Skip to content

Commit ba2dd44

Browse files
committed
bumped kubernetes client version, removed unused dependency
1 parent 0a53a65 commit ba2dd44

File tree

1 file changed

+1
-13
lines changed

1 file changed

+1
-13
lines changed

pom.xml

Lines changed: 1 addition & 13 deletions
Original file line numberDiff line numberDiff line change
@@ -56,8 +56,7 @@
5656
<maven-surefire-plugin.version>3.5.2</maven-surefire-plugin.version>
5757
<spotless-maven-plugin.version>2.43.0</spotless-maven-plugin.version>
5858

59-
<kubernetes-client.version>6.13.1</kubernetes-client.version>
60-
<okio.version>1.17.6</okio.version>
59+
<kubernetes-client.version>7.4.0</kubernetes-client.version>
6160
</properties>
6261

6362
<dependencies>
@@ -101,17 +100,6 @@
101100
<artifactId>kubernetes-client-api</artifactId>
102101
<version>${kubernetes-client.version}</version>
103102
</dependency>
104-
<dependency>
105-
<!--
106-
We bump this here to get rid of a critical CVE in okio 1.15 which we get via kubernetes-client.
107-
We tried understanding _why_ we get 1.15 as dependency:tree for kubernetes-client says we should be getting 1.17.6.
108-
As we failed to understand this we did this short/medium term fix of adding an explicit dependency here which should override the one coming from kubernetes-client.
109-
This can be removed again as soon as we get the proper version from kubernetes-client.
110-
-->
111-
<groupId>com.squareup.okio</groupId>
112-
<artifactId>okio</artifactId>
113-
<version>${okio.version}</version>
114-
</dependency>
115103
<!-- End of needed by topology-provider -->
116104
<dependency>
117105
<groupId>junit</groupId>

0 commit comments

Comments
 (0)