François-Xavier Thomas
86064d6b01
Update commons-configuration2 2.6 -> 2.7 (fixes CVE)
5 years ago
dependabot-preview[bot]
80ccd8234e
Bump java-jwt from 3.9.0 to 3.10.0 ( #1546 )
...
Bumps [java-jwt](https://github.com/auth0/java-jwt ) from 3.9.0 to 3.10.0.
- [Release notes](https://github.com/auth0/java-jwt/releases )
- [Changelog](https://github.com/auth0/java-jwt/blob/master/CHANGELOG.md )
- [Commits](https://github.com/auth0/java-jwt/compare/3.9.0...3.10.0 )
Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
5 years ago
jvoisin
e702612a03
Bump checker and guava
5 years ago
dependabot-preview[bot]
3134f70757
Bump commons-dbcp2 from 2.5.0 to 2.7.0
...
Bumps commons-dbcp2 from 2.5.0 to 2.7.0.
Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
5 years ago
François-Xavier Thomas
8651a405ee
Update mysql-java-connector to 8.0.19 ( #1511 )
5 years ago
François-Xavier Thomas
b2d2590cfa
Revert "Bump cling-* from 2.0.1 to 2.1.2"
...
Following comment in #1505 , this reverts the following commits:
* 0a231a6575
* 73747db980
* 77a95b0e86
5 years ago
dependabot-preview[bot]
6d74e28e61
Bump recaptchav2-java from 1.0.2 to 1.0.3
...
Bumps [recaptchav2-java](https://github.com/triologygmbh/reCAPTCHA-V2-java ) from 1.0.2 to 1.0.3.
- [Release notes](https://github.com/triologygmbh/reCAPTCHA-V2-java/releases )
- [Commits](https://github.com/triologygmbh/reCAPTCHA-V2-java/compare/1.0.2...1.0.3 )
Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
5 years ago
François-Xavier Thomas
87c414dfc7
Also bump lucene-analyzers-common to 8.4.1
5 years ago
dependabot-preview[bot]
15b03573f4
Bump lucene-core from 8.2.0 to 8.4.1
...
Bumps lucene-core from 8.2.0 to 8.4.1.
Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
5 years ago
dependabot-preview[bot]
e303fe388e
Bump commons-fileupload from 1.3.3 to 1.4
...
Bumps commons-fileupload from 1.3.3 to 1.4.
Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
5 years ago
dependabot-preview[bot]
bb366fc116
Bump jetty-jspc-maven-plugin from 9.4.19.v20190610 to 9.4.26.v20200117
...
Bumps [jetty-jspc-maven-plugin](https://github.com/eclipse/jetty.project ) from 9.4.19.v20190610 to 9.4.26.v20200117.
- [Release notes](https://github.com/eclipse/jetty.project/releases )
- [Commits](https://github.com/eclipse/jetty.project/compare/jetty-9.4.19.v20190610...jetty-9.4.26.v20200117 )
Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
5 years ago
François-Xavier Thomas
77a95b0e86
Also bump seamless-util to 1.1.2
5 years ago
François-Xavier Thomas
73747db980
Also bump cling-core to 2.1.2
5 years ago
dependabot-preview[bot]
3cd96bae9f
Bump commons-configuration2 from 2.4 to 2.6
...
Bumps commons-configuration2 from 2.4 to 2.6.
Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
5 years ago
dependabot-preview[bot]
0a231a6575
Bump cling-support from 2.0.1 to 2.1.2
...
Bumps cling-support from 2.0.1 to 2.1.2.
Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
5 years ago
dependabot-preview[bot]
15a5119306
Bump postgresql from 42.2.5 to 42.2.10
...
Bumps [postgresql](https://github.com/pgjdbc/pgjdbc ) from 42.2.5 to 42.2.10.
- [Release notes](https://github.com/pgjdbc/pgjdbc/releases )
- [Changelog](https://github.com/pgjdbc/pgjdbc/blob/master/CHANGELOG.md )
- [Commits](https://github.com/pgjdbc/pgjdbc/compare/REL42.2.5...REL42.2.10 )
Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
5 years ago
jvoisin
faa4973738
Remove jsonpath
5 years ago
dependabot-preview[bot]
af9a3743ee
Bump maven-artifact from 3.6.0 to 3.6.3
...
Bumps [maven-artifact](https://github.com/apache/maven ) from 3.6.0 to 3.6.3.
- [Release notes](https://github.com/apache/maven/releases )
- [Commits](https://github.com/apache/maven/compare/maven-3.6.0...maven-3.6.3 )
Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
5 years ago
dependabot-preview[bot]
533b078069
Bump org.eclipse.persistence.moxy from 2.7.3 to 2.7.6
...
Bumps [org.eclipse.persistence.moxy](https://github.com/eclipse-ee4j/eclipselink ) from 2.7.3 to 2.7.6.
