From 15b0b40a124e7b642c68f118e898a6fe06a17b9c Mon Sep 17 00:00:00 2001 From: Darshit Chanpura Date: Tue, 29 Nov 2022 11:24:22 -0500 Subject: [PATCH] Fixes CVE-2022-42920 by forcing bcel version to resovle to 6.6 Signed-off-by: Darshit Chanpura --- build.gradle | 1 + 1 file changed, 1 insertion(+) diff --git a/build.gradle b/build.gradle index 927124723c..cd4a3ea9f6 100644 --- a/build.gradle +++ b/build.gradle @@ -262,6 +262,7 @@ configurations { force "io.netty:netty-handler:${versions.netty}" force "io.netty:netty-transport:${versions.netty}" force "io.netty:netty-transport-native-unix-common:${versions.netty}" + force "org.apache.bcel:bcel:6.6.0" // This line should be removed once Spotbugs is upgraded to 4.7.4 } }