Skip to content

Commit a31d091

Browse files
authoredJan 31, 2025··
update dependencies (#59)
* update dependencies * update workflow * update OpenTelemetry * update cyclonedx
1 parent 7e0d7a3 commit a31d091

File tree

3 files changed

+15
-15
lines changed

3 files changed

+15
-15
lines changed
 

‎.github/workflows/eumserver_test.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -53,7 +53,7 @@ jobs:
5353
--nvdApiKey ${{ secrets.NVD_API_KEY }}
5454
--nvdApiDelay 10000
5555
- name: Upload test results
56-
uses: actions/upload-artifact@v3
56+
uses: actions/upload-artifact@v4
5757
with:
5858
name: dependency-check-report-eum-server
5959
path: ${{ github.workspace }}/reports

‎gradle.properties

+13-13
Original file line numberDiff line numberDiff line change
@@ -3,27 +3,27 @@ boomerangVersion=1.737.0
33
# The OpenTelemetry-Boomerang version to ship with the EUM server
44
boomerangOpenTelemetryPluginVersion=0.48.0-5
55

6-
springBootVersion=3.3.5
6+
springBootVersion=3.4.2
77
snakeYamlVersion=2.3
88

99
# Ensure to adapt the netty version (inspectit-ocelot-core/build.gradle) when changing the OpenCensus version
1010
openCensusVersion=0.31.1
1111
openCensusInfluxdbExporterVersion=1.2
12-
grpcVersion=1.68.1
12+
grpcVersion=1.70.0
1313

1414
# @pin Prometheus client to 0.6.0 to prevent auto prefixing counter metrics with "_total"
1515
# see: https://github.com/prometheus/client_java/issues/640, https://github.com/prometheus/client_java/pull/653
1616
# additionally, the version 1.* introduced breaking changes
1717
prometheusClientVersion = 0.6.0
1818
# Keep the OpenTelemetry versions consistent
19-
openTelemetryVersion=1.37.0
20-
openTelemetryAlphaVersion=1.37.0-alpha
19+
openTelemetryVersion=1.43.0
20+
openTelemetryAlphaVersion=1.43.0-alpha
2121
openTelemetrySemConvVersion=1.30.1-alpha
22-
openTelemetryProtoVersion=1.3.2-alpha
23-
# Overwrite transitive dependency of OTel-proto to fix CVE
24-
protobufVersion=3.25.5
22+
openTelemetryProtoVersion=1.5.0-alpha
23+
# Overwrite transitive dependency of OTel-proto to fix CVE - Keep an eye on Spring versions
24+
protobufVersion=4.28.3
2525

26-
guavaVersion=33.3.1-jre
26+
guavaVersion=33.4.0-jre
2727
geoip2Version=4.2.1
2828

2929
httpClientVersion=4.5.14
@@ -34,17 +34,17 @@ commonsIoVersion=2.18.0
3434

3535
influxdbJavaVersion=2.24
3636

37-
armeriaVersion=1.31.0
38-
testContainersVersion=1.20.3
37+
armeriaVersion=1.31.3
38+
testContainersVersion=1.20.4
3939

4040
### gradle plugin versions
4141
### Check for newer version at https://plugins.gradle.org/
4242
# io.spring.dependency-management
43-
springDependencyManangementVersion=1.1.6
43+
springDependencyManangementVersion=1.1.7
4444
# org.owasp.dependencycheck
45-
owaspDependencyCheckVersion=11.1.0
45+
owaspDependencyCheckVersion=12.0.2
4646
# org.cyclonedx.bom
47-
cyclonedxBomVersion=1.10.0
47+
cyclonedxBomVersion=2.0.0
4848
# com.palantir.docker
4949
palantirDockerVersion=0.36.0
5050
versionsPlugin=0.51.0
+1-1
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
distributionBase=GRADLE_USER_HOME
22
distributionPath=wrapper/dists
3-
distributionUrl=https\://services.gradle.org/distributions/gradle-8.11-bin.zip
3+
distributionUrl=https\://services.gradle.org/distributions/gradle-8.11.1-bin.zip
44
networkTimeout=10000
55
zipStoreBase=GRADLE_USER_HOME
66
zipStorePath=wrapper/dists

0 commit comments

Comments
 (0)
Please sign in to comment.