From 229bdf6cd88aa36c61305964bc30945831c63c49 Mon Sep 17 00:00:00 2001 From: nishithakbhaskaran Date: Wed, 20 Nov 2024 14:32:11 +0530 Subject: [PATCH] Fix snakeyaml CVEs snakeyaml 1.x version causing mend scan CVEs. Cherry-pick of https://github.com/trinodb/trino/pull/2377 Co-authored-by: Yuya Ebihara --- pom.xml | 23 ++--- presto-cassandra/pom.xml | 14 ++- .../cassandra/CassandraQueryRunner.java | 21 ++--- ...dedCassandra.java => CassandraServer.java} | 93 +++++++------------ .../cassandra/CassandraTestingUtils.java | 26 +++--- .../cassandra/TestCassandraConnector.java | 22 +++-- .../cassandra/TestCassandraDistributed.java | 13 ++- .../TestCassandraIntegrationSmokeTest.java | 17 ++-- .../TestCassandraTokenSplitManager.java | 17 +++- .../src/test/resources/cu-cassandra.yaml | 13 ++- presto-elasticsearch/pom.xml | 1 - 11 files changed, 128 insertions(+), 132 deletions(-) rename presto-cassandra/src/test/java/com/facebook/presto/cassandra/{EmbeddedCassandra.java => CassandraServer.java} (64%) diff --git a/pom.xml b/pom.xml index fde9885f52e01..ea9e9d5668155 100644 --- a/pom.xml +++ b/pom.xml @@ -82,6 +82,7 @@ 1.11.4 1.26.2 3.25.5 + 2.0