From 5b0d24ada7dbee41a1e877cc0f8dfe126f7ffd60 Mon Sep 17 00:00:00 2001 From: david-navapbc <165852085+david-navapbc@users.noreply.github.com> Date: Fri, 22 Nov 2024 12:04:25 -0700 Subject: [PATCH] 21 nov 24 dependabot (#16625) * Bump jacksonVersion from 2.18.0 to 2.18.1 in /prime-router Bumps `jacksonVersion` from 2.18.0 to 2.18.1. Updates `com.fasterxml.jackson.dataformat:jackson-dataformat-yaml` from 2.18.0 to 2.18.1 - [Commits](https://github.com/FasterXML/jackson-dataformats-text/compare/jackson-dataformats-text-2.18.0...jackson-dataformats-text-2.18.1) Updates `com.fasterxml.jackson.core:jackson-databind` from 2.18.0 to 2.18.1 - [Commits](https://github.com/FasterXML/jackson/commits) --- updated-dependencies: - dependency-name: com.fasterxml.jackson.dataformat:jackson-dataformat-yaml dependency-type: direct:production update-type: version-update:semver-patch - dependency-name: com.fasterxml.jackson.core:jackson-databind dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] * Bump com.microsoft.azure:applicationinsights-web in /submissions Bumps [com.microsoft.azure:applicationinsights-web](https://github.com/Microsoft/ApplicationInsights-Java) from 3.5.4 to 3.6.2. - [Release notes](https://github.com/Microsoft/ApplicationInsights-Java/releases) - [Changelog](https://github.com/microsoft/ApplicationInsights-Java/blob/main/CHANGELOG.md) - [Commits](https://github.com/Microsoft/ApplicationInsights-Java/compare/3.5.4...3.6.2) --- updated-dependencies: - dependency-name: com.microsoft.azure:applicationinsights-web dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] * Bump com.microsoft.azure:applicationinsights-runtime-attach Bumps [com.microsoft.azure:applicationinsights-runtime-attach](https://github.com/Microsoft/ApplicationInsights-Java) from 3.5.4 to 3.6.2. - [Release notes](https://github.com/Microsoft/ApplicationInsights-Java/releases) - [Changelog](https://github.com/microsoft/ApplicationInsights-Java/blob/main/CHANGELOG.md) - [Commits](https://github.com/Microsoft/ApplicationInsights-Java/compare/3.5.4...3.6.2) --- updated-dependencies: - dependency-name: com.microsoft.azure:applicationinsights-runtime-attach dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] * Bump com.azure.spring:spring-cloud-azure-dependencies in /auth Bumps [com.azure.spring:spring-cloud-azure-dependencies](https://github.com/Azure/azure-sdk-for-java) from 5.16.0 to 5.18.0. - [Release notes](https://github.com/Azure/azure-sdk-for-java/releases) - [Commits](https://github.com/Azure/azure-sdk-for-java/compare/spring-cloud-azure_5.16.0...spring-messaging-azure_5.18.0) --- updated-dependencies: - dependency-name: com.azure.spring:spring-cloud-azure-dependencies dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] * Bump the hapifhir group across 1 directory with 3 updates Bumps the hapifhir group with 3 updates in the /prime-router directory: ca.uhn.hapi.fhir:hapi-fhir-structures-r4, ca.uhn.hapi.fhir:hapi-fhir-caching-caffeine and ca.uhn.hapi.fhir:hapi-fhir-client. Updates `ca.uhn.hapi.fhir:hapi-fhir-structures-r4` from 7.4.2 to 7.4.5 Updates `ca.uhn.hapi.fhir:hapi-fhir-caching-caffeine` from 7.4.2 to 7.4.5 Updates `ca.uhn.hapi.fhir:hapi-fhir-client` from 7.4.2 to 7.4.5 --- updated-dependencies: - dependency-name: ca.uhn.hapi.fhir:hapi-fhir-structures-r4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: hapifhir - dependency-name: ca.uhn.hapi.fhir:hapi-fhir-caching-caffeine dependency-type: direct:production update-type: version-update:semver-patch