Tools to help keep your dependencies up to date

Log4Shell and Spring4Shell were found while I was working as a Software Engineer at a Dutch online retail platform and we had to urgently upgrade all of our microservices. We were already using a dashboard showing SCA scan results, and we added Renovate to all our repositories to automatically create Pull Requests to upgrade dependencies.

Of course, some upgrades require changes to the code as well. Let’s take a look at the tools at our disposal that can help keep our dependencies up to date!



