From 183b463ce3c79ccfa739a3d76734262a230bcbf3 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 17 Nov 2025 20:04:09 +0000 Subject: [PATCH] build(deps): bump org.apache.commons:commons-lang3 from 3.19.0 to 3.20.0 Bumps org.apache.commons:commons-lang3 from 3.19.0 to 3.20.0. --- updated-dependencies: - dependency-name: org.apache.commons:commons-lang3 dependency-version: 3.20.0 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] --- build.gradle | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/build.gradle b/build.gradle index 42173f8..a0ad8d4 100644 --- a/build.gradle +++ b/build.gradle @@ -80,7 +80,7 @@ subprojects { implementation("org.apache.tomcat.embed:tomcat-embed-core:11.0.13") { because("versions below 11.0.12 have security vulnerabilities including CVE-2024-56337, CVE-2025-55754, CVE-2025-61795 - see dependabot #13, #27, #28") } - implementation("org.apache.commons:commons-lang3:3.19.0") { + implementation("org.apache.commons:commons-lang3:3.20.0") { because("versions below 3.18.0 have security vulnerabilities including CVE-2025-48924 - see dependabot #15") } implementation("io.projectreactor.netty:reactor-netty-http:1.2.11") {