dependency-group: hapifhir - dependency-name: ca.uhn.hapi.fhir:hapi-fhir-client dependency-type: direct:production update-type: version-update:semver-patch dependency-group: hapifhir ... Signed-off-by: dependabot[bot] * Bump the bouncycastle group in /prime-router with 3 updates Bumps the bouncycastle group in /prime-router with 3 updates: [org.bouncycastle:bcprov-jdk15to18](https://github.com/bcgit/bc-java), [org.bouncycastle:bcprov-jdk18on](https://github.com/bcgit/bc-java) and [org.bouncycastle:bcmail-jdk15to18](https://github.com/bcgit/bc-java). Updates `org.bouncycastle:bcprov-jdk15to18` from 1.78.1 to 1.79 - [Changelog](https://github.com/bcgit/bc-java/blob/main/docs/releasenotes.html) - [Commits](https://github.com/bcgit/bc-java/commits) Updates `org.bouncycastle:bcprov-jdk18on` from 1.78.1 to 1.79 - [Changelog](https://github.com/bcgit/bc-java/blob/main/docs/releasenotes.html) - [Commits](https://github.com/bcgit/bc-java/commits) Updates `org.bouncycastle:bcmail-jdk15to18` from 1.78.1 to 1.79 - [Changelog](https://github.com/bcgit/bc-java/blob/main/docs/releasenotes.html) - [Commits](https://github.com/bcgit/bc-java/commits) --- updated-dependencies: - dependency-name: org.bouncycastle:bcprov-jdk15to18 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: bouncycastle - dependency-name: org.bouncycastle:bcprov-jdk18on dependency-type: direct:production update-type: version-update:semver-minor dependency-group: bouncycastle - dependency-name: org.bouncycastle:bcmail-jdk15to18 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: bouncycastle ... Signed-off-by: dependabot[bot] * Bump the flyway group across 1 directory with 3 updates Bumps the flyway group with 3 updates in the /prime-router directory: org.flywaydb:flyway-database-postgresql, [org.flywaydb:flyway-core](https://github.com/flyway/flyway) and org.flywaydb.flyway. Updates `org.flywaydb:flyway-database-postgresql` from 10.18.2 to 10.21.0 Updates `org.flywaydb:flyway-core` from 10.18.2 to 10.21.0 - [Release notes](https://github.com/flyway/flyway/releases) - [Commits](https://github.com/flyway/flyway/compare/flyway-10.18.2...flyway-10.21.0) Updates `org.flywaydb.flyway` from 10.18.2 to 10.21.0 --- updated-dependencies: - dependency-name: org.flywaydb:flyway-database-postgresql dependency-type: direct:production update-type: version-update:semver-minor dependency-group: flyway - dependency-name: org.flywaydb:flyway-core dependency-type: direct:production update-type: version-update:semver-minor dependency-group: flyway - dependency-name: org.flywaydb.flyway dependency-type: direct:production update-type: version-update:semver-minor dependency-group: flyway ... Signed-off-by: dependabot[bot] * Bump com.googlecode.libphonenumber:libphonenumber in /prime-router Bumps [com.googlecode.libphonenumber:libphonenumber](https://github.com/google/libphonenumber) from 8.13.46 to 8.13.50. - [Release notes](https://github.com/google/libphonenumber/releases) - [Changelog](https://github.com/google/libphonenumber/blob/master/making-metadata-changes.md) - [Commits](https://github.com/google/libphonenumber/compare/v8.13.46...v8.13.50) --- updated-dependencies: - dependency-name: com.googlecode.libphonenumber:libphonenumber dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] * Bump com.nimbusds:nimbus-jose-jwt from 9.41.1 to 9.47 in /prime-router Bumps [com.nimbusds:nimbus-jose-jwt](https://bitbucket.org/connect2id/nimbus-jose-jwt) from 9.41.1 to 