From 9f85a5b9de40b80bff70270ca75df7a7070b0aa9 Mon Sep 17 00:00:00 2001 From: Devin Smith Date: Wed, 14 Jun 2023 20:08:30 -0700 Subject: [PATCH] Bump guava to 32.0.1-jre (#4004) See https://nvd.nist.gov/vuln/detail/CVE-2023-2976 --- buildSrc/src/main/groovy/Classpaths.groovy | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/buildSrc/src/main/groovy/Classpaths.groovy b/buildSrc/src/main/groovy/Classpaths.groovy index 71484b94818..5195df4fc8d 100644 --- a/buildSrc/src/main/groovy/Classpaths.groovy +++ b/buildSrc/src/main/groovy/Classpaths.groovy @@ -122,7 +122,7 @@ class Classpaths { static final String GUAVA_GROUP = 'com.google.guava' static final String GUAVA_NAME = 'guava' - static final String GUAVA_VERSION = '31.1-jre' + static final String GUAVA_VERSION = '32.0.1-jre' static boolean addDependency(Configuration conf, String group, String name, String version, Action configure = Actions.doNothing()) { if (!conf.dependencies.find { it.name == name && it.group == group}) {