From a44d1afbf5e966fbd7ac70c78a178024ec42b69e Mon Sep 17 00:00:00 2001 From: Ingmar Steiner Date: Thu, 22 Feb 2024 16:09:42 +0100 Subject: [PATCH] Upgrade component plugin to v0.3.2 Fixes CVE-2022-1471 via transitive dependency upgrade --- build.gradle | 7 ++----- 1 file changed, 2 insertions(+), 5 deletions(-) diff --git a/build.gradle b/build.gradle index 5d610c2..75bf196 100644 --- a/build.gradle +++ b/build.gradle @@ -72,10 +72,7 @@ repositories { } exclusiveContent { forRepository { - maven { - name 'OSSRH-snapshots' - url 'https://oss.sonatype.org/content/repositories/snapshots' - } + gradlePluginPortal() } filter { includeModule 'de.dfki.mary', 'gradle-marytts-component-plugin' @@ -90,7 +87,7 @@ dependencies { exclude group: 'com.twmacinta', module: 'fast-md5' exclude group: 'gov.nist.math', module: 'Jampack' } - implementation group: 'de.dfki.mary', name: 'gradle-marytts-component-plugin', version: '0.4.0-SNAPSHOT' + implementation group: 'de.dfki.mary', name: 'gradle-marytts-component-plugin', version: '0.3.2' implementation group: 'io.github.m2ci-msp', name: 'gradle-praat-wrapper-plugin', version: '0.7.0' implementation group: 'io.github.m2ci-msp', name: 'jtgt', version: '0.7.0' testImplementation group: 'org.testng', name: 'testng', version: '7.5'