Changelog

Version 1.2.13

  • CC-29188 Bump com.google.protobuf:protobuf-java to version 3.25.5 to resolve CVE-2024-7254

Version 1.2.12

  • CC-26816: Bumped okhttp3 to 4.12.0

Version 1.2.11

  • CC-26413: Bumped jose4j to 0.9.5.
  • CC-26411: Bumped netty to 4.1.109.Final.
  • CC-26412: Bumped nimbusds_nimbus-jose-jwt to 9.39.

Version 1.2.10

  • Fixed CVE-2023-4586, bumped up io.netty_netty-codec version to 4.1.100.Final

Version 1.2.9

  • Bumped up connect-plugins-common to 0.9.10 to remove CVEs - PRISMA-2023-0067, CVE-2023-2976
  • Pinned Jose4j version to 0.9.3 to remove CVEs

Version 1.2.8

  • CCLOG-2431: Updated connect-plugins-parent from 0.8.21 to 0.8.22 to remove CVE-2022-41915, nimbus-jose-jwt to 9.31, and json-smart to 2.4.10

Version 1.2.7

  • Added method to close service bus client created during validation

Version 1.2.6

  • CCMSG-2218: Updated Jackson Databind to v2.14.0
  • CCMSG-2071: Updated okhttp3 to v4.10.0

Version 1.2.5

  • CCMSG-1931: Upgraded connect-plugins-parent from 0.8.13 to 0.8.15 to remove CVE-2022-25647

Version 1.2.4

  • Minor:Upgrade connect-commons-plugins from 0.8.12 to 0.8.13 to use backward compatible licensing jar

Version 1.2.3

  • Minor:Upgrade connect-commons-plugins from 0.8.11 to 0.8.12 to remove nano version
  • CVE: Upgrade connect-commons-plugins from 0.8.10 to 0.8.11
  • CCMSG-1723 updated to latest commons to fix jackson-databind CVE
  • CCMSG-1638 updated to latest commons to resolve protobuf CVE

Version 1.2.2

  • Enhance validations to disallow connector creation for Azure Service Bus entities which are configured for message sessions or auto forwarding (earlier the connector would just fail with an exception)

Version 1.2.1

  • Resolve CVEs CVE-2021-21290, CVE-2021-21409, CVE-2021-21295, CVE-2021-21290, CVE-2020-8908 and CVE-2021-27568 by upgrading dependencies

Version 1.2.0

  • Added config validations for the connector