From 0f936440989d113a3508ed15ec2ac7d9c5b9d980 Mon Sep 17 00:00:00 2001
From: Aaron Steinfeld <45047841+aaron-steinfeld@users.noreply.github.com>
Date: Tue, 23 Jan 2024 11:33:23 -0500
Subject: [PATCH] chore: update dependencies (#191)
---
gateway-service-api/build.gradle.kts | 4 ++--
gateway-service-factory/build.gradle.kts | 2 +-
gateway-service-impl/build.gradle.kts | 6 +++---
gateway-service/build.gradle.kts | 6 +++---
owasp-suppressions.xml | 21 ---------------------
5 files changed, 9 insertions(+), 30 deletions(-)
diff --git a/gateway-service-api/build.gradle.kts b/gateway-service-api/build.gradle.kts
index 0ac2404b..b8b47908 100644
--- a/gateway-service-api/build.gradle.kts
+++ b/gateway-service-api/build.gradle.kts
@@ -22,7 +22,7 @@ protobuf {
// the identifier, which can be referred to in the "plugins"
// container of the "generateProtoTasks" closure.
id("grpc_java") {
- artifact = "io.grpc:protoc-gen-grpc-java:1.57.2"
+ artifact = "io.grpc:protoc-gen-grpc-java:1.60.0"
}
}
generateProtoTasks {
@@ -44,7 +44,7 @@ sourceSets {
}
dependencies {
- api(platform("io.grpc:grpc-bom:1.57.2"))
+ api(platform("io.grpc:grpc-bom:1.60.0"))
api("io.grpc:grpc-protobuf")
api("io.grpc:grpc-stub")
api("javax.annotation:javax.annotation-api:1.3.2")
diff --git a/gateway-service-factory/build.gradle.kts b/gateway-service-factory/build.gradle.kts
index 5f106949..e65b6499 100644
--- a/gateway-service-factory/build.gradle.kts
+++ b/gateway-service-factory/build.gradle.kts
@@ -3,7 +3,7 @@ plugins {
}
dependencies {
- api("org.hypertrace.core.serviceframework:platform-grpc-service-framework:0.1.62")
+ api("org.hypertrace.core.serviceframework:platform-grpc-service-framework:0.1.64")
implementation(project(":gateway-service-impl"))
}
diff --git a/gateway-service-impl/build.gradle.kts b/gateway-service-impl/build.gradle.kts
index 6b07a7d0..a48227a2 100644
--- a/gateway-service-impl/build.gradle.kts
+++ b/gateway-service-impl/build.gradle.kts
@@ -20,8 +20,8 @@ dependencies {
implementation("org.hypertrace.entity.service:entity-service-client:0.8.87")
implementation("org.hypertrace.entity.service:entity-service-api:0.8.87")
- implementation("org.hypertrace.core.grpcutils:grpc-context-utils:0.12.5")
- implementation("org.hypertrace.core.grpcutils:grpc-client-utils:0.12.5")
+ implementation("org.hypertrace.core.grpcutils:grpc-context-utils:0.13.1")
+ implementation("org.hypertrace.core.grpcutils:grpc-client-utils:0.13.1")
implementation("org.hypertrace.core.serviceframework:platform-metrics:0.1.58")
// Config
@@ -41,5 +41,5 @@ dependencies {
testImplementation("org.mockito:mockito-core:5.5.0")
testImplementation("org.mockito:mockito-inline:5.2.0")
testImplementation("org.apache.logging.log4j:log4j-slf4j-impl:2.17.1")
- testImplementation("io.grpc:grpc-netty:1.57.2")
+ testImplementation("io.grpc:grpc-netty:1.60.0")
}
diff --git a/gateway-service/build.gradle.kts b/gateway-service/build.gradle.kts
index 5448a416..6778ce17 100644
--- a/gateway-service/build.gradle.kts
+++ b/gateway-service/build.gradle.kts
@@ -8,12 +8,12 @@ plugins {
dependencies {
implementation(project(":gateway-service-factory"))
- implementation("org.hypertrace.core.grpcutils:grpc-server-utils:0.12.5")
- implementation("org.hypertrace.core.serviceframework:platform-grpc-service-framework:0.1.62")
+ implementation("org.hypertrace.core.grpcutils:grpc-server-utils:0.13.1")
+ implementation("org.hypertrace.core.serviceframework:platform-grpc-service-framework:0.1.64")
implementation("org.slf4j:slf4j-api:1.7.30")
implementation("com.typesafe:config:1.4.1")
- runtimeOnly("io.grpc:grpc-netty:1.57.2")
+ runtimeOnly("io.grpc:grpc-netty:1.60.0")
runtimeOnly("org.apache.logging.log4j:log4j-slf4j-impl:2.17.1")
}
diff --git a/owasp-suppressions.xml b/owasp-suppressions.xml
index 74e475e7..98e4773e 100644
--- a/owasp-suppressions.xml
+++ b/owasp-suppressions.xml
@@ -9,25 +9,4 @@
cpe:/a:utils_project:utils
cpe:/a:service_project:service
-
-
- ^pkg:maven/io\.netty/netty.*@.*$
- CVE-2023-4586
-
-
-
- ^pkg:maven/io\.grpc/grpc\-.*@.*$
- CVE-2023-44487
-