Skip to content

Conversation

@sgrampone
Copy link
Contributor

@sgrampone sgrampone commented Oct 14, 2025

Issue:206710

Bump awssdk-lambda from version 2.21.28 to version 2.35.6 (latest)
Bump awssdk from version 2.21.27 to version 2.35.6 (latest)
Bump azure.cosmos from version 4.42.0 to version 4.74.0 (latest)
Bump aws-java-sdk-s3 from version 1.12.587 to version 1.12.792 (latest)
Remove azure-functions-maven-plugin and unused references because it does not belong no the web application.

Fixed netty transitive CVE's
CVE-2025-55163
CVE-2025-25193
CVE-2025-24970
CVE-2024-47535
CVE-2025-58056
CVE-2025-58057

#GXSEC

@sgrampone sgrampone added the dependencies Pull requests that update a dependency file label Oct 14, 2025
@genexusbot
Copy link
Collaborator

Cherry pick to beta success

1 similar comment
@genexusbot
Copy link
Collaborator

Cherry pick to beta success

@sgrampone sgrampone requested a review from iroqueta October 14, 2025 19:29
iroqueta
iroqueta previously approved these changes Oct 14, 2025
@genexusbot
Copy link
Collaborator

Cherry pick to beta success

@genexusbot
Copy link
Collaborator

Cherry pick to beta success

@genexusbot
Copy link
Collaborator

Cherry pick to beta success

@genexusbot
Copy link
Collaborator

Cherry pick to beta success

@sgrampone sgrampone merged commit 025dfea into master Oct 24, 2025
9 checks passed
@sgrampone sgrampone deleted the fix/bump-netty-framework branch October 24, 2025 18:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

bot closed dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants