build: update Gradle and patch SDK dependency vulnerabilities - #52
Conversation
Bumps [gradle-wrapper](https://github.com/gradle/gradle) from 9.6.1 to 9.7.0. - [Release notes](https://github.com/gradle/gradle/releases) - [Commits](gradle/gradle@v9.6.1...v9.7.0) --- updated-dependencies: - dependency-name: gradle-wrapper dependency-version: 9.7.0 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
|
Warning Review the following alerts detected in dependencies. According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.
|
085c62c to
9a227d3
Compare
86bbb92 to
12ea0b2
Compare
12ea0b2 to
92ab767
Compare
Updates the Gradle wrapper to 9.7.0 and refreshes all dependency locks.
Also resolves every open GitHub code-scanning advisory in this SDK:
Additional stable dependency updates include OkHttp 5.5.0, JUnit 6.1.3, JUnit Pioneer 2.3.0, and Mockito Kotlin 6.3.0.
The repair also records complete cold-cache verification metadata and excludes the shrinker fixture from aggregate coverage inputs under Gradle 9.7.
Validation: