Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
3.6.x第三方组件安全漏洞修复
CVE-2021-3711,CVE-2023-22102:mysql-connector-java-8.0.25.jar --> mysql-connector-java-8.0.28.jar
CVE-2022-22980: spring-data-mongodb-3.1.9.jar --> spring-data-mongodb-3.3.5.jar
CVE-2022-22978, CVE-2021-22119:spring-security 5.4.6 --> 5.5.7
CVE-2022-22965: spring-framework 5.3.7 -> 5.3.23
CVE-2022-42004, CVE-2022-42003, CVE-2021-46877, CVE-2020-36518:jackson 2.11.4 -> 2.12.7.1
CVE-2021-22044:spring-cloud-openfeign-core-3.0.3.jar --> spring-cloud-openfeign-core-3.0.5.jar
CVE-2022-3510, CVE-2022-3509:protobuf-java-3.11.4.jar --> protobuf-java-3.16.3.jar
CVE-2021-37137, CVE-2021-37136: netty 4.1.65.Final --> 4.1.68.Final
CVE-2022-25647:gson-2.8.6.jar --> gson-2.8.9.jar
CVE-2019-10086:commons-beanutils-1.9.2.jar --> commons-beanutils-1.9.4.jar
CVE-2023-44487:tomcat 9.0.46 --> 9.0.90