From 3b7d659c0d19c8fe2d5d7fa67e1803aeadbc0d7c Mon Sep 17 00:00:00 2001 From: Jeanette Clark Date: Tue, 25 Jun 2024 14:18:50 -0700 Subject: [PATCH 1/3] bump library versions for dependabot --- pom.xml | 100 +++++++++++++++++++++++++++++++++++--------------------- 1 file changed, 62 insertions(+), 38 deletions(-) diff --git a/pom.xml b/pom.xml index c3569bbc..359b7889 100644 --- a/pom.xml +++ b/pom.xml @@ -1,9 +1,11 @@ - + 4.0.0 edu.ucsb.nceas metadig-engine - 3.0.2 + 3.0.3-SNAPSHOT jar metadig-engine MetaDIG library for running metadata quality tests @@ -16,14 +18,15 @@ 0.8.2567 2.7.3 2.10.1 - 2.8.0 + 2.9.0 2.7.0 2.23.0 2.3.15 2.3.2 - + - 5.3.22 + 6.1.10 metadig 2.5.0 @@ -91,7 +94,7 @@ net.minidev json-smart - 2.5.0 + 2.5.1 @@ -140,14 +143,15 @@ org.apache.logging.log4j log4j-core - org.javassist + + org.javassist javassist javax.xml.bind - jaxb-api - - + jaxb-api + + @@ -240,11 +244,17 @@ org.apache.logging.log4j log4j-jcl ${log4j.version} + + + commons-logging + commons-logging + + commons-logging commons-logging - 1.3.0 + 1.3.2 log4j @@ -396,8 +406,8 @@ - - + + jakarta.xml.bind jakarta.xml.bind-api 2.3.2 @@ -426,7 +436,7 @@ org.apache.maven.plugins maven-compiler-plugin - 3.8.1 + 3.13.0 17 17 @@ -441,7 +451,7 @@ org.apache.maven.plugins maven-shade-plugin - 3.5.1 + 3.6.0 package @@ -470,7 +480,8 @@ - + edu.ucsb.nceas.mdqengine.Controller 1 @@ -503,15 +514,28 @@ - - - - - - - - - + + + + + + + + + @@ -550,20 +574,20 @@ - - org.apache.maven.wagon - wagon-ssh - ${maven.wagon.version} - + + org.apache.maven.wagon + wagon-ssh + ${maven.wagon.version} + - - false - maven.dataone.org - DataONE - scp://maven.dataone.org/var/www/maven - default - + + false + maven.dataone.org + DataONE + scp://maven.dataone.org/var/www/maven + default + - + \ No newline at end of file From 6e011f968f494b56f2edcff5c8c5189c7f7c2512 Mon Sep 17 00:00:00 2001 From: Jeanette Clark Date: Tue, 25 Jun 2024 16:48:23 -0700 Subject: [PATCH 2/3] exclude slf4j-api from jsonpath dep --- pom.xml | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/pom.xml b/pom.xml index 359b7889..b358e314 100644 --- a/pom.xml +++ b/pom.xml @@ -89,6 +89,12 @@ com.jayway.jsonpath json-path ${json-path.version} + + + org.slf4j + slf4j-api + + From fbab87d77cb4e2678b25e94f50627de0223a4c9c Mon Sep 17 00:00:00 2001 From: Jeanette Clark Date: Tue, 25 Jun 2024 17:21:27 -0700 Subject: [PATCH 3/3] downgrade spring --- pom.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pom.xml b/pom.xml index b358e314..6df4ccb5 100644 --- a/pom.xml +++ b/pom.xml @@ -26,7 +26,7 @@ - 6.1.10 + 5.3.22 metadig 2.5.0