|
1 |
| -(defproject nvd-clojure "3.6.0" |
| 1 | +(defproject nvd-clojure "4.0.0" |
2 | 2 | :description "National Vulnerability Database dependency checker"
|
3 | 3 | :url "https://github.com/rm-hull/nvd-clojure"
|
4 | 4 | :license {:name "The MIT License (MIT)"
|
5 | 5 | :url "https://opensource.org/licenses/MIT"}
|
6 | 6 | :dependencies [[org.clojure/clojure "1.11.1"]
|
7 | 7 | [clansi "1.0.0"]
|
8 |
| - [org.clojure/data.json "2.4.0"] |
9 |
| - [org.slf4j/slf4j-simple "2.0.9"] |
10 |
| - [org.owasp/dependency-check-core "8.4.3"] |
| 8 | + [org.clojure/data.json "2.5.0"] |
| 9 | + [org.slf4j/slf4j-simple "2.0.10"] |
| 10 | + [org.owasp/dependency-check-core "9.0.8"] |
11 | 11 | [rm-hull/table "0.7.1"]
|
12 | 12 | [trptcolin/versioneer "0.2.0"]
|
13 | 13 | ;; Explicitly depend on a certain Jackson, consistently.
|
14 | 14 | ;; (See also: https://github.com/jeremylong/DependencyCheck/issues/3441)
|
15 |
| - [com.fasterxml.jackson.core/jackson-databind "2.16.0"] |
16 |
| - [com.fasterxml.jackson.core/jackson-annotations "2.16.0"] |
17 |
| - [com.fasterxml.jackson.core/jackson-core "2.16.0"] |
18 |
| - [com.fasterxml.jackson.module/jackson-module-afterburner "2.16.0"] |
19 |
| - [org.apache.maven.resolver/maven-resolver-transport-http "1.9.16" #_"Fixes a CVE"] |
| 15 | + [com.fasterxml.jackson.core/jackson-databind "2.16.1"] |
| 16 | + [com.fasterxml.jackson.core/jackson-annotations "2.16.1"] |
| 17 | + [com.fasterxml.jackson.core/jackson-core "2.16.1"] |
| 18 | + [com.fasterxml.jackson.module/jackson-module-afterburner "2.16.1"] |
| 19 | + [org.apache.maven.resolver/maven-resolver-transport-http "1.9.18" #_"Fixes a CVE"] |
20 | 20 | [org.yaml/snakeyaml "2.2" #_"Fixes a CVE"]
|
21 |
| - [org.apache.maven/maven-core "3.9.5" #_"Fixes a CVE"] |
22 |
| - [org.eclipse.jetty/jetty-client "12.0.3" #_"Fixes a CVE" :exclusions [org.slf4j/slf4j-api]] |
23 |
| - [org.apache.maven.resolver/maven-resolver-spi "1.9.16" #_"Satisfies :pedantic?"] |
24 |
| - [org.apache.maven.resolver/maven-resolver-api "1.9.16" #_"Satisfies :pedantic?"] |
25 |
| - [org.apache.maven.resolver/maven-resolver-util "1.9.16" #_"Satisfies :pedantic?"] |
26 |
| - [org.apache.maven.resolver/maven-resolver-impl "1.9.16" #_"Satisfies :pedantic?"] |
27 |
| - [org.apache.maven/maven-resolver-provider "3.9.5" #_"Satisfies :pedantic?"] |
| 21 | + [org.apache.maven/maven-core "3.9.6" #_"Fixes a CVE"] |
| 22 | + [org.eclipse.jetty/jetty-client "12.0.5" #_"Fixes a CVE" :exclusions [org.slf4j/slf4j-api]] |
| 23 | + [org.apache.maven.resolver/maven-resolver-spi "1.9.18" #_"Satisfies :pedantic?"] |
| 24 | + [org.apache.maven.resolver/maven-resolver-api "1.9.18" #_"Satisfies :pedantic?"] |
| 25 | + [org.apache.maven.resolver/maven-resolver-util "1.9.18" #_"Satisfies :pedantic?"] |
| 26 | + [org.apache.maven.resolver/maven-resolver-impl "1.9.18" #_"Satisfies :pedantic?"] |
| 27 | + [org.apache.maven/maven-resolver-provider "3.9.6" #_"Satisfies :pedantic?"] |
28 | 28 | [org.codehaus.plexus/plexus-utils "4.0.0" #_"Satisfies :pedantic?"]]
|
29 | 29 | :managed-dependencies [[com.google.code.gson/gson "2.10.1"]]
|
30 | 30 | :scm { :url "[email protected]:rm-hull/nvd-clojure.git"}
|
|
43 | 43 | [jonase/eastwood "1.4.0"]]
|
44 | 44 | :eastwood {:add-linters [:boxed-math
|
45 | 45 | :performance]}
|
46 |
| - :dependencies [[clj-kondo "2023.10.20"] |
| 46 | + :dependencies [[clj-kondo "2023.12.15"] |
47 | 47 | [commons-collections "20040616"]]}
|
48 | 48 | :ci {:pedantic? :abort}
|
49 |
| - :clj-kondo {:dependencies [[clj-kondo "2023.10.20"]]} |
| 49 | + :clj-kondo {:dependencies [[clj-kondo "2023.12.15"]]} |
50 | 50 | :skip-self-check {:jvm-opts ["-Dnvd-clojure.internal.skip-self-check=true"]}}
|
51 | 51 | :deploy-repositories [["clojars" {:url "https://clojars.org/repo"
|
52 | 52 | :username :env/clojars_username
|
|
0 commit comments