{
  "formatVersion": "1.1",
  "component": {
    "group": "org.opensearch.dataprepper.plugins",
    "module": "avro-codecs",
    "version": "2.15.1",
    "attributes": {
      "org.gradle.status": "release"
    }
  },
  "createdBy": {
    "gradle": {
      "version": "8.8"
    }
  },
  "variants": [
    {
      "name": "apiElements",
      "attributes": {
        "org.gradle.category": "library",
        "org.gradle.dependency.bundling": "external",
        "org.gradle.jvm.version": 11,
        "org.gradle.libraryelements": "jar",
        "org.gradle.usage": "java-api"
      },
      "files": [
        {
          "name": "avro-codecs-2.15.1.jar",
          "url": "avro-codecs-2.15.1.jar",
          "size": 17320,
          "sha512": "45c4c58fcb7832e72320839991e77f096b282b428fa53d3f3a74bf13733449a40a4612675c74b7ea7a2329db6bef727db3e9254174320f236e6d4aa422318a08",
          "sha256": "b3b1e746ba1ebd4705143973068c91d7b5a07b86f17bc49c8de4b1975331750b",
          "sha1": "644be0173781b68dc5b7fcb18f9d1999908a0f86",
          "md5": "690ed44244d8fecaafa3b3e0f125cd6e"
        }
      ]
    },
    {
      "name": "runtimeElements",
      "attributes": {
        "org.gradle.category": "library",
        "org.gradle.dependency.bundling": "external",
        "org.gradle.jvm.version": 11,
        "org.gradle.libraryelements": "jar",
        "org.gradle.usage": "java-runtime"
      },
      "dependencies": [
        {
          "group": "com.fasterxml.jackson",
          "module": "jackson-bom",
          "version": {
            "requires": "2.21.0"
          },
          "attributes": {
            "org.gradle.category": "platform"
          },
          "endorseStrictVersions": true
        },
        {
          "group": "org.eclipse.jetty",
          "module": "jetty-bom",
          "version": {
            "requires": "9.4.53.v20231009"
          },
          "attributes": {
            "org.gradle.category": "platform"
          },
          "endorseStrictVersions": true
        },
        {
          "group": "io.micrometer",
          "module": "micrometer-bom",
          "version": {
            "requires": "1.10.5"
          },
          "attributes": {
            "org.gradle.category": "platform"
          },
          "endorseStrictVersions": true
        },
        {
          "group": "com.google.guava",
          "module": "guava",
          "version": {
            "requires": "32.1.2-jre"
          }
        },
        {
          "group": "org.slf4j",
          "module": "slf4j-api",
          "version": {
            "requires": "2.0.6"
          }
        },
        {
          "group": "software.amazon.awssdk",
          "module": "bom",
          "version": {
            "requires": "2.30.23"
          },
          "attributes": {
            "org.gradle.category": "platform"
          },
          "endorseStrictVersions": true
        },
        {
          "group": "jakarta.validation",
          "module": "jakarta.validation-api",
          "version": {
            "requires": "3.0.2"
          }
        },
        {
          "group": "org.opensearch.dataprepper",
          "module": "data-prepper-api",
          "version": {
            "requires": "2.15.1"
          }
        },
        {
          "group": "org.apache.avro",
          "module": "avro",
          "version": {
            "requires": "1.11.4"
          }
        },
        {
          "group": "org.apache.parquet",
          "module": "parquet-common",
          "version": {
            "requires": "1.15.2"
          }
        },
        {
          "group": "software.amazon.awssdk",
          "module": "s3"
        },
        {
          "group": "software.amazon.awssdk",
          "module": "apache-client"
        }
      ],
      "dependencyConstraints": [
        {
          "group": "dnsjava",
          "module": "dnsjava",
          "version": {
            "requires": "3.6.1"
          },
          "reason": "Fixes CVE-2023-39410."
        },
        {
          "group": "org.apache.avro",
          "module": "avro",
          "version": {
            "requires": "1.11.3"
          },
          "reason": "Fixes CVE-2023-39410."
        },
        {
          "group": "org.apache.commons",
          "module": "commons-configuration2",
          "version": {
            "requires": "2.11.0"
          },
          "reason": "Fixes CVE-2024-29131 and CVE-2024-29133."
        },
        {
          "group": "org.apache.httpcomponents",
          "module": "httpclient",
          "version": {
            "requires": "4.5.14"
          },
          "reason": "We want the newest version of httpclient."
        },
        {
          "group": "org.apache.logging.log4j",
          "module": "log4j-core",
          "version": {
            "requires": "2.17.1"
          },
          "reason": "Log4j 2.17.1 fixes CVE-2021-44228, CVE-2021-45046, CVE-2021-45105, and CVE-2021-44832"
        },
        {
          "group": "org.apache.logging.log4j",
          "module": "log4j-api",
          "version": {
            "requires": "2.17.1"
          },
          "reason": "the build fails if the Log4j API is not update along with log4j-core"
        },
        {
          "group": "org.apache.zookeeper",
          "module": "zookeeper",
          "version": {
            "requires": "3.8.4"
          },
          "reason": "Fixes CVE-2024-23944, CVE-2023-44981"
        },
        {
          "group": "com.google.code.gson",
          "module": "gson",
          "version": {
            "requires": "2.8.9"
          },
          "reason": "Fixes WS-2021-0419 DoS vulnerability"
        },
        {
          "group": "com.google.protobuf",
          "module": "protobuf-java",
          "version": {
            "requires": "3.21.11"
          },
          "reason": "Fixes CVE-2022-3509, CVE-2022-3510"
        },
        {
          "group": "org.yaml",
          "module": "snakeyaml",
          "version": {
            "requires": "2.0"
          },
          "reason": "Fixes CVE-2022-1471"
        },
        {
          "group": "org.codehaus.jettison",
          "module": "jettison",
          "version": {
            "requires": "1.5.4"
          },
          "reason": "CVE from transitive dependecies"
        },
        {
          "group": "net.minidev",
          "module": "json-smart",
          "version": {
            "requires": "2.5.2"
          },
          "reason": "CVE from transitive dependencies, including CVE-2024-57699"
        },
        {
          "group": "org.jetbrains.kotlin",
          "module": "kotlin-stdlib",
          "version": {
            "requires": "1.8.21"
          },
          "reason": "CVE from transitive dependencies"
        },
        {
          "group": "org.eclipse.jetty",
          "module": "http2-common",
          "version": {
            "requires": "9.4.53.v20231009"
          },
          "reason": "Fixes CVE-2023-44487"
        },
        {
          "group": "org.eclipse.jetty",
          "module": "http2-server",
          "version": {
            "requires": "9.4.53.v20231009"
          },
          "reason": "Fixes CVE-2023-44487"
        },
        {
          "group": "org.xerial.snappy",
          "module": "snappy-java",
          "version": {
            "requires": "1.1.10.5"
          },
          "reason": "Fixes CVE-2023-43642"
        },
        {
          "group": "com.squareup.okio",
          "module": "okio-jvm",
          "version": {
            "requires": "3.5.0"
          },
          "reason": "CVE from transitive dependencies"
        },
        {
          "group": "com.charleskorn.kaml",
          "module": "kaml",
          "version": {
            "requires": "0.55.0"
          },
          "reason": "CVE from transitive dependencies"
        },
        {
          "group": "com.jayway.jsonpath",
          "module": "json-path",
          "version": {
            "requires": "2.9.0"
          },
          "reason": "Fixes CVE-2023-51074 from transitive dependencies"
        },
        {
          "group": "org.scala-lang",
          "module": "scala-library",
          "version": {
            "requires": "2.13.12"
          },
          "reason": "CVE from transitive dependencies"
        },
        {
          "group": "org.jline",
          "module": "jline",
          "version": {
            "requires": "3.25.0"
          },
          "reason": "CVE-2023-50572"
        },
        {
          "group": "org.json",
          "module": "json",
          "version": {
            "requires": "20231013"
          },
          "reason": "CVE-2023-5072, CVE from transitive dependencies"
        },
        {
          "group": "org.apache.commons",
          "module": "commons-compress",
          "version": {
            "requires": "1.26.0"
          },
          "reason": "CVE-2024-25710, CVE-2024-26308"
        },
        {
          "group": "commons-beanutils",
          "module": "commons-beanutils",
          "version": {
            "requires": "1.11.0"
          },
          "reason": "CVE-2025-48734"
        }
      ],
      "files": [
        {
          "name": "avro-codecs-2.15.1.jar",
          "url": "avro-codecs-2.15.1.jar",
          "size": 17320,
          "sha512": "45c4c58fcb7832e72320839991e77f096b282b428fa53d3f3a74bf13733449a40a4612675c74b7ea7a2329db6bef727db3e9254174320f236e6d4aa422318a08",
          "sha256": "b3b1e746ba1ebd4705143973068c91d7b5a07b86f17bc49c8de4b1975331750b",
          "sha1": "644be0173781b68dc5b7fcb18f9d1999908a0f86",
          "md5": "690ed44244d8fecaafa3b3e0f125cd6e"
        }
      ]
    },
    {
      "name": "javadocElements",
      "attributes": {
        "org.gradle.category": "documentation",
        "org.gradle.dependency.bundling": "external",
        "org.gradle.docstype": "javadoc",
        "org.gradle.usage": "java-runtime"
      },
      "files": [
        {
          "name": "avro-codecs-2.15.1-javadoc.jar",
          "url": "avro-codecs-2.15.1-javadoc.jar",
          "size": 334495,
          "sha512": "6d5da42945d37ba52b213871a864856589e93013f698e89bd42b085b4490acf53c077f18d6e64ee496c08158f5ee2074a840c6998f674357117d23ce9340d2d8",
          "sha256": "dc0f04188d7ad9ec9ba2ed84a6b757f00d611ebf6d4366188ce9e9762e9bb1fd",
          "sha1": "8715cdf81689327ceee8f03789c67bc5b4ec7a19",
          "md5": "9045d8a199a24a6d81c04566bdc99e27"
        }
      ]
    },
    {
      "name": "sourcesElements",
      "attributes": {
        "org.gradle.category": "documentation",
        "org.gradle.dependency.bundling": "external",
        "org.gradle.docstype": "sources",
        "org.gradle.usage": "java-runtime"
      },
      "files": [
        {
          "name": "avro-codecs-2.15.1-sources.jar",
          "url": "avro-codecs-2.15.1-sources.jar",
          "size": 11077,
          "sha512": "d3ba04ac10d44aef83a74d311ff384be9e6a583c8a1300baa0ff19492f0916f61ddcf4a0fb059d30ed3b0bf706fb9aeae11013b194da1437ce1fcd8a69338a61",
          "sha256": "a6536c74d8d196cadeef2aa8bcb3b90da0937590efcae149344d8542fee6b063",
          "sha1": "2b2071e66566ca46e4f4c2a9deb651dedcc1a558",
          "md5": "3c774750eff2d88890c9934284cb1800"
        }
      ]
    }
  ]
}
