From 85f13b48c28866275e1cf1d9c80b72a1ed251733 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Wed, 1 Jul 2020 17:33:19 +0000 Subject: [PATCH 1/2] Bump mysql-connector-java from 5.1.38 to 8.0.16 Bumps [mysql-connector-java](https://github.com/mysql/mysql-connector-j) from 5.1.38 to 8.0.16. - [Release notes](https://github.com/mysql/mysql-connector-j/releases) - [Changelog](https://github.com/mysql/mysql-connector-j/blob/release/8.0/CHANGES) - [Commits](https://github.com/mysql/mysql-connector-j/compare/5.1.38...8.0.16) Signed-off-by: dependabot[bot] --- pom.xml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/pom.xml b/pom.xml index 818d1b8..5785959 100644 --- a/pom.xml +++ b/pom.xml @@ -162,7 +162,7 @@ mysql mysql-connector-java - 5.1.38 + 8.0.16 @@ -319,7 +319,7 @@ mysql mysql-connector-java - 5.1.38 + 8.0.16 From 338ce355de189ba6530108790c76460854b51ad5 Mon Sep 17 00:00:00 2001 From: ehlxr Date: Tue, 29 Sep 2020 09:57:17 +0800 Subject: [PATCH 2/2] upgrade potential security vulnerabilities in dependencies --- pom.xml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/pom.xml b/pom.xml index 818d1b8..5efe83b 100644 --- a/pom.xml +++ b/pom.xml @@ -257,7 +257,7 @@ com.google.guava guava - 22.0 + 28.2-jre org.jodd @@ -319,7 +319,7 @@ mysql mysql-connector-java - 5.1.38 + 8.0.16