From fb854607faf9d1380bc77d92753730b59eed63d2 Mon Sep 17 00:00:00 2001 From: Shalani Weerasooriya Date: Mon, 6 Nov 2023 22:42:05 +0000 Subject: [PATCH 1/2] Update google-cloud-bigquery to 2.34.0 Update com.google.cloud:google-cloud-bigquery to 2.34.0. The 2.29.0 version of com.google.cloud:google-cloud-bigquery uses org.json:json version 20230618 as a transitive dependency, which has a vulnerability listed here: https://osv.dev/vulnerability/GHSA-rm7j-f5g5-27vv. 2.34.0 uses a newer version of org.json:json, 20231013. --- pom.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pom.xml b/pom.xml index b3fdd259..54f7eec1 100644 --- a/pom.xml +++ b/pom.xml @@ -109,7 +109,7 @@ com.google.cloud google-cloud-bigquery - 2.29.0 + 2.34.0 From e1928c31ff6372923ab76460bb447736451f4451 Mon Sep 17 00:00:00 2001 From: Shalani Weerasooriya Date: Mon, 6 Nov 2023 22:42:05 +0000 Subject: [PATCH 2/2] Update google-cloud-bigquery to 2.34.0 Update com.google.cloud:google-cloud-bigquery to 2.34.0. The 2.29.0 version of com.google.cloud:google-cloud-bigquery uses org.json:json version 20230618 as a transitive dependency, which has a vulnerability listed here: https://osv.dev/vulnerability/GHSA-rm7j-f5g5-27vv. 2.34.0 uses a newer version of org.json:json, 20231013. --- pom.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pom.xml b/pom.xml index 54f7eec1..4845cd7f 100644 --- a/pom.xml +++ b/pom.xml @@ -4,7 +4,7 @@ to a groupId that we have ownership over --> com.google.looker-open-source bqjdbc - 2.3.27 + 2.3.28-SNAPSHOT Big Query over JDBC A simple JDBC driver, to reach Google's BigQuery