Skip to content

Commit

Permalink
fix SNYK-JAVA-IONETTY-5725787 (#333)
Browse files Browse the repository at this point in the history
Override netty dependencies to fix SNYK-JAVA-IONETTY-5725787

Co-authored-by: Patryk Kowalcze <patryk.kowalcze@ocado.com>
  • Loading branch information
pkowalcze and Patryk Kowalcze authored Jun 28, 2023
1 parent e0703e0 commit 9044e2d
Showing 1 changed file with 12 additions and 3 deletions.
15 changes: 12 additions & 3 deletions build.sbt
Original file line number Diff line number Diff line change
Expand Up @@ -93,6 +93,15 @@ val awsSnykOverrides = Seq(
"commons-codec" % "commons-codec" % "1.15"
)

val nettyVersion = "4.1.94.Final"

//Fixes https://security.snyk.io/vuln/SNYK-JAVA-IONETTY-5725787
val nettySnykOverrides = Seq(
"io.netty" % "netty-transport-classes-epoll" % nettyVersion,
"io.netty" % "netty-codec-http2" % nettyVersion,
"io.netty" % "netty-handler" % nettyVersion
)

lazy val activemq = module("activemq", directory = "connectors")
.settings(
name := "pass4s-connector-activemq",
Expand All @@ -119,7 +128,7 @@ lazy val sns = module("sns", directory = "connectors")
name := "pass4s-connector-sns",
libraryDependencies ++= Seq(
"io.laserdisc" %% "pure-sns-tagless" % Versions.Laserdisc
) ++ awsSnykOverrides
) ++ awsSnykOverrides ++ nettySnykOverrides
)
.dependsOn(core)

Expand All @@ -129,7 +138,7 @@ lazy val sqs = module("sqs", directory = "connectors")
libraryDependencies ++= Seq(
"io.laserdisc" %% "pure-sqs-tagless" % Versions.Laserdisc,
"org.typelevel" %% "log4cats-core" % Versions.Log4Cats
) ++ awsSnykOverrides
) ++ awsSnykOverrides ++ nettySnykOverrides
)
.dependsOn(core)

Expand Down Expand Up @@ -162,7 +171,7 @@ lazy val s3Proxy = module("s3proxy", directory = "addons")
libraryDependencies ++= Seq(
"io.laserdisc" %% "pure-s3-tagless" % Versions.Laserdisc,
"io.circe" %% "circe-literal" % Versions.Circe % Test
) ++ awsSnykOverrides
) ++ awsSnykOverrides ++ nettySnykOverrides
)
.dependsOn(high, circe)

Expand Down

0 comments on commit 9044e2d

Please sign in to comment.