9.47. - [Changelog](https://bitbucket.org/connect2id/nimbus-jose-jwt/src/master/CHANGELOG.txt) - [Commits](https://bitbucket.org/connect2id/nimbus-jose-jwt/branches/compare/9.47..9.41.1) --- updated-dependencies: - dependency-name: com.nimbusds:nimbus-jose-jwt dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] * Bump com.azure:azure-identity from 1.14.0 to 1.14.2 in /prime-router Bumps [com.azure:azure-identity](https://github.com/Azure/azure-sdk-for-java) from 1.14.0 to 1.14.2. - [Release notes](https://github.com/Azure/azure-sdk-for-java/releases) - [Commits](https://github.com/Azure/azure-sdk-for-java/compare/azure-core_1.14.0...azure-identity_1.14.2) --- updated-dependencies: - dependency-name: com.azure:azure-identity dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] * Bump com.zaxxer:HikariCP from 6.0.0 to 6.2.0 in /prime-router Bumps [com.zaxxer:HikariCP](https://github.com/brettwooldridge/HikariCP) from 6.0.0 to 6.2.0. - [Changelog](https://github.com/brettwooldridge/HikariCP/blob/dev/CHANGES) - [Commits](https://github.com/brettwooldridge/HikariCP/compare/HikariCP-6.0.0...HikariCP-6.2.0) --- updated-dependencies: - dependency-name: com.zaxxer:HikariCP dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] --------- Signed-off-by: dependabot[bot] Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: David Holiday Co-authored-by: Jack Wang --- auth/build.gradle.kts | 2 +- prime-router/build.gradle.kts | 30 +++++++++++++++--------------- submissions/build.gradle.kts | 4 ++-- 3 files changed, 18 insertions(+), 18 deletions(-) diff --git a/auth/build.gradle.kts b/auth/build.gradle.kts index 6331fb35e76..7984f5cc768 100644 --- a/auth/build.gradle.kts +++ b/auth/build.gradle.kts @@ -48,7 +48,7 @@ configurations.all { dependencyManagement { imports { - mavenBom("com.azure.spring:spring-cloud-azure-dependencies:5.17.1") + mavenBom("com.azure.spring:spring-cloud-azure-dependencies:5.18.0") mavenBom("org.springframework.cloud:spring-cloud-dependencies:2023.0.3") } } diff --git a/prime-router/build.gradle.kts b/prime-router/build.gradle.kts index 66f83c3a1f8..d489a8564d7 100644 --- a/prime-router/build.gradle.kts +++ b/prime-router/build.gradle.kts @@ -35,7 +35,7 @@ apply(from = rootProject.file("buildSrc/shared.gradle.kts")) plugins { val kotlinVersion by System.getProperties() id("reportstream.project-conventions") - id("org.flywaydb.flyway") version "10.18.2" + id("org.flywaydb.flyway") version "10.21.0" id("nu.studer.jooq") version "9.0" id("com.github.johnrengelman.shadow") version "8.1.1" id("com.microsoft.azure.azurefunctions") version "1.16.1" @@ -75,7 +75,7 @@ val javaVersion = when (appJvmTarget) { } val ktorVersion = "2.3.12" val kotlinVersion by System.getProperties() -val jacksonVersion = "2.18.0" +val jacksonVersion = "2.18.1" jacoco.toolVersion = "0.8.12" // Local database information, first one wins: @@ -840,7 +840,7 @@ buildscript { // will need to be removed once this issue is resolved in Maven. classpath("net.minidev:json-smart:2.5.1") // as per flyway v10 docs the postgres flyway module must be on the project buildpath - classpath("org.flywaydb:flyway-database-postgresql:10.18.2") + classpath("org.flywaydb:flyway-database-postgresql:10.21.0") } } @@ -872,11 +872,11 @@ dependencies { exclude(group = "com.azure", module = "azure-core") exclude(group = "com.azure", module = "azure-core-http-netty") } - implementation("com.azure:azure-identity:1.14.0") { + implementation("com.azure:azure-identity:1.14.2") { exclude(group = "com.azure", module = "azure-core") exclude(group = "com.azure", module = "azure-core-http-netty") } - implementation("com.nimbusds:nimbus-jose-jwt:9.41.1") + implementation("com.nimbusds:nimbus-jose-jwt:9.47") implementation("org.apache.logging.log4j:log4j-api:2.24.0") implementation("org.apache.logging.log4j:log4j-core:2.24.0") implementation("org.apache.logging.log4j:log4j-slf4j2-impl:2.24.0") @@ -898,17 +898,17 @@ dependencies { branch = "master" } } - implementation("ca.uhn.hapi.fhir:hapi-fhir-structures-r4:7.4.2") + implementation("ca.uhn.hapi.fhir:hapi-fhir-structures-r4:7.4.5") // https://mvnrepository.com/artifact/ca.uhn.hapi.fhir/hapi-fhir-caching-caffeine - implementation("ca.uhn.hapi.fhir:hapi-fhir-caching-caffeine:7.4.2") - implementation("ca.uhn.hapi.fhir:hapi-fhir-client:7.4.2") + implementation("ca.uhn.hapi.fhir:hapi-fhir-caching-caffeine:7.4.5") + implementation("ca.uhn.hapi.fhir:hapi-fhir-client:7.4.5") // pin implementation("ca.uhn.hapi.fhir:org.hl7.fhir.utilities:6.4.0") implementation("ca.uhn.hapi.fhir:org.hl7.fhir.r4:6.4.0") implementation("ca.uhn.hapi:hapi-base:2.5.1") implementation("ca.uhn.hapi:hapi-structures-v251:2.5.1") implementation("ca.uhn.hapi:hapi-structures-v27:2.5.1") - implementation("com.googlecode.libphonenumber:libphonenumber:8.13.46") + implementation("com.googlecode.libphonenumber:libphonenumber:8.13.50") implementation("org.thymeleaf:thymeleaf:3.1.2.RELEASE") implementation("com.sendgrid:sendgrid-java:4.10.3") implementation("com.okta.jwt:okta-jwt-verifier:0.5.7") @@ -923,15 +923,15 @@ dependencies { implementation("commons-codec:commons-codec:1.17.1") implementation("commons-io:commons-io:2.17.0") implementation("org.postgresql:postgresql:42.7.4") - implementation("com.zaxxer:HikariCP:6.0.0") - implementation("org.flywaydb:flyway-core:10.18.2") - implementation("org.flywaydb:flyway-database-postgresql:10.18.2") + implementation("com.zaxxer:HikariCP:6.2.0") + implementation("org.flywaydb:flyway-core:10.21.0") + implementation("org.flywaydb:flyway-database-postgresql:10.21.0") implementation("org.commonmark:commonmark:0.24.0") implementation("com.google.guava:guava:33.3.1-jre") implementation("com.helger.as2:as2-lib:5.1.2") - implementation("org.bouncycastle:bcprov-jdk15to18:1.78.1") - implementation("org.bouncycastle:bcprov-jdk18on:1.78.1") - implementation("org.bouncycastle:bcmail-jdk15to18:1.78.1") + implementation("org.bouncycastle:bcprov-jdk15to18:1.79") + implementation("org.bouncycastle:bcprov-jdk18on:1.79") + implementation("org.bouncycastle:bcmail-jdk15to18:1.79") implementation("commons-net:commons-net:3.11.1") implementation("com.cronutils:cron-utils:9.2.1") diff --git a/submissions/build.gradle.kts b/submissions/build.gradle.kts index 71bc7870d2e..63f690bc6c9 100644 --- a/submissions/build.gradle.kts +++ b/submissions/build.gradle.kts @@ -19,8 +19,8 @@ dependencies { implementation("org.springframework.security:spring-security-oauth2-jose:6.3.4") implementation("com.azure.spring:spring-cloud-azure-starter-storage") - implementation("com.microsoft.azure:applicationinsights-runtime-attach:3.5.4") - implementation("com.microsoft.azure:applicationinsights-web:3.5.4") + implementation("com.microsoft.azure:applicationinsights-runtime-attach:3.6.2") + implementation("com.microsoft.azure:applicationinsights-web:3.6.2") implementation("com.microsoft.azure:applicationinsights-logging-logback:2.6.4") implementation("com.fasterxml.jackson.module:jackson-module-kotlin") implementation("org.jetbrains.kotlin:kotlin-reflect")