summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorPaul-Christian Volkmer2023-08-30 13:26:05 +0200
committerPaul-Christian Volkmer2023-08-30 13:26:05 +0200
commitc52509054d220d252a87dfd3555389ae2cd8094d (patch)
treecba63e9b7ff8219b4222894f938ce501b489afad
parent5e93e834ad352e8b12b948a650663d137af1b49e (diff)
chore: Add kafka-clients dependency with fixed version to mitigate CVEs
This will use version 3.5.1 of kafka-clients dependency to prevent issues due to CVE-2023-34453, CVE-2023-34454 and CVE-2023-34455
-rw-r--r--build.gradle.kts4
1 files changed, 4 insertions, 0 deletions
diff --git a/build.gradle.kts b/build.gradle.kts
index b0aabc3..c074b3b 100644
--- a/build.gradle.kts
+++ b/build.gradle.kts
@@ -20,6 +20,10 @@ var versions = mapOf(
"mockito-kotlin" to "5.1.0"
)
+// Override Apache Kafka to be used
+// Fixes: CVE-2023-34455, CVE-2023-34454, CVE-2023-34453
+extra["kafka.version"] = "3.5.1"
+
java {
sourceCompatibility = JavaVersion.VERSION_17
}