snakeyaml security fix, Lombok, Spring Boot, Spring Cloud Starter Openfeign

Description

Upgrade org.yaml:snakeyaml from 1.30 to 1.31 fixing these issues:

Upgrade lombok from 1.18.16 to 1.18.24 allowing a build with JDK 17.

Upgrade spring-boot-starter-parent from 2.7.0 to 2.7.3.

Upgrade spring-cloud-starter-openfeign from 3.1.2 to 3.1.4. This indirectly upgrades spring-security-rsa to 1.0.11.RELEASE making an explicit dependency entry for spring-security-rsa obsolete.

CSP Request Details

None

CSP Rejection Details

None

Potential Workaround

None

Checklist

hide

TestRail: Results

Activity

Show:
Done

Details

Assignee

Reporter

Labels

Priority

Development Team

Spring Force

Fix versions

RCA Group

TBD

TestRail: Cases

Open TestRail: Cases

TestRail: Runs

Open TestRail: Runs

Created September 8, 2022 at 8:35 PM
Updated October 20, 2022 at 9:28 AM
Resolved September 9, 2022 at 8:40 AM
TestRail: Cases
TestRail: Runs