apache.org> | 2020-07-01 22:27:51 +0200 |
---|---|---|
committer | Martin Stockhammer <martin_s@apache.org> | 2020-07-01 22:27:51 +0200 |
commit | f1ff872d4321e81824b7ad8732151757028113ad (patch) | |
tree | e556c62faba6ef62ee78f9f7adc6699cf28e500a /archiva-modules/metadata | |
parent | 509aad470c1ed42e108ea3294d1db71fdcee8aac (diff) | |
download | archiva-f1ff872d4321e81824b7ad8732151757028113ad.tar.gz archiva-f1ff872d4321e81824b7ad8732151757028113ad.zip |
Updating dependency with owasp check
Diffstat (limited to 'archiva-modules/metadata')
3 files changed, 93 insertions, 7 deletions
diff --git a/archiva-modules/metadata/metadata-store-provider/metadata-store-cassandra/pom.xml b/archiva-modules/metadata/metadata-store-provider/metadata-store-cassandra/pom.xml index 77beb3547..364ce76f5 100644 --- a/archiva-modules/metadata/metadata-store-provider/metadata-store-cassandra/pom.xml +++ b/archiva-modules/metadata/metadata-store-provider/metadata-store-cassandra/pom.xml @@ -31,7 +31,7 @@ <properties> <site.staging.base>${project.parent.parent.basedir}</site.staging.base> - <cassandraVersion>3.11.2</cassandraVersion> + <cassandraVersion>3.11.6</cassandraVersion> </properties> <dependencies> @@ -143,6 +143,7 @@ <groupId>org.jboss.logging</groupId> <artifactId>jboss-logging</artifactId> </exclusion> + </exclusions> </dependency> @@ -169,24 +170,57 @@ </exclusion> </exclusions> </dependency> - <dependency> <groupId>org.apache.cassandra</groupId> <artifactId>cassandra-thrift</artifactId> - <version>3.11.2</version> + <version>${cassandraVersion}</version> <exclusions> <exclusion> <groupId>javax.servlet</groupId> <artifactId>servlet-api</artifactId> </exclusion> + <exclusion> + <groupId>org.apache.ant</groupId> + <artifactId>ant</artifactId> + </exclusion> </exclusions> </dependency> + <dependency> + <groupId>org.apache.thrift</groupId> + <artifactId>libthrift</artifactId> + <version>0.13.0</version> + </dependency> + <!-- + <dependency> + <groupId>org.codehaus.jackson</groupId> + <artifactId>jackson-core-asl</artifactId> + <version>1.9.13</version> + </dependency> + <dependency> + <groupId>org.codehaus.jackson</groupId> + <artifactId>jackson-mapper-asl</artifactId> + <version>1.9.13</version> + </dependency> + --> + + <!-- Transitive dependency. Declared here to increase the version. --> + <dependency> + <groupId>io.netty</groupId> + <artifactId>netty-all</artifactId> + <version>${netty.version}</version> + </dependency> <!-- Is a dependency of cassandra -> hibernate-validator and replaced by new version --> <dependency> <groupId>org.jboss.logging</groupId> <artifactId>jboss-logging</artifactId> </dependency> + <!-- Dependency of cassandra -> replacing by new version --> + <dependency> + <groupId>org.hibernate</groupId> + <artifactId>hibernate-validator</artifactId> + <version>4.3.2.Final</version> + </dependency> <!-- TEST Scope --> @@ -236,6 +270,7 @@ </dependencies> + <build> <testResources> <testResource> diff --git a/archiva-modules/metadata/metadata-store-provider/oak-jcr/metadata-store-jcr/pom.xml b/archiva-modules/metadata/metadata-store-provider/oak-jcr/metadata-store-jcr/pom.xml index 26a94f3ab..22cd0c659 100644 --- a/archiva-modules/metadata/metadata-store-provider/oak-jcr/metadata-store-jcr/pom.xml +++ b/archiva-modules/metadata/metadata-store-provider/oak-jcr/metadata-store-jcr/pom.xml @@ -84,6 +84,32 @@ <dependency> <groupId>org.apache.jackrabbit</groupId> <artifactId>oak-segment-tar</artifactId> + <exclusions> + <exclusion> + <groupId>io.netty</groupId> + <artifactId>netty-transport</artifactId> + </exclusion> + <exclusion> + <groupId>io.netty</groupId> + <artifactId>netty-resolver</artifactId> + </exclusion> + <exclusion> + <groupId>io.netty</groupId> + <artifactId>netty-handler</artifactId> + </exclusion> + <exclusion> + <groupId>io.netty</groupId> + <artifactId>netty-common</artifactId> + </exclusion> + <exclusion> + <groupId>io.netty</groupId> + <artifactId>netty-codec</artifactId> + </exclusion> + <exclusion> + <groupId>io.netty</groupId> + <artifactId>netty-buffer</artifactId> + </exclusion> + </exclusions> </dependency> <dependency> <groupId>org.apache.jackrabbit</groupId> @@ -113,6 +139,34 @@ <groupId>org.apache.jackrabbit</groupId> <artifactId>oak-core</artifactId> </dependency> + <!-- netty is a transitive dependencies of oak-segment-tar + increasing version --> + <dependency> + <groupId>io.netty</groupId> + <artifactId>netty-transport</artifactId> + </dependency> + <dependency> + <groupId>io.netty</groupId> + <artifactId>netty-resolver</artifactId> + </dependency> + <dependency> + <groupId>io.netty</groupId> + <artifactId>netty-handler</artifactId> + </dependency> + <dependency> + <groupId>io.netty</groupId> + <artifactId>netty-common</artifactId> + </dependency> + <dependency> + <groupId>io.netty</groupId> + <artifactId>netty-codec</artifactId> + </dependency> + <dependency> + <groupId>io.netty</groupId> + <artifactId>netty-buffer</artifactId> + </dependency> + + <dependency> <groupId>javax.inject</groupId> diff --git a/archiva-modules/metadata/metadata-store-provider/oak-jcr/metadata-store-jcr/src/main/java/org/apache/archiva/metadata/repository/jcr/OakRepositoryFactory.java b/archiva-modules/metadata/metadata-store-provider/oak-jcr/metadata-store-jcr/src/main/java/org/apache/archiva/metadata/repository/jcr/OakRepositoryFactory.java index 8822ff07b..a8cb1a700 100644 --- a/archiva-modules/metadata/metadata-store-provider/oak-jcr/metadata-store-jcr/src/main/java/org/apache/archiva/metadata/repository/jcr/OakRepositoryFactory.java +++ b/archiva-modules/metadata/metadata-store-provider/oak-jcr/metadata-store-jcr/src/main/java/org/apache/archiva/metadata/repository/jcr/OakRepositoryFactory.java @@ -44,8 +44,6 @@ import org.apache.jackrabbit.oak.plugins.index.lucene.hybrid.LocalIndexObserver; import org.apache.jackrabbit.oak.plugins.index.lucene.hybrid.NRTIndexFactory; import org.apache.jackrabbit.oak.plugins.index.lucene.property.PropertyIndexCleaner; import org.apache.jackrabbit.oak.plugins.index.lucene.reader.DefaultIndexReaderFactory; -import org.apache.jackrabbit.oak.plugins.index.lucene.score.ScorerProviderFactory; -import org.apache.jackrabbit.oak.plugins.index.lucene.score.impl.ScorerProviderFactoryImpl; import org.apache.jackrabbit.oak.plugins.index.lucene.util.IndexDefinitionBuilder; import org.apache.jackrabbit.oak.plugins.index.search.ExtractedTextCache; import org.apache.jackrabbit.oak.plugins.index.search.FulltextIndexConstants; @@ -142,7 +140,6 @@ public class OakRepositoryFactory private LuceneIndexProvider indexProvider; - private ScorerProviderFactory scorerFactory = new ScorerProviderFactoryImpl( ); private IndexAugmentorFactory augmentorFactory = new IndexAugmentorFactory( ); private ActiveDeletedBlobCollectorFactory.ActiveDeletedBlobCollector activeDeletedBlobCollector = ActiveDeletedBlobCollectorFactory.NOOP; @@ -396,7 +393,7 @@ public class OakRepositoryFactory tracker = createTracker(); - indexProvider = new LuceneIndexProvider(tracker, scorerFactory, augmentorFactory); + indexProvider = new LuceneIndexProvider(tracker, augmentorFactory); initialize(); registerObserver(); |