Skip to content

Commit 963bc6a

Browse files
authored
KAFKA-20373: Bump maven artifact to 3.9.15 (#21911)
Bump maven-artifact to resolve plexus-utils CVE: [CVE-2025-67030](https://www.cve.org/CVERecord?id=CVE-2025-67030). Reviewers: Chia-Ping Tsai <chia7712@gmail.com>, Mickael Maison <mickael.maison@gmail.com>
1 parent 4d0a85f commit 963bc6a

2 files changed

Lines changed: 3 additions & 3 deletions

File tree

LICENSE-binary

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -242,10 +242,10 @@ License Version 2.0:
242242
- log4j-slf4j-impl-2.25.4
243243
- log4j-1.2-api-2.25.4
244244
- lz4-java-1.10.2
245-
- maven-artifact-3.9.11
245+
- maven-artifact-3.9.15
246246
- metrics-core-2.2.0
247247
- opentelemetry-proto-1.3.2-alpha
248-
- plexus-utils-3.6.0
248+
- plexus-utils-3.6.1
249249
- rocksdbjni-10.1.3
250250
- scala-library-2.13.18
251251
- scala-logging_2.13-3.9.6

gradle/dependencies.gradle

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -114,7 +114,7 @@ versions += [
114114
// https://github.com/apache/kafka/blob/trunk/clients/src/main/java/org/apache/kafka/common/record/internal/CompressionType.java#L73-L74
115115
// https://github.com/yawkat/lz4-java/blob/main/src/java/net/jpountz/lz4/LZ4Constants.java#L23-L24
116116
lz4: "1.10.2",
117-
mavenArtifact: "3.9.11",
117+
mavenArtifact: "3.9.15",
118118
metrics: "2.2.0",
119119
mockito: "5.23.0",
120120
opentelemetryProto: "1.3.2-alpha",

0 commit comments

Comments
 (0)