Comments (4)
Closing as a duplicate of #32126 - we'll upgrade to 42.4.2 for the next Spring Boot 3.0 milestone automatically (as mentioned in our issue template).
from spring-boot.
Thanks for the quick reaction.
Sorry for the duplicate, I only checked open bugs before creating mine.
from spring-boot.
@bclozel: just a quick question if I may, what's exactly the "automated process"?
Because main
still currently uses 42.4.0
, which is thus affected by the CVE: https://github.com/spring-projects/spring-boot/blob/main/spring-boot-project/spring-boot-dependencies/build.gradle#L1141.
from spring-boot.
@dalbani it's actually a semi-automated process. We run periodically a tool called bomr in our build and this upgrades all our managed dependencies (taking exclusions into account).
Our next milestone is in 20+ days, we'll run the tool in due course.
from spring-boot.
Related Issues (20)
- JDK22 and GraalVM spring-boot:3.2.4:build-image failed: Builder lifecycle 'creator' failed with status code 51 HOT 1
- Graceful Shutdown behavior ambiguity in Reference Guide
- Clarify that all named properties must match for @ConditionalOnProperty to match HOT 2
- Getting 500 instead of 404 with integration tests when updating from Spring Boot 3.1.x to to 3.2.4 HOT 6
- Bump gradle/wrapper-validation-action from 2.1.1 to 2.1.2
- Bump gradle/wrapper-validation-action from 2.1.1 to 2.1.2
- Remove redundant Regex escapes
- Remove redundant Regex escapes
- Remove redundant Regex escapes
- Verify snapshots once they have been deployed
- Verify snapshots once they have been deployed
- Verify snapshots once they have been deployed
- Upgrade to Gradle Enterprise Conventions 0.0.16
- Reference Guides breadcrumb in page headers is not hyperlinked
- Property `logging.threshold.console` is not effective unless set as Java system property HOT 2
- Executable JAR application startup is much slower after 3.2.0 HOT 3
- bootBuildImage with Podman results in `Connection to the Docker daemon at '/run/user/1001/podman/podman.sock' failed with error` HOT 10
- Problem with prometheus metrics and mongodb HOT 1
- Upgrade to Gradle Enterprise Conventions 0.0.16
- Upgrade to Gradle Enterprise Conventions 0.0.16
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from spring-boot.