Skip to content

Commit

Permalink
Fjern sårbarhet i Netty (#336)
Browse files Browse the repository at this point in the history
* Fjern sårbarhet i Netty

* Fjern ubrukt avhengighet
  • Loading branch information
bjerga authored Oct 26, 2023
1 parent 011d25a commit 5f38189
Show file tree
Hide file tree
Showing 2 changed files with 8 additions and 4 deletions.
9 changes: 7 additions & 2 deletions api/build.gradle.kts
Original file line number Diff line number Diff line change
@@ -1,4 +1,3 @@
val altinnVersion: String by project
val ktorVersion: String by project
val lettuceVersion: String by project
val mockOauth2ServerVersion: String by project
Expand All @@ -14,13 +13,19 @@ tasks {
}

dependencies {
constraints {
// En transitiv avhengighet i ktor 2.3.5. Kan trolig fjernes ved nyere versjoner.
implementation("io.netty:netty-codec-http2:4.1.100.Final") {
because("https://github.com/navikt/helsearbeidsgiver-inntektsmelding/security/dependabot/14")
}
}

implementation("io.ktor:ktor-serialization-kotlinx-json:$ktorVersion")
implementation("io.ktor:ktor-server-content-negotiation:$ktorVersion")
implementation("io.ktor:ktor-server-core:$ktorVersion")
implementation("io.ktor:ktor-server-netty:$ktorVersion")
implementation("io.ktor:ktor-server-status-pages:$ktorVersion")
implementation("io.lettuce:lettuce-core:$lettuceVersion")
implementation("no.nav.helsearbeidsgiver:altinn-client:$altinnVersion")
implementation("no.nav.security:token-client-core:$tokenSupportVersion")
implementation("no.nav.security:token-validation-ktor-v2:$tokenSupportVersion")
implementation("org.valiktor:valiktor-core:$valiktorVersion")
Expand Down
3 changes: 1 addition & 2 deletions api/gradle.properties
Original file line number Diff line number Diff line change
@@ -1,6 +1,5 @@
# Dependency versions
altinnVersion=0.1.11
# nyere versjon av mockOauth2ServerVersion finnes, men med bug
mockOauth2ServerVersion=0.5.3
tokenSupportVersion=3.1.4
tokenSupportVersion=3.1.7
valiktorVersion=0.12.0

0 comments on commit 5f38189

Please sign in to comment.