From 1796a746b4de2824c3a95483c00169e05fde2c7a Mon Sep 17 00:00:00 2001 From: Eric Vantillard Date: Fri, 9 Dec 2022 08:53:01 +0100 Subject: [PATCH] [SECURITY] Fix Zip Slip Vulnerability CVE-2022-4065 Update TestNG version to 7.7.0 References: - TestNG issue #2665 comments https://github.com/cbeust/testng/issues/2665 - CVE-2022-4065 https://devhub.checkmarx.com/cve-details/CVE-2022-4065 - TODO upgrade version when https://github.com/cbeust/testng/pull/2806 will be released --- build.gradle.kts | 6 +----- 1 file changed, 1 insertion(+), 5 deletions(-) diff --git a/build.gradle.kts b/build.gradle.kts index 280cc84..2396412 100644 --- a/build.gradle.kts +++ b/build.gradle.kts @@ -22,11 +22,7 @@ dependencies { implementation("org.slf4j:slf4j-api:2.0.5") implementation("ch.qos.logback:logback-classic:1.4.5") providedCompile("jakarta.servlet:jakarta.servlet-api:5.0.0") - /** - * CVE-2022-4065 https://devhub.checkmarx.com/cve-details/CVE-2022-4065 - * TODO upgrade version when https://github.com/cbeust/testng/pull/2806 will be released - */ - testImplementation("org.testng:testng:7.6.1") + testImplementation("org.testng:testng:7.7.0") } gretty {