We have been upgrading our services to override this version from the one managed to 1.84 and not that has a critical CVE so now we have to move to 1.85.
https://security.snyk.io/vuln/SNYK-JAVA-ORGBOUNCYCASTLE-18512779
Could we have the version upgraded here as backward compatibility does not appear to be an issue as long as we have been force overriding the version?
https://github.com/spring-cloud/spring-cloud-commons/blob/main/pom.xml#L89
We have been upgrading our services to override this version from the one managed to 1.84 and not that has a critical CVE so now we have to move to 1.85.
https://security.snyk.io/vuln/SNYK-JAVA-ORGBOUNCYCASTLE-18512779
Could we have the version upgraded here as backward compatibility does not appear to be an issue as long as we have been force overriding the version?
https://github.com/spring-cloud/spring-cloud-commons/blob/main/pom.xml#L89