Skip to content

Commit 11ff38c

Browse files
committed
[Backport 2.19-dev][Maintenance] Fix CVE-2025-48924
Signed-off-by: Jialiang Liang <jiallian@amazon.com>
1 parent 24442b2 commit 11ff38c

1 file changed

Lines changed: 3 additions & 0 deletions

File tree

build.gradle

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -154,6 +154,9 @@ allprojects {
154154
resolutionStrategy.force 'commons-io:commons-io:2.15.0'
155155
resolutionStrategy.force 'org.yaml:snakeyaml:2.2'
156156
resolutionStrategy.force 'commons-beanutils:commons-beanutils:1.11.0'
157+
resolutionStrategy.dependencySubstitution {
158+
substitute module('commons-lang:commons-lang') using module('org.apache.commons:commons-lang3:3.18.0') because 'CVE-2025-48924: commons-lang 2.x vulnerable to StackOverflowError'
159+
}
157160
}
158161
}
159162

0 commit comments

Comments
 (0)