From 5bfca656925930df73fe400bdb6afb5e1440dc63 Mon Sep 17 00:00:00 2001 From: PJ Fanning Date: Wed, 27 Mar 2024 11:30:55 +0100 Subject: [PATCH] HADOOP-19115. Upgrade to nimbus-jose-jwt 9.37.2 due to CVE-2023-52428. (#6637) Contributed by PJ Fanning --- LICENSE-binary | 2 +- hadoop-project/pom.xml | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/LICENSE-binary b/LICENSE-binary index f46d1688be..555248e173 100644 --- a/LICENSE-binary +++ b/LICENSE-binary @@ -241,7 +241,7 @@ com.google.guava:guava:20.0 com.google.guava:guava:27.0-jre com.google.guava:listenablefuture:9999.0-empty-to-avoid-conflict-with-guava com.microsoft.azure:azure-storage:7.0.0 -com.nimbusds:nimbus-jose-jwt:9.31 +com.nimbusds:nimbus-jose-jwt:9.37.2 com.zaxxer:HikariCP:4.0.3 commons-beanutils:commons-beanutils:1.9.4 commons-cli:commons-cli:1.5.0 diff --git a/hadoop-project/pom.xml b/hadoop-project/pom.xml index 4ef8dcba5d..55eab66c9b 100644 --- a/hadoop-project/pom.xml +++ b/hadoop-project/pom.xml @@ -216,7 +216,7 @@ 1.1.3.Final 1.0.2 5.4.0 - 9.31 + 9.37.2 v12.22.1 v1.22.5 1.10.13