- [Release notes](https://github.com/eclipse-ee4j/eclipselink/releases )
- [Commits](https://github.com/eclipse-ee4j/eclipselink/compare/2.7.3...2.7.6 )
Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
5 years ago
dependabot-preview[bot]
eb90a6ed0c
Bump mariadb-java-client from 2.1.2 to 2.5.4
...
Bumps [mariadb-java-client](https://github.com/mariadb-corporation/mariadb-connector-j ) from 2.1.2 to 2.5.4.
- [Release notes](https://github.com/mariadb-corporation/mariadb-connector-j/releases )
- [Changelog](https://github.com/mariadb-corporation/mariadb-connector-j/blob/master/CHANGELOG.md )
- [Commits](https://github.com/mariadb-corporation/mariadb-connector-j/compare/2.1.2...2.5.4 )
Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
5 years ago
jvoisin
28dfa6a1c7
Bump jwt's version
5 years ago
Andrew DeMaria
fa1a700ebd
Translated xml configuration to java configuration
...
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
5 years ago
Andrew DeMaria
35eaae39db
Bump snapshot version
...
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
5 years ago
Andrew DeMaria
cb63a5cb88
Add jxr plugin for pmd refs
5 years ago
Andrew DeMaria
ef22d6d8ed
Remove optional jetty runtime
...
- Simplifies pom making future upgrades easier
- Fixes tests picking up jetty runtime
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
5 years ago
Evan Harris
29c1b5dbca
Enabled PMD checking for jsp files
...
2 rulesets are included.
5 years ago
jvoisin
82fa09d198
Bump jwt
5 years ago
Andrew DeMaria
431b42bfb3
Ensure commons logging is excluded ( #1274 )
...
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
5 years ago
Kessiler Rodrigues
4b3890f6ec
Replace custom circular buffer with Apache commons(CircularFifoQueue)
...
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
5 years ago
jvoisin
85e0e08d9a
Remove radeox
...
Radeox is a rendering engine for an unspecified markup.
Its [website](http://radeox.org/ ) is dead, the website
of its [authors](http://www.codehaus.org/ ) is dead too,
its [last commit](https://github.com/codehaus/radeox ) was 13 years ago.
It's only used for the welcome and login messages,
as well as comments from users. If we want to have some markup parsing,
we should use something maintained with autoescaping guarantees,
instead of a piece of zombie code prone to $DEITY knows what injections.
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
5 years ago
jvoisin
9cbcc94b58
Bump ehcache
...
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
5 years ago
tesshucom
5c3c558923
Update Lucene from 3.0.3 to the current version 8.2.0
...
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
5 years ago
Shen-Ta Hsieh
394dfa1ce7
upgrade jackson-databind and commons-beanutils for CVEs
...
Signed-off-by: Shen-Ta Hsieh <ibmibmibm.tw@gmail.com>
5 years ago
Andrew DeMaria
e7bd5da6fa
Precompile jsp
...
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
5 years ago
Andrew DeMaria
859d08fc02
Bump version
...
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
5 years ago
Andrew DeMaria
8db4ec12e1
Add sha256sums and gpg sign outside of maven process
...
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
5 years ago
tesshucom
767b39ed5b
Split SearchService
...
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
5 years ago
Andrew DeMaria
7c7ac3e591
Update dependency check
5 years ago
Peter Marheine
d42af4575f
Add some @Nullable annotations
...
Making it easier to tell where API contracts allow nulls, where it's
otherwise unclear without reading the implementation.
6 years ago
Andrew DeMaria
8be0746bd4
Bump to 10.4.0 SNAPSHOT
6 years ago
Andrew DeMaria
df352d8cb0
Fix #611 Add support for Java 9 and greater
...
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
6 years ago
tesshucom
f54e72026f
version upgrade of spring-boot-dependencies,spring-boot-maven-plugin
...
- Safety version for CVE-2019-3795
- Match the new jetty ecj version because the version of ecj used by
tomcat and jetty is different.
6 years ago
tesshucom
131713aaf4
With Jetty
...
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
6 years ago
tesshucom
4cd9e9deac
revert cling-core, cling-support, seamless-util and configuration
6 years ago
François-Xavier Thomas
3f4a49c95a
Fix dependency error with org.eclipse.jetty.jetty
...
This is only used by reflection, and should be provided by the servlet
container (Tomcat or Jetty).
6 years ago
François-Xavier Thomas
bcc5f8d7a6
Fix StringIndexOutOfBounds errors thrown by DWR/YUI
6 years ago
Andrew DeMaria
8a1f36c792
Revert change to DWR fixes #923
...
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
6 years ago
jvoisin
0a47c6e461
Bump java-jwt
...
Signed-off-by: jvoisin <julien.voisin@dustri.org>
6 years ago
jvoisin
4e2b435abf
Bump cglib version
...
Signed-off-by: jvoisin <julien.voisin@dustri.org>
6 years ago
Andrew DeMaria
faedfd8a62
Bump version to 10.3.0-SNAPSHOT
...
Signed-off-by: Andrew DeMaria <lostonamountain@gmail.com>
6 years ago