-
Notifications
You must be signed in to change notification settings - Fork 181
[CVE-2026-24400] Upgrade assertj-core to 3.27.7 #5100
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
base: main
Are you sure you want to change the base?
Conversation
Signed-off-by: Jialiang Liang <jiallian@amazon.com>
📝 WalkthroughWalkthroughUpdates AssertJ test dependency from 3.9.1 to 3.27.7 and adds a corresponding maintenance note in the 3.5.0.0 release notes. No functional code or public API changes. Changes
Estimated code review effort🎯 1 (Trivial) | ⏱️ ~3 minutes Possibly related PRs
Suggested labels
Suggested reviewers
🚥 Pre-merge checks | ✅ 3✅ Passed checks (3 passed)
✏️ Tip: You can configure your own custom pre-merge checks in the settings. ✨ Finishing touches
🧪 Generate unit tests (beta)
Comment |
Signed-off-by: Jialiang Liang <jiallian@amazon.com>
|
Some of the CI tasks has been cancelled by github, will ltrigger the re-run. |
|
All this CI tasks has been stucked at: |
|
Also had a conversation with @peterzhuamazon, and it is actually better if we can fix this cve at current 3.5 release. |
|
The above CI error is due to the ongoing GHA outage : https://www.githubstatus.com/ |
2241c9a to
e4b4e42
Compare

Description
[CVE] Upgrade assertj-core to 3.27.7
Related Issues
Check List
--signoffor-s.By submitting this pull request, I confirm that my contribution is made under the terms of the Apache 2.0 license.
For more information on following Developer Certificate of Origin and signing off your commits, please check here.