Update dependecies to address vulnerabilities

org.json.json 20220924 -> 20230227
  CVE-2022-45688

org.onap.ccsdk.parent.spring-boot-30-starter-parent 2.5.4 ->2.5.5
  org.springframework.boot.* 3.0.3 -> 3.0.6
    CVE-2023-28867
    CVE-2023-20873
    CVE-2023-1370
    CVE-2022-4492

  org.springframework.* 6.0.4 -> 6.0.8
    CVE-2023-20863
    CVE-2023-20861

  ch.qos.logback.* 1.4.5 -> 1.4.7

Issue-ID: CCSDK-3841
Change-Id: Ie458a6270aa68aeea36f5b56054603548265c97c
Signed-off-by: JohnKeeney <john.keeney@est.tech>
1 file changed
tree: 7325a8e03f57970a9b052af5ac95534a59af9a68
  1. a1-adapter/
  2. a1-policy-management/
  3. csit/
  4. docs/
  5. releases/
  6. .gitignore
  7. .gitreview
  8. .readthedocs.yaml
  9. INFO.yaml
  10. LICENSE.txt
  11. pom.xml
  12. README.md
  13. version.properties
README.md

General

This source repository contains the code for the ORAN A1 related components.

Prerequisits

To compile this code:

  1. Make sure your local Maven settings file ($HOME/.m2/settings.xml) contains references to the ONAP repositories and OpenDaylight repositories.

  2. To compile, run "mvn clean install".

License

Copyright (C) 2022 Nordix Foundation. Licensed under the Apache License, Version 2.0 (the "License"); you may not use this file except in compliance with the License. You may obtain a copy of the License at

http://www.apache.org/licenses/LICENSE-2.0

Unless required by applicable law or agreed to in writing, software distributed under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the License for the specific language governing permissions and limitations under the License.

SPDX-License-Identifier: Apache-2.0