baldimir opened a new pull request, #4074:
URL: https://github.com/apache/incubator-kie-kogito-runtimes/pull/4074

   This PR updates libraries with Spring Boot upgrade to 3.4.10 done in 
kogito-runtimes. 
   
   It also introduces forcing version for netty libraries as those are often 
hit with vulnerabilities, so to not need to declare the version overrides any 
time in the future anymore, I added the forced version for all netty libraries 
in this PR. So in the future, it should be enough to just update the netty 
version property and it shouldn't be needed to do any dependency exclusions or 
similar.
   
   Same as for netty is done for Spring framework. In the future it should be 
enough to just update the version property and not need any exclusion or 
override to fix a vulnerability. 
   
   Related PRs:
   https://github.com/apache/incubator-kie-drools/pull/6471
   TODO - add links when they are opened.
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to