From 38603744e2bd914ba0987de4cfaf0222df470e34 Mon Sep 17 00:00:00 2001 From: Amer Agovic Date: Wed, 7 Jan 2026 09:06:43 -0600 Subject: [PATCH] fix: Update .settings/pom.xml dependencies to resolve security vulnerabilities - Update PostgreSQL driver from 42.5.0 to 42.7.4 (fixes SQL injection CVE) - Update H2 database from 2.1.214 to 2.3.232 (fixes password exposure CVE) - Update all Jetty dependencies to 12.0.15 stable release - Update other dependencies to match build.gradle versions - Sync pom.xml with current project state for VS Code IntelliSense --- .settings/pom.xml | 52 +++++++++++++++++++++++++++++++++++++++-------- 1 file changed, 44 insertions(+), 8 deletions(-) diff --git a/.settings/pom.xml b/.settings/pom.xml index 630ef8a..cd51dcf 100644 --- a/.settings/pom.xml +++ b/.settings/pom.xml @@ -9,7 +9,7 @@ 4.0.0 com.reliancy jabba - 0.1 + 2.0.0-SNAPSHOT The Apache License, Version 2.0 @@ -20,38 +20,74 @@ org.eclipse.jetty jetty-server - 12.0.0.alpha1 + 12.0.15 + runtime + + + org.eclipse.jetty.http2 + jetty-http2-server + 12.0.15 + runtime + + + org.eclipse.jetty.ee10 + jetty-ee10-servlet + 12.0.15 + runtime + + + org.eclipse.jetty.ee10.websocket + jetty-ee10-websocket-jakarta-server + 12.0.15 + runtime + + + jakarta.servlet + jakarta.servlet-api + 6.0.0 runtime org.slf4j - slf4j-simple - 2.0.0-alpha0 + slf4j-jdk14 + 2.0.16 runtime com.github.jknack handlebars - 4.3.0 + 4.4.0 runtime com.h2database h2 - 2.1.214 + 2.3.232 runtime org.postgresql postgresql - 42.5.0 + 42.7.4 runtime com.zaxxer HikariCP - 5.0.0 + 5.1.0 runtime + + junit + junit + 4.13.2 + test + + + org.eclipse.jetty.websocket + jetty-websocket-jetty-client + 12.0.15 + test +