From fdcd0aa8678fb174e97e103aef940d982653950a Mon Sep 17 00:00:00 2001 From: Kal Ahmed Date: Fri, 17 Oct 2025 16:57:21 +0100 Subject: [PATCH] Overwrite transitive dependency commons-beanutils 1.9.4 -> 1.11.0 * Add explicit dependency on commons-beanutils to address CVE * Add a snapshotRepository to distributionManagement --- pom.xml | 16 ++++++++++++++++ 1 file changed, 16 insertions(+) diff --git a/pom.xml b/pom.xml index 520b079..1aae3e7 100644 --- a/pom.xml +++ b/pom.xml @@ -115,6 +115,12 @@ commons-lang3 3.18.0 + + + commons-beanutils + commons-beanutils + 1.11.0 + org.yaml snakeyaml @@ -181,7 +187,17 @@ epi-public-s3-release Epimorphics S3 release repository s3://epi-repository/release + true + false + + + epi-public-s3-snapshot + Epimorphics S3 snapshot repository + s3://epi-repository/snapshot + false + true +