|
85 | 85 | ring-jetty-component/ring-jetty-component {:mvn/version "0.3.1"} |
86 | 86 | ring-middleware-format/ring-middleware-format {:mvn/version "0.7.5"} |
87 | 87 |
|
88 | | - valip/valip {:mvn/version "0.2.0"}} |
89 | | - |
90 | | - :aliases {:defaults |
91 | | - ;; We use override-deps to address CVEs |
92 | | - {:override-deps |
93 | | - {;; Addresses CVE-2022-42004, CVE-2022-42003, CVE-2021-46877, CVE-2020-36518 |
94 | | - com.fasterxml.jackson.core/jackson-databind {:mvn/version "2.15.2"} |
95 | | - ;; Addresses CVE-2019-10086, CVE-2014-0114, CVE-2025-48734 |
96 | | - commons-beanutils/commons-beanutils {:mvn/version "1.11.0"} |
97 | | - ;; Addresses CVE-2015-6420 |
98 | | - commons-collections/commons-collections {:mvn/version "3.2.2"} |
99 | | - |
100 | | - ;; Addresses CVE-2015-0886 |
101 | | - org.mindrot/jbcrypt {:mvn/version "0.4"} |
102 | | - ;; Addresses CVE-2022-25857, CVE-2022-38749, CVE-2022-41854, CVE-2022-38751, CVE-2022-38752, CVE-2022-38750 |
103 | | - org.yaml/snakeyaml {:mvn/version "1.33"}}} |
104 | | - |
105 | | - :build {:deps {io.github.clojure/tools.build {:mvn/version "0.9.5"}} |
| 88 | + valip/valip {:mvn/version "0.2.0"} |
| 89 | + |
| 90 | + ;; # Address CVEs |
| 91 | + ;; Addresses CVE-2022-42004, CVE-2022-42003, CVE-2021-46877, CVE-2020-36518 |
| 92 | + com.fasterxml.jackson.core/jackson-databind {:mvn/version "2.15.2"} |
| 93 | + ;; Addresses CVE-2019-10086, CVE-2014-0114, CVE-2025-48734 |
| 94 | + commons-beanutils/commons-beanutils {:mvn/version "1.11.0"} |
| 95 | + ;; Addresses CVE-2015-6420 |
| 96 | + commons-collections/commons-collections {:mvn/version "3.2.2"} |
| 97 | + |
| 98 | + ;; Addresses CVE-2015-0886 |
| 99 | + org.mindrot/jbcrypt {:mvn/version "0.4"} |
| 100 | + ;; Addresses CVE-2022-25857, CVE-2022-38749, CVE-2022-41854, CVE-2022-38751, CVE-2022-38752, CVE-2022-38750 |
| 101 | + org.yaml/snakeyaml {:mvn/version "1.33"}} |
| 102 | + |
| 103 | + :aliases {:build {:deps {io.github.clojure/tools.build {:mvn/version "0.9.5"}} |
106 | 104 | :ns-default build} |
107 | 105 |
|
108 | 106 | :check {:extra-deps {athos/clj-check {:git/url "https://github.com/athos/clj-check.git" |
|
0 commit comments