4.5.2
This patch release addresses a single item:
- Bumped Spring dependency from 5.3.24 to 5.3.27 to address CVE https://spring.io/security/cve-2023-20860 .
The above CVE did not have any impact on ml-gradle as ml-gradle does not make use of the Spring MVC support in its org.springframework:spring-web
dependency. The intent of this release is simply to avoid the CVE being reported as a false positive.