From ef3824c5704b4a6107f0008a62853f12eb6c1d6c Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Sat, 25 Oct 2025 10:16:56 +0000 Subject: [PATCH] Bump com.fasterxml.jackson.core:jackson-core from 2.15.0 to 2.20.0 Bumps [com.fasterxml.jackson.core:jackson-core](https://github.com/FasterXML/jackson-core) from 2.15.0 to 2.20.0. - [Commits](https://github.com/FasterXML/jackson-core/compare/jackson-core-2.15.0...jackson-core-2.20.0) --- updated-dependencies: - dependency-name: com.fasterxml.jackson.core:jackson-core dependency-version: 2.20.0 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] --- build.gradle | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/build.gradle b/build.gradle index 363c2566f..2bb0e38eb 100644 --- a/build.gradle +++ b/build.gradle @@ -32,7 +32,7 @@ configurations.all { // v2.5.1, used by Minecraft 1.21.4 - 1.21.10, is vulnerable to CVE-2024-57699 force "net.minidev:json-smart:2.5.2" // v2.13.4, used by Minecraft 1.21.4 - 1.21.10, is vulnerable to CVE-2025-52999 - force "com.fasterxml.jackson.core:jackson-core:2.15.0" + force "com.fasterxml.jackson.core:jackson-core:2.20.0" // v3.17.0, used by Minecraft 1.21.4 - 1.21.10, is vulnerable to CVE-2025-48924 force "org.apache.commons:commons-lang3:3.18.0" // v9.40, used by Minecraft 1.21.4 - 1.21.10, is vulnerable to CVE-2025-53864