From b6de020b62c8a7997b518cc1182223ba2c10c8a3 Mon Sep 17 00:00:00 2001 From: James Timmons Date: Wed, 5 Feb 2025 18:20:36 +0000 Subject: [PATCH 1/2] Upgrade beanutils dependency to avoid potential security issue --- pom.xml | 6 +++--- src/main/java/com/sforce/ws/bind/XmlObjectWrapper.java | 4 ++-- src/test/java/com/sforce/ws/codegen/ToStringTest.java | 2 +- 3 files changed, 6 insertions(+), 6 deletions(-) diff --git a/pom.xml b/pom.xml index f498b39f..2c7e26fe 100644 --- a/pom.xml +++ b/pom.xml @@ -72,9 +72,9 @@ 2.17.1 - commons-beanutils - commons-beanutils - 1.9.4 + org.apache.commons + commons-beanutils2 + 2.0.0-M1 commons-logging diff --git a/src/main/java/com/sforce/ws/bind/XmlObjectWrapper.java b/src/main/java/com/sforce/ws/bind/XmlObjectWrapper.java index 93b9deff..061f11d8 100644 --- a/src/main/java/com/sforce/ws/bind/XmlObjectWrapper.java +++ b/src/main/java/com/sforce/ws/bind/XmlObjectWrapper.java @@ -22,13 +22,13 @@ import javax.xml.namespace.QName; -import org.apache.commons.beanutils.PropertyUtils; +import org.apache.commons.beanutils2.PropertyUtils; import com.sforce.ws.ConnectionException; import com.sforce.ws.parser.XmlInputStream; import com.sforce.ws.parser.XmlOutputStream; import com.sforce.ws.wsdl.Constants; -import org.apache.commons.beanutils.SuppressPropertiesBeanIntrospector; +import org.apache.commons.beanutils2.SuppressPropertiesBeanIntrospector; /** * This class wraps an XMLizable and presents it as an XmlObject so that we diff --git a/src/test/java/com/sforce/ws/codegen/ToStringTest.java b/src/test/java/com/sforce/ws/codegen/ToStringTest.java index 1e4bd47b..d324a3bd 100644 --- a/src/test/java/com/sforce/ws/codegen/ToStringTest.java +++ b/src/test/java/com/sforce/ws/codegen/ToStringTest.java @@ -37,7 +37,7 @@ import com.sforce.ws.bind.XMLizable; import com.sforce.ws.tools.wsdlc; -import org.apache.commons.beanutils.PropertyUtils; +import org.apache.commons.beanutils2.PropertyUtils; import org.junit.AfterClass; import org.junit.Assert; import org.junit.BeforeClass; From 97a406be1e04374a83fa45f15a61fddc635c438e Mon Sep 17 00:00:00 2001 From: James Date: Wed, 5 Feb 2025 22:20:34 +0000 Subject: [PATCH 2/2] Bump version number --- pom.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pom.xml b/pom.xml index 2c7e26fe..f83a072c 100644 --- a/pom.xml +++ b/pom.xml @@ -9,7 +9,7 @@ com.force.api force-wsc jar - 63.0.0 + 63.0.1 force-wsc Force.com Web Service Connector http://www.force.com