From e72efd9b29abb5e48010c8092222368b79b21c9a Mon Sep 17 00:00:00 2001 From: Ramesh Pachanady Date: Thu, 11 May 2023 18:05:38 -0700 Subject: [PATCH] W-12354025:Upgrade to snakeyaml 2.0 to address vulnerability in earlier versions --- standalone/assembly-allowlist.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/standalone/assembly-allowlist.txt b/standalone/assembly-allowlist.txt index 0e6236ba57b..0579ae91333 100644 --- a/standalone/assembly-allowlist.txt +++ b/standalone/assembly-allowlist.txt @@ -249,7 +249,7 @@ /mule-standalone-${productVersion}/lib/opt/reflections-0.9.10.jar /mule-standalone-${productVersion}/lib/opt/rhino-1.7.12.jar /mule-standalone-${productVersion}/lib/opt/semver4j-3.1.0.jar -/mule-standalone-${productVersion}/lib/opt/snakeyaml-1.33.jar +/mule-standalone-${productVersion}/lib/opt/snakeyaml-2.0.jar /mule-standalone-${productVersion}/lib/opt/spring-aop-5.3.21.jar /mule-standalone-${productVersion}/lib/opt/spring-beans-5.3.21.jar /mule-standalone-${productVersion}/lib/opt/spring-context-5.3.21.jar