diff --git a/gradle/any/shared-mvn-coords.gradle b/gradle/any/shared-mvn-coords.gradle index 5d2416df56..5562a76edb 100644 --- a/gradle/any/shared-mvn-coords.gradle +++ b/gradle/any/shared-mvn-coords.gradle @@ -12,7 +12,7 @@ ext { buildPlugins.sonarqube = 'org.sonarsource.scanner.gradle:sonarqube-gradle-plugin:3.0' buildPlugins.spotless = 'com.diffplug.spotless:spotless-plugin-gradle:4.5.1' buildPlugins.protobuf = 'com.google.protobuf:protobuf-gradle-plugin:0.8.18' - buildPlugins.depcheck = 'org.owasp:dependency-check-gradle:6.0.2' + buildPlugins.depcheck = 'org.owasp:dependency-check-gradle:8.2.1' buildPlugins.nexus = 'edu.ucar.unidata:unidata-nexus-gradle:0.0.1' buildPlugins.jekyll = 'edu.ucar.unidata.site:jekyll-plugin:0.0.5' diff --git a/netcdf-java-platform/build.gradle b/netcdf-java-platform/build.gradle index 9256d86ca0..34c9566986 100644 --- a/netcdf-java-platform/build.gradle +++ b/netcdf-java-platform/build.gradle @@ -20,7 +20,7 @@ dependencies { // general dependencies api "com.google.protobuf:protobuf-java:${depVersion.protobuf}" api "com.google.protobuf:protoc:${depVersion.protobuf}" - api 'com.google.guava:guava:31.1-jre' + api 'com.google.guava:guava:32.0.0-jre' api 'com.google.re2j:re2j:1.3' api 'org.jdom:jdom2:2.0.6' api 'joda-time:joda-time:2.10.3' // replace by javax.time diff --git a/project-files/owasp-dependency-check/dependency-check-suppression.xml b/project-files/owasp-dependency-check/dependency-check-suppression.xml index 909fc80de4..b90cfd84c1 100644 --- a/project-files/owasp-dependency-check/dependency-check-suppression.xml +++ b/project-files/owasp-dependency-check/dependency-check-suppression.xml @@ -18,27 +18,6 @@ ^pkg:maven/org\.jdom/jdom2@.*$ CVE-2021-33813 - - - d539c36ab347d5df35659b174d28b94e6d2536ed - CVE-2019-11358 - CVE-2012-6708 - CVE-2015-9251 - CVE-2020-7656 - CVE-2020-11022 - CVE-2020-11023 - - - - ^pkg:maven/com\.google\.guava/guava@.*$ - CVE-2020-8908 -