From 742fc2ff8b10bea5e8da9094aede690a785f3d1a Mon Sep 17 00:00:00 2001 From: Tyler Benson Date: Tue, 11 Jun 2019 19:03:26 -0700 Subject: [PATCH] Update Jackson Databind to 2.9.9 Due to new security vulerablility. --- gradle/dependencies.gradle | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/gradle/dependencies.gradle b/gradle/dependencies.gradle index f7b1741862..00d9a61366 100644 --- a/gradle/dependencies.gradle +++ b/gradle/dependencies.gradle @@ -7,7 +7,7 @@ ext { slf4j : "1.7.25", guava : "20.0", // Last version to support Java 7 - jackson : "2.9.8", // https://nvd.nist.gov/vuln/detail/CVE-2018-1000873 + jackson : "2.9.9", // https://nvd.nist.gov/vuln/detail/CVE-2019-12086 spock : "1.3-groovy-$spockGroovyVer", groovy : groovyVer,